Digital.ai Key & Data Protection Module

Certificate #4910

Webpage information

Status active
Validation dates 03.12.2024
Sunset date 02-12-2026
Standard FIPS 140-3
Security level 1
Type Software
Embodiment Multi-Chip Stand Alone
Caveat Interim Validation; No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs
Exceptions
  • Physical security: N/A
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A
Description The Digital.ai Key & Data Protection Module is a sophisticated implementation of whitebox cryptography, (Class A safety-critical software per IEC 62304) that ingests cryptographic keys for use in the cryptographic operations performed by methods in the Digital.ai Key & Data Protection Module libraries.
Version (Hardware) N/A
Version (Firmware) N/A
Tested configurations
  • Android v12 on ARMv8.2-A Cortex-A75
Vendor Digital.ai Software, Inc.
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, CAST, HMAC, HMAC-SHA-256
Asymmetric Algorithms
ECDH, ECDSA, ECC, Diffie-Hellman
Hash functions
SHA-256, SHA-512
Schemes
MAC, Key Agreement
Randomness
RNG
Elliptic Curves
P-256
Block cipher modes
ECB

Security level
Level 1

Standards
FIPS 140-3, FIPS 197, FIPS 186-4, FIPS 198-1, FIPS 180-4, NIST SP 800-38A, NIST SP 800-140B, ISO/IEC 24759, ISO/IEC 19790, ISO/IEC 2014, ISO/IEC 2017

File metadata

Author Martin Downs
Creation date D:20240913114350-07'00'
Modification date D:20241126130234-08'00'
Pages 22
Creator Acrobat PDFMaker 24 for Word
Producer Adobe PDF Library 24.3.86

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 4910,
  "dgst": "0a38b4739f62ff43",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "AES-ECBA3516",
        "SHA2-512A3516",
        "SHA2-256A3516",
        "HMAC-SHA2-256A3516",
        "KAS-ECC CDH-Component SP800-56Ar3A3516",
        "ECDSA SigVer (FIPS186-4)A3516"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "-"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 6
          },
          "ECDH": {
            "ECDH": 12
          },
          "ECDSA": {
            "ECDSA": 19
          }
        },
        "FF": {
          "DH": {
            "Diffie-Hellman": 1
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "ECB": {
          "ECB": 4
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 1
        },
        "MAC": {
          "MAC": 1
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "P-256": 10
        }
      },
      "eval_facility": {},
      "fips_cert_id": {},
      "fips_certlike": {
        "Certlike": {
          "HMAC- SHA-256": 2,
          "HMAC-SHA- 256": 8,
          "HMAC-SHA-256": 8,
          "HMAC-SHA-256 2": 2,
          "SHA-256": 6,
          "SHA-512": 3
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 9
        }
      },
      "hash_function": {
        "SHA": {
          "SHA2": {
            "SHA-256": 6,
            "SHA-512": 3
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "RNG": {
          "RNG": 3
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-3": 15,
          "FIPS 180-4": 3,
          "FIPS 186-4": 3,
          "FIPS 197": 3,
          "FIPS 198-1": 3
        },
        "ISO": {
          "ISO/IEC 19790": 8,
          "ISO/IEC 2014": 2,
          "ISO/IEC 2017": 2,
          "ISO/IEC 24759": 6
        },
        "NIST": {
          "NIST SP 800-140B": 1,
          "NIST SP 800-38A": 2
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 29
          },
          "CAST": {
            "CAST": 8
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 29,
            "HMAC-SHA-256": 5
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Martin Downs",
      "/Comments": "",
      "/Company": "",
      "/ContentTypeId": "0x010100B8E7469898DE2F4FA9598986DC7C2FDE",
      "/CreationDate": "D:20240913114350-07\u002700\u0027",
      "/Creator": "Acrobat PDFMaker 24 for Word",
      "/Keywords": "",
      "/MediaServiceImageTags": "",
      "/ModDate": "D:20241126130234-08\u002700\u0027",
      "/Producer": "Adobe PDF Library 24.3.86",
      "/SourceModified": "D:20240913184332",
      "/Subject": "",
      "/Title": "",
      "pdf_file_size_bytes": 548275,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 22
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "360a9696e992b66dd1e409f94d5d7652db82ad0c75c52af1a852cb0cc9da6262",
    "policy_txt_hash": "7f67a62d5898648b037b87a4c47520c02959336252fbd3bfe5f90a20b06b43a4"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "Interim Validation; No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs",
    "certificate_pdf_url": null,
    "date_sunset": "2026-12-02",
    "description": "The Digital.ai Key \u0026 Data Protection Module is a sophisticated implementation of whitebox cryptography, (Class A safety-critical software per IEC 62304) that ingests cryptographic keys for use in the cryptographic operations performed by methods in the Digital.ai Key \u0026 Data Protection Module libraries.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Physical security: N/A",
      "Non-invasive security: N/A",
      "Mitigation of other attacks: N/A"
    ],
    "fw_versions": "N/A",
    "historical_reason": null,
    "hw_versions": "N/A",
    "level": 1,
    "mentioned_certs": {},
    "module_name": "Digital.ai Key \u0026 Data Protection Module",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-3",
    "status": "active",
    "sw_versions": "8.3.1",
    "tested_conf": [
      "Android v12 on ARMv8.2-A Cortex-A75"
    ],
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2024-12-03",
        "lab": "Penumbra Security, Inc.",
        "validation_type": "Initial"
      }
    ],
    "vendor": "Digital.ai Software, Inc.",
    "vendor_url": "http://www.digital.ai"
  }
}