How Did That Get In My Phone? Unwanted App Distribution on Android Devices

AI-generated keywords: Study

AI-generated Key Points

The license of the paper does not allow us to build upon its content and the key points are generated using the paper metadata rather than the full article.

  • The study explores the prevalence and distribution of unwanted apps on Android devices.
  • Lesser-known distribution channels for unwanted apps include Web downloads, pay-per-install services, backup restoration, bloatware, and IM tools.
  • Between 10% to 24% of user devices encounter at least one unwanted app.
  • The Play market is the primary app distribution channel responsible for 87% of all installs and 67% of unwanted app installations.
  • Bloatware accounts for 6% of total installs and is a significant vector for distributing unwanted apps.
  • Backup restoration unintentionally allows unwanted apps to persist even after users replace their phones.
  • PPI-driven unwanted app distribution on Android is lower compared to Windows platforms.
  • Web downloads are infrequent but present a riskier proposition compared to alternative markets.
Also access our AI generated: Comprehensive summary, Lay summary, Blog-like article; or ask questions about this paper to our AI assistant.

Authors: Platon Kotzias, Juan Caballero, Leyla Bilge

17 pages, 3 figures, to be published at 42nd IEEE Symposium on Security and Privacy, 23-27 May 2021, San Fransisco, CA, USA

Abstract: Android is the most popular operating system with billions of active devices. Unfortunately, its popularity and openness makes it attractive for unwanted apps, i.e., malware and potentially unwanted programs (PUP). In Android, app installations typically happen via the official and alternative markets, but also via other smaller and less understood alternative distribution vectors such as Web downloads, pay-per-install (PPI) services, backup restoration, bloatware, and IM tools. This work performs a thorough investigation on unwanted app distribution by quantifying and comparing distribution through different vectors. At the core of our measurements are reputation logs of a large security vendor, which include 7.9M apps observed in 12M devices between June and September 2019. As a first step, we measure that between 10% and 24% of users devices encounter at least one unwanted app, and compare the prevalence of malware and PUP. An analysis of the who-installs-who relationships between installers and child apps reveals that the Play market is the main app distribution vector, responsible for 87% of all installs and 67% of unwanted app installs, but it also has the best defenses against unwanted apps. Alternative markets distribute instead 5.7% of all apps, but over 10% of unwanted apps. Bloatware is also a significant unwanted app distribution vector with 6% of those installs. And, backup restoration is an unintentional distribution vector that may even allow unwanted apps to survive users' phone replacement. We estimate unwanted app distribution via PPI to be smaller than on Windows. Finally, we observe that Web downloads are rare, but provide a riskier proposition even compared to alternative markets.

Submitted to arXiv on 20 Oct. 2020

Ask questions about this paper to our AI assistant

You can also chat with multiple papers at once here.

The license of the paper does not allow us to build upon its content and the AI assistant only knows about the paper metadata rather than the full article.

AI assistant instructions?

Results of the summarizing process for the arXiv paper: 2010.10088v1

This paper's license doesn't allow us to build upon its content and the summarizing process is here made with the paper's metadata rather than the article.

, , , , The study "How Did That Get In My Phone? Unwanted App Distribution on Android Devices" by Platon Kotzias, Juan Caballero, and Leyla Bilge delves into the prevalence and distribution of unwanted apps on Android devices. With billions of active devices, Android's popularity and open nature make it a prime target for malware and potentially unwanted programs (PUP). The research uncovers lesser-known distribution channels such as Web downloads, pay-per-install (PPI) services, backup restoration, bloatware, and IM tools. Using reputation logs from a major security vendor encompassing 7.9 million apps across 12 million devices between June and September 2019, the study reveals that between 10% to 24% of user devices encounter at least one unwanted app. The analysis distinguishes between malware and PUP instances, shedding light on their prevalence within the Android ecosystem. The research highlights the Play market as the primary app distribution channel responsible for 87% of all installs and 67% of unwanted app installations. Despite its dominance, the Play market boasts robust defenses against unwanted apps. Conversely, alternative markets distribute a smaller share of all apps but account for over 10% of unwanted apps. Bloatware emerges as a significant vector for distributing unwanted apps with 6% of total installs falling into this category. Moreover, backup restoration is identified as an unintentional distribution channel allowing unwanted apps to persist even after users replace their phones. The study estimates that PPI-driven unwanted app distribution on Android is lower compared to Windows platforms. Additionally, while web downloads are infrequent, they present a riskier proposition compared to alternative markets. Overall,this comprehensive investigation provides valuable insights into the diverse vectors through which unwanted apps infiltrate Android devices. By quantifying and comparing distributions across various channels, the study contributes to enhancing understanding and fortifying defenses against malicious software on one of the world's most widely used operating systems.
Created on 28 Jan. 2026

Assess the quality of the AI-generated content by voting

Score: 0

Why do we need votes?

Votes are used to determine whether we need to re-run our summarizing tools. If the count reaches -10, our tools can be restarted.

Similar papers summarized with our AI tools

Navigate through even more similar papers through a

tree representation

Look for similar papers (in beta version)

By clicking on the button above, our algorithm will scan all papers in our database to find the closest based on the contents of the full papers and not just on metadata. Please note that it only works for papers that we have generated summaries for and you can rerun it from time to time to get a more accurate result while our database grows.

Disclaimer: The AI-based summarization tool and virtual assistant provided on this website may not always provide accurate and complete summaries or responses. We encourage you to carefully review and evaluate the generated content to ensure its quality and relevance to your needs.