wolfBoot now uses wolfCOSE for DICE attestation

wolfBoot now uses wolfCOSE as a reusable COSE and CBOR foundation for its existing DICE attestation capability.


wolfBoot already provides DICE-based device identity and attestation, and we are now integrating wolfCOSE as the stable, reusable COSE and CBOR layer behind that support. The integration replaces the earlier local token-encoding path with wolfCOSE for creating signed COSE_Sign1 Entity Attestation Tokens, while preserving support for both software and hardware-backed signing. This gives wolfBoot a cleaner standards-based implementation for reporting firmware measurements and device security claims, strengthens long-term maintainability, and connects DICE attestation directly to the growing wolfSSL embedded security ecosystem. The work is being developed in wolfBoot pull request #831 and has been validated on STM32H5 hardware.

If you have questions about any of the above, please contact us at facts@wolfssl.com or call us at +1 425 245 8247.

Download wolfSSL Now