Google Drive ransomware detection now on by default for paying users
嗯,用户让我用中文总结一下这篇文章的内容,控制在100个字以内,而且不需要用“文章内容总结”或者“这篇文章”这样的开头。直接写描述即可。 首先,我需要通读整篇文章,抓住主要信息。文章讲的是Google Drive推出了一项新的功能,利用AI检测勒索软件。这个功能已经正式上线,对所有付费用户默认开启。 接下来,文章提到这个功能是在2025年9月宣布的,10月初开始向全球的Google Workspace客户推出测试版。现在正式版已经发布,并且提高了检测速度和覆盖范围。 然后,功能的具体作用是当检测到勒索软件攻击时,会立即暂停文件同步,并通知用户和IT管理员。这样可以最大限度地减少攻击的影响。虽然无法阻止本地文件被加密,但存储在Google Drive中的文件会被保护,并且可以在清除恶意软件后快速恢复。 此外,用户在攻击被阻止后还会收到详细的操作指南,使用Drive恢复工具来修复被破坏的文件。Google还提到他们的最新AI模型检测能力提升了14倍,保护更全面。 最后,文章还提到其他云存储服务如Microsoft OneDrive和Dropbox也有类似的功能。 现在我要把这些信息浓缩到100字以内。重点包括:Google Drive推出AI检测勒索软件功能,默认开启;检测到攻击时暂停同步并通知;保护云端文件并支持恢复;以及微软和Dropbox也有类似服务。 所以总结的时候要涵盖这些要点:Google Drive的新功能、默认开启、检测和暂停同步、保护云端文件、恢复支持、其他服务的情况。 现在试着组织语言: “Google Drive新增AI勒索软件检测功能,默认开启。该功能可即时暂停同步并通知用户及管理员,在云端保护文件并支持快速恢复。微软OneDrive及Dropbox亦提供类似服务。” 这样大概有75个字左右,符合要求。 </think> Google Drive新增AI勒索软件检测功能,默认开启。该功能可即时暂停同步并通知用户及管理员,在云端保护文件并支持快速恢复。微软OneDrive及Dropbox亦提供类似服务。 2026-4-1 06:45:17 Author: www.bleepingcomputer.com(查看原文) 阅读量:4 收藏

Google Drive

Google announced that the AI-powered Google Drive ransomware detection feature has reached general availability and is now enabled by default for all paying users.

Announced in September 2025, a beta version of this feature began rolling out to Google Workspace customers worldwide in early October.

Google Drive will immediately pause file syncing when it detects a ransomware attack, notifying users and IT admins of the breach and drastically minimizing the impact of such incidents.

While this will not prevent the files on the compromised computer from being encrypted, documents stored in Google Drive will be protected and can be quickly restored once the malware infection is resolved.

After an attack is blocked, users are also provided with detailed instructions for restoring corrupted files using the Drive restoration tool to undo ransomware changes.

"When ransomware detection is on, files are scanned for ransomware when they are synced from a desktop computer to Drive," Google explains. "If ransomware-encrypted files are found, desktop sync is paused. The affected user gets an email alert and is notified in Drive, and an alert is created in the Google Admin console."

"Compared to when the feature was in beta, we are now able to detect even more types of ransomware encryption and are able to do it faster. Our latest AI model is detecting 14x more infections, leading to even more comprehensive protection," it added.

Google says the feature is now on by default for all users in organizations with business, enterprise, education, and frontline licenses, while the file restoration feature is available to all Google Workspace customers, Workspace individual subscribers, and users with personal Google accounts.

Although enabled by default for all users, admins can turn it off for their organizations in the Admin console under Apps > Google Workspace > Settings for Drive and Docs > Malware and Ransomware.

While admins will have to install the latest version of Google Drive for desktop (v.114 or later) on all endpoints to enable detection alerts, file syncing will still be paused on older versions.

Microsoft also provides OneDrive ransomware detection and recovery for Microsoft 365 subscribers who store and sync their files in the cloud.

Dropbox, another widely used cloud storage service, offers a similar feature to customers on Business Plus, Advanced, or Enterprise plans, as well as for Standard or Business plans with the Security add-on.

tines

Automated Pentesting Covers Only 1 of 6 Surfaces.

Automated pentesting proves the path exists. BAS proves whether your controls stop it. Most teams run one without the other.

This whitepaper maps six validation surfaces, shows where coverage ends, and provides practitioners with three diagnostic questions for any tool evaluation.


文章来源: https://www.bleepingcomputer.com/news/security/google-drive-ransomware-detection-now-on-by-default-for-paying-users/
如有侵权请联系:admin#unsafe.sh