13 ms·
You can use scrcpy (https://github.com/Genymobile/scrcpy https://github.com/Genymobile/scrcpy) to bypass the policy if you really need to have a screenshot. All
by sdwolfz 6y ago
You can use scrcpy (https://github.com/Genymobile/scrcpy https://github.com/Genymobile/scrcpy) to bypass the policy if you really need to have a screenshot. All you need is to have a Linux laptop at hand, debug mode enabled, and a USB cable plugged in. Super simple stuff right? (this is satire!)
Now, I'm as frustrated as anybody else here that I'm forbidden to use whatever feature I want from MY phone, for which I paid, with MY MOENY (and nobody else's apart from mine). But then again, what choice do I have? Not buy a phone? Switch to what? There are no viable and practical alternatives. It's a "take it or leave it" situation.
- gen_greyface 6y agoscrcpy works with mac os too, iirc
- BuildTheRobots 6y agoand windows as well...
- grishka 6y ago> But then again, what choice do I have? Unlock the bootloader, install Xposed and this module: https://repo.xposed.info/module/fi.veetipaananen.android.disableflagsecure https://repo.xposed.info/module/fi.veetipaananen.android.dis...
- sdwolfz 6y agoWon't unlocking the bootloader make banking apps not work anymore? Had this issue when I tried LineageOS on my old phone, and I really like the convenience of those apps as opposed to using the website, which is extremely bad. Also, how do I do all you said above? (I need a step by step tutorial). Also is it reversible? Are there any other security implications?
- grishka 6y ago> Won't unlocking the bootloader make banking apps not work anymore? Depends on how paranoid your bank is. There's this SafetyNet thing that checks for "system integrity". It's part of Google Services. For now, it's possible to bypass these checks using Magisk, but I've read that Google is testing the new method involving TrustZone — a hardware trusted execution environment within the SoC where you aren't one of the trusted parties. > Also, how do I do all you said above? (I need a step by step tutorial). There should be plenty on xda-developers.com > Also is it reversible? On Google devices, yes, completely. You can reflash the factory images that Google provides and relock the bootloader. On others... it varies, on Samsung especially. > Are there any other security implications? If you leave the bootloader unlocked, anyone with physical access to your device will be able to reboot it into the bootloader and load arbitrary code with OS kernel privileges. From there they'll be able to modify the installed system. They won't be able to read the /data partition [right away] because it's encrypted with your password/pattern. IMO it's really a shame you can't re-lock the bootloader with your own signing key.
- opencl 6y agoYou can re-lock the bootloader with your own signing key on Pixels. GrapheneOS seems to be the only third party ROM currently taking advantage of it.
- 0xdeadb00f 6y agoThere is another called Replicant IIRC. But it requires you to set up your own build + signing server in AWS.
- skylanh 6y agohttps://github.com/dan-v/rattlesnakeos-stack https://github.com/dan-v/rattlesnakeos-stack I haven't tried it, but I believe part of the reason that AWS is recommended is due to the build time.
- grishka 6y ago
- jimlikeslimes 6y agoGoogle's play store requires screen grabs of payment screens when submitting. They recommend you photograph the phone with a separate device...
- BlueTemplar 6y ago:facepalm:
- vagrantJin 6y agoAll those highly paid, highly educated people really and truly believe this to be a solution?
- exikyut 6y agoYes. Taking a photo with a separate device is reasonable evidence you're not breaking secure boot et al. If I understand correctly.
- warent 6y agothat can't be true because nothing would stop them from taking a screencap and then photoshopping it over a different picture
- yencabulator 6y agoOr just displaying whatever graphic they want full screen on a phone and taking a photo of that.
- yholio 6y agoIt's as if the last 30 years of technical evolution never happened and we are back at faxing signed forms and for extra security and applying triple rot-13 to guarantee no unauthorized access.
