Android In a Box – Run Android applications on any GNU/Linux operating system
anbox.io
anbox.io
It is a valiant effort (lead by u/mrmorph) even if the open source version is limited and runs Android 7.
There's a community of over 1K enthusiasts on the telegram group: https://t.me/anbox
Previous discussions:
https://news.ycombinator.com/item?id=14090482 (317 points, April 2017)
https://news.ycombinator.com/item?id=17886542 (98 points, August 2018)
These kinds of open source emulators or similar stuff usually driven by individuals and often have risk of being unmaintained. But this project is used by larger companies like Canonical so we can expect better support.
This isn't quite correct. From Simon Fels [0], we see that
"Despite the nature of Anbox, Anbox Cloud is not open source and a commercial product. It is based on the same underlying ideas of Anbox but is a completely separate code base."
> It is a valiant effort (lead by u/mrmorph) even if the open source version is limited and runs Android 7.
I really hope that all distributions of Anbox for PureOS, postmarketOS, etc. will soon start distributing a newer system image. Nothing prevents this and it would make Anbox actually useful.
[0] https://mm.gravedo.de/blog/posts/2020-01-21-taking-the-anbox...
I'm assuming you haven't installed Google Play Services on Anbox to test actual Google Push Message Service.
Nice to know at least somebody got their phone and is able to play around with it.
Disclaimer: I wrote the article which is basically a walk-through for installing Android x86 on a VM in VMware Fusion.
[0] https://www.vimalin.com/blog/install-android-x86-in-vmware-f...
With a working android emulation I could switch from android much easier.
I believe that's how they keep it secure, everything stops working if Google detects you've cracked your bootloader somehow.
Disclaimer; I'm using layperson's terms. But I've re-installed a few Pixel phones with Lineage.
Occasionally you will see apps using obfuscated native binaries to do advanced detection, but those are rare enough that you can just switch banks.
What an improvement over https. I'm glad the android sandbox has given us so much security.
The reason I said "from wherever" is that sharing APKs G Play is a legal grey area and I didn't want to mention one specific way of getting them because there are many, all with different pros and cons.
https://developer.android.com/training/safetynet/attestation
https://source.android.com/security/keystore/attestation
So it's not all wild west. But most apps don't need this level of security.
Not really, if they're not using hardware attestation for Safetynet they will do soon. And even the developer for Magisk believes there's no practical way around that.
https://www.xda-developers.com/safetynet-hardware-attestatio...
Hopefully Orange Man's little trade war slows down adoption by devs somewhat, but once that fizzles out, we might have to start looking at a regulatory angle. I don't like that idea, but what other choice do we have? Google clearly doesn't listen to their customers (or rather, we aren't their customers) and good luck even getting in touch with a bank's dev team, let alone convince them to do something that, to their uneducated higher-ups at least, looks like a security downgrade.
Assume banking apps do tho
There are other ways of obtaining the APKs outside the playstore, however.
My banking app isn't supposed to work if the phone is rooted, but it rarely gives me trouble.
Is this something that happens often in eg Europe?
I think that the US doesn't use mobile payment a lot, so it might not be obvious (if you're in the US, that is)
https://en.wikipedia.org/wiki/Strong_customer_authentication
It is perfectly possible to use the website but authorize with the app. Which I admit does not solve the problem at hand
I have never gotten the check deposit tool to work on the website. I know it is nonexistent in the mobile site. So for me, the only way to deposit a check (with USAA) is to either mail it or use the Android app.
(I’ve since switched to ArchLinuxARM (and published several videos on how Anbox runs on t he PinePhone on YouTube) and won’t go back unless that breaks, so I don’t know what the current state is on Mobian.)
The keyboard seems like a problem, but a USB keyboard works fine in Mobian; it just needs to find its way through to Anbox.
This software arrived just in time.
Anyone know if it works on ARM? I see it being a cool Raspberry PI use case. Didn't see anything in the docs
I wonder if I could run Whatsapp in this, as a bridge to Whatsapp Web (for its Matrix bridge).. It should be more efficient than running a full Android VM from the Google Dev tools.
