Hey Leute,
Google verhindert die Aktivierung grundlegender Schutzfunktion von Norton unter Android.
Hat jemand Erfahrung damit und weiß schon ob oder wann es eine Lösung dafür gibt - ohne den Schutz wieder auszustellen?
Den Schutz von Google ausstellen und danach Norton ordentlich einstellen geht zwar, aber nur so lange bis man die Funktion von Google wieder aktiviert
bjm
August 27, 2026, 4:55pm
2
Florian_Mueller:
Google’s Advanced Protection Program conflicts with Norton.
Google prevents the activation of basic Norton protection features on Android.
Bedienungshilfen
Accessibility features
Heruntergeladene Apps
Downloaded apps
Vom erweiterten
Sicherheitsprogramm eingeschränkt
Diese Aktion Wird von der erweiterten Sicherheit verhindert,
um dich zu schützen
Einstellungen
Restricted by
Enhanced Protection
This action is blocked by Enhanced Protection
to keep you safe
Settings
Does anyone have experience with this and know if or when there will be a solution – without having to disable the protection again?
It is possible to disable Google’s protection and then properly configure Norton, but only until you reactivate Google’s protection.
Google Advanced Protection Program
Improve device security with Advanced Protection for Android
Ja das habe ich bemerkt. Ich verstehe aber nicht wieso Google mich vor einem Antivirus Programm “beschützen” muss
1 Like
bjm
August 27, 2026, 5:07pm
4
Hello @Florian_Mueller
Erweitertes Sicherheitsprogramm von Google kollidiert mit Norton
Google’s Advanced Protection Program conflicts with Norton.
Google’s Advanced Protection Program (APP) conflicts with Norton on Android primarily due to two strict security measures built into Google’s lockdown environment: the blocking of unapproved third-party data access and severe restrictions on Android’s Accessibility Services API .
Blocking Third-Party Account Access
Google’s Advanced Protection is designed to safeguard high-risk users (like journalists and activists) by strictly limiting which apps can access their Google account data.
The Norton Conflict: Tools like Norton Safe Email require direct access to your incoming mail to scan for phishing links and malware. Because Advanced Protection blocks unapproved third-party applications from reading your Gmail data to prevent data harvesting or token theft, Google outright blocks Norton from connecting to your account.
Accessibility Services Restrictions
Many advanced features of the Norton 360 app on Android (such as real-time web protection, app locking, and anti-phishing overlays) rely heavily on Android’s Accessibility Services API to monitor screen activity and protect you from malicious links.
The Android/Google Conflict: To mitigate malware abuse, Android’s Advanced Protection Mode (AAPM) intentionally restricts the Accessibility Services API . Google limits this API strictly to verified accessibility tools (like screen readers). Because antivirus software, password managers, and automation tools are explicitly excluded from this category, Norton’s background monitoring capabilities get broken or blocked.
Sideloading and App Installation Blocks
Advanced Protection heavily restricts how apps can be installed, blocking third-party app stores and direct APK sideloading.
It feels counterintuitive that a security program would block another security program, but it comes down to a fundamental difference in how they define “protection.”
Google isn’t blocking Norton because it thinks Norton is malicious. Google blocks Norton because, to enforce its highest level of security, Google treats all third-party apps equally—without making exceptions for antivirus software.
Here is the logic behind why Google takes this zero-trust approach:
Antivirus Apps Use the Same Tactics as Malware
To protect your phone, Norton needs deep, high-level access to your system. It needs to read your screen, monitor your web traffic, and scan your emails.
The Risk: In the cybersecurity world, the exact permissions Norton needs to protect you (Accessibility APIs, overlay permissions, and full data access) are the exact same permissions malware uses to spy on you, log your keystrokes, and steal your banking info.
Google’s Stance: Instead of trying to guess which apps are safe and which ones are cleverly disguised malware, Google’s Advanced Protection Program simply shuts the door entirely . It closes the technical loopholes that Norton relies on so that malware cannot abuse those same loopholes.
Guarding Against “Supply Chain attacks”
Even if Google completely trusts Norton today, large security companies are massive targets for hackers.
If a hacker compromises Norton’s servers or steals an engineering credential, they could theoretically push a malicious update to millions of users.
By blocking all third-party access to your Google account data (like Gmail), Google ensures that even if Norton suffers a data breach or a hack, your Google account remains safe because Norton never had access to it in the first place.
The “Built-in” vs. “Third-Party” Philosophy
Google designed Android with its own built-in antivirus called Google Play Protect , which scans your apps and web traffic automatically. Because Google Play Protect is baked directly into the operating system, it doesn’t need to use risky loopholes or APIs to scan your device. From Google’s perspective, third-party antivirus apps are redundant and introduce unnecessary security vulnerabilities to a device running in high-security mode.