- darepublic 6y ago
- inquirerofsorts 6y ago> Unlock the bootloader A dangerous game on anything other than Xiaomi phones these days, the only company to provide official bootloader unlock software, but yeah otherwise, go download it from some shady website and not have a care in the world about the most sensitive device you own. > install Xposed Last updated 2014 :\ You'd be safer shooting heroin into your eyeballs than installing Android root software from 6 years ago. How on Earth is this advice allowed here?
- inquirerofsorts 6y agoProve me wrong anytime folks, I'm sure you can at least flail around and try, or at least mash the squeal button that you all like so much. How exactly do you unlock bootloaders from modern phones (past 2 years)? You get jailbreaks from the internet and sideload them right? Do you disassemble the binary code? Does it void your warranty? Which mobile device manufacturers offer official bootloader unlocks today? There's only one I know of. Did i happen to mention the big bad China company in a good light to warrant such disdain for my as yet undisputed comment? Is that the problem here? [:)] https://repo.xposed.info/module-overview https://repo.xposed.info/module-overview
- pmontra 6y agoMy Samsung A40 from 2019 has an unlock bootloader option in the Developer Options. I didn't check what it does neither I googled it but it's promising.
- BenjiWiebe 6y agoThe presence of the "Allow OEM bootloader unlock" is NOT an indication that the bootloader is unlockable, sadly.
- j16sdiz 6y agoMost samsung phone are unlockable. But it have a e-fuse to prevent you re-locking it
- dheera 6y agoDoes Xposed support Android 11 yet? Can anyone vouch for this Xposed alternative that seems to be more on top of Android releases than Xposed, but also seems closed source? https://taichi.cool/ https://taichi.cool/
- foxhop 6y agoI wanted to screenshot my Charles schwab app the other day and got blocked... was so mad but never found a way to do it. Samsung Note 20 Ultra.
- sdwolfz 6y agoJust tried scrcpy out with that app, I can definitely record the screen, on a Note 9.
- foxhop 6y agoDoes this require plugging phone into to a computer? When I want to screenshot a stock, I don't want to mess with all that on the go. If I'm going to need a computer, I'd just take the screenshot from there... I guess my other choice is to carry two phones so I can take a photo of the screen... I thought it was my phone, afraid not.
- simonh 6y agoIt’s probably to prevent malware from screenshot grabbing account and payment details.
- alisonkisk 6y agoYou can choose not to download their app to your phone.
- sdwolfz 6y agoThis does not end up solving the issue though. An android setting toggle to "Disable screenshot blocking policy globally" with a consent box saying "I understand the risks" would. As the owner of the device my desire to take screenshots of anything I want should come first, regardless of what everybody else wants.
- wojciii 6y agoOr even better an option to disable the policy for the next 10 or 30 minutes which should be enough to.e to do whatever you need to do.
- graham_paul 6y agoSimplest way is to use another phone to take a screenshot
- anticristi 6y agoI actually had to do that due to an app not having a feature to export a receipt and not allowing me to take a screenshot. Felt pretty brain-dead and dumb, if you ask me.
- kps 6y agoThis year, sure. Next year's phones will probably refuse to photograph copyrighted design elements. But that's OK because you can always use a film camera and develop it yourself and hand-deliver a print.
- yencabulator 6y agoNext up, "secure" screens will fill their backgrounds with https://en.wikipedia.org/wiki/EURion_constellation https://en.wikipedia.org/wiki/EURion_constellation
- reaperducer 6y agoSimplest way is to use another phone to take a screenshot That's not a screenshot. That's a photograph.
- naniwaduni 6y agoIf you take a screenshot in the camera app, it's both!
- alufers 6y agoAFAIK this does not work with apps which have purposefully disabled screenshots, the Android UI is visible on scrcpy but the contents of the app appear black. What is interesting is that Android appears to be rendering every frame two times, because when I scroll down the notification drawer, which contains some semi-transparent elements under which you can see the restricted contents on the screen of the phone, but on scrcpy the transparent elements have black under them. The same thing happened when I wanted to use my Android TV as a poor man's HDMI grabber.
