How to Spot a Phishing Email Before It’s Too Late
Phishing emails are one of the most common ways scammers trick people into giving up passwords, financial information, or access to accounts. They often look convincing - sometimes even using logos and language from trusted brands. But with a sharp eye, you can spot the red flags.
Here’s a recent example pretending to be from Red Bull Careers. At first glance, it looks professional. But a closer look reveals the scam:

Red Flag #1: Suspicious Sender Address
Always check the “from” email. In this case, it came from messaging-service@post.xero.com which is not a Red Bull domain. If the sender’s domain doesn’t match the company, don’t trust it.
Red Flag #2: Fake Links
The link included looked like: www.redbull.com@rebrand.ly/ job-application... (full url is not included for safety purposes)
Everything before the “@” is a trick. The real destination is @rebrand.ly/ not Red Bull’s official site. Always hover over links before clicking.
Red Flag #3: Odd Login Requests
The email asked applicants to sign in with Facebook. No legitimate employer requires you to use social media to apply for a job.
Red Flag #4: Generic & Vague
Scammers avoid specifics. This email praised the recipient’s “background” but gave no details about the role or how they found the candidate.
How to Protect Yourself
-
Hover, don’t click. Check where a link really goes before you click.
-
Verify with the company. If in doubt, go directly to the official website and apply there.
-
Don’t share personal info. Never enter login details, banking info, or social credentials through links in suspicious emails.
-
Report & delete. Forward phishing attempts to your IT/security team (or report them to your email provider).
Bottom line:
Phishing works because it looks real—but a few extra seconds of scrutiny can keep you safe. Always check the sender, links, and requests. If something feels off, trust your instincts.