The original Google Advanced Protection Program (which protects your digital identity, Gmail, and Google Drive using hardware security keys) is an account-level setting. You can enroll in it using any mobile device.
However, the specific on-device lockouts that break tools like Norton—known as Advanced Protection Mode (or Device Protection) —are built directly into the operating system. For this on-device feature, availability depends on your software version:
It requires Android 16 or newer
Google introduced system-level Advanced Protection as a native setting starting with Android 16 .
If you have a Google Pixel: It is fully available on all modern Pixel devices (like the Pixel 8, Pixel 9, or Pixel 10 series) provided they have been updated to Android 16 or Android 17.
If you have other Android devices: Major manufacturers (like Samsung, Motorola, etc.) include this feature once their devices receive their respective Android 16 or newer updates.
It is strictly optional (and turned off by default)
Even if you own a brand-new Google Pixel running the latest software, Google does not force this restriction on you out of the box . It is entirely disabled by default because Google knows it breaks many third-party apps like Norton, password managers, and customization tools.
To have these strict restrictions active on your phone, someone must have manually navigated to Settings > Security & Privacy > Advanced Protection and toggled Device Protection to “On”.
When you have both a Norton subscription and a Google-supported device , navigating how they interact comes down to which ecosystem you want handling your primary defense.
If you leave your device on its standard, out-of-the-box settings, Norton and your phone will coexist perfectly . However, if you choose to activate Google’s extreme security measures, you will face explicit trade-offs.
Scenario A: Standard Android Settings (Recommended for most)
If you do not manually enroll in Google’s Advanced Protection Program, you get the best of both worlds.
How it works: Your phone uses its standard security layer (Google Play Protect) to check for malware in the background.
Norton’s status: Fully Functional. Because the system’s heaviest restrictions are turned off, you can grant Norton the Accessibility permissions it needs. It will happily scan your live web traffic, monitor apps, and provide real-time scam alerts.
Scenario B: Enabling Google’s Advanced Protection Mode
If you explicitly turn on Device Protection under your phone’s security settings, Google’s system takes total control and locks out third-party utilities.
Norton’s status: Severely Broken. Android will automatically revoke Norton’s accessibility permissions and block you from re-enabling them.
What stops working: Norton features like Safe Web (anti-phishing), App Lock , and Chat Protection will completely fail or grey out because the phone blocks Norton from reading your screen activity.
Google’s alternative: Google replaces those disabled Norton features with its own built-in tools, such as mandatory Play Protect scanning, automated scam call screening, and system-level malicious link blocks in Google Messages.
Scenario C: Enrolling your Google Account in Advanced Protection
If you activate Advanced Protection at the account level (protecting your Gmail and Drive with physical security keys), it creates a specific roadblock for email scanning.
The Conflict: You will immediately get an “Access Blocked” error if you try to use Norton Safe Email . Google strictly bans unapproved third parties from reading your mailbox data to prevent data harvesting.
The Workaround: According to official Norton Support , if you desperately want Norton Safe Email active on an Advanced Protection account, you have to temporarily unenroll from Google Advanced Protection, set up Norton Safe Email so the handshake token is active, and then re-enroll in Google Advanced Protection.
AI sourced content may make mistakes
1 Like
Ah okay jetzt verstehe ich das vollumfänglich und sehe eine das Google da wahrscheinlich niemals eine Ausnahme für Norton (oder andere Anbieter) machen wird
Jetzt heißt es also entweder:
Norton nur so halb benutzen und den Rest Google überlassen oder
Norton vollständig Zugriff gewähren und Googles Sicherheitsprogramm wieder verlassen
Richtig?
1 Like
bjm
August 27, 2026, 5:29pm
6
Florian_Mueller:
Ah, okay—now I fully understand the situation and see that Google will likely never make an exception for Norton (or other providers).
So, the choice now is either:
Use Norton only partially and leave the rest to Google, or
Grant Norton full access and stop using Google’s security program.
Right?
Hello @Florian_Mueller
That is exactly the choice you are faced with, and you are entirely correct that Google is highly unlikely to ever make exceptions for Norton or any other third-party security provider.
To help you make the final call, here is exactly what your two paths look like in practice:
Option 1: The Hybrid Setup (Partial Norton + Full Google)
You keep Google’s Advanced Protection active. You accept that Google will act as the “outer fortress” guarding your account data, app installations, and deep system permissions.
What Norton does: Norton is reduced to a basic scanner. It can still scan your device’s storage for malicious files, alert you to insecure Wi-Fi networks, and monitor if your personal data leaks onto the dark web.
