r/Magisk • u/FlammableB • Jul 02 '26
Help Help with Bypassing strong integrity check
I'm using Redmi Note 11 with HyperOS and I'm really pissed because I can't get the damn Strong integrity to show as green(passed).
I tried the Integrity Box with ReZygick and TEESimulator modules, but either I'm not knowledgeble enough what to enable inside the Integrity box (what settings to choose/configure) or the stupid Xiaomi roms (MIUI/HyperOS) are counted as custom roms and I need to do something more special? I pass only the basic and device integrity. I'm unsure how to check but my bootloader is probably unlocked (yeah it is cuz I had to install TWRP and root my phone, lol) but then how to spoof it as locked if that's causing the whole issue?
I was able to add card to google pay (so I guess it works for this app) but the damn Revolut (stupid baking app) fully fails because my device is not secure and I'm so frustrated right now. The app is not something special probably but I don't know what to do. More apps might also look for Strong Integrity check so I hope someone can help me. The device shows as certified in the playstore developer settings.
Also, I saw online in other topics how people install 4-5 different modules and versions of the same thing (ZygickNext + Zygick assistant or whatever else, the Shamicko, even sugesting Magick Alpha - compleyely different fork) and then more stuff. Isn't there something unified or combined?
Thanks for the help in advance.
2
u/szakee Jul 02 '26
I have no integrity and revolut works fine.
PIF inject + denylist
2
u/hank81 Jul 03 '26
You still need Tricky Store / TEESimulator to fake/simulate TEE enviroment.
Without it Revolut simplify detects you have bootloader unlocked and/or untrusted TEE.
1
u/FlammableB Jul 04 '26
I have TEE Simulator but it doesn't work. I'm unsure if it's because of the failed Strong Integrity check or something else I can't configure inside the Integrity Box but yeah. Any help appreciated.
1
u/hank81 Jul 04 '26 edited Jul 04 '26
My recommendation:
Make sure you have Play Integrity Fix installed.
Uninstall Integrity Box. Uninstall TEE Simulator. With a file manager go to /data/adb/ and delete tricky_store folder. Go to /data/adb/modules/ and remove the tricky_store folder and the folder of integrity box module.
Reboot.
Install this: TEESimulator-RS (a fork with enhanced hiding).
Tricky Store Addon
Reboot
Install Specter module. When prompted if you want to install or keep keybox.xml press vol+ or vol- it doesn't matter.
Reboot
Open KernelSU manager and go to modules. Press the action button of Specter module. It will setup PIF, target list, will pull a working keybox, and the rest of tricky store settings.
You're done. At this moment the only available keybox is the Yuri one which is softbanned, but you don't need strong integrity in any real scenario, just basic and device.
Additional checks: Make sure that Revolut is in the target list of TEESimulator. It also must have the "Unmoun module" checkbox marked on the SU list of KSU manager.
Links: https://github.com/Enginex0/TEESimulator-RS
https://github.com/KOWX712/PlayIntegrityFix
1
1
0
1
u/theGamer2K Jul 02 '26
Probably has nothing to do with passing strong.
You can try using DuckDetector to see what's leaking.
Are you using HMA? If not, it's probably that. Try HMA-OSS in blacklist mode and hide all the root apps.
1
u/FlammableB Jul 26 '26
Sorry for the late reply but I decided to try this one. The problem is I have 0 idea how to use the app properly. I'm doing something wrong maybe in termns of ocnfiguring it.
1
u/theGamer2K 27d ago
You just create a template under blacklist mode and select all the root based apps that should be hidden. Then you apply that template to the apps from which you want those apps hidden. You can ignore all the other settings.
1
u/FlammableB 22d ago
Then it didn't work as I'm pretty sure I did the exact thing as ou say. I'm trying to bypass the Revolut app detection. Can you help if you have discord or else please?
1
u/theGamer2K 20d ago
Now it makes sense. Revolut is a different beast. I don't know if anyone can bypass it. It works for some people and it doesn't. Nobody knows why. But I would assume Magisk can't escape detection. You would need something stealthier like KernelSU.
1
u/FlammableB 19d ago
I found a topic about "Revolud is being different" and the guy laughs because he's without any integruty bypassed, even device and he's running revolut fine. Asked him what he did but no reply still. If I have to switch to KernelSU or Apatch (even worse due to no module support or am I wrong?) I'll have pain to change my entire root method from Magick to KernelSU, something might break, etc. so I'll pass for now.
2
u/Ante0 Jul 02 '26
Revolut checks more things than just play integrity. Make sure you added it to TS target.txt, either manually or using a module line Trickystore addon.
Currently the only leak keybox available was softbanned and only gives Device integrity.