Report Phishing and Take the Page Down

    A neutral reporting workflow for phishing websites, links and emails: filed with the right authorities and pushed to the hosting provider until the page is offline.

    The 4-Step Phishing Reporting Workflow

    Step 1

    Preserve the phishing link

    Copy the full URL including subdomain, path and query string. If the link came from an email, save the raw email source so the headers survive. Do not click any additional links on the page.

    Step 2

    Capture the evidence

    Take a screenshot of the phishing page and, from an isolated browser, save the rendered HTML. The Blackwall Evidence Vault produces a SHA-256 sealed snapshot suitable as legal-grade proof.

    Step 3

    File the report

    Submit to Google Safe Browsing and APWG so browser warnings appear within hours. In parallel, send the case to Blackwall so the host and registrar are contacted and the page is taken offline.

    Step 4

    Track until the page is gone

    Once the host removes the page, the report is closed and appears on the public Wall of Neutralized Threats. Pro plans automatically escalate after 24 hours if no action is taken.

    Where to Report Phishing

    Each authority protects a different layer. Filing in parallel gives you the fastest coverage.

    BlackwallInfrastructure

    Coordinates the takedown with the hosting provider and registrar, tracks progress and closes the case only when the URL is offline.

    File on Blackwall

    Google Safe Browsing

    Adds the URL to Safe Browsing so Chrome, Gmail and Android show interstitial warnings to anyone visiting the link.

    safebrowsing.google.com

    APWG

    The Anti-Phishing Working Group aggregates phishing intelligence and feeds browser and email block-lists. Send the raw email or URL to reportphishing@apwg.org.

    apwg.org

    National CERT

    Country-level CERTs (CERT-Bund in Germany, CERT-FR in France, US-CERT in the United States) coordinate with local hosts and law enforcement.

    first.org/members

    Frequently Asked Questions

    Received a phishing link or found a fake login page?

    Submit the URL in under two minutes. The Blackwall team handles the host correspondence until the page is removed.

    Cookie Notice

    We use cookies to ensure the functionality of our website. Necessary cookies are required for operation. Optional cookies help us improve our services. For more information, see our Privacy Policy.