wolfTPM v4.0.0 is our largest release to date. It delivers three headline capabilities: Firmware TPM (fwTPM) – a portable TPM 2.0 built on wolfCrypt. SPDM Secured Transport – encrypted host-to-TPM communication. ST33 TPM 2.0 Firmware Update – new update tool for STMicro ST33KTPM2X. All three are powered by the same wolfCrypt engine trusted in FIPS […]
Read MoreMore TagCategory: Uncategorized
wolfBoot Secure Boot on the STM32N6
wolfSSL is announcing wolfBoot support for the STM32N6 series added in PR #720, starting with the NUCLEO-N657X0-Q development board (STM32N657X0H). The STM32N6 is ST’s first Cortex-M55 microcontroller, designed for high-performance edge AI workloads with a dedicated Neural Processing Unit (NPU). wolfBoot provides cryptographic signature verification and secure firmware updates on this new platform. Getting started […]
Read MoreMore TagwolfBoot Adds SD Card Secure Boot for Xilinx Zynq UltraScale+ MPSoC
wolfBoot now supports SD card boot on the AMD/Xilinx Zynq UltraScale+ MPSoC (PR #699). This brings authenticated, signature-verified boot of Linux directly from SD card partitions on the ZCU102 evaluation kit, complementing the existing QSPI flash boot path that has been the sole production boot option until now. The ZCU102 (quad-core Cortex-A53, dual Cortex-R5, FPGA […]
Read MoreMore TagwolfBoot 2.8.0 released
We are pleased to announce the release of wolfBoot 2.8.0, a major update that expands platform support, strengthens PSA and TrustZone integration, and delivers another round of meaningful hardening across the secure boot and firmware update flow. This release stands out for the breadth of hardware now supported. wolfBoot 2.8.0 adds or extends support for […]
Read MoreMore TagRunning wolfEntropy on PetaLinux 2025.1 with ZCU102
wolfEntropy is a jitter based source of entropy provided by wolfSSL. Evaluating entropy sources is a critical step when building secure systems, especially on embedded platforms where hardware RNG behavior must be validated. This post walks through running wolfEntropy on PetaLinux 2025.1 targeting the ZCU102 Evaluation Kit platform and reviewing the results. The outcome: the […]
Read MoreMore TagHardware-Backed Security Using wolfTPM with SPDM
Encrypted Bus Transfers, Multi-Vendor TPM Support, and TCG SPDM Binding Your Secrets Are on the Wire The Problem Discrete TPM chips talk to the host CPU over physical buses: SPI, I2C, or LPC. By default, this communication is unencrypted. Security researchers have repeatedly demonstrated that an attacker with brief physical access can tap these buses […]
Read MoreMore TagwolfSSH v1.5.0 Release
wolfSSH v1.5.0 is now available! This release brings additional post-quantum hybrid key exchange algorithms, a broad hardening pass across the code base, and a large number of bug fixes. There is also one low-severity vulnerability fix in this release affecting wolfSSHd on Windows when handling an edge case in terminal resize messages received from an […]
Read MoreMore TagwolfTPM SPDM vs The Field
The Only SPDM Implementation with Hardware TPM Support A Different Category wolfTPM’s SPDM implementation is not a standalone SPDM library. It is SPDM integrated directly with hardware TPMs, a category that no other open-source project occupies. wolfTPM works hand-in-hand with Nuvoton and NSING to deliver SPDM on real hardware, with full TCG SPDM binding, PSK […]
Read MoreMore TagAnnouncing SPDM Support in wolfTPM
Lightweight Device Authentication for Nuvoton and NSING TPMs Device Attestation and Authentication Are No Longer Optional From data center accelerators to automotive ECUs, the industry is moving toward verifying every component on every bus. Today, wolfSSL is proud to announce SPDM support in wolfTPM, enabling secure device authentication and attestation for Nuvoton NPCT75x and NSING […]
Read MoreMore TagA Thank You to Everyone who Helped with wolfssl-5.9.1
Here at wolfSSL, we are extremely proud of the work we do, but we also realize we owe a debt of gratitude to the wider community for their help and support. We make the best cryptography and security library NOT because we are perfect, but because we do the right thing and we do it […]
Read MoreMore Tag
