:

CHROME TO BLOCK NEW TAB HIJACKER EXTENSIONS

INDUSTRY DESK1 MIN READ
SUN, AUG 2, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

Google is developing a security feature that would prevent policy-installed extensions from hijacking the New Tab page or changing the default search engine. The change aims to protect users from unwanted browser modifications.

The upcoming Chrome feature targets a common tactic where extensions, often installed through corporate policies or bundled software, alter critical browser settings without user consent. Under the new protection, policy-installed extensions would be restricted from modifying the New Tab page and default search engine behavior. This prevents users from encountering unexpected homepage changes or forced search redirects. The feature represents Google's continued effort to tighten Chrome's security model. Similar restrictions have been implemented in recent versions, including limitations on extension capabilities and improved user controls over extension permissions. Users would retain the ability to manually change these settings themselves. The restriction specifically targets automated modifications through extensions, not direct user actions. No timeline for rollout has been announced. The feature is currently in development and will likely appear in future Chrome releases.

■ SOURCES

Bleeping Computer

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

Cyberattacks against hedge funds and private equity firms have been attributed to UNC6671, an extortion group connected to the BlackFile threat actors. The campaign represents an escalating threat to the financial sector.

2H AGOSecurity Desk

A Go-based malware distributed through ClickFix attacks is targeting macOS users to steal cryptocurrency, passwords, and Apple Keychain data. The infostealer campaign combines social engineering with credential harvesting.

4H AGOIndustry Desk

A former NSA official has warned against connecting water infrastructure controllers to the internet following suspected Iranian cyberattacks on U.S. water systems.

9H AGOIndustry Desk

Security researchers scanning Polish government websites discovered critical vulnerabilities that could expose courts, hospitals, and airports to cyberattacks. The vulnerabilities stem from common software used to manage and display web content.

12H AGOAI Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.