Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Hikvision-CVE-2017-7921-decryptor | Kitploit
Tools/GitHubGitHub/lastvocher/hikvision-cve-2017-7921-decryptor
Encryption/Decryption ToolsIoT SecurityPassword AttacksVulnerability AnalysisExploitationWeb Application Exploitation
GitHublastvocher/hikvision-cve-2017-7921-decryptor

Hikvision-CVE-2017-7921-decryptor

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
View Repository
10 months agoNot yet reviewed

hikvision_CVE-2017-7921_auth_bypass_config_decryptor

This python file will decrypt the configurationFile used by hikvision cameras vulnerable to CVE-2017-7921.

https://www.checkpoint.com/defense/advisories/public/2017/cpai-2017-0876.html/

Description

Hikvision IP Cameras Authentication Bypass (CVE-2017-7921)

Basically, hikvision cameras that are vulnerable to the CVE listed above, can have several routes exposed by using a simple base64 string supplied as an argument in the url.

For example:

/System/configurationFile?auth=YWRtaW46MTEK

This would allow an unauthenticated user to download the config file for the camera which includes user information. This configuration file uses weak encryption and a static key by default.

The python script supplied, will decrypt this configuration file.

I also supply a sample generated example configuration file for you to test.

How To Use

./decrypt_configurationFile.py <nameofdownloadedconfig>

Dependencies:

sudo python3 -m pip install pycryptodome

Tested on Ubunut 20.04 with python 3.8.5

Download Tool