Reading is great. Tracking makes it stick. Sign up for a free Dashboard to tick off tasks and see your Security Score.
Get my free Dashboard →Recognising and avoiding fake apps
Fake apps mimic legitimate applications to steal your data, harvest passwords, or display fraudulent adverts. They appear on Google Play and on unofficial sites. This guide explains how to spot them before you install, and what to do if you already have one on your device.

What are fake apps?
Fake apps are malicious applications disguised as legitimate ones. They may impersonate banking apps, popular games, antivirus tools, or utility apps. Some slip through Google Play's defences; many are distributed via phishing links, unofficial stores, or social media adverts.
- Fake banking apps are particularly dangerous: they steal login credentials in real time
- Fake antivirus apps often do the opposite: they install malware
- Some fake apps work as advertised but secretly collect your data in the background
How to spot a fake app
Before installing any app, check these things:
- Developer name: verify it matches the official developer, search online if unsure
- App listing URL: on the web, a genuine app's Play Store URL includes the package name (e.g. com.companydomain.appname)
- Number of reviews vs downloads: a banking app with millions of users should have thousands of reviews
- Negative reviews mentioning fraud, data theft, or the app behaving unexpectedly
- Screenshots that look low quality, blurry, or copied from a different app
- Permission requests that make no sense (a calculator asking for your contacts)
Checklist before downloading
Run through this before installing any app you are not certain about:
- Search the company's official website: does it link to this exact app on Google Play?
- Check the developer name and compare it with the real company's name
- Look at the "similar apps" section: are they all clearly fake?
- Read the most recent one-star reviews in detail
- Check the "About this app" section for a link to a real privacy policy
What to do if you have installed a fake app
If you suspect an app is fake or malicious:
- Uninstall it immediately: Settings > Apps > [App name] > Uninstall
- Change your passwords for any accounts you accessed while the app was installed
- Enable 2FA on accounts if you have not already done so
- Run a Google Play Protect scan to check for other issues
- If you entered banking credentials, contact your bank and report potential fraud
- Report the fake app to Google: on its Play Store listing, tap the flag icon
Track your Android security progress. Free.
Create a free account to tick off tasks, see your Security Score improve, and know exactly what you've done and what's still to do.
Start your free security check