• Contact Us
  • Login
Upgrade
Tech News Hero
Advertisement
  • Home
  • News
  • Gadgets
  • Social
  • Gaming
  • Mobile
  • PC
  • Internet
  • Security
  • Apps
No Result
View All Result
  • Home
  • News
  • Gadgets
  • Social
  • Gaming
  • Mobile
  • PC
  • Internet
  • Security
  • Apps
No Result
View All Result
Tech News Hero
No Result
View All Result
Home Apps

Fight Android malware by quitting Google Play and using F-Droid for Android apps

by technewshero
December 15, 2020
in Apps
0
Fight Android malware by quitting Google Play and using F-Droid for Android apps
Share on FacebookShare on Twitter

F-Droid

Things haven’t been looking great for Android users’ privacy recently. After Google purged 50 malicious apps from its Play store with upward of 25 million downloads a couple of years back, another 200 Android apps were found infected with malware in March, followed by July’s discovery of 1,000-plus Android apps harvesting data even after you deny permissions and a Chrome extension security meltdown in May. 

It’s a good time to check your phone for malicious apps. And an even better time to take F-Droid for a spin, the security-focused Android app marketplace that replaces the Google Play store with a catalog of installable Fully Open Source Software (FOSS). 

Once you’ve done that, consider the words of Serge Egelman, the director of usable security and privacy research the International Computer Science Institute, which found 1,325 malicious Android apps.

“Fundamentally, consumers have very few tools and cues that they can use to reasonably control their privacy and make decisions about it,” Egelman said earlier this year. “If app developers can just circumvent the system, then asking consumers for permission is relatively meaningless.”

With so few tools, you can consider wielding one of the most effective ones — opting out of the Google Play store.

Is F-Droid safe?

While Google Play promises to scan its apps, the outbreak of malware found in their software proves that no app repository is ever 100% safe. 

But as an open-source project, F-Droid shows us their math: None of the applications found within the catalog include tracking or hidden costs, a community of developers are easily able to examine source code to spot suspicious behavior and F-Droid has rigorously documented its own external security audits and has established a history of addressing vulnerabilities. If F-Droid sees apps with potentially non-compliant features, they get flagged. 

Not incidentally, sticking purely to open source apps means an F-Droid app left unsupported by a developer is not necessarily a death sentence for any personal data you might want to save. 

On the privacy front, F-Droid has numerous precautions: It sends everything over HTTPS, avoids leaking app search and browsing data, supports Tor, and includes all supported languages in its metadata so its servers don’t even know what language you’re speaking.

With an eye toward security concerns, CNET previously reconsidered its recommendations on sideloading third-party Android apps or APK (Android’s app file-package that includes executables comparable to Windows’ EXE files) which aren’t officially supported by Google. But $5 billion worth of antitrust damages have a way of putting things into perspective. 

Times have changed. Besides F-Droid, there are other non-Google app store competitors not seen on the Play store, including Amazon’s Appstore and Samsung’s Galaxy Apps. And they all operate with varying degrees of data security. Staying safe is no longer a matter of sticking with the biggest brands on the block; it’s about upping your scrutiny and layering your security.

F-Droid is among the most scrutinized Play store alternatives we can advise. So have a critical look at its security model to judge F-Droid for yourself, and review its most recent security audit. 


Now playing:
Watch this:

Loads of Android apps are skirting privacy controls



1:12

How do I install F-Droid?

If you want to download F-Droid, you won’t find it on the Play store. Instead, you can download it directly from the F-Droid site. Once prompted by your phone, confirm installation and you’re ready to browse. If you want a visual tour of the two-click install, PrivacyPro has a screenshotted walkthrough (along with a list of their favorite starter apps). 

For those interested in finding the right privacy-focused apps, have a look at the F-Droid-approved Guardian Project. Their easy-to-use security app suite is the perfect place to begin building your data-safe mobile usage routine. 

If you’re using an older version of Android, you’ll need to allow software from unknown sources via System Settings. But if you’re running Android 8 Oreo (or later), you’ve got a handy new setting we recommend enabling which allows only certain apps (like F-Droid and the Play store) to install APKs. This keeps other applications such as email clients from silently installing malware via hijacked attachments.

We recommend that F-Droid adopters stick to APKs found F-Droid’s app store, in order to ensure you’re installing only those apps which have cleared a strict security screening. If you’d like to use both F-Droid and the Play store, we recommend enabling Google Play Protect if you haven’t already. 

