Skip to main content

How to combat the threat of Android malware

[ad_1]


It’s almost impossible to read the news these days without seeing yet another article on the rising threat of Android malware. But at the same time, a new report from AV-Comparatives has been making the rounds for its finding that most Android antivirus apps are terrible scams. So what’s a security-conscious user to do?



It’s easy for reports to get overblown, so we spoke to the folks at AV-Comparatives to get to the crux of the matter. They’re an independent organization that tests the effectiveness of security software on PCs and phones to find what actually works (and what should be avoided like the plague). Here’s what they had to say about the prevalence of Android malware, and what you can do about it.


Android malware is real, but the risk is higher outside the U.S.



The risk of malware on the Android operating system “depends on many different factors,” says Andreas Clementi, CEO of AV-Comparatives.



“Official stores such as Google Play are mostly used in western countries, where the risk of infection is very low,’ Clementi says. “In Asian countries, where rooted devices and large number of third-party app stores can be found, the chance of installing a dangerous app is greatly increased.”



Furthermore, Android malware is different from Windows malware, and that leads to confusion when all you see are scary statistics.



“Numbers propagated in the media might be inflated, depending on how threats are defined,” Clementi says. “Some people define Adware and other potentially unwanted apps as threats. If those are counted as such, the numbers look very high, as there are a lot of potentially unwanted apps on Android.”



Put another way, there’s a big difference between malware that spams you with ads and malware that tries to steal your personal information. And while phishing and other more serious threats are definitely present in the Android ecosystem—including in the Google Play Store—it may not be as prevalent as some news outlets would have you believe.


Most (but not all) Android antivirus apps are terrible



This spring, AV-Comparatives tested 250 antivirus apps, finding only 80 that detected a significant amount of malicious samples. The remaining 138 either had a detection rate lower than 30%, had too many false positives, or—in many cases—weren’t really antivirus apps at all. The wannabes, instead of scanning for malware, instead relied on primitive whitelists that would allow certain known apps and block everything else. Not only is this approach incredibly annoying (since it will almost certainly block trustworthy apps you actually want to use), it’s incredibly ineffective, as malware developers can easily circumvent it.



That said, there are plenty of anti-malware apps on Android with higher detection rates, particularly those from the same trusted security companies making good antivirus programs on Windows—companies such as ESET, F-Secure, Bitdefender, and Malwarebytes, for example.



Unfortunately, even these apps can only do so much, as the technology within them is much simpler than what runs their Windows counterparts. And most apps merely detect when you download or install an app, then compare its digital signature against a database of known malicious apps. If the app is on that list, the antivirus will alert you and ask that you remove the app. This simple approach doesn’t make antivirus apps very compelling, even when you factor in the virtual private networks, call blockers, and other extra features some offer.


The best security is to avoid malware altogether



So Android malware is real and not all antivirus apps are total scams, but do you actually need protection? Well, experts are somewhat split on the issue.



While the risk of infection is low in the U.S., Clementi says it never hurts to be proactive in case the situation changes. Google itself, however, has railed against antivirus apps in the past. In 2014, for example, Google’s then-lead security engineer for Android said there was “no reason” to install an antivirus app because the risk was low and Google’s built-in protections were strong enough. Antivirus manufacturers fired back, scoffing at the notion and pointing to third-party app stores used across the globe (and a few pieces of malware that have, despite Google’s protections, snuck into Google Play).



Unfortunately, most people taking part in the discussion have some sort of skin in the game, so it’s hard to know who’s opinion to trust.



There is one thing all experts agree on, though: your first and main line of defense should be common sense and good security practices.



“Only download apps from official app stores like Google Play, or stores of reputable app makers and avoid third-party stores and side-loading,” Clementi says.



Of course, Google Play still hosts some bad apps while third-party sites may offer trustworthy downloads. The most important thing is to download apps built by well-known developers and companies you trust. And never, ever, pirate apps from sketchy sites, as these are often dangerous.



Similarly, check the permissions an app requests before you install it.



“An app that counts the steps the user takes every day, for example, has no need to access the phone book or call log,” Clementi says.



Over-reaching permissions won’t necessarily guarantee an app is malicious, but they may warrant further investigation on your part before installing.



Finally, if you can help it, don’t root your phone.



“Rooting the smartphone may gain the user more functionality, but it also increases the risk that malicious apps will take control of the device,” Clementi says.



It also helps to buy a phone that gets regular security updates. Samsung’s Galaxy line, Google’s Pixel line, and any phone in the Android One program are good choices for that reason. Many people root their phones in order to get security updates, so if you buy a well-supported device, you may not need to root at all.



These practices are the most important steps to avoiding malware, antivirus or not. If you’re the kind of person who can't resist installing every wallpaper app and free game you come across, it may behoove you to install one of the more trustworthy antivirus apps for a modicum of protection. But you’d be much better off considering your downloads more carefully instead.




[ad_2]

Written By Whitson Gordon

Comments

Popular posts from this blog

Ice technicians are the secret stars of the Winter Olympics

[ad_1] The emphasis of this year's two-week-long Winter Olympic Games has been placed squarely on the Olympians themselves. After all, the stated purpose of the international competition is to bring together the world’s greatest athletes in a nail-biting competition across fifteen different winter sports. But before the curlers, skiers, and skaters even arrived in Pyeongchang, South Korea, the Olympians of the ice technician world were already a few weeks deep in a competition of their own. Mark Callan of the World Curling Federation and Markus Aschauer of the International Bobsleigh and Skeleton Federation both say they’re hoping to make the best ice the Winter Olympics have ever seen. To transform the barren concrete jungle of existing tracks and arenas into an ice- and snow-covered wonderland is an enormous undertaking. And it takes a keen understanding of the physics and chemistry that keeps frozen precipitation pristine. Curling Callan has been making and maintaining ic...

How to avoid the mid-movie bathroom break

[ad_1] Long movies and the urge to pee have been linked since the early days of cinema. Sixty-three years before Avengers: Endgame and its three-hour runtime, moviegoers settled in for nearly four hours of The Ten Commandments . “There will be an intermission,” director Cecil B. DeMille announced during the movie’s introduction. And audiences’ bladders were relieved. On average, movies aren’t getting longer, but they also don’t come with a predetermined bathroom break. That means when nature calls, you’ve got to either sit in growing discomfort or gamble on the best time to run to the restroom. But it doesn’t have to be this way, and for most people, setting your body to “do not disturb” is fairly simple. Go before the show The first piece of advice is also the easiest: pee before the movie starts. Generally, healthy adults urinate every 3-4 hours, so the longer a movie runs, the more urgent it becomes to reset your internal p...

Charted: Here's how much your food waste hurts the environment

[ad_1] Our species is pretty good at wasting food. Some we discard at the farm for being undersized or oddly shaped. Others we allow to decay in their shipping containers, thrown away before they even reach shelves. We leave even more foodstuffs wasting away in grocery stores, often by letting it sit there until it reaches its sell-by date. As consumers, we don’t have much control over most of the process that brings our food to the grocery store, but we do have control over how much food we personally waste. Let's face it: We’ve all found liquified lettuce in our veggie drawers. Don't fret. It's arguably impossible to consume 100 percent of the food we buy. But a healthy reminder of the effect food waste has on the environment might help us all to be more conscious of the amount of food we eat—and don't eat. Consumer food waste varies extensively depending on the area. In South and Southeast Asia, the Food and Agriculture Organization (FAO) estimates that only around ...