wolfSSL is adding RFC 8778 HSS/LMS stateful hash-based signature support to wolfCOSE, giving COSE a NIST-approved, quantum-resistant signing option today. Hash-based signatures are attractive for firmware and long-lived attestation because their security rests only on the hash function, and bringing LMS to COSE lets customers adopt post-quantum signing inside the compact CBOR message formats they […]
Read MoreMore TagCategory: wolfCOSE
wolfCOSE Adds PSA Attestation and EAT Support
wolfSSL is adding PSA Initial Attestation API 2.0 and RFC 9783 PSA Entity Attestation Token (EAT) support to wolfCOSE. This lets a device prove its identity, security lifecycle state, and boot measurements to a relying party using the compact COSE/CBOR formats already used across the IoT ecosystem. Consistent with wolfCOSE’s design, PSA/EAT is fully off […]
Read MoreMore TagwolfCOSE Adds COSE Countersignatures
wolfSSL is adding RFC 9338 COSE Countersignature support to wolfCOSE, letting a second party sign over an already-signed, encrypted, or MAC’d COSE message. Countersignatures matter for notarization, timestamping, and multi-party workflows, proving that a message existed and was endorsed by an additional authority after the fact, and making wolfCOSE a fit for supply-chain and attestation […]
Read MoreMore TagAnnouncing wolfCOSE v2.0.0
We are excited to announce wolfCOSE 2.0.0, a major update to wolfSSL’s complete, zero-allocation C implementation of CBOR (RFC 8949) and COSE (RFC 9052) built on wolfCrypt. This release adds standardized HSS/LMS stateful hash-based signatures, RFC 9338 countersignatures, RFC 9783 PSA/EAT attestation, RFC 9864 fully specified signature algorithms, delegated signing, and experimental COSE-HPKE, while preserving […]
Read MoreMore TagIntroducing wolfTrust
wolfTrust is a trusted firmware platform for Arm Cortex-M, now under development at wolfSSL, that brings the full wolfSSL security stack into a single secure runtime. It implements the Arm Firmware Framework for M (FF-M) with source-compatible PSA client interfaces, so applications written for Trusted Firmware-M (TF-M) keep their psa_* calls and simply swap the […]
Read MoreMore TagwolfCOSE Adds COSE_Key and CBOR APIs for Embedded Credentials
wolfCOSE has added new COSE_Key and CBOR APIs that make it safer and easier to build embedded credential, attestation, WebAuthn, and provisioning systems. The update preserves wolfCOSE’s lightweight, allocation-free design while addressing practical integration gaps around key publication, fixed-size buffers, and nested protocol data. What is Included Public-only COSE_Key encoding that prevents private scalars, seeds, […]
Read MoreMore TagwolfCOSE Now Ships as an STM32Cube Pack
wolfCOSE is now available as an STM32Cube pack, I-CUBE-wolfCOSE, so you can add zero-allocation CBOR and COSE to any STM32 project straight from STM32CubeMX or STM32CubeIDE, with no manual source integration. It builds on the wolfSSL Cube pack, I-CUBE-wolfSSL, for all cryptography. What You Get Cube packs let STM32 developers add a library to a […]
Read MoreMore TagBuilding EUDI Wallet Verifiers on wolfSSL: mDL, CBOR/COSE, and Post-Quantum Credentials
Under eIDAS 2.0, every EU Member State must offer a certified EU Digital Identity Wallet by 24 December 2026, and by December 2027 regulated relying parties in banking, telecom, transport, energy, health, and digital infrastructure must accept them. That second deadline is the one embedded developers should watch: it puts millions of verifier devices into […]
Read MoreMore TagwolfCOSE Example for the NUCLEO-H563ZI
Alongside the new wolfCOSE STM32Cube pack, we now ship a complete, hardware-verified wolfCOSE example for the STM32 NUCLEO-H563ZI. Open the project, generate, build, flash, and watch it sign and verify a COSE message on the H5, with no clock or pin plumbing to figure out yourself. What It Is This is a pre-configured STM32CubeMX project […]
Read MoreMore TagAnnouncing wolfCOSE 1.0.0: Standards-based COSE signing, encryption, and authentication for constrained environments
We are excited to announce the first stable release of wolfCOSE 1.0.0, a complete, zero-allocation C implementation of CBOR (RFC 8949) and COSE (RFC 9052/9053) built on top of wolfCrypt. wolfCOSE brings standards-based signing, encryption, and authentication of CBOR data to even the smallest embedded targets, with a tiny footprint, no dynamic memory, and a […]
Read MoreMore Tag
