Hacker News new | ask | show | jobs
by yareally 4780 days ago
There's been a few mods out on xda for at least a year or two that let you fake most permissions per app so the app would think it was getting legit data and not just blindly crash if it was denied the data totally. I think one was built into MIUI and could also be used standalone. The other one I can't recall the name, but if I think of it I will edit my post in a bit. Both had their source out though so you could mod them.

Cyanogenmod 7 tried to totally deny permissions for apps and it was not a good idea. It resulted in apps crashing a lot. Also the reason they didn't continue to do it in Cyanogenmod 9 and 10. Faking permissions is definitely the way to go though.

edit: pdroid was the other (http://forum.xda-developers.com/showthread.php?t=1357056)

2 comments

Pdroid is fantastic. I waste time patching my ROM every time I need to upgrade with that tool. The amount of information you can disable or manipulate to hand to app providers is amazing.

I think Android would have much better cred in the geek community if this was standard, but the legal and business hoops it jumps around and out of make it a pipe dream. I will say when I meet Infosec guys in my area and show them that app, even the iPhone guys are impressed and want to know how to get it if they got Android phones.

What legal and business hoops are you talking about? I can't see any legal problem with Android letting me disable my own permissions...
Yeah, my problem is that I use stock, so no love there :/
Stock as in a Nexus device or stock as in some other OEM skinned device? You shouldn't have problems applying either if you're using stock vanilla AOSP and rooted. OEM skins (touchwiz/sense/etc) though are another thing since you don't have any source code to work off of without modding or using something like Cyanogenmod and they tend to mod a lot of the framework base. Pdroid's patches were to the framework_base part of the Android source from what I recall working with it before. Modding the Android source isn't too bad if you import it into Intellij IDEA or Eclipse though. If you have some questions about where to start, feel free contact me.
Nexus device, yep. I didn't know takju was AOSP, I thought AOSP is sort of the "base". I'll try to set up OpenPDroid (I think PDroid doesn't work with ICS), thank you!
Yeah, pdroid as in its Android 2.3 form is wont work. Before OpenPdroid, I had to manually merge changes into the ASOP source by hand and do a little tweaking. You should be all good with takju. I have a Verizon Galaxy Nexus (toro) and build AOSP fine with that.

All the proprietary binaries are on Google's site[1] for Nexus devices or can be pulled from your device under /vendor/ (in the past, google sometimes failed to put up a few like the camera or bluetooth so had to get those via your device or a trusted repository). Alternatively, you can pull them from a repository maintained by a some of the more well known Android ROM modders using the directions I put up here (https://github.com/yareally/android_proprietary_files). Also you'll have to get a google apps package (or alternatively build it yourself) if you compile AOSP since you won't have access to the Android Market and such otherwise (stock AOSP resembles what you get in the emulator). A premade google apps package I would trust (and use myself when I don't want to build my own) can be located on goo.im[2]. They'll say Cyanogenmod, but they'll work for stock AOSP just the same.

[1] https://developers.google.com/android/nexus/drivers

[2] http://goo.im/gapps

Oh hum, so, from what I understand, I need to use AutoPatcher(?) to patch my stock ROM and install that. Doesn't that mean that all my data will be wiped?

This sounds like a huge hassle to install a privacy manager, I'd be okay with installing a small patch, but wiping my phone quickly ventures into "not worth it" territory :/

You can back up your data first before unlocking your bootloader and such (https://play.google.com/store/apps/details?id=com.koushikdut...). Works without even being rooted since it's a wrapper around the built in backup Android implemented since Android 4.0.

After that, you unlock via running a simple command which will let you flash your own compiled rom (alternative, you can unlock and then root and patch as you mentioned after unlocking the bootloader, but unlocking is the first step for either solution).

After backing up, run from your pc command line (you need the android sdk platform-tools first):

fastboot oem unlock

↑ that will wipe all your data and put it back in the state you got it initially, so make sure to back up first. More info on that can be found in the link below ↓

To go beyond that and root, you can find all the info you need here (http://rootzwiki.com/topic/12013-how-to-step-by-step-oem-unl...). I'm an admin on that site so if you have questions, someone will post and reply or I may if I'm not busy.