Google Chrome browser will introduce a new security option: prevent users from downloading files through insecure HTTP links
CTOnews.com, December 29, as more and more websites deploy HTTPS, Google Chrome browser is about to introduce a new security measure: prevent downloading HTTP-linked files.
CTOnews.com learned that in the past, only data-sensitive websites like banks used HTTPS encryption to ensure security, but now HTTPS has become standard on most websites.
Users who visit a HTTP site in Google's Chrome browser will automatically mark it as "unsafe". Google is planning to expand the scale of protection, after the "Block insecure downloads" experimental Flag comes into effect, if users try to download HTTP-linked files, then Chrome will block by default.
The experiment Flag wrote:
Block insecure downloads (prevent unsafe downloads)
Enable to prevent unsafe downloads. If the user tries to download a file through an unsecure transport (such as HTTP), or through an insecure redirect, the page displays a "blocked" message.
It is expected that the feature will need more extensive testing before it will be launched, and may be officially launched in the Chrome 111version, which will be launched in March next year.