Jump to content
Tawnos

Slowly getting Hikvision GPL files and uploading github

Recommended Posts

After discovering how terribly insecure the Swann-rebranded (as 8ch 3MP NVR) hikvision NVR (actual product is a ds-7608NI series) is out of the box (no https or SSL, old versions of libraries with known vulns statically linked to hikvision binaries, etc) and the difficulty updating/upgrading them to enable encryption/fix issues in the versions used, I started pinging Swann and hikvision back in April with GPL requests - a number of binaries (e.g. hicore) statically link GPL components, and things like their busybox distribution, linux version, etc are all GPLed files that hikvision and swann distribute commercially.

 

They finally got back to me with some code, and I'm still following up to get full GPL compliance. As I receive files, I am placing them on github: https://github.com/Tawnos/hikvision-source

 

If you've had any success getting them to send you other source, feel free to submit pull requests. For now, I'm trying to get them to send me the linux code they use as well as the hicore source. Ideally they'd just upload an entire system build package since I'm quite sure they have more GPL stuff than I initially called out, but with the feet dragging I've gotten so far, it might be slow going. If I have timeover the next couple weeks, I'll do a full binary scan for GPL IP to make a complete list.

Share this post


Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×