- sdwolfz 6y agoI've tried it with the Tesco Clubcard app which has screenshots disabled. Also tried it out with some "Charles Schwab" app somebody else said they had problems in a reply here, scrcpy can record the screen perfectly. EDIT: also tried recording a youtube video in firefox private mode, worked, but without the sound.
- Farbklex 6y agoScrcpy is also available for Windows and Mac. The link here states, that the screenshot settings were apparently broken due to a bug. So no bad intent from Google here. Besides that, apps can declare their content as sensitive and add the `FLAG_SECURE` to their activity which then hides the app content form "unsafe screens", the "recent apps" screen and screenshots. But this is a choice of the app developer instead of Google.
- sdwolfz 6y agoNot denying what you said, but I'd want a way to ignore "FLAG_SECURE" as a setting, so when I really want to take a screenshot, I should be able to do it regardless of what the app vendor wants to impose.
- deleted 6y ago[deleted]
- Zak 6y ago> So no bad intent from Google here. Including a feature in the OS that allows apps to prohibit the user from capturing the output of their own screen is bad intent.
- andybak 6y ago> bypass the policy Bypass what policy? The post seems to be about a bug when you use .nomedia in the snapshots directory.
- sdwolfz 6y agoThe security policy that prevents you from taking screenshots. Bug or intended, it's the same functionality.
- andybak 6y agoAny idea when it actually applies? Have you seen it in the wild? I don't recall having that message appear legitimately at any point but I guess it might be for corporate phones. Any Android devs know if it's something that any arbitrary app can turn on?
- sdwolfz 6y agoTry the Tesco Clubcard app. On taking a screenshot you will get a toast saying: "Can't take screenshot due to security policy". This is what I'm referring to in my post above.
- andybak 6y agoLike "disable right click" on websites I really struggle to see how this is useful to Tesco in any way. It's trivial to bypass. What's their threat model here?
- anonymou2 6y agoSorry but it is not really your phone if it runs proprietary software. It is like in medieval times, you didn't own the means of production. Welcome your new digital overlords!!
- pengstrom 6y agoWell, we don't own the means of production today either.
- anonymou2 6y agoThat was my point, we are no better than in medieval times. One can however run things like Replicant (I do) and I am aware of some better alternatives like linux phone, pinephone and librem5. I want to learn more about them before my old Replicant phone dies.
- chordalkeyboard 6y agoYou do if you own stock.
- smolder 6y agoOwning a fragment isn't quite the same as owning the whole thing. Majority stock ownership would be close enough.
- chordalkeyboard 6y agoMost people don't have the money to afford to own an entire factory, and if they did its still more secure for them to diversify by owning many pieces of many factories in different industries, that's why capitalists figured out how to commodify the means of production as stocks. Its not quite the same, its better.
- smolder 6y agoIt's not strictly better, no. As a minority shareholder in Google I have effectively no power to make them stop ruining the internet. Majority control is what gets you something like full ownership, just with some other risks and benefits.
- dheera 6y agoAnalog loophole. Worst case you could always carry a second phone and use it to do screenshots. Maybe we could make an app to calibrate and sharpen screenshots taken by a second phone to make them look as good as real digital screenshots. We really need to show it to 'em who is boss. My phone ultimately should listen to me, not Google.
- secondcoming 6y agoI'm looking at Nokia again for my next phone. Just need to wait for reviews to start.
- hobby-coder-guy 6y ago> with MY MOENY (and nobody else's apart from mine). Is this satire?
- jtxx 6y agoLinux phones!!! There’s still a lot of dev work to be done but this is exactly why I’m on board with the pinephone. not a daily driver yet, but if you’re a programmer looking for something to contribute to, go check it out
- reaperducer 6y agoThere’s still a lot of dev work to be done An incomplete choice is not a choice. He wants to cross a bridge without paying a toll. Telling him that he can take a rickety bridge, an unsupported bridge, build his own bridge, or wait for a new bridge to be finished doesn't get him to the other side.
