Google Blocked 1.75 Million Malicious Apps from Entering into the Play Store
In 2025, Google's AI-powered security systems successfully blocked over 1.75 million malicious or policy-violating applications from reaching the Play Store, thus enhancing Android security. The company's latest Android and Google Play security update…
In 2025, Google's AI-powered security systems successfully blocked over 1.75 million malicious or policy-violating applications from reaching the Play Store, thus enhancing Android security. The company's latest Android and Google Play security update highlighted that these apps were intercepted during the review process due to policy violations such as embedded malware, financial fraud, aggressive data collection, and hidden subscription abuse.
Additionally, Google banned more than 80,000 "bad developer" accounts associated with harmful or deceptive apps, preventing repeat offenders from re-entering the ecosystem under new identities. Every submitted app now undergoes over 10,000 automated and manual safety checks. These measures aim to prevent real-world harm before apps reach user devices.
Strengthening Privacy Controls and Data Protection
Google has integrated its latest generative AI models into the Play review pipeline, enabling security teams to quickly identify complex and evolving malicious patterns. These models work alongside human reviewers to detect obfuscated behaviors, suspicious permission usage, and fraud indicators that may not be apparent through static analysis alone.
The company's strengthened pre-review checks, developer verification, and mandatory testing requirements are deterring many bad actors from attempting to publish malicious apps on Google Play. Google also prevented more than 255,000 apps from obtaining excessive access to sensitive user data by enforcing stricter privacy controls and permission policies.
Anti-spam systems blocked around 160 million fake or manipulative reviews, protecting the integrity of ratings and user trust. For family safety, Google introduced new protection layers to prevent children from discovering or downloading apps related to high-risk categories such as gambling or dating.
New Security Tools for Android Developers
Google Play Protect, Android’s built-in malware defense, now scans over 350 billion apps daily across the Play Store and sideloaded sources. In 2025, it identified more than 27 million new malicious apps distributed outside Google Play, warning users or blocking installations to neutralize threats.
Every submitted app now undergoes over 10,000 automated and manual safety checks.
Security Tool / Feature Purpose 2025 Update Protection Benefit
Play Policy Insights (Android Studio) Real-time policy guidance Lint-style checks flag risky permissions & APIs Prevents policy violations before submission
Pre-review checks (Play Console) Catch compliance issues early Automated checks for credentials, permissions & privacy links Blocks misconfigured or risky apps
Play Integrity API Verify app & device integrity Hardware-backed signals, stronger attestation, device recall Detects fraud, tampering & compromised devices
Developer verification Strengthen developer identity checks Expanded verification & new account types Reduces abuse from fake/throwaway accounts
Android 16 security APIs Protect sensitive app flows Tapjacking & overlay attack protections Prevents credential theft & UI hijacking
Enhanced fraud protection within Play Protect is now deployed in 185 markets and covers over 2.8 billion Android devices . It blocked 266 million risky sideloading attempts tied to approximately 872,000 unique high-risk apps, many targeting financial fraud via abusive permissions.
To support developers, Google expanded Play Policy Insights in Android Studio , offering real-time feedback on risky permissions and policy compliance during development. The Play Integrity API, now handling over 20 billion checks per day, gained hardware-backed signals and in-app prompts to help apps defend against abuse while preserving user privacy.
Google plans to roll out broader developer verification across the Android ecosystem and continue investing in AI-driven defenses, aiming to render malicious apps increasingly unviable while assisting legitimate developers in building secure, compliant apps by design.
Based on reporting by Cyber Security News.
