bitwarden / mobile

Retired Bitwarden mobile app for iOS and Android (MAUI/Xamarin).
https://bitwarden.com
GNU General Public License v3.0
20 stars 2 forks source link

Bitwarden Autofill blocking Estonian Mobile-ID "OK" button #728

Open OeJnMSIATkfcjljwOzfs4LCQRU577ovOCUCBeb8 opened 4 years ago

OeJnMSIATkfcjljwOzfs4LCQRU577ovOCUCBeb8 commented 4 years ago

Phone: Samsung Galaxy S10 with February patch. Bitwarden 2.3.0 (2173)

Estonian Mobile ID (tied to SIM card) uses Android SIM toolkit. It's not really an app itself, just an icon (named after carrier: Elisa).

The problem is that this SIM Toolkit thing is widely used in Estonia: it allows to sign documents, logging into internet bank... you name it! With latest Bitwarden beta, there has been change regarding Accessibility service. It's now replaced with Popup overlay. This in turn blocks OK button, so you practically can not submit the PIN code (Enter on keyboard does not work).

Screenshot_20200212-201859_SIM toolkit

20200212_202658

Could you universally exclude this app? So that login/password is not offered. It's really important I think! It could be different story with other Android phones, as they might have different SIM Toolkit UI.

pPmnBRRYhIemiuiy3VBYULJIzQyZaEvWMbCPH1P commented 4 years ago

Can you just un-focus the input field and it the overlay will go away?

OeJnMSIATkfcjljwOzfs4LCQRU577ovOCUCBeb8 commented 4 years ago

Can you just un-focus the input field and it the overlay will go away?

Unfortunately no. Pressing anywhere in the UI doesn't do anything. Plus even the ... menu on top-right hides BW for as long as you keep it open. You can not press "OK" while that menu is open. And as soon as you close it, BW appears.

OeJnMSIATkfcjljwOzfs4LCQRU577ovOCUCBeb8 commented 4 years ago

image

Just for reference: here's the same window, on Oneplus 5T (latest updates).

ieQOZIBVJEPjfMBbkyhpPORIFjYxAIpdkg5cEOq commented 3 years ago

Hey, I had the same issue and just wanted to confirm that PR #730 really did solve the issue. Adding "androidapp://com.android.stk" URI to the blacklist did the trick.

0SOKIqL69KNDs5RM78nh4VaqXU2rIO2SVnFqwvW commented 2 years ago

Same thing happening with Norwegian bankID prompts: https://github.com/bitwarden/mobile-maui/issues/1816