Simple clear advice in plain English

Google's failure to defend against malicious apps 'irresponsible'

Android users at risk of increasing risk, warn security companies

  • By Dinah Greek and James Temperton
  • News
  • App
  • 04/10/2011
Android Marketplace
The number of malicious Android apps increasing

With the threats to Android users from malicious applications increasing, Google has been labelled 'irresponsible' for failing to install adequate safeguards in its Android Market app store.

Security firm Bitdefender said the amount of malicious apps has risen 900 per cent since January earlier this year. The problem has even forced the UK premium phone regulator to get involved.

Over the last few months, Phonepayplus has closed down a number of rogue services offering malicious Android apps. One was for a free 'battery saver' app that accessed the phone's text message function. The app was then able to automatically send and receive texts that subscribed consumers to a premium-rate subscription service without their knowledge.

While many of these rogue apps come from unofficial websites, many, like the app Phonepayplus discovered, can be found in the official Android Market.

In March 2011, Google had to pull 58 malicious applications from the Android Market, but only after they had been installed on about 260,000 devices.

Catalin Cosoi, of Bitdefender's online threats lab, warned some applications will continue to abuse the lax security:

"Unlike Apple, which imposes strict safety checks for their applications, Google welcomes any third-party developer and their applications," he told us.

He also warned that there are also a number of apps on the Android Market that contain permissions they don't need and which could be putting user security at risk.

A flashlight/torch application that is still available on the Android Market asks for full internet access and access to the phone number, serial number and details of any numbers dialled on the phone.

Vicente Diaz, senior security researcher at Kaspersky, said he believed the reason security is so lax is because Google wanted to increase app market share.

"I believe maybe it was for getting market share. They need to offer nice figures, to say that now we have more applications than Apple. Still, I believe that they should be doing some checks.

"There are some applications that should never have reached the Market. In this marketplace, implicitly you believe that everything there is not malicious.

"In fact 99 per cent of people will have no idea what you are talking about when you ask for access to internal storage for your application so in this case Google is being irresponsible," he told us.

Mr Cosoi said people need to be more aware of what they download and said:"We recommend that users avoid applications that ask for more permissions than they would normally require."

We put a number of questions to Google but the company refused to comment.

Reader Comments

   

Add your comment

Please keep comments constructive and free from abuse of any kind and swearing. If you wish to link to a product or service online, please do so in such a way that makes it clear that it is not spam. If you are connected to any such product you should make that clear.

We may use your comments in the magazine. We may edit your comments for clarity or to remove unacceptable material. We will attribute your comments but not share your email address.

We request your email address and record your Internet Address (IP address) in order to block spam from our site. We will never share this information without your permission.

All comments are reviewed by the Computeractive Team before being published. Please bear with the slight delay this causes, you don't need to post more than once.

Click here to read our Privacy Policy

Click here to read our site Terms & Conditions

Related articles

Google Android logo

Phonepay Plus clamps down on rogue Android apps

Premium rate regulator launches consultation paper to protect consumers

Android Marketplace

Malicious Android smartphone applications are on the increase

Malicious applications are abusing Google's lax privacy controls as Android threats increase 900 per cent since January

Android logo

Trend Micro warns of growing threats to Android devices

Security firm's Threat Round-up shows criminals launching increasingly clever attacks on smartphones and tablets using the Android operating system

Content Recommendation

Question & Answer

Q.Why is Windows Backup skipping files?

> Read the answer

Q.Why do my scanned documents display gibberish?

> Read the answer

Q.How can I convert MTS files to edit in Windows Movie...

> Read the answer

Best deals on the web

img

Samsung NP350E7C-A04UK

£349.99- Buy it now

img

Toshiba Satellite C850D-11Q (PSCC2E-00R00JEN)

£279.97- Buy it now

img

ASUS Eee PC X101CH-BLK043S

£239.99- Buy it now

Updating your subscription status Loading

Most popular articles

No matching document

Poll

Do you have Windows 8?

Jargon Buster

Computing terms explained in plain English

Virtual drive

A set of files seen by Windows as a separate hard disk.

Great shopping deals from Computeractive

Information currently unavailable