Google has flagged itself as a malware risk

Google office

Google.com can be a source of malware infections – and this is according to Google itself, no less.

If you check out the Safe Browsing Site Status of the search giant's transparency report and enter Google.com as a URL to be checked, you'll be informed that the current status of the site is 'partially dangerous'.

"Some pages on Google.com contain deceptive content right now," the status warns.

It elaborates further on the site safety details below giving four warnings, including the fact that: "Some pages on this website install malware on visitors' computers."

There's also a warning on phishing dangers: "Attackers on this site might try to trick you to download software or steal your information (for example passwords, messages, or credit card information)."

The warnings also note of Google.com that "some pages on this website redirect visitors to dangerous websites that install malware on visitors' computers", and that a number of dangerous web pages have been sending visitors to Google.com.

What's interesting is that yesterday Google had flagged itself as partially dangerous, but later in the day that status was changed to 'not dangerous' – and the phishing warning text had been removed. But this morning it's back, and the site is once again marked as partially dangerous.

We'd assumed this change happened because Google had fixed some issues pertaining to phishing-related links perhaps, but apparently not – either that, or similar problems have cropped up again this morning.

Of course, it's not really a revelation that some links from Google could lead to malware – it's a sprawling and seething mass of links, and it's not surprising that a small percentage of those will go to nasty places.

Commendable transparency

How much malicious content is related to Google sites? Lance James, Chief Scientist at dark web intelligence outfit Flashpoint, notes: "Google is a service provider that provides content hosting to their users as well. My investigation shows that 0.5% of maliciousness is hosted on Google sites – including the Google url shortener urls as well as blogspot, and user content servers they host. It is a good thing that Google is being transparent about these findings and including themselves in their malicious dataset."

James further observed: "The Google Safe Browsing plugin can be useful when checked prior to browsing to sites, including Google-run sites. Google offers multiple ways one can use it including within the browser or as an API call in applications to check malicious websites prior to clicking on them. It is recommended to look into incorporating this capability into your browsing experience if possible."

Google says that a billion people across the globe make use of Safe Browsing, which delivers warnings to Chrome, Firefox and Safari users when they're about to visit a site with a malicious payload.

TOPICS

Darren is a freelancer writing news and features for TechRadar (and occasionally T3) across a broad range of computing topics including CPUs, GPUs, various other hardware, VPNs, antivirus and more. He has written about tech for the best part of three decades, and writes books in his spare time (his debut novel - 'I Know What You Did Last Supper' - was published by Hachette UK in 2013).

Latest in Security
cybersecurity
Chinese government hackers allegedly spent years undetected in foreign phone networks
Data leak
A major Keenetic router data leak could put a million households at risk
Code Skull
Interpol operation arrests 300 suspects linked to African cybercrime rings
Insecure network with several red platforms connected through glowing data lines and a black hat hacker symbol
Multiple routers hit by new critical severity remote command injection vulnerability, with no fix in sight
Code Skull
This dangerous new ransomware is hitting Windows, ARM, ESXi systems
An abstract image of a lock against a digital background, denoting cybersecurity.
Critical security flaw in Next.js could spell big trouble for JavaScript users
Latest in News
DeepSeek
Deepseek’s new AI is smarter, faster, cheaper, and a real rival to OpenAI's models
Open AI
OpenAI unveiled image generation for 4o – here's everything you need to know about the ChatGPT upgrade
Apple WWDC 2025 announced
Apple just announced WWDC 2025 starts on June 9, and we'll all be watching the opening event
Hornet swings their weapon in mid air
Hollow Knight: Silksong gets new Steam metadata changes, convincing everyone and their mother that the game is finally releasing this year
OpenAI logo
OpenAI just launched a free ChatGPT bible that will help you master the AI chatbot and Sora
An aerial view of an Instavolt Superhub for charging electric vehicles
Forget gas stations – EV charging Superhubs are using solar power to solve the most annoying thing about electric motoring