Chrome Dev for Desktop Update
The Dev channel has been updated to 148.0.7766.3 for Windows, Mac and Linux.
A partial list of changes is available in the Git log. Interested in switching release channels? Find out how. If you find a new issue, please let us know by filing a bug. The community help forum is also a great place to reach out for help or learn about common issues.
Chrome Release Team
Google Chrome
Source: Google Chrome Releases
Google Meet is now available on CarPlay
Getting started
- Admins: There is no admin control for this feature.
- End users: This feature will be ON by default for users with the Google Meet app installed on their iPhone. To use it, simply connect your iPhone to a CarPlay-compatible vehicle. Visit the Help Center to learn more.
Rollout pace
- Rapid Release and Scheduled Release domains: Gradual rollout (up to 15 days for feature visibility) started on March 23, 2026
Availability
- Available to all Google Workspace customers, Workspace Individual subscribers, and users with personal Google accounts
Resources
- Google Help: Use Google Meet with Apple Carplay
Source: Google Workspace Updates
Chrome Dev for Android Update
Hi everyone! We've just released Chrome Dev 148 (148.0.7766.0) for Android. It's now available on Google Play.
You can see a partial list of the changes in the Git log. For details on new features, check out the Chromium blog, and for details on web platform updates, check here.
If you find a new issue, please let us know by filing a bug.
Chrome Release Team
Google Chrome
Source: Google Chrome Releases
Export Google Vids directly to YouTube
![]() |
Use the new option in the File menu to export your video directly to YouTube. |
Getting started
- Admins: This feature will be available by default to organizations with both YouTube and Google Vids enabled. The feature will not be visible in domains where YouTube is disabled, or “Strict” or “Moderate” restricted modes are enforced. Access to YouTube can be controlled at the domain/OU/group level. Visit the Help Center to learn more
- End users: Try the feature in Google Vids today. Visit the Help Center to learn more about exporting your vids.
Rollout pace
- Rapid Release domains: Full rollout (1–3 days for feature visibility) starting on Mar 31, 2026
- Scheduled Release domains: Full rollout (1–3 days for feature visibility) starting on Apr 14, 2026
Availability
- Available to all Google Workspace customers and users with personal Google accounts
Resources
- Google Workspace Admin Help: Manage your organization's YouTube settings
- Google Help: Get started with Google Vids
- Google Workspace Blog: New easy ways to create and share videos with AI in Google Vids
- Keyword: Create, edit and share videos at no cost in Google Vids
Source: Google Workspace Updates
Record your screen directly from Chrome with the Google Vids Screen Recorder Chrome Extension
![]() |
Quickly record your screen from any browser window |
Getting started
- Admins: This feature will be available by default if your organization has Google Vids enabled. To facilitate a smoother rollout, admins can force-install the extension and auto-pin it to the Chrome extensions toolbar for their users via the Admin console.
- End users: If your admin hasn’t already installed the extension for you, navigate to the Chrome Web Store to add the extension to your browser. If your admin has not pinned it for you, we recommend pinning the extension to your toolbar for the fastest access.
Rollout pace
- Rapid Release and Scheduled Release domains: Available now via the Chrome Web Store
Availability
- Available to all Google Workspace customers and users with personal Google accounts
Resources
- Google Workspace Admin Help: Automatically install apps and extensions
- Google Workspace Blog: March Workspace Drop
- Keyword: Create, edit and share videos at no cost in Google Vids
Source: Google Workspace Updates
Direct an avatar to speak and act anywhere with a consistent face and voice
- Annual training: Avatars can explain requirements in training videos while in relevant settings.
- Company announcement: Place an avatar in your office by uploading an image.
- Sales pitch: Upload an image of your product and direct your avatar to showcase it.
- Control actions: Instruct your avatar to walk, talk, and use objects simply by typing a prompt.
- Use reference images: Upload two additional images to direct your avatar in customized locations or to use unique objects relevant to your video.
