New EmailLabs Panel
API DOCSEmail API & Cloud SMTPPricingBlog
EN
EN
  • πŸ‘‹New EmailLabs Panel
  • πŸ’‘first steps
    • Completing Company Data
    • GDPR Agreement
      • Choosing the Right GDPR Agreement
      • Signing the GDPR Agreement
    • Security
      • Changing Your Login Password
      • Password Reset
      • IP Authorization
      • Two-Factor Authentication (2FA)
    • SMTP Server Password
    • Sender Authorization
    • SPF Record
      • If You Don’t Have an SPF Record
      • If You Have an SPF Record from Another Service
  • πŸ’ŒEmail
    • Introduction
      • How the Email Channel Works with Omnichannel
      • How to Use Email Campaigns vs API Sends
    • Email API
      • Dashboard
        • Elements on the Dashboard
          • Date Selection
          • SMTP Account Selection
          • Message Statuses and Line Chart
        • Server Information
      • Emails Report
        • Navigation and Tab Selection
          • Structure of the Email Reports Tab
            • Search Tool
            • Email List
              • Detailed Message Logs
      • Tag Report
        • Compare Statuses
          • Search Tool
          • Tags Report Search Results
        • Compare Tags
          • Search Tool
          • Tags Report Search Results
      • Domain Report
        • Search Tool
        • Search Results
      • Blacklist Report
        • Emails Blacklist
          • Search Tool
          • Adding and Exporting Email Addresses
            • Importing Addresses to the Blacklist
            • Exporting Email Addresses from the Blacklist
            • Adding a New Address
        • Domains Blacklist
          • Tool Search
          • Adding a New Domain
        • Import List
          • Search Tool
        • Export List
          • Search Tool
      • Whitelist Report
        • Email Addresses Whitelist
          • Search Tool
          • Add New Address
        • Domain Addresses
          • Search Tool
          • Add New Domain
      • Settings
        • SMTP Accounts
          • General Settings
          • IP Authorization
          • SPF
          • S/MIME
          • Block Disposable Temporary Addresses
          • Tags
            • Configuring a New Rule
          • Headers
            • Configuring Headers
          • Footer
            • Configuring the Footer
          • Link Tracking
            • Link Tracking Configuration
          • Open Tracking
            • Open Tracking Configuration
          • Deep Links
          • Google Analytics
            • Google Analytics Configuration
          • Unsubscribe
            • Unsubscribe Configuration
              • Unsubscribe Page
              • Redirect to Your Unsubscribe Page
            • List-Unsubscribe Header (One-Click Unsubscribe)
        • Blacklist
          • Types of Blacklist
          • Validity of Entries on the Blacklist
          • Bounce Number Before Address Blocking
        • Messages Templaets
          • Email Template Configuration
          • Sending Emails with a Template
    • Email Campaigns
      • Dashboard
        • Elements on the Dashboard
      • Campaigns
        • Campaign List
          • Overview of the Campaign List
          • Campaign Search
          • Campaign List
        • Campaign Export
          • How to Export Campaign List
          • Data Included in the Export File
      • Creating a New Email Campaign
        • Email Template
        • Basic Information
        • Recipients
        • Summary
          • Campaign Preview and Summary
          • Action Button
          • Booster Configuration
          • Campaign Execution
        • Booster Configuration in E-mail Campaign
        • A/B Campaign Email Builder
        • Designing Emails Using the Drag-and-Drop Editor
          • Features of the Editor
            • Content Blocks
            • Rows
            • Settings
          • Creating an Email Design in the Editor
            • Adding Rows
            • Adding Content Elements
            • Personalization and Modification
            • Testing and Optimization
            • Saving and Launching the Campaign
      • Outgoing
        • How to Access Outgoing Emails?
        • Outgoing Emails List
        • Email Details
      • Campaign Reports
        • Summary
        • Opens
        • Clicks
        • Domain Report
        • Heatmap
        • Geo/Tech
        • Tools
        • Data Availability
      • Settings
        • Unsubscribe Pages
          • Adding a New Unsubscribe Page
          • Creating the Unsubscribe Confirmation Page
          • Saving and Completing the Process
          • Available Actions for Created Templates
  • Common Settings
    • Sender Domain Authorization
      • Login and Domain Selection
      • Advanced Settings
      • Generating and Adding DNS Records
        • Domain Authorization in Cloudflare
        • Domain Authorization in GoDaddy
        • Domain Authorization in cyber_Folks
        • Domain Authorization in home.pl
        • Domain Authorization in nazwa.pl
        • Domain Authorization in OVHcloud
        • Domain Authorization in Zenbox
      • Verification and Process Completion
      • Restricting Authorization to Specific SMTPs
      • Technical Support
  • πŸ“±SMS
    • Overview
    • SMS Campaings
      • Dashboard
        • Dashboard Elements
      • Campaigns
        • Campaign List
          • Campaign List Overview
          • Campaign Search
          • Campaign List
        • Campaign Export
          • Data Included in the Export File
        • Creating a New SMS Campaign
          • Sender
          • Recipients
          • Content
            • Message Content
            • Personalization
