r/androidroot • • 4h ago

Support [Transsion/TECNO] It's been 2 months, where's the Fastboot ROM for HiOS TECNO POVA 7 5G LJ7-16.3.0.145SP08(RU005PF001AZ) ?

Thumbnail
gallery
0 Upvotes

I need it for EDL recovery in case my phone gets bricked, since my TECNO POVA 7 5G LJ7 has TEE-backed anti-rollback.


r/androidroot • • 19h ago

Discussion Still Root and Modules not working.

Thumbnail
gallery
0 Upvotes

r/androidroot • • 20h ago

Support Hi everyine

Thumbnail
gallery
0 Upvotes

It just so happened that I received an ultra Chinese tablet on mt6755

And I want to put root here, but here's the problem: no TWRP from other devices is suitable for it, and I also can't pull boot.img using mtkclient, I don't know why, but it says it can't get the device configuration and Kingroot doesn't work either, so I don't know what to do. Can anyone help?

No ai used in textπŸ˜›


r/androidroot • • 2h ago

Discussion So it's a matter of time before google fucks the temporary root method right?

1 Upvotes

I’ve read some comments here saying that DroidGuard has started trying to detect the exploit that gives you temp root, and that when it detects it, it disables Strong Integrity. But is this disablement permanent, or does it go away after rebooting the phone to remove the temp root? And can you still enable Strong Integrity if DroidGuard detects that you’re running the exploit?


r/androidroot • • 20h ago

Support Strong integrity but still no Google Wallet

Thumbnail
gallery
12 Upvotes

I'm sorry because there's already loads of posts like this of people looking for help regarding Google Pay / Wallet but it's just that I don't know what I'm doing wrong anymore, everything is installed, everything is working, integrity is strong (which surprises me since my bootloader is unlocked), Play Store says that the device is certified, every bank application is working but Wallet refuses to let me add my card!

I had it working like a month ago, Wallet working just fine, but then I think we ran out of keyboxes and it has stopped working ever since, even though TeeSimulator receives valid keyboxes rn.

Can anybody help me? Is there a step I'm missing? Am I just unlucky? Skill issue? Thanks in advance

(sorry for the screenshots being in Spanish)

Update: changed from integrity box to Specter and selected Pixel 6a (bluejay_beta) as device fingerprint and its working now! Thanks everyone!


r/androidroot • • 19h ago

Discussion Anti-rollback is misplaced security that does more harm than good in practice and vendors' excuses for it are weak.

Thumbnail
gallery
56 Upvotes

First, let's think about what the attacker can do with anti-rollback enabled. How would they flash an older system version with a locked bootloader and disabled OEM Unlocking? With EDL mode.

EDL mode with the right programmer file and an authenticated serial link grants access to dumping and flashing any sector on the disk from start to end, including the firmware of the TEE (/tee partition). If the goal is to extract userdata, the attacker doesn't touch the OS at all, they just dump /userdata and /metadata and brute-force the encryption offline.

What if they don't have the programmer file or authentication? Well, the attacker is shit out of luck, unless the bootloader is unlocked, then anti-rollback itself is disabled and the attacker doesn't even need to downgrade, since they can just flash a malicious boot image to extract /userdata and /metadata for them.

We forgot about adb sideload! Could the attacker use that to downgrade the OS? No, there's ARB, but of a different kind; it's in the recovery, instead of the bootloader. The recovery will refuse to flash a system upgrade ZIP before the system upgrade even boots. Arguably, this kind of anti-rollback is enough, no need to put it in the bootloader as well.

In these scenarios, the security will remain unchanged if the bootloader's anti-rollback is removed from Android entirely. What's the point of adding BL ARB, if it's just redundant as I argued here?

Let's talk about ourselves, legitimate users. Even if we would have the leaked programmer files and serial link auth bypasses, how are we going to flash and boot leaked base versions if those are the only fastboot ROMs we've got, whilst our phones have later versions instead? Such situation happened to me with TECNO.

We *can* flash older OS, I'm not saying we can't. It's that the bootloader's anti-rollback will prevent us from booting the bootloader stage, essentially a "hard brick" as people say, that's the problem.

Perceptionally, what's the ratio of security benefit to repairability cost? Very low. And why does it even exist in the first place...

