Email accounts are frequent targets for password theft and social-engineering attacks. A few habits substantially reduce risk.
- Use a unique, strong password for every mailbox.
- Do not reuse the cPanel or Client Area password as an email password.
- Be cautious with unexpected login pages, attachments, invoices, password-reset notices, and urgent payment requests.
- Verify the sender address and destination URL before entering credentials.
- Keep computers, phones, browsers, and mail applications updated.
- Review unexpected forwarders and filters if account behavior changes.
If you suspect a mailbox password was exposed
- Change the mailbox password from cPanel or Webmail.
- Update every legitimate device with the new password.
- Review forwarders, autoresponders, and filters for changes you did not make.
- Review recent delivery activity when available.
- Change any other account that reused the same password.
Never send passwords inside ordinary email messages.