symbuzzer / systemless-hosts-KernelSU-module

Required module to use applications such as AdAway on KernelSU and APatch
GNU General Public License v3.0
346 stars 10 forks source link

using this module trigger root detection in Banking App #3

Closed collisee closed 1 year ago

collisee commented 1 year ago

Like the title said, the module trigger root detection in banking app somehow, specifically Vietcombank.

I'm using the lastest KernelSU + systemless host Screenshot_20230721-160909_VCB Digibank~2

The text in the screenshot translate to: "Applications running on Root devices may pose a security risk. Please check the device again."

ashoktvm commented 1 year ago

I am also facing the same issue. App I use is YONO SBI

symbuzzer commented 1 year ago

@ashoktvm @collisee Can u try to uninstall manager temp. and try again?

collisee commented 1 year ago

@ashoktvm @collisee Can u try to uninstall manager temp. and try again?

nope, it didn't work

symbuzzer commented 1 year ago

@collisee So uninstalling this module fixes problem? I want to be sure it caused from module or not

collisee commented 1 year ago

@collisee So uninstalling this module fixes problem? I want to be sure it caused from module or not

yes, it did solve the problem

symbuzzer commented 1 year ago

Please use displax's safetynet fix mod for now: https://github.com/Displax/safetynet-fix/releases/tag/v2.4.0-MOD_2.0

@HuskyDG

collisee commented 1 year ago

Please use displax's safetynet fix mod for now: https://github.com/Displax/safetynet-fix/releases/tag/v2.4.0-MOD_2.0

@HuskyDG

It still didn't solve the issue.

Screenshot_20230722-103017_KernelSU Screenshot_20230722-103115_VCB Digibank

collisee commented 1 year ago

Please use displax's safetynet fix mod for now: https://github.com/Displax/safetynet-fix/releases/tag/v2.4.0-MOD_2.0

@HuskyDG

Using HuskyDG's Overlay Unmount worked for me, it may cause bootloop when using Font Changer module (Ex: Oh My Font) https://github.com/HuskyDG/ksu_unmount_injector

symbuzzer commented 1 year ago

I will compare both modules and try to fix, thanks

collisee commented 1 year ago

I will compare both modules and try to fix, thanks

shall I close this issue now?

symbuzzer commented 1 year ago

No. Can you check something for me? Remove font plugin and install HuskuDG's hosts module. Check if safetynet status changed

collisee commented 1 year ago

No. Can you check something for me? Remove font plugin and install HuskuDG's hosts module. Check if safetynet status changed

idk what do you mean by HuskyDG's hosts module. Installing this module did not change SafetyNet status

Screenshot_20230722-141119_Yet Another SafetyNet Attestation Checker

symbuzzer commented 1 year ago

Meant https://github.com/HuskyDG/ksu_unmount_injector

collisee commented 1 year ago

I already removed the font module, the font used in the screenshot is provided by the rom and yes, remove font module and install HuskyDG's module didn't change the SafetyNet status

symbuzzer commented 1 year ago

Okey thanks, will try to fix with his codes without unmount feature

ashoktvm commented 1 year ago

@collisee So uninstalling this module fixes problem? I want to be sure it caused from module or not

No need to uninstall it. just disabling it makes banking apps work

Sorry for the late reply. Haven't seen the discussion. Anyway @symbuzzer hope u find the issue and fix it

ashoktvm commented 1 year ago

Please use displax's safetynet fix mod for now: https://github.com/Displax/safetynet-fix/releases/tag/v2.4.0-MOD_2.0 @HuskyDG

Using HuskyDG's Overlay Unmount worked for me, it may cause bootloop when using Font Changer module (Ex: Oh My Font) https://github.com/HuskyDG/ksu_unmount_injector

It broke another module named Myui5 dialer for me

collisee commented 1 year ago

try disable umount module in MyUI5 Dialer profile? Screenshot_20230722-152734_KernelSU

ashoktvm commented 1 year ago

try disable umount module in MyUI5 Dialer profile? Screenshot_20230722-152734_KernelSU

It doesn't show in apps section to do that

Edit: Sorry it shows in system apps and that option is disabled to select or deselect

collisee commented 1 year ago

did you enable show system app Screenshot_20230722-160058_KernelSU

ashoktvm commented 1 year ago

did you enable show system app Screenshot_20230722-160058_KernelSU

Just tried instakking the module u mentioned again and now the dialer doesn't even show in apps section

collisee commented 1 year ago

I don't use MyUI Dialer so I can't help you with this. Wait for the fix I guess

collisee commented 1 year ago

Edit: Sorry it shows in system apps and that option is disabled to select or deselect choose "custom" first and you can disable the option

ashoktvm commented 1 year ago

I don't use MyUI Dialer so I can't help you with this. Wait for the fix I guess

I had to disable the kernelsu unmount module, Rebooted and disabled unmount modules and then enable kernel su unmount module and now it worked. Thanks for the help

ashoktvm commented 1 year ago

But the dialer app keeps closing. So looks like I have to wait for the fix

symbuzzer commented 1 year ago

@ashoktvm @collisee can you check this test release? https://github.com/symbuzzer/systemless-hosts-KernelSU-module/releases/download/v1.1.0/systemless-hosts-KernelSU-module.zip

collisee commented 1 year ago

it worked perfectly for me, tysm for your work man

symbuzzer commented 1 year ago

You gave me wrong feedback. v1.1.0 breaks safetynet :( Re-opening the issue...

collisee commented 1 year ago

I didn't know man, I was using SafetyNet Universal fix

ashoktvm commented 1 year ago

You gave me wrong feedback. v1.1.0 breaks safetynet :( Re-opening the issue...

