Source |
GoogleSec |
Identifiant |
8644442 |
Date de publication |
2025-01-29 13:39:07 (vue: 2025-01-29 20:08:14) |
Titre |
How we kept the Google Play & Android app ecosystems safe in 2024 |
Texte |
Posted by Bethel Otuteye and Khawaja Shams (Android Security and Privacy Team), and Ron Aquino (Play Trust and Safety)
Android and Google Play comprise a vibrant ecosystem with billions of users around the globe and millions of helpful apps. Keeping this ecosystem safe for users and developers remains our top priority. However, like any flourishing ecosystem, it also attracts its share of bad actors. That\'s why every year, we continue to invest in more ways to protect our community and fight bad actors, so users can trust the apps they download from Google Play and developers can build thriving businesses.
Last year, those investments included AI-powered threat detection, stronger privacy policies, supercharged developer tools, new industry-wide alliances, and more. As a result, we prevented 2.36 million policy-violating apps from being published on Google Play and banned more than 158,000 bad developer accounts that attempted to publish harmful apps.
But that was just the start. For more, take a look at our recent highlights from 2024:
Google\'s advanced AI: helping make Google Play a safer placeTo keep out bad actors, we have always used a combination of human security experts and the latest threat-detection technology. In 2024, we used Google\'s advanced AI to improve our systems\' ability to proactively identify malware, enabling us to detect and block bad apps more effectively. It also helps us streamline review processes for developers with a proven track record of policy compliance. Today, over 92% of our human reviews for harmful apps are AI-assisted, allowing us to take quicker and more accurate action to help prevent harmful apps from becoming available on Google Play.
That\'s enabled us to stop more bad apps than ever from reaching users through the Play Store, protecting users from harmful or malicious apps before they can cause any damage.
Working with developers to enhance security and privacy on Google Play
To protect user privacy, we\'re working with developers to reduce unnecessary access to sensitive data. In 2024, we prevented 1.3 million apps from getting excessive or unnecessary access to sensitive user data. We also required apps to be more transparent about how they handle user information by launching new developer requirements and a new “Data deletion” option for apps that support user accounts and data collection. This helps users manage their app data and understand the app\'s deletion practices, making it easier for Play users to delete data collected from third-party apps.
We also worked to ensure that apps use the strongest and most up-to-date privacy and security capabilities Android has to offer. Every new version of Android introduces new security and privacy features, and we encourage developers to embrace these advancements as soon as possible. As a result of partnering closely with developers, over 91% of app install |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
000 158 200 2024 2024: ability about abuse abused abusive access according accounts accurate action active actors ada added adding addition additional address adhere advance advanced advancements africa against agency ahead ai: all alliance alliances allow allowed allowing allows already also always analyzes android androidwhile any api app appear application applications approach approved apps apps: aquino are around asa assessment assisted attacks: attempted attempts attracts automatic automatically available average back bad badge badging banned based battle becoming been before behavior being best bethel billion billions block blocks bots brazil browsers browsing build building built businesses but calls came camera can capabilities carrier cause changing cheating check chrome class clear closely cloud code collaborating collected collection combat combination commit commitment committee community compliance comply comprise compromised confirmation connect constantly continue continuing continuously correlated create crucial csa cyber cyberattacks daily damage dangerous data date decision decisions dedicated default defend defending defense defenses delete deletion deletion” demand demonstrate detect detection developer developers development device devices disabled disabling discover display download downloads due during easier easily ecosystem ecosystems effectively embrace emerging empowering enable enabled enabling encompassing encourage encouraged engineering enhance enhanced enhancing ensure ensures entire environments establishing even ever every everyone evolving excessive experience experiences experts exploit explore exploring extra families features feedback fellow fight file financial find flourishing forward fraud frequently from further future generalized getting giving glance global globally globe google government governments grant guidance guide guidelines handle harmful has have haven help helpful helping helps here hidden high highlight highlights highly hong how however human identified identify identities impersonation important improve improvements included incorporating increased increasingly independent index india industry information informed initial insights install installation installations installed installs integrity intelligent internal internet introduced introduces invest invested investments issues its just keep keeping kenya kept khawaja know kong landscape last latest launched launching layered lead level levels like limiting look looking lower major make making malicious malware manage managers manipulate marks masa matter may measures members messaging meta microsoft million millions mobile models more most multi nature necessary need new newer nigeria nine not notification notifications novel now off offer offers official often once ongoing only open option other otuteye out outside over partner partnering partners partnership partnerships party passed peers people percent performs permissions philippines phone photos pilot piloting pilots pixel place placeto play play1 policies policy polymorphic popular possible posted potential potentially powered practices pre prevent prevented principles priority privacy proactive proactively processes protect protect: protected protecting protection protections proven provide provides publish published quality quicker ratings reaching real recent recently record reduce refine regions relevant remains reminder required requirements research resetting resources response restore result review reviews revokes revoking rigorous risky role ron running safe safeguard safeguarding safer safety scale scammers scams scanning scans sdk sdks section secure security see seeing sensitive services services: shams share shield shielded sideloaded sideloading significant since singapore social software solutions some soon sophisticated source sources south stakeholders standard standards start stay steal steering step steps stop storage store streamline strengthening strong stronger strongest success such supercharged support systems take taken tampered |
Tags |
Malware
Tool
Threat
Mobile
Cloud
|
Stories |
|
Move |
|