Google has added malicious download warnings to its Chrome browser, starting with dangerous Windows executables.
The feature targets drive-by download attacks, showing up warnings if a user tries to get a malicious file onto their system, Google said on a blog.
The warning will show up when a user visits any URL on the blacklist within Google’s Safe Browsing API - a service a range of other browsers take advantage of to warn people about potentially dangerous sites.
“We’re starting with a small-scale experimental phase for a subset of our users who subscribe to the Chrome development release channel, and we hope to make this feature available to all users in the next stable release of Google Chrome,” said Moheeb Abu Rajab from the Google security team.
“We hope that the feature will improve our users’ online experience and help make the internet a safer place.”
He said the web was still “rife with deceptive and harmful content,” despite efforts in the safe browsing space.
“It’s easy to find sites hosting free downloads that promise one thing but actually behave quite differently,” he added.
“These downloads may even perform actions without the user’s consent, such as displaying spam ads, performing click fraud or stealing other users’ passwords.”
A number of vendors have jumped on browser security, seeing it as a potentially highly lucrative market.
Overtis recently launched an add-on to enable IT administrators to watch over employee browser activity.
This article originally appeared at itpro.co.uk
Copyright © ITPro, Dennis Publishing
Issue: 330 | August 2014
Access CRN's extensive online resources including; email bulletins, community discussions and unique online news.
Processing registration... Please wait.
This process can take up to a minute to complete.
A confirmation email has been sent to your email address - SUPPLIED GOES EMAIL HERE. Please click on the link in the email to verify your email address. You need to verify your email before you can log on to the CRN website or start posting comments on articles.
If you do not receive your confirmation email within the next few minutes, it may be because the email has been captured by a junk mail filter. Please ensure you add the domain '@crn.com.au' to your white-listed senders.