While Blogger's anti-spam blog robots have been hard at work, padding their numbers...
Seems like the poor anti-spam and anti-phishing bots over at Gmail have been either overwhelmed or given a bit of a smoke-break.
While the number of spam and phish emails I see at Gmail are nowhere near the hundreds that make it into my MSN Hotmail account, I can pretty well expect to see at least one make it into my Gmail Inbox on a daily basis.
What worries me is that the ones that are getting in are almost always either a financial scheme, some kind of money-laundering exercise, a major banking phishing attempt, or a kind reminder that I've (yet again) won a foreign lottery I had forgotten I had even entered.
Report a breakaway runner as Spam in Gmail
Gmail has a really prominent button to report spam that gets through with.
It's right at the top, right when you hit your inbox. Nice and visible. Fast access to help out the Gmail gang.
Got a spam mail in your Gmail Inbox?
Tick the messages box, hit the button on the same page.
Stinky, Smelly Phish?
However, I had to go hunting to find how to report phishing emails in Gmail.
Hmmm. No "Report Phish" button in all that extra blank space next to "Report Spam".
Well...maybe if I click the down arrow next to "More Actions"?
Maybe if I open the message...then I will see more options...
Nope. Looks the same.
What should I do?
I want to report this quite blatant phishing attempt.
....off to Google for a search....
OK, I'm back. Here's how to do it.
Report a Gmail message as a stinky Phish
To report a phishing email in Gmail, you need to jump through these hoops:
- Select the Phishy email to view it.
- Find the itty-bitty, teeny-tiny "down arrow" in the top right, rounded-corner of your email message. The one right next to the "Reply" button.
- (Found it yet? No? I'll wait....look carefully....)
- Click the down-arrow.
- Select "Report phishing" in the pop-down window.
Oh and by the way...
Not that any of you who are sending me spam and phishing emails are taking the time to read my blog and understand just how serious I take web and technology security...but for the record:
Claus's Anti-Spam/Phish Manifesto
If you send me spam and Gmail doesn't filter it. I promise I will take less than a second to pick your email out and report it as spam so the Gmail filters will catch all of them next time. For everyone.
I read the Anti-Phishing Blog.
I eat McAfee Top 10 Phishing Scams pie on a weekly basis. It's very yummy, especially while still warm.
I will make a solemn promise to all attempted phishermen. One of those "Duty, Honor, Country" or "Fidelity, Bravery, Integrity" sorts of mottos. The kind brave men and women hold courage to in the line of fire.
I especially promise for any phishing attempts that make it into my inbox, that
- I will take the time to look at them carefully, since you took the time to try to fake me out of me and my dearest family's hard-earned and well-taxed money.
- I will then report your phishing email to Gmail...alerting the wildlife and sounding the alarm...since I clearly now know how (and hopefully others do as well).
- I will then submit your craftily forged fake URL to the PhishTank website, as I am a sworn registered member of the PhishTank. And as a dad, I'm quite steeled in removing dead-floaters bobbing in the tank quickly.
- I will then flush said dead-floating phish in the white-throne. Sending down the tubes after giving notice to CastleCops Fried Phish™
- I will then find the REAL WEBPAGE of the financial institution or service being jacked with, and take my time to hunt down any security related web-page they may offer to report the phishing attempt directly to them.
Yes. That could mean a fair bit of time and work invested on my part...but keep 'em coming. I need the practice and the drills and they just make me faster, better, stronger.
May a team of lawyers descend on your ISP.
God rest the poor phish.