- Choose an avatar: Select a speaker that provides consistency across every generation.
| Direct avatar experience |
Getting started
- Admins: There is no admin control for this feature.
- End users: There is no end user setting for this feature. Visit the Help Center to learn more.
Rollout pace
- Rapid Release and Scheduled Release domains: Full rollout (1–3 days for feature visibility) starting on March 31, 2025
Availability
- Business Starter **, Standard, and Plus
- Enterprise Starter **, Standard, and Plus
- Essentials Starter, Enterprise Essentials, and Enterprise Essentials Plus
- Nonprofits**
- Education Plus** and Teaching and Learning add-on**
- Google AI Pro for Education add-on
- Google AI Pro and Ultra
Resources
- Google Help: Use AI avatars in Google Vids
- Google Workspace Updates Blog: Our best avatars in Google Vids yet, now powered by Veo 3.1
Source: Google Workspace Updates
Create and refine custom avatars in Google Vids
- Unique Branding: Build an exclusive look that represents your specific team or organization.
- Global Localization: Adjust appearance and background to fit specific regional locales.
- Tailored Imagery: Stylize outfits—such as a tuxedo—to match the specific tone of your video.
Googler avatar |
Astronaut avatar |
- Guided Generation: Use a simple prompt or the guided form to create your initial avatar.
- Easy Refinement: Request specific tweaks like adding glasses, hats, or changing locations.
- Vocal Variety: Choose from seven available voices to seamlessly pair with your custom visuals.
| Custom Avatar user experience |
Getting started
- Admins: There is no admin control for this feature.
- End users: Visit the Help Center to learn more about using avatars in Vids.
Rollout pace
- Rapid Release and Scheduled Release domains: Full rollout (1–3 days for feature visibility) starting on April 2, 2026.
Availability
- Business: Business Starter**, Standard, and Plus
- Enterprise: Enterprise Starter**, Standard, and Plus
- Education: Education Plus**
- Consumer: Google AI Pro and Ultra
- Other Editions: Essentials, Enterprise Essentials, and Enterprise Essentials Plus; Nonprofits**
- AI Add-ons: AI Ultra Access; AI Expanded Access; Google AI Pro for Education
- Other Add-ons: Teaching and Learning**
Resources
- Google Help: Use AI avatars in Google Vids
Source: Google Workspace Updates
Google Workspace’s continuous approach to mitigating indirect prompt injections
Indirect prompt injection (IPI) is an evolving threat vector targeting users of complex AI applications with multiple data sources, such as Workspace with Gemini. This technique enables the attacker to influence the behavior of an LLM by injecting malicious instructions into the data or tools used by the LLM as it completes the user’s query. This may even be possible without any input directly from the user.
IPI is not the kind of technical problem you “solve” and move on. Sophisticated LLMs with increasing use of agentic automation combined with a wide range of content create an ultra-dynamic and evolving playground for adversarial attacks. That’s why Google takes a sophisticated and comprehensive approach to these attacks. We’re continuously improving LLM resistance to IPI attacks and launching AI application capabilities with ever-improving defenses. Staying ahead of the latest indirect prompt injection attacks is critical to our mission of securing Workspace with Gemini.
In our previous blog “Mitigating prompt injection attacks with a layered defense strategy”, we reviewed the layered architecture of our IPI defenses. In this blog, we’ll share more detail on the continuous approach we take to improve these defenses and to solve for new attacks.
New attack discovery
By proactively discovering and cataloging new attack vectors through internal and external programs, we can identify vulnerabilities and deploy robust defenses ahead of adversarial activity.
Human Red-Teaming
Human Red-Teaming uses adversarial simulations to uncover security and safety vulnerabilities. Specialized teams execute attacks based on realistic user profiles to exploit weaknesses, coordinating with product teams to resolve identified issues.
