The wolfSSL team is pleased to announce wolfBoot 2.9.0, expanding hardware support, adding new image and cryptographic options, and continuing security hardening across boot and update flows. More Hardware Targets wolfBoot 2.9.0 adds support for several new platforms, including: STM32N6, STM32U3, STM32C5, STM32G4 and STM32WBA NXP LPC54S018M-EVK and Kinetis KL26 Xilinx Zynq-7000 ZC702 NXP T2080 […]
Read MoreMore TagCategory: wolfBoot
wolfBoot Brings Verified Boot to AArch64 UEFI: Booting Linux on the NVIDIA Jetson Orin Nano
wolfBoot now runs as a native AArch64 UEFI application, extending its measured, cryptographically verified boot to any 64-bit ARM platform that boots through UEFI firmware, and anchoring a complete ARM Root of Trust (RoT) from silicon to the operating system. We validated it end to end on an NVIDIA Jetson Orin Nano Developer Kit, taking […]
Read MoreMore TagwolfBoot Adds Persistent Failure Diagnostics
Ever had a device in the field reject a firmware update or roll back to an older image, with no clue why? wolfBoot can now tell you. With the new WOLFBOOT_PERSIST_FAILURE_STATUS option, wolfBoot records the cause of every update, self-update and rollback failure into a dedicated flash region, so your application can read it back […]
Read MoreMore TagwolfBoot as the Xilinx ZynqMP FSBL: a full-featured secure first-stage replacement
wolfBoot can now run as the First Stage Boot Loader (FSBL) on Xilinx ZynqMP, replacing the stock Xilinx FSBL entirely. On a ZCU102 (xczu9eg) the BootROM hands control straight to wolfBoot in on-chip memory (OCM) at EL3; wolfBoot brings up the processing system, verifies a signed image with its own keys, and boots Linux to […]
Read MoreMore TagwolfBoot Now Supports the STM32WBA
wolfBoot, the secure bootloader from wolfSSL, has a new target: ST’s STM32WBA family of Cortex-M33 wireless microcontrollers with TrustZone and Bluetooth LE 5.4. The port has been validated on the NUCLEO-WBA55CG board (STM32WBA55CG: 1 MB flash, 128 KB SRAM). Why the STM32WBA The WBA family is ST’s current-generation wireless line: an Arm Cortex-M33 with TrustZone-M, […]
Read MoreMore TagwolfBoot Microchip PolarFire SoC support for full HSS replacement
wolfBoot can now boot a Microchip PolarFire SoC (MPFS250T) entirely on its own — no Hart Software Services (HSS) required — and bring up 4-CPU SMP Linux from a signed, verified image. One bootloader, one root of trust wolfBoot can now run in M-Mode directly on the E51 hart out of eNVM and handles all […]
Read MoreMore TagLMS versus XMSS versus SLH-DSA for Secure Boot
Here at wolfSSL we always stay on top of our customer’s requirements. By now you’ve heard us talk about the NSA’s (National Security Agency) CNSA 2.0 (Commercial National Security Algorithm Suite 2.0) ad nauseum. Well, let’s focus in on it again and zero in on that first line: It states that for Software and Firmware […]
Read MoreMore TagwolfBoot for CNSA 2.0 Secure Boot on Zynq UltraScale+ MPSoC
Executive Summary Problem: Zynq UltraScale+ MPSoC secure boot authenticates the FSBL with RSA-4096 in immutable BootROM. CNSA 2.0 requires post-quantum algorithms for long-term software and firmware verification. RSA-4096 is not quantum-resistant, so the BootROM cannot be the final CNSA 2.0 firmware-authentication answer. Solution: Use wolfBoot as the system-level post-quantum authorization layer. Keep AMD secure boot […]
Read MoreMore TagwolfBoot Now Supports the NXP Kinetis KL26 with Post-Quantum LMS Signatures
wolfSSL is pleased to announce that wolfBoot, our secure bootloader, now ships with support for the NXP Kinetis KL26 family (MKL26Z128), a Cortex-M0+ part running at 48 MHz with 128 KB of flash and 16 KB of SRAM. The port has been validated on the FRDM-KL26Z development board. Post-Quantum Secure Boot on a Cost-Constrained Part […]
Read MoreMore TagwolfHSM Now Supports the Infineon AURIX™ TC4xx
We’re excited to announce that wolfHSM now supports Infineon’s AURIX™ TC4xx. We have wolfHSM running on the TC4xx, and an initial release is coming soon. This brings wolfSSL’s portable, open-source HSM framework to Infineon’s next-generation AURIX platform, the successor to the widely deployed TC3xx family. Why AURIX TC4xx? Infineon’s AURIX™ TC4xx is the next generation […]
Read MoreMore Tag
