Quote:
If this came to me, I would close the email, go to the website, and change it through there. I would never change it through a click redirection from an email.
This is the only proper reaction. There are too many phishing scams going around and it's quite hard sometimes to determine if a mail is real. For those who just changed their pass via the link in the mail: be sure and change it again via the site.