How I advertise malicious software on Google Ads

423 points · 256 comments on HN · read original →

Points and comments are a snapshot, not live.

A developer's Google Ads account was suspended for "malicious software" despite thorough evidence of no malware.

The author built RACE, a native macOS terminal multiplexer in Rust, and tried advertising it via Google Ads. After spending $500, Google suspended the account citing "Malicious software" and "Compromised Site." Despite providing evidence from Google Safe Browsing, Google Search Console, VirusTotal, and code reviews showing no issues, multiple appeals were rejected with no explanation. The author suspects the suspension may be a false positive related to RACE's legitimate subprocess-management behavior as a terminal multiplexer. The account was reinstated after the Hacker News post.

The author describes a Catch-22: Google's automated system provides no specifics, making it impossible to address the alleged issue.

What commenters are saying

Commenters express strong frustration with Google's opaque, automated enforcement systems. Many share similar experiences with other large companies (Ryanair, Amazon, British Airways, DoorDash) that hide behind chatbots and unresponsive support. Several commenters note that the author's product targets technical users, making Google Ads an odd choice. The author responds that their Show HN failed to gain traction and they wanted to reach paying customers beyond HN. One commenter suggests that the real problem is companies calculating that most customers will give up rather than pursue legal action.