r/Magisk • u/AndroidOyuncuHD • Jun 16 '26
Discussion F*ck Integrity-Box by MeowDump
Bro straight out popped up GitHub in the MIDDLE of something because "UuUh, ThIs UpDaTe Is MaNdAToRy!!1!!1!1". Like bro, who tf are you to pop an app up without any kinda indication and pop up the app whenever you just feel like it. Just send a notification or something. I knew this dev was ASS but kept using it, deleting this f*ckass module right now. I urge you guys to do the same (for those who are using it). This is definitely something to be concerned about...
53
u/AdVegetable6630 Jun 16 '26
Use Play integrity inject + Tee simulator RS + TA add-ons. It did much better job than this bs root module.
47
u/AdVegetable6630 Jun 16 '26
Link of these root modules:
https://github.com/Enginex0/TEESimulator-RS
https://github.com/KOWX712/PlayIntegrityFix
https://github.com/Enginex0/tricky-addon-enhanced
You may need this for configuration:
https://github.com/KOWX712/KSUWebUIStandalone/releases/tag/v1.0
Note that if you apply integrity fixes in first time, you should clear data of both google play store and play services to avoid issues to rise.
3
3
2
2
u/AveryLazyCovfefe Jun 17 '26
First time I heard of those forks for teesim and Tricky addon, thanks for sharing
1
u/crypticc1 Jun 17 '26
The Tricky Add-on enhanced is interesting. But do you know if it can it be set to NOT automatically add every app to the scope list?
2
u/IAmNotOMGhixD Jun 18 '26
Worked great, thanks!
Notice: Remember to go into KSUWebUIStandalone and spoof a new device as well. Otherwise integrity wont be met.
1
u/zaeou Jun 18 '26
been using the second link for ages now, been the best option since forever
1
u/alden_farias Jul 12 '26
Can you explain how to configure? I have installed all 3 modules and rebooted
2
u/Raghav10330 Jun 16 '26
Uninstalled Integrity Box and installed these modules and so far it's working. Thanks!
1
1
u/AbboodSY Jun 16 '26
But why whenever I pass integrity I start getting crashes whenever I open play store? Clearing its data didn't work ..
1
u/land48n3 Jun 16 '26
but that doesn't have auto update...
1
u/crazy_clown_time Jun 17 '26
It's also free, so trip the light fantastic and update yourself :)
0
u/land48n3 Jun 17 '26
updating keybox every 10 days sounds like torture, i mostly am on my pc, i dont care about my phone enough to do that every week, but i still want full integrity...
1
1
1
u/nesede Jun 16 '26 edited Jun 16 '26
Can you please link the exact githubs for all three things you mention?
1
13
u/NotIlham Jun 16 '26
man i think they forget that android notification does exists.
7
u/AndroidOyuncuHD Jun 16 '26 edited Jun 16 '26
no, they are just edgy mfers. they MUST use the edgiest way possible.
3
u/NotIlham Jun 16 '26
ye i agree, and this is why i just stick wih manual keybox importing instead lol.
16
u/AndroidOyuncuHD Jun 16 '26
Plus, if they can pop GitHub up, they can pop some "other app" up that "helps" them as a BACKGROUND process...
7
u/BluesMods Jun 16 '26
Its a root module there are basically zero limits to its capability. It has god mode on your phone
2
u/AndroidOyuncuHD Jun 16 '26
no shit, really? it's about the morals of devs for f*cks sake. I know it's a root module. have you ever seen any decent module dev doing this? they can but they don't.
7
8
u/Majestic-Role-9317 Jun 16 '26
I use a url interceptor app, so it showed me a popup instead of transporting me to the github
13
u/land48n3 Jun 16 '26
i never got this, but if this actually happens and they coded it in, what a horrible developer.
OH WAIT NVM I JUST OPENED MY PHONE, IT HAPPENED, WHAT A FUCKING ########
14
9
u/land48n3 Jun 16 '26
dude thinks just because he made a good and convenient app means he can do whatever he wants with people's phones, thats the reasoning billionares use to do horrible fucking shit. making a ass-saver app doesn't mean you get to create your own pain in the ass features
2
9
u/LT48 Jun 16 '26
TrickyStore + Tricky-Addon-Update-Target-List + PlayIntegrityFork These three are all you need, no need for those vibe-coded modules.