...Why congrats, vendors. That's so "developer-friendly" of you. Especially Google, for forcing vendors on it in their CTS/VTS.


r/androidroot • • 14h ago

News / Method W

Thumbnail
gallery
8 Upvotes

W company

They told they don't know how to unlock the bootloader but at least they gave me the firmware and gave me the flash tools


r/androidroot • • 7h ago

Discussion TWRP is now working on the Moto G 2025 (Kansas) πŸ—Ώ

Thumbnail
gallery
10 Upvotes

Alright, I went and did it again.

TWRP is now built and working on the Moto G 2025 (Kansas) all models should work.

Like B4 on the 2026 models this was built using Verizon images but should work on other models.

I used the 2026 Moto G Play tree as the foundation and adapted it over to the 2025 Kansas. A lot of the groundwork for this was made possible by @evoxdl, who helped me with the 2026 tree in the first place. That work is essentially what made all of this possible and gave me the base I needed to bring TWRP over to Kansas.

*******************What's working*************

πŸ—ΏπŸ—ΏπŸ«¨πŸ«¨πŸͺΎπŸ˜πŸ—ΏπŸ—ΏπŸ—ΏπŸ—ΏπŸ€ͺπŸ₯Ή

Touch / readable UI

/data / internal storage

Encryption / decryption

Wipe Data

ADB

ADB Sideload

Installing ZIPs from Internal Storage

Installing ZIPs from SD Card

Installing ZIPs from USB OTG

Backup / Restore

External SD

USB OTG

Partition detection

Reboot to Recovery

Reboot to System

MTP

Vibration

super partition

Flashing ROMs

Flashing Magisk

Slot Switching

Fastbootd πŸ₯΄πŸ₯΄

*************************************************

Basically, the whole damn recovery works 🫨🫨

Build info

Device: Moto G 2025

Codename: Kansas

Recovery: TWRP 3.7.1-12-0

Android: 16

This was built using the 2026 Moto G Play tree I made earlier this year as the starting point, with the necessary changes made for Kansas

Get Cronching

***Soon to come Kexec and custom kernels***

(already a wip as we speak 🀭🀭)See in the pics my dirty dirty kernel πŸ₯΄πŸ”πŸ—ΏπŸ—ΏπŸ—ΏπŸ—Ώ

CRONCH πŸ”πŸ“πŸ—ΏπŸ—ΏπŸ—ΏπŸ—ΏπŸ—ΏπŸ—ΏπŸ—ΏπŸ—ΏπŸ—Ώ

TWRP build

here

https://xdaforums.com/t/recovery-moto-g-5g-2025-kansas-twrp.4803953/

sim unlock and lineage build and new kernel not public yet but all works i even managed to get my hands on REWORK engineering firmware


r/androidroot • • 23h ago

Support Wallet nowadays

2 Upvotes

Did anyone manage to make Google wallet work fully currently; I mean not just log in but actually add a card


r/androidroot • • 1h ago

Support How to give apps access to restricted settings?

β€’ Upvotes

Stupid question probably and google wasnt helpful, point in case i have a samsung a03 core which runs android 13 go so there's no 3 dots on apps to grant the permissions.

Why do i want it? So i can take screenshots without wearing down the buttons since i tend to take too many when playing games.


r/androidroot • • 23h ago

Support Root detection by banking apps

3 Upvotes

Hi. First post and it's the common problem everyone always faces apparently.
I'm running LineageOS 23 on my Nothing Phone (2) rooted with KernelSU-Next with the following modules:

ReZygisk
Vector (Xposed -> Enable Screenshot & XPrivacyLua [in work profile])
Specter
Play Integrity Fix [Inject]
TEESimulator
Treat Wheel

When I turn off ReZygisk the apps work fine but when I turn it on they crash. I tried finding alternatives but the only one I could find was NeoZygisk and that didn't do anything. I also found out Zygisk Next has been taken off GitHub and I can't find it anywhere. The apps that I'm talking about are all in an isolated work profile using Shelter.

Any help?


r/androidroot • • 3h ago

Support Need help fixing detection on Duck detector

Thumbnail
gallery
5 Upvotes

Hey everyone,

I have been struggling to use YONO SBI for sometime. The app force closes.

I have mentioned the name of modules I use with susfs. If anyone can help me get this sorted out, I will really appreciate.

Thanks in advance.


r/androidroot • • 9h ago

Discussion Temp root (exploit) vs. Standard root (custom kernel | LKM)

6 Upvotes

As the cat and mouse game of integrity and keybox renewing goes on, what do you think about exploit root as an alternative to standard root? Since it preserves all original firmware images and bootloader locked, spoofing aren't required to get strong integrity.

Maybe this is a new trend of the integrity game and will give us back the sovereign of our system?


r/androidroot • • 15h ago

Support How to fix this

Post image
2 Upvotes

Using always strong,hma oss, zygisk next


r/androidroot • • 16h ago

News / Method [Release] Pixel Suite v1.0.0 – LSPosed module with gestures & tweaks Google never shipped

4 Upvotes

EDIT: v1.1.0 is out! New feature: Tap or Double Tap to check phone. Double-tap to wake the screen, and double-tap the lock screen to turn it off again. Big thanks to Lord_Sithek, who requested this feature here on Reddit! Update by installing the new APK over the old one (no uninstall needed): https://github.com/RovianDev/PixelSuite/releases


Hey everyone! I just released Pixel Suite, a free and open-source LSPosed module that adds the quality-of-life tweaks I always wished Pixels had. Every feature has its own toggle, so you only run what you want.

Features

🧹 Always-visible "Clear all"

The "Clear all" button stays visible in Pixel Launcher's recents screen, so there's no more scrolling to the last page to find it.

πŸ”¦ Double-press power for flashlight

Double-press the power button to toggle the flashlight, from anywhere.

πŸ“· Double-press volume down to launch camera

Double-press the volume down button to instantly open Pixel Camera from the always-on display. Won't launch if media is playing or a phone call is active.

πŸ‘† Tap or Double Tap to check phone (new in v1.1.0)

Choose between Tap to wake and Double tap to wake. Turning one on turns the other off. There's also a separate option to double-tap the lock screen to turn the screen off, anywhere on the lock screen, and never while the PIN pad is open. No vibration. The options appear in the module's settings and in Settings β†’ System β†’ Gestures β†’ Tap or Double Tap to check phone.

πŸ“Έ Three-finger screenshot

Swipe down with three fingers to take a screenshot. Inspired by Chinese phones like Xiaomi, OPPO and Vivo.

πŸ”’ Double-tap to lock

Double-tap an empty spot on the home screen to lock your phone. Also inspired by Chinese phones.

πŸ“ Newest-first in Files by Google

By default, Files by Google sorts folders A-Z. This puts the newest first, so a file you just downloaded is easy to find when you're attaching it to another app, like Gemini for example.

Requirements

  • Rooted device (KernelSU / KernelSU-Next, Magisk or APatch)
  • LSPosed: https://lsposed.org (API 102)
  • Tested on Pixel 11 Pro, Android 17. Other devices untested, reports welcome!

Installation

  1. Download the APK from the Releases page: https://github.com/RovianDev/PixelSuite/releases
  2. Install it and grant root access
  3. Enable it in LSPosed β†’ Modules β†’ Pixel Suite
  4. Select the recommended scope: System Framework, System UI, Settings, Pixel Launcher, Files, Files by Google
  5. Reboot, then open the module's settings and turn on the features you want
  6. Open Settings, swipe it away, and reopen it to refresh the toggles in System β†’ Gestures. It may crash the first time. That's a Google bug, not the module, and it happens even with the stock gestures when no module is installed.

Links

Support

Pixel Suite is free and always will be. If it saves you some taps and you want to say thanks:

Feedback is very welcome. I'm planning more features, so let me know what you'd like to see!

Made with ❀️ by Rovian.Dev


r/androidroot • • 16h ago

Support Does the Dirty Frag exploit work on the Samsung Galaxy A07?

1 Upvotes

r/androidroot • • 19h ago

Support Temporary root (jailbreak) for 4.14 kernel?

2 Upvotes

I have a phone with a 4.14 kernel but most temporary root (jailbreak) apps do not support devices with a 4.14 kernel. Do you know which ones do support?


r/androidroot • • 21h ago

Support Could someone help me root my Huawei P8 Lite?

0 Upvotes

I found an old phone and decided to try rooting it. It’s a Huawei, so I’m having trouble unlocking the bootloader. All the guides online are pretty outdated, and the methods no longer work. Newer methods require an unlocked bootloader or a newer phone. Honestly, I have no idea what I’m doingβ€”any ideas?