Only 3 of the top 150 Android apps can detect reverse engineering tool Frida — here's why that's bad

Green skull on smartphone screen.
(Image credit: Shutterstock)

A recent analysis of the 150 top Android apps by Norwegian cybersecurity firm Promon found that 144 of them could be successfully configured to operate within the controlled testing environment of the reverse engineering tool Frida. Only three of the apps tested actively detected Frida’s presence and shut down or limited functionality.

What does that mean? Well, it means that roughly 97% of the most popular Android apps are vulnerable to exploitation by threat actors and have a security gap that needs to be addressed.

The cybersecurity experts involved were surprised to find that so few of the top apps tested were protected from common hooking framework, and the reports findings state that this “underscores the need for increased awareness and proactive security measures within the Android development community.”

Unfortunately, the apps tested were not named in the report, however they were the most popular apps based on monthly active users as of November 2024 – with more than 550 million users daily and 206 million monthly users on average.

How to stay safe

A hand holding a phone securely logging in

(Image credit: Google)

In order to stay safe from malicious apps and other mobile threats, you should always keep your phone up to date by installing the latest updates as soon as they become available. In addition to its operating system though, you also want periodically update all of your apps too.

For an added layer of protection, you want to make sure you've got one of the best Android antivirus apps installed on your phone as well. They can help remove malware, flag suspicious activity like fraud and phishing attempts and provide you with a secure VPN or even a password manager. If you're on a tight budget though, Google Play Protect can help keep your phone safe from bad apps and best of all, it comes pre-installed on all of the best Android phones.

Now that Promon has found that so many of the most popular apps can be used with Frida by attackers in addition to security researchers, expect the makers of this security tool to add additional safeguards to it soon.

More from Tom's Guide

Amber Bouman
Senior Editor Security

Amber Bouman is the senior security editor at Tom's Guide where she writes about antivirus software, home security, identity theft and more. She has long had an interest in personal security, both online and off, and also has an appreciation for martial arts and edged weapons. With over two decades of experience working in tech journalism, Amber has written for a number of publications including PC World, Maximum PC, Tech Hive, and Engadget covering everything from smartphones to smart breast pumps.