Jump to content

Tawnos

Members
  • Content Count

    1
  • Joined

  • Last visited

Community Reputation

0 Neutral
  1. After discovering how terribly insecure the Swann-rebranded (as 8ch 3MP NVR) hikvision NVR (actual product is a ds-7608NI series) is out of the box (no https or SSL, old versions of libraries with known vulns statically linked to hikvision binaries, etc) and the difficulty updating/upgrading them to enable encryption/fix issues in the versions used, I started pinging Swann and hikvision back in April with GPL requests - a number of binaries (e.g. hicore) statically link GPL components, and things like their busybox distribution, linux version, etc are all GPLed files that hikvision and swann distribute commercially. They finally got back to me with some code, and I'm still following up to get full GPL compliance. As I receive files, I am placing them on github: https://github.com/Tawnos/hikvision-source If you've had any success getting them to send you other source, feel free to submit pull requests. For now, I'm trying to get them to send me the linux code they use as well as the hicore source. Ideally they'd just upload an entire system build package since I'm quite sure they have more GPL stuff than I initially called out, but with the feet dragging I've gotten so far, it might be slow going. If I have timeover the next couple weeks, I'll do a full binary scan for GPL IP to make a complete list.
×