Google's 'Bouncer' scans Android Market for malware


Recommended Posts

first step towards fighting malware.

The last year has been a phenomenal one for the Android ecosystem. Device activations grew 250% year-on-year, and the total number of app downloads from Android Market topped 11 billion. As the platform continues to grow, we?re focused on bringing you the best new features and innovations - including in security.

Adding a new layer to Android security

Today we?re revealing a service we?ve developed, codenamed Bouncer, which provides automated scanning of Android Market for potentially malicious software without disrupting the user experience of Android Market or requiring developers to go through an application approval process.

The service performs a set of analyses on new applications, applications already in Android Market, and developer accounts. Here?s how it works: once an application is uploaded, the service immediately starts analyzing it for known malware, spyware and trojans. It also looks for behaviors that indicate an application might be misbehaving, and compares it against previously analyzed apps to detect possible red flags. We actually run every application on Google?s cloud infrastructure and simulate how it will run on an Android device to look for hidden, malicious behavior. We also analyze new developer accounts to help prevent malicious and repeat-offending developers from coming back.

Android malware downloads are decreasing

The service has been looking for malicious apps in Market for a while now, and between the first and second halves of 2011, we saw a 40% decrease in the number of potentially-malicious downloads from Android Market. This drop occurred at the same time that companies who market and sell anti-malware and security software have been reporting that malicious applications are on the rise. While it?s not possible to prevent bad people from building malware, the most important measurement is whether those bad applications are being installed from Android Market - and we know the rate is declining significantly.

http://googlemobile....d-security.html

Link to comment
Share on other sites

Scanning for known malware.. They're not already doing this.... And people download stuff from this place....

Way to little, to late. The only way to be sure is to use advanced scanning and manual hand verification. All apps should go through a person for a quick check, and anything flagged in a decent high grade high sensitivity heuristics should be manually checked by a coder. Sure a heuristics at such a high setting will give lots of false positives, but at least you protect our customers. Would be more important than saving a few bucks. And you know non evil as well...

Link to comment
Share on other sites

Scanning for known malware.. They're not already doing this.... And people download stuff from this place....

Way to little, to late. The only way to be sure is to use advanced scanning and manual hand verification. All apps should go through a person for a quick check, and anything flagged in a decent high grade high sensitivity heuristics should be manually checked by a coder. Sure a heuristics at such a high setting will give lots of false positives, but at least you protect our customers. Would be more important than saving a few bucks. And you know non evil as well...

this has been there for more than 6 months now... "they are not already doing this" make no sense here.

Link to comment
Share on other sites

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.