Skip to content
Menu
Open World News Open World News
  • Privacy Policy
Open World News Open World News

Optimizing Safe Browsing checks in Chrome

Posted on February 14, 2024 by Michael G

Balancing security and usability is always top of mind for us as we strive to stay on top of the constantly evolving threat landscape while building products that are delightful to use. To that end, we’d like to announce a few recent changes to how Chrome works with Google Safe Browsing to keep you safe online while optimizing for smooth and uninterrupted web browsing.



Asynchronous checks


Today, Safe Browsing checks are on the blocking path of page loads in Chrome, meaning that users cannot see pages until checks are completed. While this works fine for local-first checks such as those made using Safe Browsing API v4, it can add latency for checks made directly with the Safe Browsing server. Starting in Chrome 122, we will begin to introduce an asynchronous mechanism which will allow sites to load even while real-time checks with Safe Browsing servers are in progress. We expect this to reduce page load time and improve user experience as real-time server-side checks will no longer block page load, although if a site is found to be dangerous after the page loads then a warning will still be shown.


In addition to the performance boost, this change will let us improve the quality of protection over time. By taking the remote lookup outside of the blocking path of the page load, we’re now able to experiment with and deploy novel AI and ML based algorithms to detect and block more phishing and social engineering attacks. It was previously challenging to perform such experimentation because of the potential to delay page loads.


In terms of potential risks, we evaluated the following and concluded that sufficient mitigations are in place:


  • Phishing and social engineering attacks: With the move to asynchronous checks, such sites may start to load while server-side Safe Browsing checks are in progress. We have studied the timing data and concluded that it is extremely unlikely a user would have significantly interacted with (e.g. typed in a password) such a site by the time a warning is shown.

  • Exploits against the browser: Chrome maintains a local Safe Browsing list of some sites which are known to deliver browser exploits, and we’ll continue to check that synchronously. Besides this, we always recommend updating Chrome as soon as an update is available, to stay protected online.



Sub-resource checks


Most sites we encounter include various sub-resources as a way to render their content. These sub-resources can include images, scripts, and more. Chrome has historically checked both top-level URLs as well as sub-resources with Safe Browsing in order to warn on potentially harmful sites. While the majority of sub-resources are safe, in the past, we’d commonly observe compromised sites embedding sub-resources that were being leveraged by bad actors to distribute malware and exploit browsers at scale.


In recent years, we’ve seen this attacker trend decline – large scale campaigns that exploit sub-resources are no longer common, making sub-resource checks less important. Additionally, our advances in intelligence gathering, threat detection, and Safe Browsing APIs mean that we now have other ways to protect users in real-time without relying on sub-resource checks. For example, Chrome’s client-side visual ML model can spot images used to create phishing pages, regardless of their use of sub-resources.


As such, moving forward Chrome will no longer check the URLs of sub-resources with Safe Browsing. This means that Chrome clients now connect to Google less frequently, which reduces unnecessary network bandwidth cost for users. On the Safe Browsing side, the change allows us to drastically simplify detection logic and APIs, which helps improve infrastructure reliability and warning accuracy, thus reducing risk overall.



PDF download checks


Finally, we have vastly reduced the frequency with which Chrome contacts Safe Browsing to check PDF downloads.


In the past, PDF was a widely exploited file type due to its popularity. As time has passed, thanks in part to the ongoing hardening of PDF viewers (for example, Chrome’s PDF viewer is sandboxed), we aren’t seeing widespread exploitation of PDF anymore, nor do we hear industry reports about it being a dangerous file type. Even when we have observed malicious PDFs in the wild, they have contained links that redirect users back to Chrome which gives us another chance to protect users.


As a result of this change, Chrome is now contacting Safe Browsing billions of times less often each week.



What to expect


The changes described above, while mostly under the hood, should result in a smoother web browsing experience for Chrome users without a degradation in security posture. We’ll continue to monitor trends in the threat landscape, and remain ready to respond to keep you safe online.


Posted by Jasika Bawa, Chrome Security & Jonathan Li, Safe Browsing


program: Windows 3’s Program Manager for X11

Posted on February 14, 2024 by Michael G
progman is a simple X11 window manager modeled after Program Manager from the Windows 3 era. ↫ progman’s GitHub page If that description doesn’t pique your interest, nothing will. What more do you people want from me?

