The Android security policy extends from the application level down to the kernel level, with user data and interprocess communication closely guarded and application signatures for applications hosted in the Play Store [3]. This means, for example, that users must explicitly grant permission to install an application from a non Google source or to let an application access their call history. This is accomplished by running each application in a sandbox that prevents it from accessing data outside of the sandbox or any of the underlying phone hardware.