2017-09-25 02:06:28 +00:00
|
|
|
import { mnemonicToSeed, validateMnemonic } from 'bip39';
|
|
|
|
import { createDecipheriv, createHash } from 'crypto';
|
|
|
|
import { privateToAddress } from 'ethereumjs-util';
|
2018-03-07 23:36:05 +00:00
|
|
|
import HDkey from 'hdkey';
|
2017-09-15 19:29:38 +00:00
|
|
|
import { stripHexPrefixAndLower } from 'libs/values';
|
|
|
|
|
2017-09-25 02:06:28 +00:00
|
|
|
// adapted from https://github.com/kvhnuke/etherwallet/blob/de536ffebb4f2d1af892a32697e89d1a0d906b01/app/scripts/myetherwallet.js#L230
|
2017-08-20 20:28:47 +00:00
|
|
|
export function decryptPrivKey(encprivkey: string, password: string): Buffer {
|
2017-09-25 02:06:28 +00:00
|
|
|
const cipher = encprivkey.slice(0, 128);
|
|
|
|
const decryptedCipher = decodeCryptojsSalt(cipher);
|
|
|
|
const evp = evp_kdf(new Buffer(password), decryptedCipher.salt, {
|
2017-08-20 20:28:47 +00:00
|
|
|
keysize: 32,
|
|
|
|
ivsize: 16
|
|
|
|
});
|
2017-09-25 02:06:28 +00:00
|
|
|
const decipher = createDecipheriv('aes-256-cbc', evp.key, evp.iv);
|
2017-12-18 23:29:26 +00:00
|
|
|
const privKey = decipherBuffer(decipher, new Buffer(decryptedCipher.ciphertext));
|
2017-08-20 20:28:47 +00:00
|
|
|
|
|
|
|
return new Buffer(privKey.toString(), 'hex');
|
|
|
|
}
|
|
|
|
|
2017-09-25 02:06:28 +00:00
|
|
|
// adapted from https://github.com/kvhnuke/etherwallet/blob/de536ffebb4f2d1af892a32697e89d1a0d906b01/app/scripts/myetherwallet.js#L284
|
|
|
|
export function decodeCryptojsSalt(input: string): any {
|
|
|
|
const ciphertext = new Buffer(input, 'base64');
|
2017-08-20 20:28:47 +00:00
|
|
|
if (ciphertext.slice(0, 8).toString() === 'Salted__') {
|
|
|
|
return {
|
|
|
|
salt: ciphertext.slice(8, 16),
|
|
|
|
ciphertext: ciphertext.slice(16)
|
|
|
|
};
|
|
|
|
} else {
|
|
|
|
return {
|
2017-09-25 02:06:28 +00:00
|
|
|
ciphertext
|
2017-08-20 20:28:47 +00:00
|
|
|
};
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2017-09-25 02:06:28 +00:00
|
|
|
// adapted from https://github.com/kvhnuke/etherwallet/blob/de536ffebb4f2d1af892a32697e89d1a0d906b01/app/scripts/myetherwallet.js#L297
|
|
|
|
export function evp_kdf(data: Buffer, salt: Buffer, opts: any) {
|
2017-08-20 20:28:47 +00:00
|
|
|
// A single EVP iteration, returns `D_i`, where block equlas to `D_(i-1)`
|
|
|
|
|
2018-03-07 23:36:05 +00:00
|
|
|
function iter(block: Buffer) {
|
2017-08-20 20:28:47 +00:00
|
|
|
let hash = createHash(opts.digest || 'md5');
|
|
|
|
hash.update(block);
|
|
|
|
hash.update(data);
|
|
|
|
hash.update(salt);
|
|
|
|
block = hash.digest();
|
2017-09-25 02:06:28 +00:00
|
|
|
for (let e = 1; e < (opts.count || 1); e++) {
|
2017-08-20 20:28:47 +00:00
|
|
|
hash = createHash(opts.digest || 'md5');
|
|
|
|
hash.update(block);
|
|
|
|
block = hash.digest();
|
|
|
|
}
|
|
|
|
return block;
|
|
|
|
}
|
2017-09-25 02:06:28 +00:00
|
|
|
const keysize = opts.keysize || 16;
|
|
|
|
const ivsize = opts.ivsize || 16;
|
|
|
|
const ret: any[] = [];
|
2017-08-20 20:28:47 +00:00
|
|
|
let i = 0;
|
|
|
|
while (Buffer.concat(ret).length < keysize + ivsize) {
|
|
|
|
ret[i] = iter(i === 0 ? new Buffer(0) : ret[i - 1]);
|
|
|
|
i++;
|
|
|
|
}
|
2017-09-25 02:06:28 +00:00
|
|
|
const tmp = Buffer.concat(ret);
|
2017-08-20 20:28:47 +00:00
|
|
|
return {
|
|
|
|
key: tmp.slice(0, keysize),
|
|
|
|
iv: tmp.slice(keysize, keysize + ivsize)
|
|
|
|
};
|
|
|
|
}
|
|
|
|
|
2017-09-25 02:06:28 +00:00
|
|
|
export function decipherBuffer(decipher: any, data: Buffer): Buffer {
|
2017-08-20 20:28:47 +00:00
|
|
|
return Buffer.concat([decipher.update(data), decipher.final()]);
|
|
|
|
}
|
2017-09-15 19:29:38 +00:00
|
|
|
|
|
|
|
export function decryptMnemonicToPrivKey(
|
|
|
|
phrase: string,
|
|
|
|
pass: string,
|
|
|
|
path: string,
|
|
|
|
address: string
|
|
|
|
): Buffer {
|
|
|
|
phrase = phrase.trim();
|
|
|
|
address = stripHexPrefixAndLower(address);
|
|
|
|
|
|
|
|
if (!validateMnemonic(phrase)) {
|
|
|
|
throw new Error('Invalid mnemonic');
|
|
|
|
}
|
|
|
|
|
|
|
|
const seed = mnemonicToSeed(phrase, pass);
|
2018-03-07 23:36:05 +00:00
|
|
|
const derived = HDkey.fromMasterSeed(seed).derive(path);
|
2017-09-15 19:29:38 +00:00
|
|
|
const dPrivKey = derived.privateKey;
|
|
|
|
const dAddress = privateToAddress(dPrivKey).toString('hex');
|
|
|
|
|
|
|
|
if (dAddress !== address) {
|
|
|
|
throw new Error(`Derived ${dAddress}, expected ${address}`);
|
|
|
|
}
|
|
|
|
|
|
|
|
return dPrivKey;
|
|
|
|
}
|