Redmi Note 8 Pro - SafetyNet CtsProfile false - Redmi Note 8 Pro Questions & Answers

Hello All,
My phone is on xiaomi.eu ROM V11.0.2.0.PGGCNXM, rooted with Magisk, SafetyNet passed 4 or 5 months ago.
Yesterday, I install a bank app and could not get it to work because It detected my rooted phone. I checked the SafetyNet status and got some errors. So I updated Magisk to 20.4 and Magisk Manager to 7.5.1. It's still not working
Status:
ctsProfile: false
basicIntegrity: true
So if anyone get SafetyNet passed, please let me know your method.
If you have the same issue, please also report here.

MarkLev said:
Hello All,
My phone is on xiaomi.eu ROM V11.0.2.0.PGGCNXM, rooted with Magisk, SafetyNet passed 4 or 5 months ago.
Yesterday, I install a bank app and could not get it to work because It detected my rooted phone. I checked the SafetyNet status and got some errors. So I updated Magisk to 20.4 and Magisk Manager to 7.5.1. It's still not working
Status:
ctsProfile: false
basicIntegrity: true
So if anyone get SafetyNet passed, please let me know your method.
If you have the same issue, please also report here.
Click to expand...
Click to collapse
Safety net not working on Android 10. And there is no simple solution yet.

noteespirit said:
Safety net not working on Android 10. And there is no simple solution yet.
Click to expand...
Click to collapse
He is not on Android 10: V11.0.2.0.PGGCNXM
Android P, not Q.
SafetyNet fails after an update
If SafetyNet starts failing after an update to either Magisk, the Manager or both it's usually fixed by toggling MagiskHide off and on (see ”Test MagiskHide above”). It might be necessary to reboot after toggling the setting off and on.
Click to expand...
Click to collapse
Read this: https://www.didgeridoohan.com/magisk/MagiskHideSafetyNet

MarkLev said:
Hello All,
My phone is on xiaomi.eu ROM V11.0.2.0.PGGCNXM, rooted with Magisk, SafetyNet passed 4 or 5 months ago.
Yesterday, I install a bank app and could not get it to work because It detected my rooted phone. I checked the SafetyNet status and got some errors. So I updated Magisk to 20.4 and Magisk Manager to 7.5.1. It's still not working
Status:
ctsProfile: false
basicIntegrity: true
So if anyone get SafetyNet passed, please let me know your method.
If you have the same issue, please also report here.
Click to expand...
Click to collapse
Magisk Hide Props - You can download and install it via Magisk Manager.

i have the same issue with the same phone btw. Pls tell me if you got it fixed because its driving me crazy to see this red ctsprofile

I have the same problem, even though it worked fine til yesterday.
I'm thinking about using the "Magisk Hide Props" to change the fingerprint value, but the Note 8 Pro does not appear there, only the regular Note8.
Any suggestion? (Have the original OS image, with LR TWRP + Smali Patcher)

It's because Hardware key attestation was added on google's end.
There is no way to hide your Unlocked BL status because of this...
You can still hide root and you will always be able to do so.
So basically the hardware key attestation implementation on safetynet means that you will not be able to hide your unlocked bootloader status.
You will always fail cts profile match with this
There is no solution for this yet.

https://www.androidpolice.com/2020/...-hardware-check-has-been-spotted-in-the-wild/

WoKoschekk said:
https://www.androidpolice.com/2020/...-hardware-check-has-been-spotted-in-the-wild/
Click to expand...
Click to collapse
No more unlocked bootloader, root or custom ROM ?