Has anyone tried this? I suppose the biggest issue will be the scanning of the QR code, as I don't think webcams are supported.
Suppose I'm the owner of a Linux Phone and run WhatsApp in Android in a Box. Should I maintain an address book inside the box (can it even fit into the same box of WhatsApp?) And how do I attach the pictures I take with my phone or the files I have on my local storage? Etc.
Even with the app itself you can deny access to contacts after installing and it works fine, just all the names are replaced by numbers. The only problem then is that you can't start a new chat. But through the bridge it works, already tried.
There's an app on F-Droid that lets you start a chat in WhatsApp with just a number, without giving WhatsApp access to the phone contacts.
So I would not be surprised if they were wording on it.
https://www.theverge.com/2016/2/25/11117430/microsoft-androi...
"Project Astoria - Android apps on Windows Phone - Build 2015 presentation"
https://www.youtube.com/watch?v=zltNsxV5OeA
> Microsoft's first foray into achieving Unix-like compatibility on Windows began with the Microsoft POSIX Subsystem, superseded by Windows Services for UNIX via MKS/Interix, which was eventually deprecated with the release of Windows 8.1. The technology behind Windows Subsystem for Linux originated in the unreleased Project Astoria, which enabled some Android applications to run on Windows 10 Mobile.[17] It was first made available in Windows 10 Insider Preview build 14316.[18]
-- https://en.wikipedia.org/wiki/Windows_Subsystem_for_Linux
-- https://en.wikipedia.org/wiki/Windows_Subsystem_for_Linux
Anbox solves the emulator problem, but setting up the Android toolchain yourself in a different ide is a big pain.
What would it take to investigate whether Western branded phones also send personal information to third-party via a bloatware like Digital Turbine's app?
Go away.
Anbox is currently only distributed as a snap as snaps makes the life for us developers pretty easy. They allow us fast and easy packaging, easy distribution to our users, as well as regular and fast updates. Flatpak would be another alternative but we didn't investigate this yet, nor are we planing to do so in the near future. However, we're happy to accept contributions from the community around Anbox to provide necessary changes to distribute Anbox as a flatpak package too.
One thing which Anbox currently doesn't do is using proper confinement for snaps. Right now it is only usable when installed in the so-called devmode of snaps which disables any confinement. This is something we will work on over the coming months with upstream to allow our snap to be fully confined.
Despite snap confinement being disabled, the Android system still stays separate through the use of Linux namespaces from the host system.
https://www.phoronix.com/scan.php?page=news_item&px=Android-...
Anbox requires your kernel to have ashmem and binder, which are included in the ckt (Canonical) kernels or they can be loaded by DKMS if you don't have them already.
I tried for 30min, but got stuck a few different ways, when trying to get the modules.
:-(
Is it possible to install the Google Play Store?
Yes, this is generally possible. However Google doesn't allow anyone to ship its applications as long as the device is not certified and the vendor didn't sign an agreement with Google.
The Anbox project does not have any interest in shipping the Google Play store and we're not allowed to do so. We may add an easy way for our users at a later point which allows easy distribution of Android applications suited for the Anbox runtime environment.
There are many apps from great free software repositories such as https://f-droid.org that many people may want to use. Further, many apps from Google Play can be installed without the Google Play store.
Google is mainly concerned about uncertified phones being distributed at a large scale. For individual tinkerers, this feature is offered to get individual phones permitted.
This is great exactly for that reason. Although it may seem strange, many of us would use Android just because they're forced to use that one or two apps, not because they need the whole system. In my case, I have absolute zero needs for Android, except for opening Whatsapp like 3 times a week for a few minutes. Since Whatsapp web is a joke that would force me to even keep a smartphone around, I'm currently keeping home an Android tablet just for that app I use a few minutes per week, which is also less than optimal. Hopefully one day the Pinephone (I'm seriously considering to purchase one) will allow Android virtualization, so I'll be able to move a minimum virtualized Android system dedicated to Whatsapp onto that phone and ditch the poor tablet for good.