CyberHappenings logo
☰

Google to Mandate Developer Verification for Android Apps in Four Countries

First reported
Last updated
📰 1 unique sources, 1 articles

Summary

Hide ▲

Google will require all developers distributing apps on Android in Brazil, Indonesia, Singapore, and Thailand to verify their identity. This measure aims to prevent malicious actors from distributing harmful apps. The verification process will start in October 2025 and become mandatory by September 2026. The initiative targets apps installed on certified Android devices, including those sideloaded from third-party marketplaces. It complements existing security measures to block potentially dangerous apps. Developers already verified through the Google Play Store will not be affected. The move follows Google's previous requirement for organizational developer accounts to provide a valid D-U-N-S number. It aims to enhance user trust and security while preserving user choice.

Timeline

  1. 26.08.2025 09:27 📰 1 articles

    Google to Mandate Developer Verification for Android Apps in Four Countries

    Google announced plans to require all developers distributing apps on Android in Brazil, Indonesia, Singapore, and Thailand to verify their identity. The verification process will start in October 2025 and become mandatory by September 2026. This measure targets all apps installed on certified Android devices, including those sideloaded from third-party marketplaces. The initiative aims to prevent malicious actors from distributing harmful apps and impersonating developers. Existing Google Play Store developers who are already verified will not be affected. The move complements existing security measures to block potentially dangerous apps.

    Show sources

Information Snippets

Similar Happenings

Google integrates C2PA Content Credentials in Pixel 10 for AI-generated photo verification

Google has integrated C2PA Content Credentials into the Pixel 10 camera and Google Photos to verify the authenticity of images. This technology helps users distinguish between authentic, unaltered images and those generated or edited with AI. Every JPEG photo captured by the Pixel 10 will automatically receive Content Credentials, revealing how the image was made. The system ensures transparency and trust in generative AI by recording the entire history of edits and providing cryptographic security guarantees. The technology works offline, is secure from external interference, and preserves user anonymity while maintaining verifiability. Google plans to expand this feature to more Android devices in the future. The Pixel Camera app achieved Assurance Level 2, the highest security rating currently defined by the C2PA Conformance Program. The capability is made possible using a combination of Google Tensor G5, Titan M2 security chip, and hardware-backed security features built into the Android operating system.

HOOK Android Trojan Expands Capabilities with Ransomware Overlays and 107 Remote Commands

A new variant of the HOOK Android banking trojan has been discovered, featuring ransomware-style overlay screens to extort victims. This variant supports 107 remote commands, including new capabilities for capturing user gestures, stealing cryptocurrency wallet information, and displaying fake NFC overlays. The trojan is distributed via phishing websites, bogus GitHub repositories, and malicious APK files, posing a significant threat to financial institutions and users. The HOOK trojan is believed to be an offshoot of the ERMAC banking trojan, which had its source code leaked publicly. The trojan can display fake overlays on financial apps to steal credentials and abuse Android accessibility services for fraud and remote control. The latest version of HOOK includes commands for ransomware overlays, capturing user gestures, and stealing sensitive information like credit card details and lockscreen PINs. It also features transparent overlays to capture user gestures and screen-streaming sessions for real-time monitoring.