            • Character Count and Message Billing
            • Message Billing Rules
            • Billing Table
            • Additional Options
              • Campaign Name
              • Campaign Description
              • Progress Notifications (email)
              • Capacity [SMS/h]
              • Unsubscribe Page Template
              • Insert Tracking List
              • Debug Message Content
          • Summary
          • Test Send
          • Booster Configuration
          • Save and Send Campaign
        • Booster Configuration in SMS Campaign
        • Send Test to Multiple
        • Delivery Report
          • Summary
          • Clicks
          • Tools
      • Incoming Messages
        • Incoming Messages
        • Incoming Messages List
        • Exporting Incoming Messages
      • Outgoing Messages
        • Access to Outgoing Messages
        • Outgoing Messages List
        • Exporting Outgoing Messages
      • Settings
        • Links with Suffixes
          • Creating a New Link with a Suffix
          • Managing Links with Suffixes
          • Exporting Link Click Data
          • Best Practises
        • Unsubscribes Pages
          • Configuration Options
          • Unsubscribe Page Functionality
          • Best Practises
    • SMS API
      • Dashboard
      • Incoming Messages
        • Access to Incoming Messages
        • Incoming Messages List
        • Exporting Incoming Messages
      • Outgoing Messages
        • Access to Messages Sent via the API
        • Outgoing Messages List
        • Exporting Outgoing Messages
    • Common Settings
      • SMS Headers
        • Adding a New Sender ID
        • Managing Headers
        • Searching for Headers
        • Security and Best Practises
  • SMS Billing
  • πŸ“²PUSH
    • Push Notifications – How Does It Work?
      • Push Notification Specifications
    • PUSH Campaigns
      • PUSH Dashboard
      • Campaigns
        • Creating a New PUSH Campaign
          • Content
          • Applications and Recipients
          • Summary
        • Booster Configuration in PUSH Campaign
        • Send Test to Multiple
        • Delivery Report
      • Outgoing
    • PUSH API
      • PUSH API Dashboard
      • Outgoing
    • Common Settings
      • Applications
      • Test Contacts
  • βš™οΈIntegrations
    • SMTP
      • SMTP Relay
      • Atomstore
      • BaseLinker
      • eFitness
      • IdoSell
      • Joomla!
      • Microsoft Outlook
      • Mozilla Thunderbird
      • PrestaShop
      • SALESmanago
      • Selly
      • Shoper
      • SOTE
      • User.com
      • WordPress
    • API
    • SMS
      • SALESmanago
  • πŸ‘₯Account
    • Users
      • Adding a User
      • Assigning Permissions
      • 2FA Settings
        • Resetting 2FA Settings
      • User Account Activation
      • Editing and Deleting a User
    • Settlements
      • Company Data
      • Invoices
    • Settings
      • Security
        • IP Authorization
        • Two-Factor Authentication (2FA)
      • API
        • Generating API Keys
        • Assigning Permissions
        • Limiting Access to Specific IP Addresses
        • Managing API Keys
        • Integration and Technical Requirements
      • Webhooks
        • Supported Channels and Events
        • Webhook Configuration
        • Data Transmission
    • Notifications
      • Notification Icon
      • Accessing the Full Notification List
        • Full Notification List View
    • Operations List
      • Operation Search
    • File Manager
    • GDPR
  • 🀝CONTACTS
    • Contacts Dashboard
    • Contacts List
      • Adding Individual Contacts
      • Editing Contacts
    • Groups List
      • Adding a New Group
      • Assigning Contacts to a Group
      • Static Group Segmentation
    • Dynamic Segments
      • List of Dynamic Segments
      • Creating a New Dynamic Segment
    • Import
      • Importing Contacts from a File
    • Archive
      • List of Archived Contacts
      • Managing Archived Contacts
    • Additional Fields
      • Adding a New Additional Field
  • πŸ”SECURITY CENTER
    • User Account Security
      • Managing Login Password
      • Two-Factor Authentication (2FA)
      • IP Address Access Authorization (Panel, API, SMTP)
      • Managing Users and Roles in the Account
    • Email Sending Security and Authorization
      • Introduction to Sender Authorization
      • SPF (Sender Policy Framework)
      • DKIM (DomainKeys Identified Mail)
      • DMARC (Domain-based Message Authentication, Reporting & Conformance)
      • BIMI (Brand Indicators for Message Identification)
      • Transmission Encryption (TLS)
    • Data Security and EmailLabs Infrastructure
      • EmailLabs' General Commitment to Security
      • Data Center Security
      • Technical and Organizational Measures Applied by EmailLabs
      • Service Protection and Connection Security (Cloudflare WAF)
    • Personal Data Protection and GDPR Compliance
      • Personal Data Processing in EmailLabs
      • EmailLabs Privacy Policy
      • Document Templates for Clients
    • Standards, Certifications, and Audits
      • ISO Certifications
      • Compliance with DORA & NIS2
      • Security and Penetration Tests
    • Protection against Threats and Abuse
      • How EmailLabs Protects Against Phishing and Abuse
      • How to Recognize and Analyze Suspicious Emails (User Tips)
      • Reporting Abuse (Anti-Abuse Policy)
    • Security – Frequently Asked Questions (FAQ)
Powered by GitBook
On this page
  • What to Look For – Characteristics of a Suspicious Message
  • Analyzing Email Headers:
  • What to do if you suspect phishing or an EmailLabs account compromise?
  1. SECURITY CENTER
  2. Protection against Threats and Abuse

