Google Play’s Early Access program is being used to promote potentially deceptive reward games and utilities, according to a September 10 report from Bitdefender. The practical catch is easy to miss: feedback on early-access and beta apps is private to the developer, so an empty public review section cannot reassure you that promised cash payouts work. [1] [2]
This concerns Android users following advertisements into unfinished apps, especially offers of money for playing or watching videos. Early Access is a legitimate testing program. Its label alone does not establish that an app is fraudulent, contains malware, or has stolen money.
What the researchers found
Bitdefender describes suspicious reward and casino-style apps promoted through social media, including celebrity deepfake advertisements. In the reported pattern, virtual rewards accumulate quickly at first, progress slows near a withdrawal threshold, and advertising continues without the expected payout. The investigation also found familiar game names used by unrelated listings and later changed. Bitdefender says it notified Google, which confirmed it was investigating. The report does not establish a loss total or a current verdict for every similarly named app.

A store listing and a balance displayed inside a game answer different questions. The listing shows where software is distributed; the balance shows what its interface claims. Neither is evidence that cash has reached an account you control. The useful check is the identity and terms behind the offer, not the speed at which a counter rises.
Why you cannot warn other users with a review
Google distinguishes unreleased early-access apps from beta versions of already released apps. Its help page explains that feedback from testers is visible only to the developer. That supports legitimate product testing, but it means a disappointed tester’s feedback is not a public warning for the next person. [2]
Also distinguish a program status from words in an app’s title: a developer can put “Early Access” in a name. Check the actual listing and testing information. Missing stars, by themselves, are neither proof of fraud nor proof of approval.
What to check before spending more time
- Identify the exact app. Save its Google Play link, developer name, the advertisement and the cash-out terms. A familiar title or celebrity face is not enough to identify the publisher.
- Separate entertainment from an income promise. If you would not play without the promised payout, do not keep watching ads just because you have already invested time. An on-screen balance is not a reason to provide account credentials or verification codes.
- Review the access you granted. A reward claim does not explain why a simple game needs contacts, messages or control of the screen. Our app-safety checklist explains how to inspect permissions and developer identity.
- Report misleading behavior to Google. Use Google’s app-reporting route and describe the mismatch between the advertisement, listing and actual behavior. Private beta feedback and a policy report serve different purposes. [3]
If you installed an app you no longer trust, preserve the identifying details, revoke unnecessary access and uninstall it. If you also shared a password or payment information, address that exposure separately through the affected service’s official app or support channel. Uninstalling an app does not undo information already submitted. A missing payout alone is not a diagnosis of device infection.
References
- Silviu Stahie. “Google Play’s Early Access program may be exploited by potentially deceptive apps.” Bitdefender, September 10, 2026. Research report.
- Google. “Try new Android apps before their official release.” Google Play Help, accessed September 11, 2026. Early access and private feedback.
- Google. “Flag an app or review on Google Play.” Google Play Help, accessed September 11, 2026. Report an app.

