Google says Chrome’s anti-abuse systems reduced unwanted notifications on Android by more than 7 billion per day during the first quarter of 2026.
In a new blog post, Google argues that notification abuse has increasingly been used to distribute scams, malware, phishing attempts, and fraudulent payment requests.
To reduce the abuse, Google developed a “Swiss cheese” defense model, where several overlapping systems try to stop abuse at different stages.
“Our goal is to ensure that if abuse slips through one layer, another is there to catch it,” Google explained.
“This approach allows us to halt abuse at the source, preventing deceptive content from reaching users while maintaining a healthy balance between utility and security.”
Chrome already removes notification permissions from inactive websites, as well as sites that repeatedly trigger suspicious-notification warnings.
Google says users can still review these automatically revoked permissions in Safety Hub and grant access again if they want to.
In addition to giving you greater control, Google is analyzing behavior across networks of related websites, including coordinated service-worker activity, to identify groups distributing malicious or deceptive notifications.
“This enables us to proactively revoke permissions from these persistent bad actors, protecting users from deceptive notifications even when the site content might not seem inherently malicious,” Google said.
Google looks at factors such as notification volume, time users spend on a site, permission-prompt frequency, and engagement.
For example, sites classified as disruptive can be limited to 1,000 messages per minute, with excess requests returning an HTTP 429 error.
Google says these restrictions can become more aggressive for repeat offenders and are only reset after a period of non-disruptive behavior.
Chrome has also changed how notification permission prompts work on Android, with a less disruptive interface designed to let users decide whether they want notifications without interrupting their browsing.
“This strategy has substantially decreased unnecessary background activity, reduced user device battery consumption, and transformed the notification lifecycle so users receive only the content they find truly valuable,” the company noted.
If you use Chrome, you can review notification permissions under Settings > Privacy and security > Site Settings > Notifications on desktop, or Settings > Notifications on Android.
Overall prevention scores can hide what happens after initial access. Once attackers are using valid credentials, prevention drops sharply.
The Blue Report 2026 measures defenses technique by technique across 338 million simulations run in customer production environments.
Google Chrome may soon block New Tab hijacker extensions by default
Google says AI helped Chrome fix 1,072 security bugs in two releases
NetNut proxy network disrupted, 2 million infected devices cut off
Google loses final appeal to overturn €4.1 billion EU fine
Google Blogger locks hundreds of blogs in malware false positive
LexisNexis shuts down services after suspicious activity on servers
Valve notifies Steam hardware customers of a data breach
Microsoft August 2026 Patch Tuesday fixes 400 flaws, 3 zero-days
See how real inboxes, fake stores and AI scams shaped H1 2026 cyber threats
Pixellot discovered and secured hundreds of unmanaged AI agent identities in weeks, not months. Download the case study for how.
Webinar: Shadow AI in 2026 (and how attackers are taking advantage)
See how Skyhigh Security’s patent-pending approach secures every browser session without costly and clunky enterprise browser replacements.
Overdue a password health-check? Audit your Active Directory for free
Terms of Use – Privacy Policy – Ethics Statement – Affiliate Disclosure
Read our posting guidelinese to learn what content is prohibited.