Hi All,
I have never got it fixed. I tried searching for 2-3 days but eventually gave up.
If someone have a solution, pls update here

Khep said:
I have the same problem, even though it worked fine til yesterday.
I'm thinking about using the "Magisk Hide Props" to change the fingerprint value, but the Note 8 Pro does not appear there, only the regular Note8.
Any suggestion? (Have the original OS image, with LR TWRP + Smali Patcher)
Click to expand...
Click to collapse
"Magisk Hide Props" has this device supported under "Xiaomi" category (not "redmi" category), but still the result is null (atleast for me - see this post). Ctsprofile still failed.

does some know how to unroot for passing ctsprofile check? the minimal way

Google pay doesnt work either

Solution found...
Passing CTS profile now
Follow steps
https://telegra.ph/SafetyNetFix-MagiskHideProps-Method-08-09
Enjoy

miui 12 global 12.0.2 also work too ?

failed props shows inaccessible or not found
---------- Post added 20th August 2020 at 12:16 AM ---------- Previous post was 19th August 2020 at 11:30 PM ----------
i tried , and i still failed, doesnt work for myphone, maybe it's china edition, too bad
---------- Post added at 12:55 AM ---------- Previous post was at 12:16 AM ----------
hey guys i successed
follow this https://www.youtube.com/watch?v=5x1-Jc_thnE
---------- Post added at 01:05 AM ---------- Previous post was at 12:55 AM ----------
Sigh........i passed ctsprofiles test but google pay still not passed

I've paid yesterday with my phone. many thanks.

How?

mfouraone said:
How?
Click to expand...
Click to collapse
solution from Fedroid

Hey pal,
Remember activating magisk hide por google pay.
I have found that busybox is not necessary.
Check what modules are you using. Maybe one or more are making it fail. And remember NEVER using Xposed or you will never succed.
Remember to choose your rigth android version when choosing signature.
We are here if you need more advice.
Luck!

Related

Google PAY with unlocked bootloader and root

Hello
Is there any possibility to use Google Pay on rooted device with unlocked bootloader?
I have used magiskhide, but my device still can't pass safetynet test.
Any ideas?
Yes mines working fine with oos,unlocked and rooted
ok, thanks for reply!
make sure you are using the latest magisk zip and apk, it should pass the safety net
Magisk, SuperSU won't work
I have disabled xposed and now works great.
So xposed was generating problem, not rooted device with unlocked bootloader.
pawel.bohdal said:
I have disabled xposed and now works great.
So xposed was generating problem, not rooted device with unlocked bootloader.
Click to expand...
Click to collapse
Xposed breaks safteynet
So rooting and unlocking my device but still using original ROM won't break hce payment???
mobidea said:
So rooting and unlocking my device but still using original ROM won't break hce payment???
Click to expand...
Click to collapse
yes, but you need to use magiskhide to hide root from google pay
pawel.bohdal said:
yes, but you need to use magiskhide to hide root from google pay
Click to expand...
Click to collapse
but I won't be able to upgrade ROM in official way?
mobidea said:
but I won't be able to upgrade ROM in official way?
Click to expand...
Click to collapse
OTA works with root and unlocked bootloader
pawel.bohdal said:
OTA works with root and unlocked bootloader
Click to expand...
Click to collapse
Hmm ok, but as i know flashing custom recovery is mandatory to root. I'm new on OnePlus but in my previous cells flashing TWRP made it impossible to OTA works (because of TWRP not a original kernel).
Hi guys,
I have found a method to run google pay with,
Xposed - active
Magisk - cts profile - false, basic integrity - false
No need to install magisk hide or shell hide.
Just a simple trick.
Video uploaded on youtube.
https://youtu.be/DV_XmlJDi2o
Why not just tell us here instead of a YouTube link?
Go to settings -> application list -> google play services -> permissions -> DISABLE PHONE PERMISSION
This works for me. Try it once.
On some Pie ROMs, it doesn't work even after passing SafetyNET and hiding root using MagiskHide. The only option here is denying the Telephone permission for Play Services and re-enable when you're done. You'll have to do this everytime you need to make a payment.
I created a Tasker module to do this everytime I launch the app. Just run the shell command in Tasker:
To disable permission:
Code:
pm revoke com.google.android.gms android.permission.READ_PHONE_STATE
To enable permission:
Code:
pm grant com.google.android.gms android.permission.READ_PHONE_STATE
yeah I have an essential ph1 and android pay will run on it just fine (pie/magisk hide) yet will not run on my oneplus 6t with stock oos/pie/magisk hide. but I'll use the telephone permission trick if I ever need to use it.
pawel.bohdal said:
Hello
Is there any possibility to use Google Pay on rooted device with unlocked bootloader?
I have used magiskhide, but my device still can't pass safetynet test.
Any ideas?
Click to expand...
Click to collapse
Do you know if google pay still works then?
Didn't want to necropost, but I'd like to know if google pay still works with 9.0.9 and unlocked bootloader/root.
hornedfiend said:
Didn't want to necropost, but I'd like to know if google pay still works with 9.0.9 and unlocked bootloader/root.
Click to expand...
Click to collapse
Yes, works still flawlessly

Will rooting break Google Pay?

