How To: 6 Habits That Will Help You Avoid Bad Android Apps on Google Play

How To: 6 Habits That Will Help You Avoid Bad Android Apps on Google Play

When I review apps, I'll oftentimes end up downloading at least one or two "bad" apps that either lied about their functionality or were riddled with ads. These apps, while not as harmful as malware, can still be a major headache. This got me thinking about the other bad apps on the Play Store and how to avoid them.It is no secret the Google Play Store has a malware problem. However, what's talked about even less is the number of apps designed to either bombard you with ads or capture your data using batch permissions and various other methods. These apps are far more prevalent and are not always removed from the Play Store.Below, I've listed six habits you can implement to avoid these bad Android apps. With each group, we'll look at a certain type of app and tell you what you preventative measures you can take to avoid them. This list can't cover all the bad apps on the Play Store individually, so you'll still need to be cautious, but we've also included recommendations at the end to further improve your ability to navigate the murky Play Store waters.
Foreword: Why These Apps Exist & What Google's DoingThe Play Store has been synonymous with malware such as worms, ransomware, and adware since its inception. Over the years, Google has implemented new steps to combat this problem, the biggest being Play Protect. The new program acts as an antivirus scanner that analyzes all apps on the Play Store before they're installed on your device. As a result, Google was able to take down 700,000 bad apps in 2017, a 70% increase from the previous year.The problem is Play Protect's antivirus scanner is pretty mediocre. AV-Test, an independent IT security institute, has been testing the malware detection rate of antivirus scanners found on the Play Store, including Play Protect. As recently as July 2018, Play Protect has been near the bottom the list, with detection rates well below the industry average.But malware isn't the only threat. For example, Redditor Busymom0 made a detailed post about their discovery of an "Adult Hook Up" app which had over 70,000 downloads in one month and made $200,000 in revenue. This was without stealing data or corrupting any devices, so it would have gotten past even the best antivirus scanners. Instead, it made false promises and was able to sucker many users into paying $19.99 for one week of access to the service. And this was an app on the iOS App Store, which has a much more thorough vetting process than the Play Store.This is just one example of a type of app that can slip through the cracks. Others include copies of popular apps and those that abuse permission requests or display excessive ads even when you're not actively using them. Whether they deliver on what they promise is irrelevant, because as long as you download the app, they have a chance of getting you to tap on an ad, make a purchase, or inadvertently hand over data that can be sold to marketers. Either way, they make a buck.

Tip 1: Watch Out for Apps That Are Too Good to Be TrueAs the saying goes, "if it seems too good to be true, it probably is." The first habit you should implement is to avoid apps that are promising way too much.For example, there are several apps on the Play Store that claim to let users update their operating system to Android Pie, including one which has over ten thousand downloads. I couldn't believe more than ten thousand users thought this was possible when the method to update your phone is pretty straightforward and well-discussed online. You may have come across other apps that fall into this "too good to be true" category. It's particularly common with apps that relate to games. Some will claim to give you free in-game currency like Fortnite's Vbucks, and others will offer cheats and hacks to get you ahead in a game. Then there are outright fake games — before Fortnite came out on Android, there were dozens of half-hearted "Battle Royale" clones trying to make a quick buck.Another common category here is medical apps. Those claiming to diagnose diseases, test your vitals (with the exception of heart rate apps), or even treat illnesses are typically apps you should shy away from.Some shady developers will even put their app on sale to lure new users with a "deal." The fact is, if an app is truly groundbreaking, the tech blogosphere will talk about it. We will talk about it. Reddit will talk about it. Your friends will talk about it. Rarely will you randomly find a true diamond in the rough on your own.

