Malvertising Protection
Overview
Malvertising Protection helps organizations reduce user exposure to threats delivered through paid search results. Attackers may abuse sponsored placements on search engines to impersonate trusted brands, redirect users to deceptive websites, or deliver malware through malvertising campaigns.
Because sponsored results often appear above organic search results, users may interact with malicious advertisements before reaching the legitimate website.
Detection and Blocking Behavior
When a user clicks a sponsored result on Google Search or Bing Search, DefensX detects the ad-based navigation and blocks access before the destination page loads.
The user is shown a warning message explaining that the sponsored result may be unsafe. The message encourages the user to continue with organic search results instead of accessing the advertised destination.
This helps prevent users from reaching websites that may be used for impersonation, credential theft, malware delivery, or other deceptive activity.
Configuration
Malvertising Protection can be managed at the policy level under Adware Blocker / Malvertising Protection.
Dedicated controls are available for:
-
Google Search
-
Bing Search
Organizations can enable or disable protection for each search engine based on their security requirements.
|
Important
|
In environments with multiple policies, make sure these settings are configured in the first Adware Blocker policy that applies to the relevant user group. The first matching policy determines how Malvertising Protection works for those users. |
Summary
Malvertising Protection helps organizations protect users from risks associated with paid search advertising. By detecting sponsored search navigation and blocking access before the page loads, DefensX reduces exposure to malvertising, impersonation, and malware delivery campaigns while encouraging users to continue with safer organic search results.