Stock PRA-LX1C432B115 - SafetyNet test fails CTS profile match - P8 Lite (2017) Discussion

Hi All,
I'm running stock PRA-LX1C432B115 build on my HUAWEI P8 lite 2017 with unlocked bootloader. The phone is not root'ed. All is fine except I can't use Android Pay because the SafetyNet test fails CTS profile match. I've successfully factory reseted/restored my phone using eRecovery but even after that SafetyNet CTS profile test is not happy. Was thinking that maybe because my Android security patch level is from 1 February 2017 I might need newer build but System Update keeps telling me that I'm running the latest and greatest build. Do you have any suggestions how to fix the CTS profile match?
--
Cheers,
Piotr

Have you tested bootloader relock ?

Nico21621 said:
Have you tested bootloader relock ?
Click to expand...
Click to collapse
Indeed after bootloader relock SafetyNet is happy and so is Android Pay - Thank you! Does that mean there is no way of having a unlocked/rooted P8 lite 2017 that can use Android Pay?
--
Cheers,
Piotr

That influences I think. Check if you get the updates cheers

Nico21621 said:
That influences I think. Check if you get the updates cheers
Click to expand...
Click to collapse
Sadly, system update still claims there are no updates available. Might try to force update it from an sdcard tomorrow.

Related

[rom] ale-l21c432 b588/b589 ds/ss

Hello,
On servers Huawei appears new update for European location (C432) B588/B589 Dual and Single SIM
Changelog are here:
This update improves system security with Google security patches. [Optimizations] Improved device security with Google security patches.
B588 Dual Sim : http://update.hicloud.com:8180/TDS/data/files/p3/s15/G1084/g104/v72428/f1/full/update.zip
B589 Single Sim : http://update.hicloud.com:8180/TDS/data/files/p3/s15/G1084/g104/v72431/f1/full/update.zip
Anyone tested it? is 1 Ian 2017 patch?
Azzureux said:
Anyone tested it? is 1 Ian 2017 patch?
Click to expand...
Click to collapse
It probably has the Jan patch. I am downloading now but it takes for ever! I will await someone to report if this works.
yes it has 1 january patch
speedster_no1 said:
yes it has 1 january patch
Click to expand...
Click to collapse
Almost nearing halfway to downloading the file. Have you tested this version?
everything works fine
speedster_no1 said:
everything works fine
Click to expand...
Click to collapse
Download done. Will install later today and report back . One question though, is it really worth upgrading from B586 to this?
Is there any ui changes?
nope
Only security update, I can confirm that. Even changelog says that. If you care about Google security patches, then it's worth updating. If not - don't waste your time.
crashpoum99 said:
is it really worth upgrading from B586 to this?
Click to expand...
Click to collapse
I searched about it, the content of the security is all marked as critical.
So because of it, ill update my rom.
Updating now. I've noticed that the update numbers go +2 in every new update (B586+2=B588). The next update will be EMUI 4.1? I've seen on the builds that 4.1 is B890+. Anyone know anything regarding this?
crashpoum99 said:
Updating now. I've noticed that the update numbers go +2 in every new update (B586+2=B588). The next update will be EMUI 4.1? I've seen on the builds that 4.1 is B890+. Anyone know anything regarding this?
Click to expand...
Click to collapse
Well, Vodafone's EMUI 4.1 is marked as a B890, so... :d
Probably our non-branded will have a different number code, but in fact we don't know when it's gonna be released.
Gwozdem said:
Well, Vodafone's EMUI 4.1 is marked as a B890, so... :d
Probably our non-branded will have a different number code, but in fact we don't know when it's gonna be released.
Click to expand...
Click to collapse
Taking into consideration that B586 came in December and B588 in January, i am confident that when (if) B890 comes, it will be in February. Although i tried EMUI 4.1 on one of those custom roms, it isn't something really special. Just one step closer to nougat i guess (if that comes to our phone too )
Don't delude yourself - official Nougat (EMUI 5.0) won't come.
crashpoum99 said:
The next update will be EMUI 4.1? I've seen on the builds that 4.1 is B890+. Anyone know anything regarding this?
Click to expand...
Click to collapse
I dont think B890 is really a P8 Lite rom. I belife that its a rom from another Huawei phone ported in P8 Lite, branded as Vodafone to make ppl belive its for P8 Lite.
Personaly I dont belive we gonna get 4.1 emui.
Why you think like that? B890 was officially released by Vodafone through OTA...
There are many custom roms based on EMUI 4.1 for the P8 Lite. Even if what you say @Azzureux is true, 4.1 can work with the phone and will most likely will. From what i've read we will not get EMUI 5.0 but we will get EMUI 4.1 that will make use of some "ported back features" from EMUI 5.0. I don't know what that exactly means, but i guess we are gonna have to wait and see.
Cannot install TWRP after thge update. Any help.? Only once I finally got to install TWRP and entered the recovery but after reboot, there was no custom recovery, only the stock one ....
Because it's stock Rom and it includes stock recovery, which is overwrited on the custom one.

Magisk canary update enhancement for Mi 9?

As I've seen in the link below, there was just a Magisk update, supporting system-as-root properly now.
Since the mi 9 does use that partition set up, does the update bring any enhancement for our device?
Thanks in advance!
Have a nice day!
https://www.xda-developers.com/magisk-google-pixel-3-pixel-3a-android-q/
TobiPeter said:
As I've seen in the link below, there was just a Magisk update, supporting system-as-root properly now.
Since the mi 9 does use that partition set up, does the update bring any enhancement for our device?
https://www.xda-developers.com/magisk-google-pixel-3-pixel-3a-android-q/
Click to expand...
Click to collapse
For now, one of my banking apps is not showing "device modified" anymore, but Google Pay still does.