- hutzlibu 6y agoHe can continue to use the restricted bridge, but if he want to use the free bridge soon, he can support building that bridge, today.
- LMYahooTFY 6y agoYou're right but I think you're missing the point. I read that as a call to action (this is HN), not a dismissal of a problem. They're saying we're not getting a solution from the corporate sector, so we need to build it.
- javert 6y agoThat's not helpful. Whereas the comment you are responding to is helpful (at least to some of us).
- rendall 6y agoI crossed that bridge when I came to it - trip trap! trip trap! trip trap! - and lo! I heard a voice: "Who is it what cross my bridge? I am very hungry, and I will eat you up!!" Shuddering in fear, I told the hungry troll "I am but a tiny me. You should eat my brother who comes along soon!" The greedy troll, let me go, and I watched from the bushes as the troll gobbled up my brother. I was sad, but then remembered that I am still alive, not eaten
- 6y ago
- benlivengood 6y agoDon't use apps. Aside from games and sensor integration they can rarely offer more than a web-based experience. Push for more safe hardware sensor integration in browsers.
- ForHackernews 6y agoGod no! The browser does not need to be an even bigger attack surface than it is today.
- amelius 6y agoBanks often have apps which are quite useful compared to their web-based counterparts. Of course, it doesn't need to be that way, but it's the way things work now.
- TedShiller 6y agoiPhone
- Dahoon 6y agoAre you adding info on what would be even worse? Because this is even worse on iPhone.
- hackmiester 6y agoWhen does an iPhone prohibit screenshots?
- crehn 6y agoIs there any situation on iOS where a screenshot cannot be taken? (serious question)
- S_A_P 6y agoNetflix(and I suspect anything displaying streaming media) is one for sure. The screen record only displays a black screen, but you can capture audio...
- l3s2d 6y agoYes, try taking a screenshot of DRM protected content (Netflix, Hulu, etc.). The content will be blacked out. That said, because of how DRM works, I doubt the video data is available to any userspace applications.
- dghughes 6y ago> Now, I'm as frustrated as anybody else here that I'm forbidden to use whatever feature I want from MY phone, for which I paid, with MY MOENY Samsung disabled the oxygen sensor (SPO2) on their phones for Canada. For other countries they moved access for the SPO2 feature further into the Samsung Health app. But for Canada SPO2 sensor access is gone not accessible. No warning (probably buried in an email) just one day my SPO2 sensor stopped working. I suppose it was due to some legal thing but it certainly pissed me off. I'm never buying Samsung again why blow $1000 on a phone only to have physical hardware disabled?
- artificial 6y agoIf you’re geeking out on health data, would you entertain an Apple Watch? It features an O2 sensor which to my knowledge hasn’t been neutered. Do you think it’s a patent issue? I recall Apple modifying the active noise cancellation in the AirPods Pro.
- nojs 6y agoApple does the same thing with the ECG feature - it’s frustratingly disabled on my Apple Watch for regulatory reasons based on region.
- wlesieutre 6y agoThey tell you up front though, as far as I know they’ve never sold a health sensor into a country and then disabled it later, which is what it sounds like parent comment is describing
- dghughes 6y agoI have a Samsung Galaxy S8+ I used the SPO2 sensor all the time. Then I think it was last year (2019) when it was removed without warning. But like I said Samsung probably buried that info in 5000 lines of an update notification. I can understand new devices being sold would not have the device enabled due to some patent or legal issue. But to have Samsung disable a physical device on a two year old phone is frustrating. I bought the phone I own it Samsung shouldn't allowed to do such a thing or at least make it more obvious and give the option to opt out of the change.
- 1vuio0pswjnm7 6y agoThe upgrades being provided are for the purpose of maximising the value to you of what you paid for with your money (and nobody else's). It is not like the company is making ongoing changes that benefit the company's business at your expense. (This is satire.) In some cases, life is easier when you decide "I do not have a choice". This allows complaining to be substituted for having to make hard choices and taking responsibility for the consequences.