My last phone was a fully rooted LG V30. NFC payments worked perfectly through Google Pay. It didn't seem to mind that Magisk was installed.
Now I have a OP 7T and I am curious if this will still be the case. I love the convenience and extra security of NFC payments at retailers, restaurants, and gas stations. Will rooting break this?
No, as long as you do it right and follow one of the guides on here. I've tried 3 different roms and a custom kernel, all of which have passed Google's safetynet checks and Google pay is working great for me.
Sporos said:
No, as long as you do it right and follow one of the guides on here. I've tried 3 different roms and a custom kernel, all of which have passed Google's SafetyNet checks and Google pay is working great for me.
Click to expand...
Click to collapse
Although SafetyNet says it passed, I'm not being allowed to activate cards on Google Pay. I have Magisk, the canary version, and "Magisk Hide" is on. and I'm using the Global version of the stock ROM from this guide.
Why else might I not be able to use Google Pay?
CyberstormFox said:
Although SafetyNet says it passed, I'm not being allowed to activate cards on Google Pay. I have Magisk, the canary version, and "Magisk Hide" is on. and I'm using the Global version of the stock ROM from this guide.
Why else might I not be able to use Google Pay?
Click to expand...
Click to collapse
I switched from msm Xtended back to latest OOS yesterday and I am experiencing this too. It looks like cts profile is not passing even with magiskhide props. Maybe we could try an older version?
I'm on latest OOS 10.0.9.HD65BA (EU) with magisk 20401 + magiskhide (GPay and Google Play Services) and it worked yesterday at a store. I've been using GPay a lot the Last two months and it hasn't failed me yet.
Kirahvi said:
I'm on latest OOS 10.0.9.HD65BA (EU) with magisk 20401 + magiskhide (GPay and Google Play Services) and it worked yesterday at a store. I've been using GPay a lot the Last two months and it hasn't failed me yet.
Click to expand...
Click to collapse
Same here. I have no idea why I didn't sooner, but after a reboot, I re-attempted to use Google Pay and this time it worked. Forgot to update the result here. Glad to have this phone now rooted without missing out on this useful feature.
Make sure everything with the word Google or Android is blocked in Magisk Hide. I just updated to the newest build, magisk 20.4 and I was just able to successfully add two cards. Will test out later if it will let me make a purchase.

Magisk suddenly not passing SafetyNet

I rooted my phone about 6 months ago using the custom OEM unlock fix files and guide by Dr. Ketan. I'm on Magisk 18.0 and Manager ver. 7.0.0, which is the version that came with the guide since I think it's made specifically for my device (SM-G960F). For some reason, it's no longer passing SafetyNet even though it was before.
It's no longer passing the ctsProfile or basicintegrity checks. I'm afraid to update Magisk through the manager, as I'm not sure it will work on my device since I had to use a unique method to root it in the first place. Can someone help me so that my phone can pass SafetyNet again? Thanks!