Tip 2: Don't Install Apps with Batch PermissionsBack in the early days of Android, the apps I hated the most were the ones that requested permission to access sensors they didn't need. Many would even go so far as to batch-request permission to access all of your phone's sensors. This isn't as common as it used to be, but the technique is still in practice.Thanks to the data collected by these sensors, our phones know quite a bit about our day-to-day lives. As I highlighted in a previous article, hackers can spy on you if they have access to seemingly innocuous sensors like your gyroscope or your ambient light sensor — even without tapping your camera or microphone. The most common method of achieving this is with an app that batch-requests permissions, some of which can be found on the Play Store.Don't Miss: It's Not Just Your Camera & Mic — Here's All the Crazy Ways Your Phone Could Be Used to Spy on You An app batch-requesting permissions using the pre-Marshmallow model. Google tried to correct this issue by implementing granular app permissions in Android 6.0 Marshmallow, which forced apps to request permissions individually as they were needed. If you've ever seen a popup saying "XYZ App Would Like to Access Your Location — Allow or Deny," that's the new system.However, the app must target at least Marshmallow to use this new permission model. If it doesn't, it can use the old method of requesting all permissions at the time of installation (when you see that "XYZ App needs access to" popup above). Unlike the granular model, this old style is all or nothing — in other words, if you don't want to give the app permission to access every sensor it requests, you simply can't install it. An app using the new granular permissions model. But if a developer still wanted to abuse permission access, all they had to do was set their app to target a pre-Marshmallow version of Android like Lollipop or KitKat. Thankfully, this started getting a lot harder on November 1, 2018.After November, Google required that all new uploads to the Play Store must target Android Oreo, which means they'll have to use the new granular app permissions model, preventing them from accessing unnecessary data. However, this only applies to new apps and updates to existing apps, so you'll still have to be somewhat vigilant.As for a habit to protect yourself, scroll down and tap "Read More" on an app's Play Store page, then scroll to the bottom of the next page and you'll see when the app was last updated. If you see a date on or after November 1, 2018, you are protected from batch permissions.More Info: How Google's New App Policy Will Cut Back on Android Malware If an app you're about to install hasn't been updated since November 1, 2018, you should manually check the permissions it requests. On the app's Play Store page, scroll to the bottom and select "Permission details." A popup will appear letting you of all the permission requested by the app and how exactly its plans on using them. As can you see in the example below, there is no reason a flashlight app need access to your phone number to make calls, so this is a great reason not to download it. Even after installing an app, you can check its permissions in your phone's settings to see which are enabled by default. If any look fishy, disable them. If the app stops working after you revoke access to a certain permission, you can always re-enable the permission in the same settings menu, but you may want to look for an alternative app instead. For example, if a camera app won't run if it can't access your calendar, you might want to find a different camera app. Check out the link below on how to accomplish this.More Info: How to Manage App Permissions on Marshmallow or Higher

Tip 3: Avoid Apps with Low Scores or Low DownloadsOne of the better ways to detect bad apps is an obvious method often overlooked: checking out the user reviews. Like with most user review systems online, Android's isn't perfect. However, with the abundance of reviews, it is a great place for users to vent their frustrations, deterring potential users from suffering the same fate.When you are interested in an app, check out its score. If it has less than four stars and you had any lingering questions about its legitimacy, just avoid the app. But your due diligence doesn't stop there. Take the time to check out some of the more helpful reviewers. If you see alarming complaints on the first couple of pages, that's your sign to stop. One bad review among a sea of great ones should be ignored, but multiple with the same complaints should send you on your way.But also be wary of apps with perfect 5.0 ratings. In the Reddit post by Busymom0, the scammy iOS app had 67,882 five-star ratings. This is a glaring sign something is wrong — no legit app will have such a high grade. With users giving apps poor ratings because they don't like a color choice, having that many individuals give an app a perfect score is almost certainly the work of fake or paid reviews.Another thing you should look for here is the number of downloads. This number will be posted in two places: At the top of the page below the "Install" button, and at the bottom after first selecting "Read More." The latter will also reveal the date it was released, helping you paint a better picture. For example, a legit app released last month could have one thousand downloads, but an app released a year ago should have more. And if the download number is low but the score is high, you should continue your research. If you're still on the fence about an app, scroll to the bottom of its Play Store page and see if the developer has created other apps. If they have, there will typically be a section labeled by the developer's name, listing all the apps they've created. Check out each one and see the ratings and downloads. If their other apps have a similarly low score and rating, you should probably avoid using any of their apps.

Tip 4: Look Out for Apps Flooded with AdsAnother great thing about the user review section is how it can help you avoid apps with hard-to-detect problems, such as ones that overwhelm you with ads. While most malware is difficult to identify for the average user, adware isn't. We've all seen it: An app that was flooded with so many ads that its basic functionality is hindered.A quick way to tell if an app contains any ads is to select "Read More" on its Play Store page and scroll to the bottom. If it contains any ads, the label "Contains Ads" will be listed right below the recommended age range for the app. Of course, just because an app contains ads doesn't mean it's a bad app. Many legitimate developers can only offer free versions of their apps by making them ad-supported. The real trouble here is the type of app that gets overly spammy with ads, and those are a bit harder to detect before installing.The user review section is your primary and (in some ways only) method to avoid installing these apps. However, if you happen to fall victim to this kind of app, uninstall it immediately. While it isn't as harmful to you as malware, it does encourage this behavior of poor app design by rewarding the developers each time you are redirected to an ad's page due to an unintended touch.

