Yahoo Account

Use a strong password

As with everything, make sure you use a strong unique password for your email account.

Remove Recovery phone/email

Don’t use a recovery phone or email. If an attacker steals your mobile number through a SIM swaps or gets access to your recovery email, they can use it to get access to your Yahoo account through this recovery function.

From a web browser:

  • Sign in to the Yahoo Account Security page.
  • Click Edit next to the verification option you want to delete.
  • Click the Edit icon next to the recovery option you want to delete.
  • Click Remove from my account.
  • Follow the on-screen prompts to confirm the deletion.

From most Yahoo mobile apps:

  • In the upper left, tap your Profile icon.
  • Tap Manage accounts.
  • Tap Account info.
  • Tap Security Settings.
  • Tap Edit next to the verification option you want to delete.
  • Tap the Edit icon next to the recovery option you want to delete.
  • Tap Remove from my account.
  • Follow the on-screen prompts to confirm the deletion.

How To Recognize a Hacked Account

Some applications can link with your Yahoo account to provide access. You should review 3rd party applications that are linked to your account, and any permissions they might have. Remove unused applications, and exercise caution when authorizing new applications access to your account.

If you think someone is trying to access or take over your account, there are some important steps you need to take to secure your information. Know the warning signs and what to do if your account has been compromised.

Signs of a hacked account

Review your Yahoo Mail settings

Hackers may change the settings in your Yahoo Mail account to disrupt your inbox or get copies of your emails. Check some of the most commonly changed settings to make sure none of your info or preferences were changed without your knowledge.

Sign in Settings

Avoid saving passwords to your Yahoo account and using it as password manager. Avoid signing in with Yahoo. Rely on a separate password manager instead.