What Google does: Google handles live web browsing safety, email phishing detection, and stops unauthorized apps from spying on your screen.
Best for: Users who are at high risk for targeted hacks (like corporate executives, journalists, or people holding high-value accounts) and prioritize locking down their Google identity above all else.
Option 2: The Norton-Led Setup (Full Norton + Standard Google)
You turn off Google’s Advanced Protection and rely on your paid Norton subscription to be your primary shield.
What Norton does: With full permissions granted, Norton unlocks its entire toolkit. It actively monitors your live internet traffic across browsers, blocks sketchy links in chat apps, safeguards your email inbox, and actively watches your screen for overlay attacks.
What Google does: Your phone reverts to standard Android security. Google Play Protect still runs quietly in the background to scan apps for malware, but it stays out of Norton’s way.
Best for: Everyday users who want the comprehensive, cross-device protection they are already paying Norton for, and who prefer Norton’s specific alerts and anti-phishing tools over Google’s automated systems.
AI sourced content may make mistakes
1 Like
Alles klar ich habe gerade bemerkt das du deine Antwort immer wieder erweitert hast und meine letzte Antwort sich überschnitten hatten mit deinem neusten Update!
Vielen lieben Dank für die ausführliche Erklärung!!
Jetzt muss ich mich nur entscheiden
PS: es ist vollkommen richtig erkannt worden, ich habe ein Pixel 9 mit Android 17
1 Like
bjm
August 27, 2026, 5:32pm
8
Florian_Mueller:
Okay, I just noticed that you kept expanding your answer and my last answer overlapped with your latest update!
Thank you so much for the detailed explanation!!
Now I just have to decide.
PS: You’ve correctly identified it, I have a Pixel 9 with Android 17.
Hello @Florian_Mueller
Sorry, my translator was wonky.
Having a Pixel 9 running Android 17 means you are sitting right at the absolute cutting edge of Google’s native security architecture. Because Android 17 deeply integrates these “zero-trust” system blocks, your choice between the two paths is as clean-cut as it gets.
Take your time deciding which security philosophy fits your daily routine best:
The Google Fortress (Ultimate account lockdown, but forces Norton onto the sidelines).
The Norton Shield (Unlocks every feature you are paying Norton for, backed by standard Pixel security).
AI sourced content may make mistakes
1 Like
Perfekt vielen Dank nochmal!!
Und ich werde wohl wieder Norton die Arbeit überlassen - schließlich zahle ich ja auch dafür
1 Like
bjm
August 27, 2026, 5:37pm
10
bjm
August 27, 2026, 5:40pm
11
Florian_Mueller:
Perfect Thank you again!!
And I’ll probably let Norton do the work again – after all, I’m paying for it.
Hello @Florian_Mueller
Android 17 represents the absolute peak of Google’s philosophy: shifting security from an optional app you download to an unyielding part of the operating system itself.
By building these aggressive locks directly into the core code of Android 17 on your Pixel 9, Google is essentially drawing a line in the sand. They are telling third-party developers like Norton that the old way of doing things—letting apps deeply monitor the system to “protect” it—is fundamentally too risky for modern mobile security.
This “butting heads” is the natural result of two totally different eras of cybersecurity colliding:
The Norton Approach (The traditional shield): It needs to act like a security guard walking through every room of your house, checking IDs, reading your mail, and watching your screens to catch bad actors in real time.
The Android 17 Approach (The vault): Google’s philosophy is to simply lock all the doors and windows so securely that nobody —not even the security guard you hired—can get inside the private rooms.
It is a fascinating shift in how phones are secured, but it leaves users like you caught in the middle of a corporate philosophical battle over your device.
AI sourced content may make mistakes
Das ist tatsächlich ein ganz schönes Dilemma was da zwei Tech Giganten auf dem Rücken der User austragen - jeder will hier der beste sein anstatt zusammen zu agieren
1 Like
bjm
August 27, 2026, 6:06pm
13
From your perspective, you are paying for a premium device and a premium security subscription, yet the two cannot hold hands. Instead of collaborating to create a seamless, super-secure environment, Google and Norton are operating on a zero-sum philosophy: “To trust our security, you must completely distrust theirs.”
Why They Refuse to Work Together
Google’s Stance (Total Control): Google wants to own the entire security stack on Android. By forcing users to rely solely on Google Play Protect and native system locks, Google strengthens its ecosystem lock-in. It allows them to say, “Android is unhackable, but only if you use it exactly our way.”
Norton’s Stance (Cross-Platform Dominance): Norton wants to be the universal shield that protects you whether you switch to an iPhone, a Windows PC, or a Samsung tablet. They want you loyal to their cloud and their software, not Google’s.