Send Unlimited Emails via SMTP server

Posted on February 13, 2024 by Michael G

Video by via Dailymotion Source Send without limits using SMTP server. Common email providers SKYPE: live:.cid.105271c9a326ee30ICQ: 688691132Telegram: @newsmtp Go to Source

Java Full Stack Developer Training in Hyderabad

Posted on February 13, 2024 by Michael G

Video by via Dailymotion Source Founded in Java Full Stack Training In Hyderabad , and has been Promoted by Mr . Srinivas acquainted in IT Solutions teaching in all the technologies from Java full stack Training in Hyderabad to dot net, python, Data structures, UI and Data Engineering with headquarter in Hyderabad India. Java Full…

#CharlieChaplin – The Rounders (1914) | Restored Movie

Posted on February 13, 2024 by Michael G

Video by via Dailymotion Source Two inebriated individuals inhabit the same hotel. One inflicts harm on his spouse, while the other endures mistreatment from his own. In a shared state of intoxication, they venture out together. Attempting to find repose, they seek refuge in a restaurant, utilizing tables as makeshift beds, only to be ejected….

How To Cash Out Bitcoin On Cash App #Bitcoin #CashOut #CashAppTutorial

Posted on February 13, 2024 by Michael G

Video by via Dailymotion Source Ready to cash out your Bitcoin on Cash App? Our detailed guide walks you through the process, from setting up your account to completing the transaction. #BitcoinCashOut #Cryptocurrency #CashAppGuide Go to Source

Flower arrangements, mabenta sa Dangwa; sa iba, may bouquet ng daing, prutas, atbp. | 24 Oras

Posted on February 13, 2024 by Michael G

Video by via Dailymotion Source Dagsa na ang mga namimili ng iba’t ibang flower arrangement sa Dangwa sa Maynila para sa Valentine’s day bukas. Bukod sa mga bulaklak, may mga praktikal ding bouquet… na panregalo na, nakakabusog pa! 24 Oras is GMA Network’s flagship newscast, anchored by Mel Tiangco, Vicky Morales and Emil Sumangil. It…

Love is in the air for the animals at the Bristol Zoo Project readying for Valentine’s Day

Posted on February 13, 2024 by Michael G

Video by via Dailymotion Source Love is in the air for the animals at the Bristol Zoo Project readying for Valentine’s Day. This footage was filmed on 7th February 2024. Go to Source

OKUPAN la casa de una ABUELA de 93 AÑOS y DANI AVISA los OKUPAS _ “OS DOY UNA SEMANA” (1080p…

Posted on February 13, 2024 by Michael G

Video by via Dailymotion Source OKUPAN la casa de una ABUELA de 93 AÑOS y DANI AVISA los OKUPAS | “OS DOY UNA SEMANA” Go to Source

CES 2024 – Show Floor B-Roll – FuTurXTV

Posted on February 13, 2024 by Michael G

Video by via Dailymotion Source CES® 2024 closes today, after an exhilarating week that set the technology narrative for the year ahead. With 4300+ exhibitors, including a record 1400+ startups from around the globe in Eureka Park®, CES showcased the innovative trends shaping tomorrow and solving the world’s most pressing challenges. “The resurgence of CES…

  • Previous
  • 1
  • …
  • 601
  • 602
  • 603
  • 604
  • 605
  • 606
  • 607
  • …
  • 1,531
  • Next

Recent Posts

  • When and how to use benchmarking
  • How Plotly AI revolutionizes the dashboard development process
  • [TUT] LoRa & LoRaWAN – MikroTik wAP LR8 kit mit The Things Network verbinden [4K | DE]
  • Mercado aguarda Powell e olha Trump, dados e Haddad | MINUTO TOURO DE OURO – 11/02/25
  • Dan Levy Gets Candid About Learning How To Act Differently After Schitt’s Creek: ‘It’s Physically…

Categories

  • Android
  • Linux
  • News
  • Open Source
©2025 Open World News | Powered by Superb Themes
We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept All”, you consent to the use of ALL the cookies. However, you may visit "Cookie Settings" to provide a controlled consent.
Cookie SettingsAccept All
Manage consent

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
CookieDurationDescription
cookielawinfo-checkbox-analytics11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics".
cookielawinfo-checkbox-functional11 monthsThe cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional".
cookielawinfo-checkbox-necessary11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary".
cookielawinfo-checkbox-others11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other.
cookielawinfo-checkbox-performance11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance".
viewed_cookie_policy11 monthsThe cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data.
Functional
Functional cookies help to perform certain functionalities like sharing the content of the website on social media platforms, collect feedbacks, and other third-party features.
Performance
Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
Analytics
Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
Advertisement
Advertisement cookies are used to provide visitors with relevant ads and marketing campaigns. These cookies track visitors across websites and collect information to provide customized ads.
Others
Other uncategorized cookies are those that are being analyzed and have not been classified into a category as yet.
SAVE & ACCEPT