Co to jest format pliku BCUP?
Plik .bcup to zaszyfrowany sejf haseł utworzony przez Buttercup, darmowy i otwartoźródłowy menedżer haseł stworzony przez dewelopera Perry'ego Mitchella. Przechowuje on dane logowania, bezpieczne notatki, szczegóły płatności i inne poświadczenia w pojedynczym pliku, który może odczytać tylko Buttercup.
Zawartość jest chroniona szyfrowaniem AES-256 w trybie CBC. Klucz szyfrowania jest generowany z hasła głównego przy użyciu wielu rund PBKDF2, a HMAC SHA-256 chroni dane przed manipulacją. Przed zaszyfrowaniem sejf jest serializowany do tekstu i kompresowany algorytmem GZip. Starsze sejfy używają „Format A”, który rejestruje pełną historię zmian sejfu i dlatego rośnie z czasem; nowsze sejfy używają „Format B”, czyli kompaktowej struktury JSON, która może zredukować rozmiar pliku do ułamka starego układu.
Bezpieczeństwo
RYZYKO: LOWA .bcup file is inert encrypted data, not executable, so opening it cannot run code. The real risk is confidentiality: it contains your passwords protected only by your master password, so anyone who obtains the file can attempt to brute-force it. Use a strong master password and keep backups, because losing the password makes the vault unrecoverable.
Szczegóły formatu
w pigułceProgramy otwierające pliki BCUP
Szczegóły techniczne
specyfikacja| Encoding | Text wrapper containing Base64-encoded binary ciphertext |
| Byte order | N/A (text-delimited container) |
| Container | iocane-encrypted payload wrapping GZip-compressed vault data |
| Compression | GZip applied to the serialized vault before encryption |
| Encryption | AES-256 in CBC mode; key derived from the master password via PBKDF2 (many rounds, salted); SHA-256 HMAC computed over the encrypted data for integrity/authentication |
| Typical size | A few kilobytes to a few megabytes depending on entry count and stored attachments |
| Structure | The vault is first serialized (Format A: line-by-line command history; Format B: JSON), GZip-compressed, then AES-256-CBC encrypted. The encrypted output plus its salt, IV, iteration count and HMAC are packed into a delimited text string and written to the .bcup file. |
| Integrity | SHA-256 HMAC verifies both integrity and authenticity before decryption; a wrong master password or tampering causes decryption to fail |
| Encryption Detail | PBKDF2 key derivation, AES-256-CBC cipher, SHA-256 HMAC, per-vault random salt and IV |
| Platforms | Windows, macOS, Linux, Android, iOS |
| Notes | Format A stored the vault's full command history, so files grew on every change even after deletions. Format B switched to a compact JSON structure, cutting file sizes to roughly 20-50% of Format A. Encrypted attachments are stored separately in a .buttercup directory beside the .bcup file. |
| Structure Summary Formats | Format A = deltas/command list; Format B = JSON vault tree with groups and entries |
| Wydano | 2015 |
| Najnowsza wersja | Format B (JSON-based vault structure) |
| Specyfikacja | github.com |
Konwersje BCUP
Pytania i odpowiedzi społeczności
pytania użytkownikówBrak pytań - bądź pierwszą osobą, która zapyta o pliki BCUP.