Yeah was just about to post that

ashoktvm commented 1 year ago

I didn't know man, I was using SafetyNet Universal fix

Safetynet fix also fails after installing 1.1.0

collisee commented 1 year ago

Screenshot_20230723-000012_Yet Another SafetyNet Attestation Checker

ashoktvm commented 1 year ago

IMG_20230722_223512_248.jpg

IMG_20230722_223512_923.jpg

symbuzzer commented 1 year ago

@collisee please uninstall universal safetynet fixer before reporting. @ashoktvm I see, please update v1.1.1 and wait for fix.

collisee commented 1 year ago

idk man, it worked on my device, that's why I said It worked perfectly. Weird Screenshot_20230723-000744_Yet Another SafetyNet Attestation Checker Screenshot_20230723-000737_KernelSU

collisee commented 1 year ago

@collisee please uninstall universal safetynet fixer before reporting. @ashoktvm I see, please update v1.1.1 and wait for fix.

sorry for the confusion

symbuzzer commented 1 year ago

can u send me apks or apk download links (not google play link) of triggered apk's please for testing? @ashoktvm @collisee

collisee commented 1 year ago

https://mega.nz/file/1ck2wLiT#uX6J9zD3FN5ujsksLU_A6asp1AvN0aus9tSf2QqfBJk

ashoktvm commented 1 year ago

can u send me apks or apk download links (not google play link) of triggered apk's please for testing? @ashoktvm @collisee

https://yono-sbi-the-mobile-banking-and-lifestyle-app.en.softonic.com/android

symbuzzer commented 1 year ago

can u send me apks or apk download links (not google play link) of triggered apk's please for testing? @ashoktvm @collisee

https://yono-sbi-the-mobile-banking-and-lifestyle-app.en.softonic.com/android

it is redirecting to google play store

ashoktvm commented 1 year ago

can u send me apks or apk download links (not google play link) of triggered apk's please for testing? @ashoktvm @collisee

https://yono-sbi-the-mobile-banking-and-lifestyle-app.en.softonic.com/android

it is redirecting to google play store

https://m.apktoy.com/download/com.sbi.lotusintouch_1.23.47_free.html

symbuzzer commented 1 year ago

These applications detect the changes made by overlyfs. So, we should continue the road with horses. I started to prepare another module, one that works with a completely different method. It will probably be named "AdAway KernelSU Helper". Want to test it when it's ready?

ashoktvm commented 1 year ago

These applications detect the changes made by overlyfs. So, we should continue the road with horses. I started to prepare another module, one that works with a completely different method. It will probably be named "AdAway KernelSU Helper". Want to test it when it's ready?

Sure. But adaway hosts not getting enabled after installing 1.1.1

symbuzzer commented 1 year ago

These applications detect the changes made by overlyfs. So, we should continue the road with horses. I started to prepare another module, one that works with a completely different method. It will probably be named "AdAway KernelSU Helper". Want to test it when it's ready?

Sure. But adaway hosts not getting enabled after installing 1.1.1

Uninstall and install again please. Waiting your report sir...

ashoktvm commented 1 year ago

These applications detect the changes made by overlyfs. So, we should continue the road with horses. I started to prepare another module, one that works with a completely different method. It will probably be named "AdAway KernelSU Helper". Want to test it when it's ready?

Sure. But adaway hosts not getting enabled after installing 1.1.1

Uninstall and install again please. Waiting your report sir...

Uninstall adaway or module?

symbuzzer commented 1 year ago

These applications detect the changes made by overlyfs. So, we should continue the road with horses. I started to prepare another module, one that works with a completely different method. It will probably be named "AdAway KernelSU Helper". Want to test it when it's ready?

Sure. But adaway hosts not getting enabled after installing 1.1.1

Uninstall and install again please. Waiting your report sir...

Uninstall adaway or module?

module. uninstall, reboot, install

ashoktvm commented 1 year ago

Uninstalled adaway and reinstalled didn't help Uninstalled 1.1.1 and reinstalled 1.1.1 helped

symbuzzer commented 1 year ago

@ashoktvm @collisee Please use dirty-fix for now: https://github.com/symbuzzer/adaway-kernelsu-helper

ashoktvm commented 1 year ago

@ashoktvm @collisee Please use dirty-fix for now: https://github.com/symbuzzer/adaway-kernelsu-helper

Phone is boot looping. I am using nameless rom

symbuzzer commented 1 year ago

@ashoktvm @collisee Please use dirty-fix for now: https://github.com/symbuzzer/adaway-kernelsu-helper

Phone is boot looping. I am using nameless rom

Delete data/adb/modules/adaway-kernelsu-helper folder from TWRP's file managere