How to Recognize and Analyze Suspicious Emails (User Tips)

Protection against phishing and other cyber threats is a shared responsibility. In addition to the security measures applied by EmailLabs, user vigilance and awareness are extremely important. Below, we provide tips on how to recognize suspicious emails that may arrive in your inbox (including those impersonating EmailLabs or other services you know) and what to do if you suspect a threat.

What to Look For – Characteristics of a Suspicious Message

  1. Sender of the Message:

    • Unknown email address or unusual domain: Does the sender's address look familiar? Is the domain correct (e.g., @emaillabs.pl, not @emaillabs.com or @email-labs.org)? Phishers often use addresses that are deceptively similar to real ones, with minor alterations.

    • Display name inconsistent with the address: The display name can be set arbitrarily (e.g., "EmailLabs Team"), but the actual email address might be completely different and suspicious. Always check the full sender email address.

  2. Content and Language:

    • Language and grammatical errors: Phishing messages often contain spelling, grammatical, or stylistic errors, for example, resulting from automatic translation.

    • Emphasis on urgency and threats: Creating time pressure ("Your account will be blocked!", "Immediate verification required!") is a common tactic to induce rash actions.

    • Unusual requests: Requests for login credentials, passwords, verification codes, credit card numbers, or other confidential information. Remember, EmailLabs and other reputable institutions never ask for such data via email.

    • Suspicious promises: Offers that are too good to be true, information about unexpected winnings, inheritances, etc.

  3. Links and Attachments:

    • Suspicious links: Before clicking, hover your mouse cursor over the link (without clicking) to see the actual URL it leads to. It is often different from the link text and may direct to a fake website. Be wary of shortened links if you are unsure of their origin.

    • Unexpected or unusual attachments: Especially executable files (.exe, .bat, .com), scripts (.js, .vbs), or compressed archives (.zip, .rar) from unknown sources. These may contain malicious software.

  4. Overall Appearance:

    • Low-quality graphics, logos: Blurred images or incorrect logos may indicate an impersonation attempt.

    • Lack of personalization or incorrect personalization: If the message is very generic ("Dear User") or contains incorrect data, exercise caution.

Analyzing Email Headers:

For more advanced users, analyzing email headers can provide valuable information about the origin and authenticity of a message. Headers contain, among other things:

  • Message path (Received): Shows the servers the message passed through.

  • Authentication results (Authentication-Results): Information about SPF, DKIM, and DMARC verification. If these tests fail (fail), it is a strong warning sign that the message may be spoofed.

What to do if you suspect phishing or an EmailLabs account compromise?

  • Do not click on suspicious links or open attachments.

  • Do not reply to the message or provide any data.

  • If you suspect the message is impersonating EmailLabs or concerns your account:

    • Log in to the EmailLabs panel by typing the address manually into your browser (not via a link from the email) and check for any messages or alerts there.

    • Immediately change the password for your EmailLabs account and the email address associated with it.

    • Enable or verify your Two-Factor Authentication (2FA) settings. (See section: Two-Factor Authentication (2FA))

    • Check recent account activity, authorized domains, and users.

    • Contact our support (bok@emaillabs.pl), describing the situation and attaching the suspicious message (as an .eml file or a screenshot with full headers).

  • If the message is impersonating another institution (e.g., a bank): Contact that institution directly (using official contact channels, not those provided in the suspicious email) and inform them of the incident.

  • Report abuse: If the message appears to originate from the EmailLabs infrastructure and violates our policies, report it to us. (See section: Reporting Abuse (Anti-Abuse Policy))

Remember, your vigilance and conscious actions are key to online security

PreviousHow EmailLabs Protects Against Phishing and AbuseNextReporting Abuse (Anti-Abuse Policy)

Last updated 2 days ago

A detailed guide on how to check headers in popular email clients can be found here:

πŸ”
What are email headers and how to check them?