CyberCogs Hardware Security Module
Caveat: When operated in FIPS mode
Certificate
| Certificate number | 4324 |
|---|---|
| Standard | FIPS 140-2 |
| Status | active |
| Sunset date | 2026-09-21 |
| Overall level | 3 |
| Module type | Hardware |
| Embodiment | Multi-Chip Embedded |
| Vendor | CyberCogs, Inc. · website |
| Hardware versions | CC50-3, CC100-3, CC200-3, CC300-3, CC400-3, CC50-4, CC100-4, CC200-4, CC300-4 and CC400-4 |
| Firmware versions | 3.0 |
Module description
The CyberCogs HSM is a multi-chip embedded hardware cryptographic module in the form of a PCI-Express card. The module is intended for use within a general-purpose or custom computing platform. The module is contained in its own secure tamper envelope providing active anti-tamper functionality. The module is designed to offer blind secure PKCS11 key signing, encryption, and token storage with physical security, over a PCIe connection to a Host server.
Security level exceptions
- Physical Security: Level 4
- Mitigation of Other Attacks: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | A1438, A1468 |
| CKG | vendor affirmed |
| CVL | A1438 |
| DRBG | A1438, C1777 |
| ECDSA | A1438 |
| ENT | |
| HMAC | A1438 |
| KAS | A1438 |
| KAS | |
| KAS-SSC | A1438 |
| KBKDF | A1468 |
| KDA | A1468 |
| KTS | |
| KTS | |
| KTS | |
| KTS | |
| KTS-RSA | |
| PBKDF | A1438 |
| RSA | A1438 |
| SHA-3 | 20, A1438 |
| SHS | A1438 |
Allowed algorithms
EC Diffie-Hellman (key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); ECDSA
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2022-10-10 | Initial | Acumen Security |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2022-10-10