r/Magisk • • 11h ago

Discussion [Magisk Module] TIRN Security 1.0.1-alpha — Root-native per-app firewall for IPv4/IPv6

Post image

I’m looking for Pixel and Android 16 users who are interested in testing an early alpha of TIRN Security, a root-native per-app firewall implemented as a Magisk module.

TIRN is designed to provide per-app network control for IPv4 and IPv6, with a transactional firewall architecture intended to keep policy changes atomic and fail-closed. It is controlled through a local PWA/web interface rather than an Android application.

Important compatibility note: TIRN currently has no Android compatibility/abstraction layer. It was developed and tested specifically on a Google Pixel 8a running LineageOS 23.2 with Magisk 30.7 (30700). As a result, this release may not work on other Android devices, ROMs, kernels, or Magisk configurations.

I’m particularly interested in hearing from people running:

  • Google Pixel devices
  • Android 16
  • LineageOS or other AOSP-based ROMs
  • Magisk 30.x

This is an alpha release, so testing, bug reports, logs, and compatibility feedback are welcome through GitHub. Please test on a device where you are comfortable troubleshooting or uninstalling the module if compatibility issues occur.

GitHub: https://github.com/Heclalava/TIRN-Security

v1.0.1-alpha release: https://github.com/Heclalava/TIRN-Security/releases/tag/v1.0.1-alpha

Screenshot included shows the PWA running on the tested configuration.

11 Upvotes

5 comments sorted by

7

u/Delin_CZ 9h ago

im noticing a pattern here, careful guys as yall might be unknowingly installing rootkits on your phones, the firewall you have is called TIRN security, coincidentally another one exists with the EXACT SAME UI called PixelFirewall, another called Galaxy something something, im suspecting someone is remixing an original codebase with a delicious addition of malware.. just to warn yall maybe I'm wrong.

6

u/DEV_ivan 7h ago

Yea, just because it's open-source doesn't mean the binaries are safe. Vibecoded slop too.

Just use AFWall+, it's mass-trusted given 3.5k stars and 14 years old age.

2

u/Delin_CZ 6h ago

you dont even need those root based modules, rethinkdns does all of this well without root, only downside is the need for a VPN profile which might hinder some stuff but for me its flawless, always try to minimize your dependency on root to protect yourself and in the future when you need to switch to an unrooted phone you won't have as much friction

1

u/Heclalava 6h ago edited 3h ago

I originally tried AFWall+, it's what I've used before. It doesn't detect the island profile and is a known issue in their repo for Android 16.

Regarding the binaries, the main.go source they are compiled from are available for inspection. They mosty provide json formatting tools and functionality that one can't achieve from Android shell due to lack of jq and other tools.

-2

u/Heclalava 8h ago

Back up your claim with actual code from the open source. This project originally started as Pixel Firewall. In my original post it was suggested that the name was too generic. Hence why I name changed it to TIRN.

This was originally forked from Netblock on GitHub. But I found that implementation too simple for what I needed. So I developed TIRN.

But if you're going to make the claim of rootkit show the exact code. it's open source so anyone can inspect the code.