Researchers find 204 “fleeceware” apps, which charge users extortionate subscription fees after enticing them with free trials, on Play Store and App Store
Free trials can cost mobile app users thousands of dollars in the long run. — Researchers have discovered hundreds …
Context & Ripple Effects
Fleeceware has been escalating since Sophos first flagged 25 apps on the Play Store abusing the free-trial mechanic, installed by more than 600 million users in early 2020, followed months later by over 30 apps on the App Store — some of the store's highest-grossing — doing the same thing. The new find of 204 apps across both stores shows the category roughly doubling its footprint rather than being stamped out.
It also extends a longer lineage: back in 2017 researchers caught Google Play apps that had quietly billed users via premium text-message charges before being removed. The abuse vector changed from hidden SMS billing to legal-but-predatory subscriptions — harder for stores to police precisely because it operates inside sanctioned payment flows.
First-order effects
- Users who accepted free trials face recurring extortionate charges, often running into thousands of dollars over time; Apple and Google come under immediate pressure to remove the flagged apps from the Play Store and App Store.
Second-order effects
- Both stores must tighten review of trial-to-subscription conversion mechanics, risking friction for legitimate subscription developers whose onboarding now gets scrutinized alongside the abusers.
- Sophos and other security vendors gain a repeatable research franchise — each disclosure cycle pressures the platforms to act where automated moderation missed the pattern.
Third-order effects
- If the pattern holds, app-store economics drift toward policing not just malware but predatory-yet-legal monetization, forcing Apple and Google to build policy around consumer harm rather than technical rule-breaking — a shift that echoes the earlier crackdowns on premium-SMS fraud.
- Sustained disclosures could push regulators toward treating dark-pattern subscription billing as a consumer-protection issue rather than a security one, widening accountability beyond the two storefronts to the subscription economy at large.
The trend: App-store abuse is migrating from covert technical exploits toward predatory use of sanctioned monetization features, with researcher disclosures setting the enforcement agenda faster than platform review can.