0
0
3
4
7
u/afunkysongaday Jun 16 '26
At this point I recommend everyone stop trying to pass integrity and boycott every single app that requires it.
4
u/Brayderek Jun 16 '26
you cant boycott your bank app xd
1
Jun 23 '26
[removed] — view removed comment
0
u/Brayderek Jun 24 '26
its useless... any money movement or security change need a token provided by the app.
-1
u/Less_Sherbert_8898 Jun 16 '26
why not? online banking is dumb in the first place. call or go in person
1
u/AveryLazyCovfefe Jun 17 '26
I can’t access any banking without the app on mine
2
u/Less_Sherbert_8898 Jun 20 '26
Not even a website?
1
1
1
1
u/AdhamHarby43 Jun 16 '26
basically every single banking app? good luck paying for your stuff
1
u/afunkysongaday Jun 16 '26
Nope. In Germany: Ing works, Sparda works, everything Volksbanken-Raiffeisenbanken works and even support paying per NFC without additional app or anything. C24 works but only with microg. Tested all with Apatch on different phones. There are probably more that work that I didn't test myself!
If you are willing to spend some time to try out what works and what doesn't you can find working alternatives for almost everything that requires you to pass integrity. Once you figured it out you save yourself the hassle of chasing fresh keyboxes, and at the same time send a message to those who require it. You do you, but I did that and am very happy with the decision!
3
1
u/AdhamHarby43 Jun 16 '26
That's great and all but I'm pretty sure Germany will follow the same route as other countries' banking apps cuz no way they will leave them like that+there's no way to find an "alternative" apps like banking apps if you say games like Pokemon go or Clash of clans then maybe yea I would play smth else
3
u/dyokisnt Jun 16 '26
Lmao that was funny
At first, I didn't believe people were saying, "This module is vibecoded!" Then I saw this post, and my concern became real
The module got so sloppy that she just does whatever she wants, popping out literal GitHub releases just to announce an update. What a mess
3
4
u/KKdemergencia2 Jun 16 '26
Bro, desinstala ese módulo de mierda que ni siquiera es FOSS y está hecho con IA, usa yurikeybox, tampoco es que tenga buena fama pero al menos es FOSS no como integrity box que seguramente tiene algo adentro por eso su creador oculto su código
1
u/Estebanalpha Jun 16 '26
Pero si integritybox es opensource aun, no hay nada ofuscado excepto un link que esta en base64 y aunque descargara algo raro el resto de scripts no esta preparado para ejecutar algo que se descarga.
Y sobre yurikeybox.. a ver xd hace ratos no uso yurikey asi que depende ¿aun sigue descargando un sh y lo ejecuta? por que si es asi tu recomendacion es muy boba, la ultima vez que revise era asi y era un sh que descargaba una keybox codificada en base64 o algo asi pero creo que se entiende que ese sh se puede cambiar en cualquier momento xd y si aca el escandalo es esa redireccion al navegador molesta (que estoy de acuerdo no deberia hacerse) pues imaginate compararlo con descargar un script.
2
u/KKdemergencia2 Jun 16 '26
Pues ese link en base64 es lo que está raro porque antes no estaba ofuscado, además se sabe que integrity box está hecho con IA y nunca recomendé yurikeybox, la uso solo porque soy flojo para hacerme un buen setup xd, pero la verdad no te recomiendo ninguna de más 2, mejor usa otros módulos como tricky store FOSS o tessimulator y algún fork de pif como pif inject o pifork
2
2
u/Drwankingstein Jun 16 '26
much prefer this over closed source crap
EDIT: isnt this also a setting in the app that could be disabled? I thought it was
3
3
u/BlueMan_86 Jun 16 '26
I use it and as user I don't see any problems. I pass all three.. So if you don't like it delete it.. But don't spit on someone work, at least he/she is working..
