Help us stop active phishing threats

For fraud, stolen credentials, money loss, or widespread attacks, you may also want to report to these groups.

Need phishing reporting for your team?

KillPhish helps employees report suspicious email from Microsoft and Google inboxes.

Explore KillPhish

Report to PhishingBox

Use this anonymous form for suspicious messages, malicious sites, vishing calls, fake invoices, or account compromise concerns.

What helps most

  • Original .eml or .msg file, if available.
  • Sender, subject, recipient, and reply-to address.
  • Suspicious links, QR codes, phone numbers, or domains.
  • Whether you clicked, entered credentials, or sent payment.

After you submit

We review valid reports for threat indicators, training examples, and research. Uploaded files are stored on the server and purged over time.

Anonymous Phishing Report

Share what you saw and upload supporting evidence. Contact information is optional.

What are you reporting? *
Did you interact with the message? *

Accepted formats: .eml and .msg. Maximum file size: 5 MB.

Add sender, subject, recipient, and email header details

These fields can be filled automatically from .eml uploads or edited manually.

Message details

Email header signals

Automatically filled from .eml headers when available.

Add Contact Info or Additional Documents

Optional. Leave contact fields blank to keep the report anonymous.

Upload up to three supporting files, such as text notes, PDFs, or screenshots. Maximum file size: 2 MB each.

This anonymous form uses invisible reCAPTCHA protection.

Before you continue: If you entered credentials, sent payment, or installed software, change passwords from a trusted device, enable multifactor authentication, contact your IT or security team, and notify your bank or service provider when appropriate.