Skip to main content

Reading is great. Tracking makes it stick. Sign up for a free Dashboard to tick off tasks and see your Security Score.

Get my free Dashboard →
MalwareHigh priority

How to never open unexpected email attachments or links

Malware and app protection

Treat any unexpected file attachment or link — even from someone you know — with suspicion before you click.

Step-by-step guide

  1. Before opening an attachment or clicking a link:
  2. Were you expecting this email?
  3. Does the sender's address look genuine (not spoofed)?
  4. Hover over the link — does the URL match what is displayed?
  5. If in doubt, contact the sender by phone to verify
  6. Report suspicious emails to your email provider or IT team

How to confirm it worked

  • The setting is saved and active on your device
  • You have tested it works before closing the page

Tick this task off in your Dashboard to update your Security Score.

Why this matters

The majority of ransomware and malware infections begin with a phishing email. Pausing before clicking is free and highly effective.

Need more context?

For background on this task — including common questions and answers — see the full guide.

Read the full guide →

Related security tasks

Track your security score for free

Create a free Cyber Nova AI account to tick off tasks like this one, see your Security Score, and stay on top of what you've done and what's still to do.

Start your free security check