Also this week we have heard about a new Malware called 'NotCompatible', As android is a sandboxed system it relys on tricking the user that it is a legitimate system update, Trying to get you to install an APK file.
I don't think there's much Google can do about the second one, as its the user installing an APK, not from the play store
But I think perhaps Google should get stricter with what apps are allowed in their store, Maybe Apple's way was the right way to do it. Make sure apps aren't misusing our data and can justify the use for their permissions, and lets be honest alot of android apps are CRAP.
