You don’t need malicious apps for this, it’s common to use real crypto exchanges and get them to send you money. How does google’s approach solve that?
And here are apps straight from the App Store [0] that are outright scams. How dos this protect people from these?
[0]: https://arstechnica.com/information-technology/2023/02/pig-b...