How to pass safetynet on Moto G5 cedric/LOS 17.1 or 18.1

Hi,
I have read and tried many things on the Internet to be able to pass safety on my Moto G5 (XT1676) under LOS 17.1 and then 18.1 but I did not managed to make it pass safetynet tests...
Using Magisk latest version and Hide/Props (fingerprints) makes in fact things worse than just LOS installed.
With LOS installed, I have only "CTS profile" failed but after using Magisk, depending on modules used, CTS profile is still "failed" and other categories are "failed" too.
Does anyone know how to pass safetynet tests on G5 (cedric) as of May 2021 with LOS 18.1 from Jarl-Penguin (Which tools/version/settings) ?
I just want to be able to use my banking app... I do not need to root my phone.
If not possible, my guess is I have to go back to stock ROM and to relock bootloader ?... I have tried once and I lost IMEIs... which I only managed to recover by reflashing LOS ! (other methods found on XDA did not apply and/or work for me)
Thank you
alxsj said:
Hi,
I have read and tried many things on the Internet to be able to pass safety on my Moto G5 (XT1676) under LOS 17.1 and then 18.1 but I did not managed to make it pass safetynet tests...
Using Magisk latest version and Hide/Props (fingerprints) makes in fact things worse than just LOS installed.
With LOS installed, I have only "CTS profile" failed but after using Magisk, depending on modules used, CTS profile is still "failed" and other categories are "failed" too.
Does anyone know how to pass safetynet tests on G5 (cedric) as of May 2021 with LOS 18.1 from Jarl-Penguin (Which tools/version/settings) ?
I just want to be able to use my banking app... I do not need to root my phone.
If not possible, my guess is I have to go back to stock ROM and to relock bootloader ?... I have tried once and I lost IMEIs... which I only managed to recover by reflashing LOS ! (other methods found on XDA did not apply and/or work for me)
Thank you
Click to expand...
Click to collapse
You can try flashing MicroG via TWRP (suggest the NanoDroid version plus their patcher) BUT you will have to uninstall Magisk, since I never knew how to pass the SafetyNet using a custom URL with in the settings of MicroG.
Tiki Thorsen said:
You can try flashing MicroG via TWRP (suggest the NanoDroid version plus their patcher) BUT you will have to uninstall Magisk, since I never knew how to pass the SafetyNet using a custom URL with in the settings of MicroG.
Click to expand...
Click to collapse
Thank you for your answer. Have you ever made it work this way or is it just a guess ?
alxsj said:
Thank you for your answer. Have you ever made it work this way or is it just a guess ?
Click to expand...
Click to collapse
Last time check it did (when i posted that), but AFAIK Google did some changes into SafetyNet and is not working anymore.
Tiki Thorsen said:
Last time check it did (when i posted that), but AFAIK Google did some changes into SafetyNet and is not working anymore.
Click to expand...
Click to collapse
OK. Thank you for the up-to-date information !
The latest version of MicroG now passes includes a Safetynet check and it passes.
Hi, with this tuto (https://forum.xda-developers.com/t/...motorola-moto-g5-stock-to-android-11.4524049/) I fail CTS check but Netflix and Disney+ work

