Google Watch - Hello, Android - Meet Android Market's Malware Bouncer

Meet Android Market’s Malware Bouncer

Written By
Clint Boulton
Clint Boulton
Feb 3, 2012
2 minute read
eWeek content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

One of the leading knocks on Google’s freewheeling, open approach to the Android Market is that it’s leaves the application store more susceptible to malware and lots of spammy apps.

Indeed, Symantec, Lookout Mobile and other security firms have reported a significant rise in Android Market malware in the last 12 months.

And with over 200 million Android devices in the market, with 700,000 being activated daily, and over 300,000 Android apps in the Market, there are a lot of mobile targets for perpetrators to exploit.

Google’s automated app approval process is a popular vector for attack. To help combat the malware rise, Google created Bouncer, an anti-malware service that automatically scans the Android Market for potentially malicious software.

Bouncer, which Google has been using in its Market for all of 2011, scans new and old applications and developer accounts. Hiroshi Lockheimer, vice president of engineering for Android, explained how it works:

“Once an application is uploaded, the service immediately starts analyzing it for known malware, spyware and trojans. It also looks for behaviors that indicate an application might be misbehaving, and compares it against previously analyzed apps to detect possible red flags. We actually run every application on Google’s cloud infrastructure and simulate how it will run on an Android device to look for hidden, malicious behavior. We also analyze new developer accounts to help prevent malicious and repeat-offending developers from coming back.“

The result? Android malware downloads decreased 40 percent through 2011, which is when Symantec, Lookout and others reported malicious apps were on the rise.

I wonder if Symantec, Lookout and others knew about this feature? It’s unclear, but Lockheimer did tell AllThingsDigital that Google has no plans to embrace the manual app approval process Apple and Microsoft employ to vet apps in their stores.

This makes sense. Manual approvals bog down the works, which is anathema to Google, whose culture is built on speedy development and expedient delivery to market.

I can’t imagine Android head Andy Rubin or CEO Larry Page would ditch the automated, machine-based practices, even for malware. Which is why it needed the Bouncer. We’ll see if it helps combat the spate of Netflix malware and other issues.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.