Automated Red-Teaming
Automated Red-Teaming is done via dynamic, machine-learning-driven frameworks to stress-test environments. By algorithmically generating and iterating on attack payloads, we can mimic the behavior of sophisticated threats at scale. This allows us to map complex attack paths and validate the effectiveness of our security controls across a much wider range of edge cases than manual testing could achieve on its own.
Google AI Vulnerability Rewards Program (VRP)
The Google AI Vulnerability Rewards Program (VRP) is a critical tool for enabling collaboration between Google and external security researchers who discover new attacks leveraging IPI. Through this VRP, we recognize and reward contributors for their research. We also host regular, live hacking events where we provide invited researchers access to pre-release features, proactively uncovering novel vulnerabilities. These partnerships enable Google to quickly validate, reproduce, and resolve externally-discovered issues.
Publicly disclosed AI attacks
Google utilizes open-source intelligence feeds to stay on top of the latest publicly disclosed IPI attacks, across social media, press releases, blogs, and more. From there, new AI vulnerabilities are sourced, reproduced, and catalogued internally to ensure our products are not impacted.
Vulnerability catalog
All newly discovered vulnerabilities go through a comprehensive analysis process performed by the Google Trust, Security, & Safety teams. Each new vulnerability is reproduced, checked for duplications, mapped into attack technique / impact category, and assigned to relevant owners. The combination of new attack discovery sources and vulnerability catalog process helps Google stay on top of the latest attacks in an actionable manner.
Synthetic data generation
After we discover, curate, and catalog new attacks, we use Simula to generate synthetic data expanding these new attacks. This process is essential because it allows the team to develop attack variants for completeness and coverage, and to prepare new training and validation data sets. This accelerated workflow has boosted synthetic data generation by 75%, supporting large-scale defense model evaluation and retraining, as well as updating the data set used for calculating and reporting on defense effectiveness.
Ongoing defense refinement
Continually updating and enhancing our defense mechanisms allows us to address a broader range of attack techniques, effectively reducing the overall attack surface. Updating each defense type requires different tasks, from config updates, to prompt engineering and ML model retraining.
Deterministic Defenses
Deterministic defenses, including user confirmation, URL sanitization, and tool chaining policies, are designed for rapid response against new or emerging prompt injection attacks by relying on simple configuration updates. These defenses are governed by a centralized Policy Engine, with configurations for policies like baseline tool calls, URL sanitization, and tool chaining. For immediate threats, this configuration-based system facilitates a streamlined process for "point fixes," such as regex takedowns, providing an agile defense layer that acts faster than traditional ML/LLM model refresh cycles.
ML-Based Defenses
After generating synthetic data that expands new attacks into variants, the next step is to retrain our ML-based defenses to mitigate these new attacks. We partition the synthetic data described above into separate training and validation sets to ensure performance is evaluated against held-out examples. This approach ensures repeatability, data consistency for fixed training/testing, and establishes a scalable architecture to support future extensions towards fully automated model refresh.
LLM-Based Defenses
Using the new synthetic data examples, our LLM-based defenses go through prompt engineering with refined system instructions. The goal is to iteratively optimize these prompts against agreed-upon defense effectiveness metrics, ensuring the models remain resilient against evolving threat vectors.
Gemini Model Hardening
Beyond system-level guardrails and application-level defenses, we prioritize ‘model hardening’, a process that improves the Gemini model's internal capability to identify and ignore harmful instructions within data. By utilizing synthetic datasets and fresh attack patterns, we can model various threat iterations. This enables us to strengthen the Gemini model's ability to disregard harmful embedded commands while following the user's intended request. Through this process of model hardening, Gemini has become significantly more adept at detecting and disregarding injected instructions. This has led to a reduction in the success rate of attacks without compromising the model's efficiency during routine operations.
Defense effectiveness
To measure the real-world impact of defense improvements, we simulate attacks against many Workspace features. This process leverages the newly generated synthetic attack data described on this blog, to create a robust, end-to-end evaluation. The simulation is run against multiple Workspace apps, such as Gmail and Docs, using a standardized set of assets to ensure reliable results. To determine the exact impact of a defense improvement (e.g., an updated ML model or a new LLM prompt optimization), the end-to-end evaluation is run with and without the defense enabled. This comparative testing provides the essential "before and after" metrics needed to validate defense efficacy and drive continuous improvement.
