Close Menu
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

PHP Servers and IoT Devices Face Growing Cyber-Attack Risks

October 29, 2025

Chrome to Make HTTPS Mandatory by Default in 2026

October 29, 2025

Google Identifies Three New Russian Malware Families Created by COLDRIVER Hackers

October 29, 2025
Facebook X (Twitter) Instagram
Wednesday, October 29
Facebook X (Twitter) Instagram Pinterest Vimeo
Cyberwire Daily
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice
Cyberwire Daily
Home»News»Chrome to Make HTTPS Mandatory by Default in 2026
News

Chrome to Make HTTPS Mandatory by Default in 2026

Team-CWDBy Team-CWDOctober 29, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email


Google has announced that Chrome will soon connect to websites more securely by default. Beginning with Chrome 154, set for release in October 2026, the browser will automatically activate the Always Use Secure Connections feature.

This means Chrome will attempt all website connections over HTTPS and ask for confirmation before visiting any public site that does not support it.

The update reflects Google’s long-term goal of making secure connections the standard across the web.

When sites use only HTTP, attackers can intercept or alter traffic, potentially exposing users to malicious content. Chrome Security noted that such threats remain possible despite widespread HTTPS adoption.

Why Chrome is Making the Shift

Over the past decade, Google’s HTTPS Transparency Report has tracked a steady increase in encrypted browsing.

In 2015, only about 30-45% of Chrome traffic used HTTPS; by 2020, that number had risen to roughly 95-99%. Since then, growth has slowed, leaving a small but persistent portion of traffic still unprotected.

“[Even] a few percentage points of insecure traffic is a lot of navigations,” the Chrome team said.

“Attackers only need one insecure connection […] to compromise a user.”

To limit unnecessary prompts, Chrome’s implementation will avoid warning users repeatedly about sites they visit often. Instead, the browser will only display alerts for new or rarely visited insecure pages.

How the Rollout Will Work

The change will roll out in two phases. In April 2026, Chrome 147 will turn on the feature for users already enrolled in Enhanced Safe Browsing, which covers more than 1 billion people. By October 2026, Chrome 154 will extend it to all users globally.

The default mode applies only to public websites. Internal addresses, such as local routers, private servers or company intranets, will be exempt from warnings because these typically carry less risk and are harder to secure with HTTPS certificates.

Read more on web security and HTTPS adoption: Volume of HTTPS Phishing Sites Surges 56% Annually 

Google’s early experiments showed minimal disruption. Fewer than 3% of navigations triggered a warning, and most users saw fewer than one alert per week.

“While we believe that warning on insecure public sites represents a significant step forward for the security of the web, there is still more work to be done,” the Chrome team said.

“In the future, we hope to work to further reduce barriers to the adoption of HTTPS, especially for local network sites. This work will hopefully enable even more robust HTTP protections down the road.”

Image credit: Mamun_Sheikh / Shutterstock.com



Source

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleGoogle Identifies Three New Russian Malware Families Created by COLDRIVER Hackers
Next Article PHP Servers and IoT Devices Face Growing Cyber-Attack Risks
Team-CWD
  • Website

Related Posts

News

Google Identifies Three New Russian Malware Families Created by COLDRIVER Hackers

October 29, 2025
News

Npm Malware Uses Invisible Dependencies to Infect Dozens of Packages

October 29, 2025
News

Hackers Used Snappybee Malware and Citrix Flaw to Breach European Telecom Network

October 29, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest News

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202512 Views

North Korean Hackers Exploit Threat Intel Platforms For Phishing

September 7, 20256 Views

U.S. Treasury Sanctions DPRK IT-Worker Scheme, Exposing $600K Crypto Transfers and $1M+ Profits

September 5, 20256 Views

Ukrainian Ransomware Fugitive Added to Europe’s Most Wanted

September 11, 20255 Views

The risks of unsupported IoT tech

September 11, 20255 Views
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Most Popular

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202512 Views

North Korean Hackers Exploit Threat Intel Platforms For Phishing

September 7, 20256 Views

U.S. Treasury Sanctions DPRK IT-Worker Scheme, Exposing $600K Crypto Transfers and $1M+ Profits

September 5, 20256 Views
Our Picks

Look out for phony verification pages spreading malware

September 14, 2025

The hidden risks of browser extensions – and how to avoid them

September 13, 2025

It’s all fun and games until someone gets hacked

September 26, 2025

Subscribe to Updates

Get the latest news from cyberwiredaily.com

Facebook X (Twitter) Instagram Pinterest
  • Home
  • Contact
  • Privacy Policy
  • Terms of Use
  • California Consumer Privacy Act (CCPA)
© 2025 All rights reserved.

Type above and press Enter to search. Press Esc to cancel.