CyanogenMod Creator Tells Android Users to Rethink Rooting
July 29, 2013 11:22 AM
comment(s) - last by
Google's modifications make root less powerful in Android 4.3, and that's good says Steve Kondik
Power users have long rooted their smartphones to gain access to capabilities not available to locked devices. Apple, Inc. (
actively fights rooting
; Microsoft Corp. (
) allows it, but
only for developers
; and Google Inc. (
) and its OEM partners mostly
condone and support rooting
But the key issue with rooting is that it
opens the device up to new attacks
(one of the justifications Apple often gives for fighting rooting).
Steve "Cyanogen" Kondik -- a Washington-area Android developer whose CyanogenMod replacement firmware is currently used by
over 5 million Android users
-- points out that new APIs from Google make keeping root privileges active in aftermarket mods (like CyanogenMod) less essential. He
introduces some new and much needed security features which not only restrict setuid binaries on the system partition (su), but also limit the capabilities of processes. In the current architecture, even if you could get elevated privileges, you can't do anything out of the ordinary. Root in the shell via ADB is all I use, and it still works just fine.
Steve "Cyanogen" Kondik [Image Source: Google+]
In other words, Google is restricting root for security reasons. But Mr. Kondik
Android's open source make this a virtual non-issue:
This isn't a problem for me, since I use CM. When there is a situation that I'd need root, I just modify the system to accomodate what I'm trying to accomplish in a secure way.
A few good use cases for root are:
* Firewalls and network software, potentially requiring raw sockets.
* Managing the DNS resolver
* Tweaking various sysfs nodes to control the kernel
All of these can be done without exposing root, and they can be done in a very secure way.
CyanogenMod is aiming to provide alternatives to full blown root access.
In a follow-up post, he continues to push his philosophy that deep firmware fan mods (such as his own CyanogenMod framework) are a superior alternative to using a stock ROM and simply leaving exploit-granted root privileges open. He
Now you can write your app and a whole new class of applications that you couldn't do without using the root sledgehammer before. Yeah, it's harder, and you need to learn the system architecture a bit, but the result is much better and more importantly it's not a gaping security hole.
I might be exploiting this as an opportunity to sell the ideas behind CM, but I think it's a powerful concept. If your app needs to do something that normally can't be done, you can easily bend the system to your will and do it right.
Android 4.3 cracks down on root's capabilities.
For those users who want root he reassures that he will continue to support it, writing in
yet another follow-up
Just to be clear- I have no intention of removing root from CM. What I want to see is the common use cases supported by the platform so that we can write more powerful apps.
But it's clear that he feels that leaving root open is a dangerous proposition, even for your average power-user. He also feels that regimented privilege extension via new API frameworks are a superior alternative.
Steve "Cyanogen" Kondik 
This article is over a month old, voting and posting comments is disabled
RE: Keep the Root.
7/29/2013 1:50:45 PM
I think you meant Samsung and the painfully bloated Touchwiz interface.
Touchwiz is the Windows ME of Android skins.
RE: Keep the Root.
7/31/2013 9:20:08 AM
kies + TW = facepalm
“And I don't know why [Apple is] acting like it’s superior. I don't even get it. What are they trying to say?” -- Bill Gates on the Mac ads
Best Buy Steals Google's Thunder, Already Taking Pre-Orders for New $229 Nexus 7
July 24, 2013, 7:24 AM
Quick Note: CyanogenMod Hits 5 Million Users
May 16, 2013, 1:42 PM
Developer Finds Security Hole in Galaxy Note II, S2
December 17, 2012, 8:31 PM
Microsoft's Windows Phone Jailbreak Partner Considers Calling it Quits
January 2, 2012, 9:35 AM
HTC Begrudgingly Allows Bootloader Unlocking
December 30, 2011, 10:33 AM
Amazon Seeks FAA Permission to Test 50 MPH Flying Drones
July 11, 2014, 12:32 PM
Samsung Fails to Launch its Tizen-based Smartphone in Moscow, Unsure of New Launch Date
July 11, 2014, 9:00 AM
China's Top State-run Broadcaster Considers iOS Tracking Feature is a National Security Threat
July 11, 2014, 8:25 AM
Verizon Wireless Offers Up $100* LG G3, Will Be Available July 17
July 10, 2014, 4:21 PM
Satya Nadella Says Microsoft is a "Productivity and Platform Company" for the Mobile/Cloud World
July 10, 2014, 12:29 PM
Motorola Touts Its Moto 360 Smartwatch in Another Teaser Video
July 10, 2014, 9:26 AM
Most Popular Articles
Apple's iPhone, iPad Update iOS 7.1.2 is Badly Broken for Some
July 8, 2014, 2:00 PM
Despite Legal Threats Google Begins Posting Warnings of ISP Throttling
July 7, 2014, 5:52 PM
Buzz Aldrin Says First Astronauts to Set Foot on Mars Should Never Return Home
July 9, 2014, 9:46 AM
Your Uncharged Smartphone, Tablet May Prevent You from Boarding U.S.-bound Flights
July 6, 2014, 11:11 PM
Samsung Sales, Profit Drops in Q2, Apple Sees Troubling Signs Too
July 8, 2014, 8:18 PM
Latest Blog Posts
Space Terrorism is a Looming Threat For the United States
Apr 23, 2014, 7:47 PM
Facebook Aims to Provide Internet to "Every Person in the World" with Drones, Satellites
Apr 1, 2014, 10:20 AM
Retail Mobile Sites Experience Outages in Light of Simplexity's Bankruptcy
Mar 14, 2014, 8:48 AM
Tesla vs. BMW: Who Has the Safer EV?
Feb 1, 2014, 2:56 PM
Justice Leaks Details of Next HTC One Two Flagship Phone
Dec 5, 2013, 4:04 PM
More Blog Posts
Copyright 2014 DailyTech LLC. -
Terms, Conditions & Privacy Information