CTS profile match failed

Hi there.
I have an unrooted realme 6 pro. 2 days ago I tried to use Google pay and it did not work. It said that "You can´t pay contactless using this device. It may be rooted or running uncertified software.
I went to google play and I saw that my device is certified. After running some SafetyNet checks it says that CTS profile match failed. evakuation type: BASIC HARDWARE_BACKED. And then after reading some blogs I saw that on Google Play my netflix isn´t supported on my device although I have already installed it.
Any help or advice?
Thanks
Is your bootloader unlocked?
There's only 2 reliable ways to pass SafetyNet including CTS. The first is a completely stock device running pure OEM firmware with a locked bootloader.
The second is with Magisk, using DenyList and 2 modules: Universal SafetyNet Fix and MagiskHide Props Config.
A stock ROM on an unlocked bootloader will fail.
A custom ROM on a locked bootloader will fail.
V0latyle said:
Is your bootloader unlocked?
There's only 2 reliable ways to pass SafetyNet including CTS. The first is a completely stock device running pure OEM firmware with a locked bootloader.
The second is with Magisk, using DenyList and 2 modules: Universal SafetyNet Fix and MagiskHide Props Config.
A stock ROM on an unlocked bootloader will fail.
A custom ROM on a locked bootloader will fail.
Click to expand...
Click to collapse
I have also checked that. It has always been locked. I do not know if the problem is caused due to the new android update since is now running on android 11. Plus I dont want to root my phone
V0latyle said:
Is your bootloader unlocked?
There's only 2 reliable ways to pass SafetyNet including CTS. The first is a completely stock device running pure OEM firmware with a locked bootloader.
The second is with Magisk, using DenyList and 2 modules: Universal SafetyNet Fix and MagiskHide Props Config.
A stock ROM on an unlocked bootloader will fail.
A custom ROM on a locked bootloader will fail.
Click to expand...
Click to collapse
... You cannot have custom rom on unlocked bootloader LOL. Just saying. Unless a device is ancient, back in the days where you could run custom roms without unlocked bootloader.
JhinCuatro said:
... You cannot have custom rom on unlocked bootloader LOL. Just saying. Unless a device is ancient, back in the days where you could run custom roms without unlocked bootloader.
Click to expand...
Click to collapse
But that's the thing. I don't have a custom from. I did not root my phone. The only thing I did is to open the developer options. The bootloader was always locked. That started happening after the update to android 11. I sent my phone to the customer service now but I do not think they will do anything.
JhinCuatro said:
... You cannot have custom rom on unlocked bootloader LOL. Just saying. Unless a device is ancient, back in the days where you could run custom roms without unlocked bootloader.
Click to expand...
Click to collapse
You can, you just have to set a custom root of trust. See Android Boot Flow
V0latyle said:
You can, you just have to set a custom root of trust. See Android Boot Flow
Click to expand...
Click to collapse
Oops I misstated. I meant custom rom on locked bootloader**.
manu3732 said:
But that's the thing. I don't have a custom from. I did not root my phone. The only thing I did is to open the developer options. The bootloader was always locked. That started happening after the update to android 11. I sent my phone to the customer service now but I do not think they will do anything.
Click to expand...
Click to collapse
Same problem with my OnePlus Nord.
oOEDGUYOo said:
Same problem with my OnePlus Nord.
Click to expand...
Click to collapse
Did you find any fix yet... Am having the same issue
happy619 said:
Did you find any fix yet... Am having the same issue
Click to expand...
Click to collapse
I ended up installing the Pixel Experience rom. It was the only way to fix it
oOEDGUYOo said:
I ended up installing the Pixel Experience rom. It was the only way to fix it
Click to expand...
Click to collapse
I have been on custom ROMs for over 6 months on nord ... Some have bad update cycles .. Some are unstable and many more issues although my Device was certified
I have the same problem, bootloader is normally unlocked and I have Universal SafetyNet Fix and MagiskHide Props Config installed, using lineage 18.1 on my redmi 9 pro device
I have flashed both ...( Magisk hide prop conf & universal safety net )
But still "CTS failed, can somebody help me please....
I have this problem too. Any solutions ? I tried magisk with prop conf and safety net-fix and still have cts failed...
Finally success
of course magisk with deny list setup and the rest
1. remove universal safety fix
2. reboot
3. install displax fork mod 3.0 here
4. reboot
5. clear cache from google wallet
The rest ? What you mean ? Cause i have problem with CTS failed and im desperatly looking for solution
Oshvitzon said:
Finally success
of course magisk with deny list setup and the rest
1. remove universal safety fix
2. reboot
3. install displax fork mod 3.0 here
4. reboot
5. clear cache from google wallet
Click to expand...
Click to collapse
The rest ? What you mean ? Cause i have problem with CTS failed and im desperatly looking for solution
Mrlama112 said:
The rest ? What you mean ? Cause i have problem with CTS failed and im desperatly looking for solution
Click to expand...
Click to collapse
The regular instructions:
Magisk with zygisk , hide app , configure deny list and then as i said in the previous post
Oshvitzon said:
Finally success
of course magisk with deny list setup and the rest
1. remove universal safety fix
2. reboot
3. install displax fork mod 3.0 here
4. reboot
5. clear cache from google wallet
Click to expand...
Click to collapse
Thank you! Worked like a charm! IDK why my CTS Profile suddenly started failing, but this seemed to have fixed it.
Oshvitzon said:
Finally success
of course magisk with deny list setup and the rest
1. remove universal safety fix
2. reboot
3. install displax fork mod 3.0 here
4. reboot
5. clear cache from google wallet
Click to expand...
Click to collapse
Thanks so much it worked well. Am I able to update the Google Wallet without it affecting the mod 3.0?

Categories

Resources