Skip to main content
OVERVIEW

DPAPIck is a python toolkit to provide a platform-independant implementation
of Microsoft's cryptography subsytem called DPAPI (Data Protection API).

It can be used either as a library or as a standalone tool.

It is also the first open-source tool that allows decryption of DPAPI
structures in an offline way and, moreover, from another plateform than
Windows.

It is provided with some application probes that includes the built-in logic
to retreive the corresponding secrets that are protected.

To have more information or to contact us, go to our website:
http://www.dpapick.com


REQUIREMENTS

This application has been developped and tested on python 2.7.

M2Crypto is required to provide all the requireds algorithms. To obtain it,
see: http://chandlerproject.org/bin/view/Projects/MeTooCrypto

Probes and other tool may require other modules to be able to retreive
information such as:
* python-sqlite3 for Google Chrome password database
* CFPropertyList for Apple Safari keychain.plist
see https://github.com/bencochran/CFPropertyList
* python-registry for low-level manipulation of hives
see https://github.com/williballenthin/python-registry
* pyASN1 for the RSA key pair manipulation
see http://pyasn1.sourceforge.net/

We also recommend the use of MoonSols Windows Memory Toolkit to convert
hibernation file to usable memory dumps and be able to extract credentials
from it.
For more information about Moonsols products, see <http://www.moonsols.com>


AUTHOR

DPAPIck is written by Jean-Michel Picod (jean-michel.picod@cassidian.com)
with the help from Ivan Fontarensky (ivan.fontarensky@cassidian.com)
who work for the Cyber Security Center of Cassidian, an EADS company,
and Elie Bursztein (dpapi@elie.im)


LICENSE

This program is free software: you can redistribute it and/or modify
it under the terms of the GNU General Public License as published by
the Free Software Foundation version 3 of the License.

This program is distributed in the hope that it will be useful,
but WITHOUT ANY WARRANTY; without even the implied warranty of
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
GNU General Public License for more details.

You should have received a copy of the GNU General Public License
along with this program. If not, see <http://www.gnu.org/licenses/>.

Release files for dpapick 0.3

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for dpapick 0.3
File Size Uploaded
dpapick-0.3.tar.gz 78.8 kB Details

Built distributions (wheels)

Table of built distributions (wheels) for dpapick 0.3
File Interpreter ABI Platform
dpapick-0.3-py2.7.egg Legacy Egg format - - Details
dpapick-0.3-py2-none-any.whl Python 2 none any Details

Total release size: 201.8 kB

Release files / dpapick-0.3.tar.gz

Download URL dpapick-0.3.tar.gz
Size 78.8 kB
Tags Source
SHA-256 checksum
How to use checksums
129bc9b3924d9efa95f99cf5c5eabd980439925023f0f83011c1b774dd6cc32e
BLAKE2b-256 checksum
How to use checksums
8e45cdb1b13d7076c6e9b5b060ab0b0a2b202661866bdff00efb0d2627571ae2
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No

Release files / dpapick-0.3-py2.7.egg

Download URL dpapick-0.3-py2.7.egg
Size 83.5 kB
Tags Egg
SHA-256 checksum
How to use checksums
9515290dfe11793b706638512a32afbb33dac2f75b1a0de9809f743f042bc24c
BLAKE2b-256 checksum
How to use checksums
4da7e7d5bfa8144fe8b33a3905b3013e304768619cef5c6e5fcf75007760c45b
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No

Release files / dpapick-0.3-py2-none-any.whl

Download URL dpapick-0.3-py2-none-any.whl
Size 39.5 kB
Tags Python 2
SHA-256 checksum
How to use checksums
b52dc5fd784ec128a973dcfedf8dccc039f4f519721df95433800bbe961b5752
BLAKE2b-256 checksum
How to use checksums
445a066f5d9791d3799a0d2cd52b44cfe9caecefa7be14013ceb79953d13014b
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No

Release history Release notifications | RSS feed

This release

0.3 This release

3 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page