Tip 5: Stay Away from Apps by Unrecognizable DevelopersAnother good research tip is to read who developed the app. There are a number of apps on the Play Store that try to trick you into believing they're a different, more famous app. They will copy the icons, even describe the app in a similar manner to the real version of the app. However, because they can't replicate the name, you can usually figure out which one is real by reading the name of the developers.For an example, try searching the Play Store for the SHAREit app. As you can see in the screenshot below, only the first result is the real deal. The second appears to be the SHAREit app at first glance, but the name of the developer isn't the same as the company who created the app (which you can usually find with a quick Google search of the app's name). This was how I was able to avoid downloading the wrong app. Only the first one is real. The others are certainly doing their best to look real. Under "Read More," at the bottom of an app's Play Store page is a list of information regarding the developer. Google requires the developer to provide their email address and physical address. Trying running a Google search on the address and searching the email address. Send the developer an email to see if the email address is valid. If either address is suspicious, there is a good chance the developer is trying to trick you.

Tip 6: Avoid the Known OffendersWhile it would be impossible for us to find every app you should avoid, there are some known offenders that you should be aware of while browsing the Play Store.UC Browser: Vulnerable to a number of security risks, including viruses and adware. Has had multiple data leaks and privacy breaches that still haven't been fixed. ES File Explorer: Riddled with ads and has been caught phoning home to China. Dolphin Browser: Records your video watch history even when using incognito mode. Update to Android P 9.0 (Unreleased): Outright bogus — you can't perform system updates using an app. Besides these specific apps, there are several general categories of apps you should avoid.Task killers, performance boosters, RAM cleaners, and battery savers: Proven ineffective time and time again, and the permissions they require are ripe for data mining. Apps made by Cheetah Mobile: This is a developer known for making useless apps that replicate the look of other legit apps. A petition was made on Change.org urging Google to ban them from the Play Store. Keyboards from non-reputable developers: Keyboard apps, by design, can log everything you type. A malicious developer could easily create a keyboard app to log your typing history and learn your secrets (including your passwords). Free VPNs: Falls in the "too good to be true" category. VPNs capture all data transmissions from your device, so they have the potential to be data-mining goldmines. Only use reputable services, which almost always charge you a subscription fee (there a few legit free ones, but do your research first). Also, thanks to Redditor daredevil117, we learned of a several free VPNs from The VPN Company which use the same UI and are highly sketchy. Avoid them, please. Free music & movies: Not only is piracy illegal, but piracy apps are often filled with malware that steals your data. Cryptomining: These apps are already sketchy, but now that Google has banned them from the Play Store, any app that offers a service involving the practice should be avoided. Image via Google Play Store Also, check out the BadApps subreddit. Redditors inform the public about bad apps they've found on the Play Store that are low-quality or spam. If you see an app you are not sure about, search for it on the subreddit. If it's there, don't install it.
Staying Safe from Bad AppsImplementing the habits we covered above will go a long way towards keeping you safe on the Google Play Store. However, we have some general recommendations to assist you further, so I wanted to include them here.Despite an ongoing debate in the Android community about their necessity, antivirus scanners can definitely help protect you against bad apps, specifically those with malware. Play Protect is well below the industry standard detection rate and gives users a false sense of security, so check out our list below for the best antivirus apps available.Don't Miss: The Best Antivirus & Security Suite Apps on the Google Play Store Finally, no matter how cautious you are, you can still fall victim to a bad app. Hopefully, it is spam and not malware, but sometimes, apps are both. If you happen to install some malware, there are ways to get rid of the app, especially if the developer created protection to protect the app from being uninstalled. Check out our video for how you can accomplish this or read the link below for a more in-depth tutorial.Don't Miss: How to Uninstall Malware From Your Android Smartphone or Tablet
Now that you know what type of apps to look out for, you should avoid most malicious apps on the Play Store. Unfortunately, malicious developers are continually finding new ways to trick unsuspecting users, so you'll always have to remain vigilant.This article was produced during Gadget Hacks' special coverage on smartphone privacy and security. Check out the whole Privacy and Security series.Don't Miss: Android Security 101 — Tips & Tricks to Keep Your Device SafeFollow Gadget Hacks on Pinterest, Reddit, Twitter, YouTube, and Flipboard Sign up for Gadget Hacks' daily newsletter or weekly Android and iOS updates Follow WonderHowTo on Facebook, Twitter, Pinterest, and Flipboard
Cover image and screenshots by Jon Knight/Gadget Hacks



