微信小程序--解密手机号、unionId

该方法,为了解析小程序的手机号和unionId等密文信息
wx.getUserInfo的官方文档
登录相关文档

String result = WxPublicUtil.getPhoneNumber(encryptedData, sessionKey, iv);
JSONObject jsonObject = JSONObject.parseObject(result);

解析手机号参数示例:

{
    "openId": "2222",
    "encryptedData":"H3eEZR9ZRKWV1GSb35o0tR+hbykJT9KsBVT2IP+G6Wledtl3EK880DLK0n5uS7xMF0G6FOw+USlk4v/1iGYMoL06+jQOHY98ogEtcRJ07Tss0SPZU6NFTKd0TuLPRamfTilIUM7wKFGGTpsVZe64QJdsduCFGOUHwXmTb9KMO4bk78+9yIXZR2nhbUTbN5xJXgVfeM5J53yL7Vn2hxAjpQ==",
    "iv":"bDeyPHj84wQ7rf0FZdOXmQ=="
}
package com.fsk.systemCust.misc;

import com.fsk.common.utils.wxPay.MD5Utils;
import com.fsk.common.utils.wxPay.WxConfig;
import com.sun.org.apache.xerces.internal.impl.dv.util.Base64;
import lombok.extern.slf4j.Slf4j;
import org.bouncycastle.jce.provider.BouncyCastleProvider;

import javax.crypto.Cipher;
import javax.crypto.spec.IvParameterSpec;
import javax.crypto.spec.SecretKeySpec;
import java.security.AlgorithmParameters;
import java.security.MessageDigest;
import java.security.NoSuchAlgorithmException;
import java.security.Security;
import java.util.*;

/**
 * @description: 微信小程序相关
 * @author: Cc
 * @data: 2020/7/8 15:50
 */
@Slf4j
public class WxPublicUtil {

    /**
     * @description: 小程序解密手机号、unionId
     * @param encryptedData 需要解密的数据
     * @param session_key   用户session_key、密钥
     * @param iv   解密数据一起的数据、初始向量
     * @return: com.alibaba.fastjson.JSONObject
     * @author: cc
     * @date: 2020/7/15 13:23
     */
    public static String getPhoneNumber(String encryptedData, String session_key, String iv) {
        // 被加密的数据
        byte[] dataByte = com.sun.org.apache.xerces.internal.impl.dv.util.Base64.decode(encryptedData);
        // 加密秘钥
        byte[] keyByte = com.sun.org.apache.xerces.internal.impl.dv.util.Base64.decode(session_key);
        // 偏移量
        byte[] ivByte = Base64.decode(iv);
        try {
            // 如果密钥不足16位,那么就补足.  这个if 中的内容很重要
            int base = 16;
            if (keyByte.length % base != 0) {
                int groups = keyByte.length / base + (keyByte.length % base != 0 ? 1 : 0);
                byte[] temp = new byte[groups * base];
                Arrays.fill(temp, (byte) 0);
                System.arraycopy(keyByte, 0, temp, 0, keyByte.length);
                keyByte = temp;
            }
            // 初始化
            Security.addProvider(new BouncyCastleProvider());
            Cipher cipher = Cipher.getInstance("AES/CBC/PKCS5Padding");
            SecretKeySpec spec = new SecretKeySpec(keyByte, "AES");
            AlgorithmParameters parameters = AlgorithmParameters.getInstance("AES");
            parameters.init(new IvParameterSpec(ivByte));
            cipher.init(Cipher.DECRYPT_MODE, spec, parameters);// 初始化
            byte[] resultByte = cipher.doFinal(dataByte);
            if (null != resultByte && resultByte.length > 0) {
                return new String(resultByte, "UTF-8");
            }
        } catch (Exception e) {
            e.printStackTrace();
            log.error("小程序解密手机号、unionId异常:" + e.getMessage());
        }
        return null;
    }


}

你可能感兴趣的:(微信)