Apps now block sideloading and force downloads through Google Play
The Google Play Integrity API enhances detection of sideloaded apps, prompts users to download from the Play Store, checks for tampering, and aims to reduce sideloading and rooting on Android devices.
Read original articleThe Google Play Integrity API has been introduced to enhance the detection of sideloaded apps on Android devices. This API allows applications to verify if they were installed from the Google Play Store, identifying unlicensed accounts that did not purchase or download the app through official channels. If an app detects that it is unlicensed, it can prompt users with a remediation dialog, urging them to download the app from the Play Store to continue usage. This feature, which was unveiled at Google I/O in May, aims to help developers maintain control over their app distribution and ensure that users have the correct version for their devices. The API checks for signs of tampering and assesses the trustworthiness of the software environment. It is designed to replace the older SafetyNet Attestation system, offering more robust features. Developers can implement this API to block access to their apps based on the integrity verdict received. Some applications, including games like Diablo Immortal, are already utilizing this feature. As the Play Integrity API evolves, it is expected to further limit the ability of users to sideload apps and root their devices, while simultaneously enhancing security for regular users against fraudulent activities.
- The Google Play Integrity API helps detect sideloaded apps and unlicensed accounts.
- It prompts users to download apps from the Play Store if they are unlicensed.
- The API enhances security by checking for tampering and software environment trustworthiness.
- Popular apps like Stripe, Uber, and TikTok are already using the Play Integrity API.
- The feature aims to reduce the prevalence of sideloading and rooting among Android users.
Related
Google set to purge the Play Store of low-quality apps
Google will enforce a new policy from August 31, 2024, targeting low-quality apps on the Play Store. This initiative aims to improve user experience by removing or restricting apps that do not meet quality standards.
How developers trick App Store into approving malicious apps
Developers are deceiving the App Store to approve malicious apps like "Collect Cards" by using geofencing and Microsoft's CodePush SDK, allowing post-approval changes to app functionalities. Apple has removed these apps.
Custom ROMs have had just about enough of being Android's second-class citizens
Tensions are rising between custom ROM developers, particularly Graphene OS, and Google over Play Integrity API compliance, with potential legal action looming if support for custom ROMs is not extended.
Google Pixel Phones Have Unpatched Flaw in Hidden Android App
A serious vulnerability in nearly all Google Pixel phones, linked to the "Showcase.apk" app, allows remote code execution. Google plans to remove it, but Palantir has stopped using Android devices.
Google Pixel phones sold with security vulnerability, report finds
A report by iVerify revealed a hidden vulnerability in Google Pixel phones since 2017, allowing potential surveillance. Google confirmed a fix will be released to remove the software.
Related
Google set to purge the Play Store of low-quality apps
Google will enforce a new policy from August 31, 2024, targeting low-quality apps on the Play Store. This initiative aims to improve user experience by removing or restricting apps that do not meet quality standards.
How developers trick App Store into approving malicious apps
Developers are deceiving the App Store to approve malicious apps like "Collect Cards" by using geofencing and Microsoft's CodePush SDK, allowing post-approval changes to app functionalities. Apple has removed these apps.
Custom ROMs have had just about enough of being Android's second-class citizens
Tensions are rising between custom ROM developers, particularly Graphene OS, and Google over Play Integrity API compliance, with potential legal action looming if support for custom ROMs is not extended.
Google Pixel Phones Have Unpatched Flaw in Hidden Android App
A serious vulnerability in nearly all Google Pixel phones, linked to the "Showcase.apk" app, allows remote code execution. Google plans to remove it, but Palantir has stopped using Android devices.
Google Pixel phones sold with security vulnerability, report finds
A report by iVerify revealed a hidden vulnerability in Google Pixel phones since 2017, allowing potential surveillance. Google confirmed a fix will be released to remove the software.