tanriol | Does anyone (have to) use the RSA Authenticator (SecurID) android app on Sailfish? It used to work until a couple weeks ago and then started telling me my device is compromised and not generating any tokens. | 22:21 |
---|---|---|
tanriol | Does anyone (have to) use the RSA Authenticator (SecurID) android app on Sailfish? It used to work until a couple weeks ago and then started telling me my device is compromised and not generating any tokens. | 22:22 |
tanriol | (sorry if repeated on IRC side, not sure whether it was sent the first time) | 22:22 |
tanriol | Wonder whether it's some change in my device, or whatever sailfish has been blacklisted in some way... | 22:24 |
mal | sometimes apps just start to make more complex root checks for example | 22:25 |
tanriol | The fact that it does actually work on the first launch after removing its data but stops on the second attempt might imply that it updates some kind of blacklist... especially as it does not stop on the second time if there's no internet access. | 22:25 |
mal | was the app updated recently? | 22:25 |
mal | hmm, strange that it works the first time | 22:26 |
mal | what things do use the app for? | 22:27 |
tanriol | Their proprietary "kinda TOTP, but full of legacy" tokens are a required second factor at an organization I have to deal with. | 22:29 |
mal | ok | 22:30 |
tanriol | Actually, the evidence seems to suggest a remote updated blacklist. I can clear data and launch the app with no problems several times as long as it had no internet access. However, if I enable wifi and start it once (still success), any further attempts to use it fail even if I disable wifi again. | 22:33 |
tanriol | Kinda sad :-( | 22:33 |
mal | yeah, would be nice to know why it thinks the device is compromised | 22:41 |
mal | just in case you could have a look if appsupport logcat shows anything from the app during such failure using "appsupport-attach logcat" | 23:06 |
mal | that needs to be run as root using devel-su | 23:08 |
tanriol | Nothing I think, at least nothing suspicious to me - only regular system messages that are (mostly) the same on first and second startup. | 23:35 |
Generated by irclog2html.py 2.17.1 by Marius Gedminas - find it at https://mg.pov.lt/irclog2html/!