Skip to main content

suspicious sign-in

A suspicious sign-in is the state of an account sign-in being considered possibly not made by the legitimate account holder because it shows unusual or unexpected characteristics.

In plain English

This term is used when a login attempt looks out of the ordinary for the account. Because its characteristics are unusual or unexpected, it is treated as possibly made by someone other than the real account owner.

In context

Here, suspicious sign-in labels the reported login event as risky because it may not have been made by the legitimate account holder.

Situation
Responding to phishing, suspicious activity, fraud, and compromise alerts
What it communicates
labels the reported login event as risky.

Meaning limits

By itself, this term does not prove who made the sign-in or that it was definitely not made by the legitimate account holder.

Examples

“A login from an unfamiliar city at 3 a.m. was treated as a suspicious sign-in, but it was later confirmed to be the account owner's.”

Core meaning

“The report classified the lunchtime access from a new country as a suspicious sign-in.”

In context