Moving forward
Our commitment to AI security is rooted in the principle that every day you’re safer with Google. While the threat landscape of indirect prompt injection evolves, we are building Workspace with Gemini to be a secure and trustworthy platform for AI-first work. IPI is a complex security challenge, which requires a defense-in-depth strategy and continuous mitigation approach. To get there, we’re combining world-class security research, automated pipelines, and advanced ML/LLM-based models. This robust and iterative framework helps to ensure we not only stay ahead of evolving threats but also provide a powerful, secure experience for both our users and customers.
Source: Google Online Security Blog
Gemma 4: Expanding the Gemmaverse with Apache 2.0
Gemma 4: Expanding the Gemmaverse with Apache 2.0
For over 20 years, Google has maintained an unwavering commitment to the open-source community. Our belief has been simple: open technology is good for our company, good for our users, and good for our world. This commitment to fostering collaborative learning and rigorous testing has consistently proven more effective than pursuing isolated improvements. It's been our approach ever since the 2005 launch of Google Summer of Code, and through our open-sourcing of Kubernetes, Android, and Go, and it remains central to our ongoing, daily work alongside maintainers and organizations.
Today, we are taking a significant step forward in that journey. Since first launch, the community has downloaded Gemma models over 400 million times and built a vibrant universe of over 100,000 inspiring variants, known in the community as the Gemmaverse.
The release of Gemma 4 under the Apache 2.0 license — our most capable open models ranging from edge devices to 31B parameters — provides cutting-edge AI models for this community of developers. The industry-standard Apache license broadens the horizon for Gemma 4's applicability and usefulness, providing well-understood terms for modification, reuse, and further development.
A long legacy of open research
We are committed to making helpful, accessible AI technology and research so that everyone can innovate and grow. That's why many of our innovations are freely available, easy to deploy, and useful to developers across the globe. We have a long history of making our foundational machine-learning research, including word2vec, Jax, and the seminal Transformers paper, publicly available for anyone to use and study.
We accelerated this commitment last year. By sharing models that interpret complex genomic data and identify tumor variants, we contributed to the "magic cycle" of research breakthroughs that translate into real-world impact. This week, however, marks a pivotal moment — Gemma 4 models are the first in the Gemmaverse to be released under the OSI-approved Apache 2.0 license.
Empowering developers and researchers to deliver breakthrough innovations
Since we first launched Gemma in 2024, the community of early adopters has grown into a vast ecosystem of builders, researchers, and problem solvers. Gemma is already supporting sovereign digital infrastructure, from automating state licensing in Ukraine to scaling Project Navarasa across India's 22 official languages. And we know that developers need autonomy, control, and clarity in licensing for further AI innovation to reach its full potential.
Gemma 4 brings three essential elements of free and open-source software directly to the community:
- Autonomy: By letting people build on and modify the Gemma 4 models, we are empowering researchers and developers with the freedom to advance their own breakthrough innovations however they see fit.
- Control: We understand that many developers require precise control over their development and deployment environments. Gemma 4 allows for local, private execution that doesn't rely on cloud-only infrastructure.
- Clarity: By applying the industry-standard Apache 2.0 license terms, we are providing clarity about developers' rights and responsibilities so that they can build freely and confidently from the ground up without the need to navigate prescriptive terms of service.
Building together to drive real-world impact
Gemma 4, as a release, is an invitation. Whether you are a scientific researcher exploring the language of dolphins, an industry developer building the next generation of open AI agents, or a public institution looking to provide more effective, efficient, and localized services to your citizens, Google is excited to continue building with you. The Gemmaverse is your playground, and with Apache 2.0, the possibilities are more boundless than ever.
We can't wait to see what you build.






