The Dark Bio firmware and device signing keys are hardware bound to genuine YubiHSM and YubiKey devices.
Furthermore, the public audit logs demonstrate (within the limits of the YubiHSM 2 capabilities) that no malicious firmware exists.
The repository also includes YubiHSM and YubiKey provenance attestations, signer certificate chains and full audit logs.
More in an upcoming blog post.
The Dark Bio firmware and device signing keys are hardware bound to genuine YubiHSM and YubiKey devices.
Furthermore, the public audit logs demonstrate (within the limits of the YubiHSM 2 capabilities) that no malicious firmware exists.
🔐 Hardware-backed TLS with YubiHSM 2
📈 KEDA on GKE: Event-Driven Autoscaling
🔀 Migrate from NGINX to Traefik in Minutes
🧠 RootCause MCP Server
Read it here: https://kube.today/issues/180
🔐 Hardware-backed TLS with YubiHSM 2
📈 KEDA on GKE: Event-Driven Autoscaling
🔀 Migrate from NGINX to Traefik in Minutes
🧠 RootCause MCP Server
Read it here: https://kube.today/issues/180
its going to take a while to figure out how to make use of this but it will be prefect for what i need
its going to take a while to figure out how to make use of this but it will be prefect for what i need
Specifically, you cannot prove that you didn't create a hidden copy of a private key. 🧵
Specifically, you cannot prove that you didn't create a hidden copy of a private key. 🧵
If your threat model is to protect the keys from bad actors, a YubiHSM is perfect. If you want to demonstrate no misuse, though luck.
If your threat model is to protect the keys from bad actors, a YubiHSM is perfect. If you want to demonstrate no misuse, though luck.
Still need a tiny CLI to pull a released binary and sign it with a YubiKey/YubiHSM and push the sigs back, but otherwise it's so nice to see it work...
Still need a tiny CLI to pull a released binary and sign it with a YubiKey/YubiHSM and push the sigs back, but otherwise it's so nice to see it work...
www.notebookcheck.com/Ungepatchte-...
www.notebookcheck.com/Ungepatchte-...
That means I can just forge an arbitrary audit journal and publish that. Only physically querying the HSM can prove it's real or fake. 🤮
That means I can just forge an arbitrary audit journal and publish that. Only physically querying the HSM can prove it's real or fake. 🤮
www.yubico.com/product/yubi...
www.yubico.com/product/yubi...
I don't want the *hash*, but the *signature* that's mentioned on your product page. Thank you.
I don't want the *hash*, but the *signature* that's mentioned on your product page. Thank you.
- Attest asymmetric keys
- Generate asymmetric wrap keys
- CANNOT attest asymmetric wrap keys
I.e. when you're trying to back up your HSM to another HSM, it's cryptographically impossible to prove that it will be encrypted to the HSM you intend to.
- Attest asymmetric keys
- Generate asymmetric wrap keys
- CANNOT attest asymmetric wrap keys
I.e. when you're trying to back up your HSM to another HSM, it's cryptographically impossible to prove that it will be encrypted to the HSM you intend to.
The repository also includes YubiHSM and YubiKey provenance attestations, signer certificate chains and full audit logs.
More in an upcoming blog post.
The repository also includes YubiHSM and YubiKey provenance attestations, signer certificate chains and full audit logs.
More in an upcoming blog post.
The purpose of ed25519ph is to run on HSMs. The YubiHSM does not support it... so for $800, it can only sign 2019 bytes max. 🥲
The purpose of ed25519ph is to run on HSMs. The YubiHSM does not support it... so for $800, it can only sign 2019 bytes max. 🥲
The YubiHSM *does* have an identity, but you *cannot* attest the audit log with it.
But if you add an asym-key auth, your session with the HSM will be authenticated. So get the logs and publish the entire comms 🤪🤮
The YubiHSM *does* have an identity, but you *cannot* attest the audit log with it.
But if you add an asym-key auth, your session with the HSM will be authenticated. So get the logs and publish the entire comms 🤪🤮
dont know if the yubihsm (same form factor but way cooler) uses touch yet but i want that on a chain
dont know if the yubihsm (same form factor but way cooler) uses touch yet but i want that on a chain
params.FindSecureBootSigner(params.STAGING))
And it returns me a construct that I can just call to sign a firmware blob, without caring if it's a dev key, yubikey, yubihsm, whatever.
Feels so good to work in #golang a bit, jesus the productivity.
params.FindSecureBootSigner(params.STAGING))
And it returns me a construct that I can just call to sign a firmware blob, without caring if it's a dev key, yubikey, yubihsm, whatever.
Feels so good to work in #golang a bit, jesus the productivity.