• Keith@lemm.ee
    link
    fedilink
    English
    arrow-up
    59
    arrow-down
    1
    ·
    8 months ago

    As someone who uses root (not at the moment but plans to) as I believe in owning my devices, fully, this is horrible. We still need to oppose this.

    • LiveLM@lemmy.zip
      link
      fedilink
      English
      arrow-up
      41
      ·
      edit-2
      8 months ago

      I know right? The article touches on this:

      Google said the inspiration for the original Web Integrity project was Android’s Play Integrity API, which already scans your phone for root privileges and denies access to things

      ^^^ this should have never, ever been a thing!

      • 0xD
        cake
        link
        fedilink
        English
        arrow-up
        2
        arrow-down
        6
        ·
        8 months ago

        That is just standard and a completely sensible security measure for preventing people from tampering with an application. It cannot replace proper, server-side security measures but is a big step. Especially for stuff like banking applications.

    • SkyeStarfall@lemmy.blahaj.zone
      link
      fedilink
      English
      arrow-up
      20
      ·
      8 months ago

      The problem with root is that banking applications and many others straight up actively try to detect it and refuse to work if you are rooted. Android is in the process of being completely locked down.

      • limerod@reddthat.com
        link
        fedilink
        English
        arrow-up
        19
        ·
        8 months ago

        Not just root. Some even detect if you have usb debugging enabled and warn or refuse to work unless you turn that off.

        • limerod@reddthat.com
          link
          fedilink
          English
          arrow-up
          3
          ·
          8 months ago

          What’s the workaround for apps detecting usb debuging or other user apps on your device? I’m not rooted, but use shizuku and WiFi adb for certain features on my android.

        • SkyeStarfall@lemmy.blahaj.zone
          link
          fedilink
          English
          arrow-up
          2
          ·
          edit-2
          8 months ago

          Last si rooted there were also workarounds, but they didn’t always work, relying on the workarounds being updated to fight ever more advanced detection methods. It was a cat and mouse chase.

          • glorious_puffy@lemmy.world
            link
            fedilink
            English
            arrow-up
            1
            ·
            8 months ago

            Apps I use work fine with vanilla magisk. If there are apps detecting root even after enabling zygisk, use magisk delta and enable magisk hide

        • Pips@lemmy.sdf.org
          link
          fedilink
          English
          arrow-up
          1
          ·
          8 months ago

          The biggest continuing issue is NFCs, which will require people to accept that non-stock OSes are perfectly fine.

      • sadreality@kbin.social
        link
        fedilink
        arrow-up
        4
        ·
        8 months ago

        Switched to web browser…

        These apps are fucking obnoxious.

        Google wants you to pay for hardware but they get to control it because they can’t trust you lol

        • BearOfaTime@lemm.ee
          link
          fedilink
          English
          arrow-up
          2
          ·
          8 months ago

          Yep, never have a root issue if you access a baking service via a browser.

          And with apps like Hermit you can make a web page very app-like.