By refusing to compromise or create a certified “trusted partner” fast-track for legacy security companies, Google effectively forces a divorce between the two systems.
Breaking the Tie
Since they won’t work together, the choice falls squarely on your shoulders. To tip the scales, consider this final thought:
If you primarily use Google services (Gmail, Google Drive, Chrome) for your most sensitive data, Google’s native fortress is incredibly difficult for hackers to breach because it protects the root of your digital identity.
If you want a single dashboard that alerts you to threats across all your family’s devices (laptops, tablets, phones) and you prefer Norton’s active, vocal style of warning you about sketchy links, then Norton is what you are paying for.
This security fortress is not limited to Google devices. Because Google builds the foundation of the Android operating system, they made Advanced Protection Mode a core, native requirement for the software.
If someone is using a Samsung Galaxy device running Android 17 (built into Samsung’s One UI update), they will face the exact same reality:
The Same Toggle: Samsung places this exact same switch under its settings menu (typically under Settings > Google > All Services > Advanced Protection or Settings > Security and Privacy).
The Same Lockdown: Turning it on triggers the exact same zero-trust behavior. It immediately forces the system to lock out Android’s Accessibility Services API, completely crippling Norton’s ability to run real-time web screening, app locking, or screen overlay defenses.
The Universal Strategy: Google’s ultimate goal is to enforce this standardized, rigid security wall across the entire Android ecosystem—whether you carry a Pixel, a Samsung Galaxy, or a Motorola device.
The only difference is that Samsung layer their own extra security software on top (called Samsung Knox ), but the core Android 17 rules that clash with Norton remain entirely identical across brands.
No matter which device you use, third-party antivirus utilities are being systematically boxed out by the modern operating system.
Now that you know it works the exact same way on Samsung, does that make you more inclined to stick with the native Google fortress on your Pixel 9, or are you ready to disable it so Norton can take over?
AI sourced content may make mistakes
Solange es noch funktioniert und ich sowieso dafür bezahle (unter anderen auch für mehrere PC) werde ich bei Norton bleiben!!
Das klingt aber fast so als ob Google irgendwann unweigerlich auch mit Knox in Konflikt kommen wird und Norton (und andere) dann gar nichts mehr zu melden hat bzw. mitspielen darf - das sind ja rosige aussichten
1 Like
bjm
August 27, 2026, 6:17pm
15
Florian_Mueller:
As long as it still works and I’m paying for it anyway (among other things, for multiple PCs), I’ll stick with Norton!!
That almost sounds as if Google will inevitably come into conflict with Knox at some point, and Norton (and others) will then have no say or be allowed to participate at all – those are rosy prospects indeed.
Hello @Florian_Mueller
Thanks for Android 17 Advanced Protection conversation.
When it comes to Android 17’s Advanced Protection Mode, prepaid versus postpaid structures will not alter how the core security blocks affect Norton. The operating system treats security identically whether you pay your phone bill upfront or at the end of the month.
However, how and where you purchased the device can introduce massive, hidden carrier tweaks that affect your overall security environment.
The Bloatware Factor (Prepaid vs. Postpaid Devices)
The biggest hidden difference lies in the firmware profiles loaded onto the devices by carriers.
Prepaid Devices: If you buy a carrier-locked prepaid phone from a retail store, the carrier often flashes it with aggressive, unremovable bloatware and third-party app managers. These background managers sometimes try to sideload partner apps or promotional tools. Under Android 17’s Advanced Protection, these carrier sideloading behaviors are completely blocked .
Postpaid Flagships: If you finance a Pixel 9 directly from a major carrier on a postpaid plan, they may install carrier-specific security apps (like Verizon Digital Secure or T-Mobile McAfee Security). Just like Norton, these carrier-branded antivirus utilities will also be broken or restricted by Advanced Protection.
Network Priority & Cellular Slicing
Postpaid plans generally come with higher “network priority” (less data deprioritization in crowded areas).
The Android 17 Link: Advanced Protection Mode actively forces your device into maximum-security network protocols (such as completely disabling 2G cellular radios to prevent hacker “Stingray” cell-tower spoofing). On a lower-tier prepaid network that relies on older roaming agreements or MVNO towers, forcing these strict network parameters could cause you to lose signal entirely in rural areas where a postpaid user might seamlessly transition to a secure partner tower.
Remote Device Management (MDM) Locks
If you finance a premium device on a postpaid plan, the carrier embeds a hidden software layer that allows them to black-list the IMEI or lock the phone if payments are missed. Android 17’s Advanced Protection Mode takes special care not to conflict with these carrier deployment locks to ensure theft-detection and carrier compliance work hand-in-hand.
AI sourced content may make mistakes