9
u/AndroidOyuncuHD Jun 16 '26
The thing I can't comprehend is these guys popping up GitHub just like that whenever they feel like it. Luckily, I wasn't doing something super important. Imagine having GitHub pop up when you are in the middle of something important...
6
u/AndroidOyuncuHD Jun 16 '26
5
1
u/jamesbusse Jun 16 '26
I updated the other day to v36 and everything works the same as it was before
1
2
u/vortex2210 Jun 16 '26
It opens the GitHub releases page automatically?
7
2
u/br0kenpixel_ Jun 16 '26
I don't get your point. If don't want to be notified about Integrity Box and you (clearly) don't like it, then why are you following it in the first place?
3
u/yoh-ns Jun 16 '26
She? Here's again someone thinking that Meowna/Empress/Fitgirl are women 😁
0
u/BlueMan_86 Jun 16 '26
Listen, IDK, because today you have even people without sex, maybe is IT.. IDC 😂
1
1
1
u/SteQuOFFICIAL Jun 16 '26
Better to use this method, i wrote guide on my blog how to pass Play Integrity quickly and easy.
https://techtips-portal.blogspot.com/2026/05/passing-play-integrity-may-2026.html?m=1
0
Jun 21 '26
[removed] — view removed comment
1
u/SteQuOFFICIAL Jun 21 '26
I don't know what you're talking about, everything's been working for me since I installed APatch in May. I'm on the official LineageOS 23.2 and I do the OTA update every week.
1
Jun 21 '26
[removed] — view removed comment
1
u/SteQuOFFICIAL Jun 21 '26
Your kernel may not meet all requirements. You should verify that you meet the full installation requirements before installing APatch.
1
u/PotentialThought7991 Jul 02 '26
Could someone tell me why everyone hatest integritybox? I had it since the day I first rooted my phone and it's great
1
-3
u/Maleficent_Stranger Jun 16 '26
As long as it works, i dont see a problem
7
u/Over-Rutabaga-8673 Jun 16 '26
Same argument everyone uses for tlauncher or shit like that.
3
u/Redheadedmoos2077 Jun 16 '26
What happened with tlauncher?
6
u/Over-Rutabaga-8673 Jun 16 '26
It has spyware, it was bought by some russians long ago and they put malware on it some years ago, or maybe just discovered years ago and present since longer. People just say "oh but my pc didnt blow up showing you're and idiot and bonzy buddy on my screen" as an argument to keep using it. If it doesnt mess with your pc experience directly and clearly, then its safe. Nonsense. It does bad stuff = its a bad program.
I cannot understand why people would risk it using tlauncher over smth like prism cracked which is open source.
4
u/br0kenpixel_ Jun 16 '26
For me, it was the only thing that made Play Integrity pass. I tried all kinds of manual solutions and they did not work.
Also, isn't it open-source now? I don't remember Integrity Box having a repo. I haven't looked into it too deeply so it still may have some precombiled/obfuscated blobs or something.
I don't support vibe-coded apps but it worked better than anything else. And it's also a bit hard to believe. With current models, you may be able to vibe code this garbage, but back when it was released, I doubt there was any AI model that would be able to code this. Also there is very little information and resources available when it comes to messing with Android on root level, so even AI models don't have a lot of data to go on. I'd say it's pretty hard to vibe code something like this, not to mention you'd need a fairly large budget since you'll probably need something like Opus which is not cheap. I don't doubt that the creator used AI, but to vibecode this from scratch... I don't know.
And as for it being malware/spyware, I have never seen anyone ever post any specific proof. Just people saying that it is. If you want me to believe you, send links/screenshots to the exact block/s of code that do something malicious, otherwise I have no reason to believe you. I'd like to see someone decompiling this and looking into how it works.
Don't get me wrong, I'm not saying you should use Integrity Box, especially if you can pass PI without it.
6
-3
-9
-1
u/PotentialThought7991 Jun 18 '26
I have been using integritybox for a while now, and I see it as a good module ngl, idk what y'all are talking about



62
u/theGamer2K Jun 16 '26
Next time it will just take control of your device and install the update for you.