Skip to content

Instantly share code, notes, and snippets.

Created April 22, 2022 11:59
Show Gist options
  • Save astrokin/53668174e518b2020fb82fbb0b488c10 to your computer and use it in GitHub Desktop.
Save astrokin/53668174e518b2020fb82fbb0b488c10 to your computer and use it in GitHub Desktop.
Decrypt on Android (CBC, Pkcs7, EVP_BytesToKey)
object AESHelper {
private const val KEY_SIZE = 256
private const val IV_SIZE = 128
private const val HASH_CIPHER = "AES/CBC/PKCS7Padding"
private const val AES = "AES"
private const val KDF_DIGEST = "MD5"
fun decryptCryptoJS(password: String, cipherText: String): String {
val ctBytes: ByteArray = Base64.decode(cipherText.toByteArray(Charsets.UTF_8), Base64.DEFAULT)
val saltBytes: ByteArray = ctBytes.copyOfRange(8, 16)
val ciphertextBytes: ByteArray = ctBytes.copyOfRange(16, ctBytes.size)
val key = ByteArray(KEY_SIZE / 8)
val iv = ByteArray(IV_SIZE / 8)
EvpKDF(password.toByteArray(Charsets.UTF_8), KEY_SIZE, IV_SIZE, saltBytes, key, iv)
val cipher = Cipher.getInstance(HASH_CIPHER)
val keyS: SecretKey = SecretKeySpec(key, AES)
cipher.init(Cipher.DECRYPT_MODE, keyS, IvParameterSpec(iv))
val plainText = cipher.doFinal(ciphertextBytes)
return String(plainText)
private fun EvpKDF(
password: ByteArray,
keySize: Int,
ivSize: Int,
salt: ByteArray,
resultKey: ByteArray,
resultIv: ByteArray
): ByteArray {
return EvpKDF(password, keySize, ivSize, salt, 1, KDF_DIGEST, resultKey, resultIv)
private fun EvpKDF(
password: ByteArray,
keySizeParam: Int,
ivSizeParam: Int,
salt: ByteArray,
iterations: Int,
hashAlgorithm: String,
resultKey: ByteArray,
resultIv: ByteArray
): ByteArray {
var keySize = keySizeParam
var ivSize = ivSizeParam
keySize /= 32
ivSize /= 32
val targetKeySize = keySize + ivSize
val derivedBytes = ByteArray(targetKeySize * 4)
var numberOfDerivedWords = 0
var block: ByteArray? = null
val hasher: MessageDigest = MessageDigest.getInstance(hashAlgorithm)
while (numberOfDerivedWords < targetKeySize) {
if (block != null) {
block = hasher.digest(salt)
// Iterations
for (i in 1 until iterations) {
block = hasher.digest(block)
numberOfDerivedWords * 4,
(block?.size ?: 0).coerceAtMost((targetKeySize - numberOfDerivedWords) * 4))
numberOfDerivedWords += (block?.size ?: 1) / 4
System.arraycopy(derivedBytes, 0, resultKey, 0, keySize * 4)
System.arraycopy(derivedBytes, keySize * 4, resultIv, 0, ivSize * 4)
return derivedBytes // key + iv
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment