Google Chrome has significantly reduced abusive notifications by over 7 billion daily across Android during Q1 of 2026, per a recent technical overview from Chrome Security, Safe Browsing, and Firebase Cloud Messaging (FCM). This accomplishment underscores a multi-year endeavor to mitigate the abuse of web features exploited by scammers, malware distributors, and fraud operators. While browser notifications can offer real-time updates from websites, threat actors have increasingly weaponized them for deceptive purposes such as delivering fake security warnings, credential-harvesting lures, and fraudulent payment prompts.
Google Chrome’s response isn’t based on a single detection mechanism but rather a “Swiss cheese” defense-in-depth model that targets abuse throughout the notification lifecycle—from permission acquisition to delivery.
A crucial layer automatically removes notifications from sites users haven't interacted with recently, minimizing the long-term effects of deceptive prompts, social engineering, and prompt-fatigue tactics used by websites. Instead of leaving it to manual investigation by users, Chrome can automatically remove access when activity patterns show a site isn't relevant anymore or has become risky. This proactive approach allows the browser to thwart campaigns associated with malware distribution, scams, and deceptive content even when a seemingly benign site is examined.
Use ANY.RUN’s in-browser data inspection tool to detect, investigate, and respond promptly, enhancing your SOC and reducing Mean Time To Repair (MTTR).












