# Use non AES256-CBC cipher

**URL:** <https://discuss.zetetic.net/t/use-non-aes256-cbc-cipher/6970>\
**Category:** SQLCipher\
**Created:** [June 22, 2025, 3:05am UTC](https://discuss.zetetic.net/t/use-non-aes256-cbc-cipher/6970 "2025-06-22T03:05:58Z")\
**Posts on this page:** 1\
**Page:** 1

<div class="post-metadata">

**Author:** ![Eureka](https://sea2.discourse-cdn.com/flex016/user_avatar/discuss.zetetic.net/eureka/32/2425_2.png) [@Eureka](https://discuss.zetetic.net/u/Eureka)\
**Post date:** [June 22, 2025, 3:05am UTC](https://discuss.zetetic.net/t/use-non-aes256-cbc-cipher/6970/1 "2025-06-22T03:05:58Z")

</div>

Hello,

I’m a newbie to sqlcipher, using the latest version (based on OpenSSL). I have a question: the default cipher is AES-256-CBC. After a preliminary review of the code, I found that SQLCipher is very well designed. I located the line `#define OPENSSL_CIPHER EVP_aes_256_cbc()` and tried changing it to `EVP_aes_128_cbc` or `EVP_sm4_cbc` (both are 128-bit key ciphers, a necessary modification for certain hardware environments). The compilation was successful, and it seems to work correctly. I know this modification is not recommended, what are the potential hidden dangers of using it this way?

Thanks!
