Skip to main content

Google’s virus-scanning Verify Apps feature for Android now reveals its secrets

quadrooter exploit qualcomm chips android devices flaw
Image used with permission by copyright holder
Googls’ Verify Apps feature is a valuable tool against folks who mean your phone — and the data it contains — serious harm. Since the Mountain View, California-based search giant introduced it in 2012 as a part of Android version 4.2 Jelly Bean’s new security feature, Verify Apps has played an active roll in checking Android software against a growing database of malware, exploits, and other nasty viruses. But it’s done so a little too quietly for some folks’ taste, apparently. That’s why in the interest of transparency, Verify Apps will begin reporting a list of the apps it’s most recently scanned.

It’s a change first spotted by Android Police. A new version of Verify Apps shows the four applications that have been most recently scanned in a carousel menu, accessible by launching the Android Settings menu, tapping the Google option, and selecting the Security tab. Other newly exposed details include the time when the scan was completed, along with a toggle that “improves detection” by permitting Google to copy unknown apps and an option to disable Verify Apps altogether.

According to Android Police, the update is being delivered as part of a new Google Play Services, a core Android component that synchronizes contacts, provides access to privacy settings, powers location-based services, and updates Google apps. Devices with version 10.0.x of the service lack the new carousel and settings menu, but those running 10.2.x do have it. Updates to Google Play Services are distributed via the Google Play Store, Android’s app marketplace.

At the RSA security conference in San Francisco on Wednesday, Google announced that Verify Apps scans more than 750 million Android devices each day, checking as many as 6 billion apps for malware.

But that’s not all Google’s been doing to ensure Android devices remain safe and secure. The search giant has worked with 351 wireless carriers to improve the time it takes to test security patches before deploying them to users, an effort that’s resulted in a reduction of the software approval process from six to nine weeks to just a week. It’s doled out $1 million to independent security researchers, an amount that’s on track to reach $2 million next year. And it’s pursued an aggressive strategy of encryption — as of December 2016, 80 percent of Android 7.x (Nougat) users use encryption.

Adrian Ludwig, director of Android security at Google, said social engineering — attacks that fool a user into installing an app that compromises his or her device’s security — as one of the biggest challenges facing app developers today.

“People don’t want to think about security,” he told members of the press at Wednesday’s RSA conference. “They just want it to be that way.”

Editors' Recommendations

Kyle Wiggers
Former Digital Trends Contributor
Kyle Wiggers is a writer, Web designer, and podcaster with an acute interest in all things tech. When not reviewing gadgets…
This is the Pixel 2’s secret eye-scanning feature that never was
Google Pixel 2 XL - Best Android phones

Google's Pixel 2 was one of the best phones the company made, but it had the potential to be even cooler. The Internal Archive this weekend shared a prototype of an early Pixel 2 model that was equipped with iris-scanning technology. Google did not ultimately ship the Pixel 2 with an iris scanner, opting instead for its Pixel Imprint rear-mounted fingerprint sensor.

According to the Archive, the Pixel prototype here was a single-purpose one. It was dedicated nearly entirely to testing iris recognition. The front camera is gone, replaced by an infrared unit, and the rear camera lacks LEDs as well. Even the software loaded on the phone is an entirely basic version of Android with nothing but the bare necessities.

Read more
Google’s Android monopoly finds its biggest challenge, and Apple might be next
Apps screen on the Google Pixel 7.

The Competition Commission of India slapped Google with two hefty fines over anti-competitive strategies that have allowed it to dominate the mobile ecosystem in India. Totaling over $250 million, the penalties reprimand Google for forcing smartphone makers to avoid Android forks, prefer Google’s web search service, and pre-install popular cash cows like YouTube on phones.

Google was also disciplined for forcing its own billing system on developers that allowed the giant to take up to a 30% share of all in-app purchases for applications listed on the app store. Google is not really a stranger to titanic penalties; The EU handed Google a record-breaking fine of approximately $5 billion in 2018 for abusing its dominant market position — a penalty that was upheld in September this year following Google’s appeal.

Read more
Does the Google Pixel Watch have fall detection? Not yet, but it’s coming soon
Lifestyle image of a woman wearing a Google Pixel Watch.

Looking for a great Android smartwatch? The Google Pixel Watch is Google's response to the Apple Watch and the Samsung Galaxy Watch. With this new kid on the block, Google has inaugurated its own multi-device hardware-software ecosystem with many of the same critical health and safety features.

The Pixel Watch offers Google's software suite, which users can access via LTE or smartphone connection, and incorporates health resources from Fitbit's fitness line. The new watch, which runs Wear OS 3.5, is designed for optimal integration with the Google Pixel 7 and Google Pixel 7 Pro smartphones, which debuted alongside it.

Read more