With the Notification Panel, you'll never miss a text, call, or an app notification, and you can view recent messages and access certain functions on your Galaxy Phone. To make things even better, you can snooze notifications or access an app's notification settings from the Lock screen.
Make Your Notification Panel Translucent - Android - Samsung

How to Install a Custom Recovery on Your Bootloader-Locked


I would like to start off by making a clear (and what I think is obvious) statement: Instagram isn't like Facebook. Yes, Facebook owns Instagram. Yes, you can share you Instagram photos directly to Facebook. Yes, Instagram will allow you to see which of your Facebook friends are on Instagram.
How to See Previously Liked Posts on Instagram - Lifewire


Substratum is a wonderful tool for theming your Android device and while Substratum does offer the tools, to get a different look on your Android device, you do need a theme pack. Currently, the Play Store is full of Substratum Themes, and as time passes by, more and more themes will be build and
How to Apply Substratum OMS Themes on your Android | TechFuzz


Then there's x86, which is a bit more powerful than either type of ARM CPUs, but not quite as battery-friendly, so it's the least common of the three. But regardless of all that, if you're not exactly sure what type of processor you have, I'll show you how to see if it's an ARM, ARM64, or x86 chip below.
How to See What Kind of Processor You Have (ARM, ARM64, or


This way, your inbox stays at zero and everything else is either in its designated pane, archived, or deleted. The result? A clean inbox that's easy to navigate and lets you triage new emails with little effort. Here's how to set this up in Gmail. The Step-by-Step Guide to Getting to Inbox Zero in Gmail Step 1: Prepare for your new inbox layout.
3 Tips to Get to Inbox Zero Faster in Gmail - androidability.com


Manage Wi-Fi networks is a setting that lets you edit your saved Wi-Fi networks that are always blocked or always allowed. These lists prevent your device from connecting to networks that you know are unprotected to safeguard your personal data.
Installation and Configuration of AMP Module Through


We've listed some of the hand-picked yet good android movies apps to make you more entertained through your smartphone. Well guys, watching movies is one of best way to pass time but watching movies on Television is really big pain as there is a lot of advertisements. So, we are listing best free movie apps for android which you can try out.
The Best Apple TV Apps | Digital Trends


How To Make GIF Images Into Live Wallpapers On Your Nexus 4 or Android Device September 27, 2013 By thegift73 4 Comments There are tons of great animated GIF images around the web these days, but being able to set them as a wallpaper on your Android device isn't something you can currently do using the stock Android OS, although this may
How to Create Your Own Wallpaper Android - YouTube


This is what you can expect when sharing Live Photos across Apple's apps and platforms. iCloud Photo Library can sync Live Photos to the Mac, and Photos allows you to play them back within the app.
Google's new Motion Stills app turns Live Photos into GIFs


News: Cord-Cutting Just Got Cheaper — AT&T's $15/Month WatchTV Service Is Coming Next Week How To: Access free streaming TV and radio using VLC Player Watch Out Facebook & Twitter: Google's Stepping Up Their Live-Streaming Game
How to Watch Free Live-Streaming TV Shows More Easily in


Just like you would flash a ROM on your phone, you now can also change Android TV on your Nexus Player. Change it to what I hear you ask. Well, how about Android 5.0 Lollipop!
How to Install Android Lollipop 5.0 TODAY on NEXUS 5


However, the new update includes code which will inform users that "SMS is moving out of Hangouts," and suggest that they switch to a different SMS app. 9to5Google suggest that the company will flip a server-side switch in a few days removing all SMS functionality, with the exception of Google Voice.
Hangout on Your Mobile Phone with Google+ & More - WonderHowTo


Besides adding notes to individual emails and email threads, you can pin notes just about anywhere. For example, at the top of your sent email label view or starred emails or any other label.
Simple Gmail Notes - Chrome Web Store


The process to send the same message to every contact one by one or by using the forward option is very lengthy. It takes too much time and makes us frustrated. Because you know that you can send WhatsApp message to multiple contacts using a broadcast list and do not want to use that for the same.
How To Send Messages To Multiple Contacts On Whatsapp Without

0 comments:

Post a Comment