Stateful Hash-Based Signatures (LMS and XMSS) in X.509 Certificates

wolfSSL now supports the stateful hash-based signature schemes LMS/HSS and XMSS/XMSS^MT in X.509 certificates, following RFC 9802. What’s New Both sides of the certificate lifecycle are covered: Generation – Sign certificates and CSRs with an LMS/HSS or XMSS/XMSS^MT key, encoded exactly as RFC 9802 specifies. Verification – Parse and verify certificate chains that use these […]

Read MoreMore Tag

wolfCrypt on the TI C2000 C28x: PQC ML-DSA/ML-KEM on a 16-bit-byte DSP

We’re excited to share that wolfCrypt now runs a full modern crypto suite on Texas Instruments’ C2000 C28x – the NIST post-quantum schemes ML-DSA (FIPS 204) and ML-KEM (FIPS 203), plus RSA, Diffie-Hellman, AES, ChaCha20-Poly1305, HMAC/HKDF, the Curve25519/Ed25519, Curve448/Ed448, and NIST P-256 elliptic-curve schemes, and the SHA-1/2/3 and SHAKE hash families – all validated on […]

Read MoreMore Tag

wolfSSL adds LMS and XMSS to wolfHSM

LMS and XMSS are stateful hash-based signature schemes (NIST SP 800-208) suited to long-lived firmware and code signing. wolfSSL has added support for both post-quantum cryptographic (PQC) algorithms to wolfHSM. This feature leverages the hardware security module (HSM) to securely and persistently store the “stateful” key and counter for both algorithms, as well as perform […]

Read MoreMore Tag

Posts navigation

1 2 3 4 5 21 22 23