On January 15 we received a potential vulnerability report about the TKey firmware through our bug bounty program. The reporter had discovered that code that should erase memory where sensitive data is stored, is optimised away by the compiler. We deem the firmware problem a fairly benign bug because no sensitive data is leaked and the memory is erased and hardware protected anyway.
Continue reading
From December 7th, all TKeys will be shipped with our upgraded device housing, an injection-molded plastic case crafted from PA12-Grilamid TR 90. This transition brings about several practical advantages, primarily in terms of durability and aesthetics.
Continue reading
Today we are publishing another officially supported application, TKey Signature tool (tkey-sign).
TKey Signature tool is a command line tool (tkey-sign) for signing and verifying files using a cryptographic signature done on the Tillitis TKey. It uses the TKey device signer (the same device app tkey-ssh-agent uses) for the cryptographic signatures.
Continue reading
Introduction The TKey Secure Random Number Generator app allows a user and a client system to get high-quality random numbers from a source separate from the client. A unique feature of the app is that it can also sign the random data delivered, thus allowing the user to verify the integrity of the generator, the integrity of the data, and the origin of the data delivered. But a secure random number generator must also deliver high-quality random numbers. In this blog post, we will look at how the generator works and the measured quality. In a coming blog post will discuss the signing and verifying in more detail.
Continue reading
Today we’re announcing two new products - TKey Unlocked - TKey Programmer
What are they? Tkey Unlocked is a non-provisioned TKey for advanced users that want to provision their TKeys themselves, experiment with new hardware designs, or change the bootloader firmware.
Continue reading
The Homebrew package for tkey-ssh-agent has been updated to include:
man page, i.e., man tkey-ssh-agent
default to promt for the USS (User Supplied Secret) input
Continue reading
Introduction Randomness plays a crucial role in various fields, including cryptography, simulations, and data analysis. To ensure the security and integrity of systems, high-quality random data is essential. That’s where the TKey Random Generator comes into play.
Continue reading
Update Update April 3, 2023: All is finalised and web shop is open!
An update on our release and what’s remaining.
Plan was to release and open our web shop by the end of last week. During final work, we found that USB communication with the TKey didn’t work on MacBook in all use cases. This is now corrected and we are currently double checking everything on the firmware.
Continue reading