Has anyone else noticed that the latest version of safebrowsing.cld
(version 25090) was released way back on 2010-11-09?

>From skimming through the freshclam code, it would appear that ClamAV
is using version 1.0 of the Google Safe Browsing API.  But according
to <http://code.google.com/apis/safebrowsing/developers_guide.html>:

    Notice: In early 2010, we made a new version of the Safe Browsing
    API available. This new version is designed to be more efficient
    in terms of bandwdith usage, and helps us scale this service to be
    able to support even more users. The new protocol is already in
    use by several browsers, including Google Chrome and Mozilla
    Firefox. You can see the new protocol now, and start using it
    immediately. We will continue to support the existing protocol for
    a period while clients transition to the new protocol, but will
    eventually turn off the old version of the protocol.

I have a suspicion that Google turned off version 1 of the protocol on
2010-11-09.  Or at least, they stopped pushing updates for protocol
version 1, which means that it's not just useless, it's worse than
useless, because it will contain many false-positives...

At any rate, if indeed Google turned off version 1 of the protocol,
then safebrowsing support in ClamAV should be disabled ASAP (if it's
not possible to quickly upgrade to version 2 of the protocol).

_______________________________________________
Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net
http://www.clamav.net/support/ml

Reply via email to