
usbsas
Tool and framework for securely reading untrusted USB mass storage devices.

Tool and framework for securely reading untrusted USB mass storage devices.

SSH agent that creates and manages TPM-sealed keys for hardware-bound authentication, supporting key generation, import, wrapping, PIN protection,…

Linux kernel device driver providing user-space access to hardware cryptographic accelerators, enabling reuse of kernel-space ciphers for accelerated…

Tool to securely and efficiently wipe devices and partiitions for Linux

Panic button for protection against cold boot attacks

RSA Key Checker for CVE-2022-20866

Exploit for CVE-2024-21980 targeting AMD SEV firmware to decrypt arbitrary memory of decommissioned SEV-SNP guests via a command buffer enforcement…

Exploit for AMD SEV-SNP firmware vulnerability CVE-2024-21978, enabling decryption of arbitrary guest memory via memory corruption of context pages.

Centralized, TPM 2.0 hardware-backed cryptographic identity enclave and multi-protocol bridge for Linux (FIDO2/CTAP2 WebAuthn Passkeys, OpenSSH…

Exploit for AMD SEV-SNP firmware vulnerability (CVE-2023-31355) that decrypts arbitrary memory of decommissioned guests by corrupting the UMC key…

Zig Hardware Security Module library for PIV, CAC, and YubiKey tokens via PC/SC. Supports certificates, PIN management, signing, and decryption.

Protect your SSH keys with your Mac's Secure Enclave

Open source smart card tools and middleware. PKCS#11/MiniDriver

Using @charmbracelet to create an Ethereum browser with style

Cryptologically Enchanted Shamir's Secret.

Home to the Signal Protocol as well as other cryptographic primitives which make Signal possible.

Tinfoil Chat - Onion-routed, endpoint secure messaging system

A list of public attacks on BitLocker