How to Report Suspected Phishing Emails


Phishing attacks are malicious emails which attempt to trick you into clicking malicious links, interacting with malware, or sending your credentials to bad actors. The University of Toronto employs advanced threat protections to prevent malicious emails from reaching your inbox; however, phishing attacks can occasionally evade these safeguards.

If you receive a suspicious-looking email, please report it immediately. Your report helps keep the University safe.

There are two methods for reporting phishing emails at UofT:

A blue envelope with a red triangle and a red triangle on itDescription automatically generated

 

How to use the UofT Report Phishing button

Outlook Web Access (OWA)

In the online mail.utoronto.ca portal, you can report suspected phishing emails automatically.

  1. Select the email message. (Do not click on any links or attachments.)
  2. Click the "UofT Report Phishing" button, in the top right corner of the email.
  3. Select the reason you are reporting the suspicious message.
  4. Indicate whether you have interacted with the suspicious message.
  5. Select “Report Email”.
  6. Select “Close and Delete” to delete the suspicious message after reporting it.

Outlook desktop application

In Outlook, you can report the message and it is deleted automatically.

  1. Select the email message. (Do not click on any links or attachments.)
  2. Click the "UofT Report Phishing" button, in the "Add-ins" pane of the top ribbon. The Report Phishing button may also appear in the top right corner of the email.
  3. Select the reason you are reporting the suspicious message.
  4. Indicate whether you have interacted with the suspicious message.
  5. Select “Report Email”.
  6. Select “Close and Delete” to delete the suspicious message after reporting it.

 

Outlook on mobile

  1. Open the Outlook application on your mobile device.
  2. Tap on the three dots (…) on the top right corner of the message.
  3. Select the “UofT Report Phishing” icon.
  4. Select the reason you are reporting the suspicious message.
  5. Indicate whether you have interacted with the suspicious message.
  6. Select “Report Email”.
  7. Select “Close and Delete” to delete the suspicious message after reporting it.

Example on iOS mobile: 

A screenshot of a phone
A screenshot of a phone
Example on Android:

A screenshot of a phone

 

How to Report via Email Forwarding

  1. Forward Email: Forward the suspicious email to report.phishing@utoronto.ca.
  2. Delete Email: After forwarding, manually delete the email from your inbox to prevent further interaction with it.

 

Note: Shared Mailbox and UofT Report Phishing

When using a shared mailbox, the “UofT Report Phishing” button does not work.

Observations:

You will receive the following message when using the UofT Report Phishing button with an email inside a shared mailbox.

A screenshot of a computer screenDescription automatically generated

Solution: 

Please forward the email to report.phishing@utoronto.ca and then delete it from your inbox.