Official android 9.0 fail safetynet test

Today, out of curiosity, I installed the safetynet test application. I had a great surprise to see that my phone does not pass the official verification. It's a Huawei p30 pro, with no software changes. Can anyone tell me why this is happening on an original software?
alex_otopeni17 said:
Today, out of curiosity, I installed the safetynet test application. I had a great surprise to see that my phone does not pass the official verification. It's a Huawei p30 pro, with no software changes. Can anyone tell me why this is happening on an original software?
Click to expand...
Click to collapse
https://9to5google.com/2019/10/04/huawei-p30-pro-safetynet-failue/

hate for anti roll back...

hi I'm a European user, can I exit from the beta program and install the stable version?
No
Surely you can, but you must flash the stable version with the same level security patch, which is required by Google.
Meizu 16s Anti-Rollback
sukanka said:
Surely you can, but you must flash the stable version with the same level security patch, which is required by Google.
Click to expand...
Click to collapse
Right what you say, but it will pass on a stable firmware version where GPay will not work in the first place.

Question MIUI V13.0.12 CTS FAIL HARDWARE_BACKED

If you happen to have a Redmi Note 10 Pro (SWEET) with the latest ROM: sweet_global_images_V13.0.12.0.SKFMIXM_20220801.0000.00_12.0_global,
Can you please check these applications and post the results?
https://play.google.com/store/apps/details?id=rikka.safetynetchecker YASNAC
and
https://play.google.com/store/apps/details?id=gr.nikolasspyr.integritycheck Play Integrity api checker.
Because I can't understand why I have only one green on Play integrity checker and CTS fail on YASNAC.
This can be helpful for everyone.
And lead to a better understanding of the checking process.
I suspect that xiaomi did something wrong and the lates rom is not certified.
Zibri said:
If you happen to have a Redmi Note 10 Pro (SWEET) with the latest ROM: sweet_global_images_V13.0.12.0.SKFMIXM_20220801.0000.00_12.0_global,
Can you please check these applications and post the results?
https://play.google.com/store/apps/details?id=rikka.safetynetchecker YASNAC
and
https://play.google.com/store/apps/details?id=gr.nikolasspyr.integritycheck Play Integrity api checker.
Because I can't understand why I have only one green on Play integrity checker and CTS fail on YASNAC.
This can be helpful for everyone.
And lead to a better understanding of the checking process.
I suspect that xiaomi did something wrong and the lates rom is not certified.
Click to expand...
Click to collapse
Redmi Note 10 Pro GlobalStable BetaRecoveryV13.0.12.0.SKFMIXM12.03.4 GB2022-08-05
Unlocking bootloader leads to CTS failing. But if you have locked bl and you fail CTS then yeah idk what's the problem, maybe format can help.
NOSS8 said:
Redmi Note 10 Pro GlobalStable BetaRecoveryV13.0.12.0.SKFMIXM12.03.4 GB2022-08-05
Click to expand...
Click to collapse
???
I tried both STOCK MIUI 13.0.12 both 13.0.8.
I always get that the device is not certified.
Reflashed everything.
Zibri said:
I tried both STOCK MIUI 13.0.12 both 13.0.8.
I always get that the device is not certified.
Reflashed everything.
Click to expand...
Click to collapse
it is because the bootloader is unlocking.
Install a Xiaomi Eu rom
https://xiaomi.eu/community/threads/miui-13-stable-release.64441/
Zibri said:
???
Click to expand...
Click to collapse
STABLE BETA is not STABLE
tried now.. it checks out fine only if the bootloader is locked and everything is untouched.
Mine's rooted, MAGISK. YASNAC all good, but fails 'MEETS STRONG INTEGRITY' IN other one
NOSS8 said:
STABLE BETA is not STABLE
Click to expand...
Click to collapse
I got v13.0.13 on o stock Redmi Note 10 Pro after I had booted the phone for the first time with a locked bootloader fyi
RAMBO29 said:
Mine's rooted, MAGISK. YASNAC all good, but fails 'MEETS STRONG INTEGRITY' IN other one
Click to expand...
Click to collapse
Strong Integrity means Hardware backed. Theres no way to get that unless you relock the bootloader. No need to worry if you only pass Basic and Device Integrity, afaik only 3 apps seem to check for Strong Integrity API.
jnsson said:
I got v13.0.13 on o stock Redmi Note 10 Pro after I had booted the phone for the first time with a locked bootloader fyi
Click to expand...
Click to collapse
V13.0.13.0.SKFEUXM is a stable beta too.
NOSS8 said:
V13.0.13.0.SKFEUXM is a stable beta too.
Click to expand...
Click to collapse
Ive been running this version over a month now, All the tests ive done show that although its listed as stable the Battery life is less than previous Miui versions. Perhaps thats not a bug, maybe something changed in the firmware.
gazza35 said:
Ive been running this version over a month now, All the tests ive done show that although its listed as stable the Battery life is less than previous Miui versions. Perhaps thats not a bug, maybe something changed in the firmware.
Click to expand...
Click to collapse
It shows as stable on the phone but look at my link.
For a few years, Xiaomi has provided stable beta builds on the stable circuit, but sometimes the beta version doesn't have too many bugs but sometimes a lot.
Sometimes also the stable beta version is renamed to stable without any changes with or without bugs.
redmi note 10 pro autoupdates 12.5.9 to 13.0.12.0. And that's not a beta... it probably was.
Anyway, with unlocked bootloader and magisk, even with safetynet fix 2.3.1 it passes only BASIC and not even device integrity.
Same goes for 12.5.9 ... they must have changed something.

Categories

Resources