I've been receiving emails from Microsoft about someone trying to log into an Outlook account that I never made. The email address in question is similar to my Gmail address but ends with Outlook. I've already changed all my passwords and set up two-factor authentication. Is there anything else I should do to protect myself?
4 Answers
That's really concerning! It seems like someone might have used your exposed email or guessed it to set up a fake account. You've already taken important steps with strong passwords and two-factor authentication. I recommend doing a dark web scan to check if your details are out there. I've used a service called Cloaked that also helps remove your info from data broker sites, which could prevent future issues. It might also be a good idea to contact Microsoft to inform them about this situation.
This might just be a scam. Check the email headers because the to/from fields can often be manipulated. The real addresses and the servers will show in the headers. Scammers often include a button that says something like ‘click here if you didn’t authorize this login,’ which leads to a dangerous site that steals your credentials.
It seems likely that someone mistakenly used your Gmail as their recovery email for a newly created Outlook account. It’s usually a mix-up rather than something malicious. Honestly, there's not much you can do except block those emails since it doesn't really indicate any breach of your actual accounts.
Maybe they just made a typo while entering their backup email address. Either way, keeping an eye on it would be a good plan!

Related Questions
How to Build a Custom GPT Journalist That Posts Directly to WordPress
Cloudflare Origin SSL Certificate Setup Guide
How To Effectively Monetize A Site With Ads