Categories: Technology

Google Explains How It Spots Malicious Android Apps

Android’s Verify Apps feature performs malware scans on newly downloaded applications to make sure they’re safe. However since some malicious Android apps can prevent the feature from working, the company had to find an alternative way to figure out if a phone stopped using Verify because you no longer use it or if it’s due to malware lurking in your device.

In a detailed blog post on Android Developers, Google explains the state-of-the-art methods it employs to examine the safety of a selected application, even in cases in which Verify’s verdict is unavailable. The post delves into the problematic algorithms and security practices that Google makes use of to proactively become aware of and mitigate potential threats posed by means of malicious apps, highlighting the company’s ongoing commitment to safeguarding personal facts and enhancing the general protection of the Android ecosystem.

“To understand this problem more deeply,” the post reads, “the Android Security team correlates app install attempts and Dead or Insecure (DOI) devices.” To note, the team marks devices that stopped checking up with Verify as DOI and those that continue to use the feature as “retained.”

The protection team utilizes particular components to calculate the app’s retention charge, which is essentially the share of all devices that have been retained after downloading it within a single day. This calculation involves thinking about different factors and records points to make certain an correct assessment of the app’s overall performance in phrases of consumer engagement and durability.

N = Number of devices that downloaded the app.

x = Number of retained devices that downloaded the app.

p = Probability of a device downloading any app will be retained.

Z = Represents the DOI score.

© Google

If Z or the DOI score falls below -3.7, it means a large number of phones or tablets stopped checking with Verify the moment they installed the app. After Google inspects the app more closely, it conducts a thorough analysis to ascertain whether it poses any genuine harm. If deemed harmful, Google takes proactive measures by first removing any existing installations and subsequently implementing safeguards to prevent any future downloads of the app.

The company highlighted that implementing this specific method significantly enhanced the Security team’s ability to uncover numerous applications that were compromised by malware strains such as Hummingbad, Ghost Push, and Gooligan in previous instances. Without the utilization of this approach, these potentially harmful apps could have easily evaded detection.

Article Originally from Google 

Sameer
Sameer is a writer, entrepreneur and investor. He is passionate about inspiring entrepreneurs and women in business, telling great startup stories, providing readers with actionable insights on startup fundraising, startup marketing and startup non-obviousnesses and generally ranting on things that he thinks should be ranting about all while hoping to impress upon them to bet on themselves (as entrepreneurs) and bet on others (as investors or potential board members or executives or managers) who are really betting on themselves but need the motivation of someone else’s endorsement to get there.

Recent Posts

Is charfen.co.uk Legit? Full Review, Trust Analysis and User Insights (2026)

If you are searching for whether charfen.co.uk is legit, you are likely trying to determine if this platform is trustworthy,…

2 hours ago

Green Dot Mean On Snapchat in 2026 Active Status Privacy and Accuracy Complete Guide

Snapchat, owned by Snap Inc., continues to evolve as one of the most popular social media platforms in the world.…

6 hours ago

Why Interactive Product Education Is Becoming a Startup Growth Channel

The modern software buyer has learned to be a little… cautious. The moment you see a "Schedule a Demo" button,…

9 hours ago

What to Look for When Buying Restaurant Chairs in Bulk

Understanding Bulk Purchasing Needs for Restaurant Chairs Buying seating in large quantities requires a clear understanding of operational needs. Restaurant…

9 hours ago

Why Is Klaviyo Considered Essential for Ecommerce Email and SMS Marketing in 2026?

Klaviyo was built for a different model entirely. Rather than starting with a list, it starts with behaviour, making it…

11 hours ago

How Child Counseling Helps Kids Express Difficult Emotions

Most adults can name what they feel and talk through it. Many children lack that ability. Fear, sadness, confusion, and…

17 hours ago