It’s not a magic shield, but it acts as a first line of defense by tapping into Android’s suite of built-in security controls to screen apps you install from both inside and outside of the Play store. But, Play Protect isn’t enough. You should also use at least one of the other 16 non-Google security apps that outperformed Play Protect when AV Test fired 18,000 rounds of malware at them during last year’s marathon. 

F-Droid pros

  • Open source software offers better overall security odds.
  • A stringent security auditing process for apps ensure you don’t get tracked.
  • No hidden costs in apps, and greater customization of each app.

F-Droid cons

  • Without a visible rating system, you may have to poke around and experiment to find the best apps. 
  • There are only about 2,600 apps in F-Droid, compared to more than 2.5 million in the Play store. Worth noting here is a Play store filtration app approved by F-Droid, Yalp. It allows you to search Play store apps while filtering out those with ads, hidden costs and a history of blacklisting, and then directly download each app’s APK files from the Play store.
  • Most of your F-Droid apps will have to be manually updated, while Play store apps tend to be automatically updated. 

Google’s position

For those looking to stay within the bounds of the Play store, Android’s 31-page official 2019 security and privacy report may offer reason for optimism. Despite a reported 0.02% to 0.04% year-on increase in potentially harmful applications (PHAs) downloaded from the Play store, Google attributes much of this increase to improvements in its own tracking methods, including the wider implementation of Play Protect which it says now scans over 50 billion apps every day across more than 2 billion devices. Google has also taken seemingly good faith action in bouncing hundreds of thousands of malicious apps from its ranks, and says it tightened security further by rejecting 55% more apps’ requests to join the Play store. 

This year’s report also found that “only 0.08% of devices that exclusively used Google Play had one or more PHAs installed (unchanged from last year). In contrast, 0.68% of devices that installed apps from outside of Google Play were affected by one or more PHAs in 2018.”

CNET asked what portion of that 0.68% were F-Droid users, and whether Google had any further security advice for users who want to try out apps outside of the Play store. Google responded by redirecting CNET to a help center article, and advised users to download apps from the Google Play store to avoid risks to personal information.

Editors’ note: While using a third-party app store like F-Droid to get apps rather than the Google Play store can give you more control and better privacy and security, it also takes more diligence. It’s for power users. Installing any third-party apps on Android is still something you have to do at your own risk. So, make sure you’re comfortable taking that risk.

Previous Post

Google Maps adds an enormous arrow for the directionally challenged. Turn it on now

Next Post

Google is listening: Here’s how to delete your voice recordings

technewshero

technewshero

Related Posts

What you need to know about Snapchat’s Snap Map feature
Apps

What you need to know about Snapchat’s Snap Map feature

by technewshero
January 14, 2021
Make Spotify playlists with friends in Facebook Messenger
Apps

Make Spotify playlists with friends in Facebook Messenger

by technewshero
January 13, 2021
9 tips for getting started with Bixby Voice
Apps

9 tips for getting started with Bixby Voice

by technewshero
January 12, 2021
Use Facebook to find all the nearest Wi-Fi hotspots
Apps

Use Facebook to find all the nearest Wi-Fi hotspots

by technewshero
January 11, 2021
Go Ghost Mode on Snapchat by deleting your account
Apps

Go Ghost Mode on Snapchat by deleting your account

by technewshero
January 10, 2021
Next Post
Google is listening: Here’s how to delete your voice recordings

Google is listening: Here's how to delete your voice recordings

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Most Popular

Samsung TVs could ditch the bezel for an ‘infinite’ display – just like its smartphones

January 2, 2020
Hands-on with the first folding-screen laptop, the Lenovo X1 Fold – Video

Hands-on with the first folding-screen laptop, the Lenovo X1 Fold – Video

January 13, 2021

Wuhan Reports Zero Coronavirus Hospitalizations

April 27, 2020

Browse by Category

  • Apps
  • Gadgets
  • Gaming
  • Internet
  • Mobile
  • News
  • PC & Laptops
  • Security
  • Social
Tech News Hero

© 2020 Tech News Hero.

No Result
View All Result
  • Home
  • Landing Page
  • Buy JNews
  • Support Forum
  • Contact Us

© 2020 Tech News Hero.

Welcome Back!

Login to your account below

Forgotten Password?

Create New Account!

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?