TryTRY
BuyBUY
  • newsletter
  • contact
  • corporate
  • careers
Utimaco
de
TRYour free HSM simulator
BUYget a quote
  • home
  • solutions
  • products
  • services
  • blog
  • downloads
  • partners
  • company

Utimaco Portal

Here you will find everything you need as a partner and customerLogin required

  • home
  • solutions
    • industries
      • banking and financial services
        • acquirer
        • card scheme
        • issuer
      • government
        • federal government
      • cloud
        • cloud-based innovation
        • multi-cloud agility
      • connected car (V2V)
      • automotive solutions
      • road infrastructure (V2I), toll collection & ITS
      • industrial IoT & manufacturing
      • energy & utilities
      • lottery & gaming
      • media & entertainment
      • telecommunications
    • applications
      • authentication
      • blockchain
      • code signing
      • database encryption
      • document signing
      • key injection
      • post-quantum crypto agility
      • public key infrastructure (PKI)
        • EJBCA
      • random number generator (RNG)
    • compliance
      • certifications & approvals
        • Common Criteria (CC)
        • FIPS 140-2
      • compliance & standardization
        • FISMA, FedRAMP, and FICAM
        • Certificate Policy of the Smart Metering PKI
        • eIDAS
        • GDPR
        • PCI DSS
        • Privacy Shield
  • products
    • general purpose HSM
      • SecurityServer Se Gen2
      • SecurityServer CSe
      • Block-safe
      • CryptoServer CP5 (eIDAS & CC)
      • CryptoServer Cloud
      • TimestampServer
      • Q-safe
    • payment HSM
      • Atalla AT1000
      • PaymentServer Se Gen2
      • PaymentServer CSe
      • Secure Configuration Assistance (SCA)
      • QuickStart Services
      • u.cloud – Atalla PaymentHSMaaS
      • u.trust 360
    • Software Development Kit (SDK)
      • CryptoServer SDK
      • CryptoScript SDK
    • key management
      • Enterprise Key Management
    • HSM simulators
      • Block-safe HSM simulator
      • CryptoServer CP5 simulator (eIDAS & CC)
      • SecurityServer simulator
      • Q-safe HSM simulator
    • form factor
      • LAN appliance
      • PCIe card
      • cloud, “HSM as a Service”
    • KeyBRIDGE
      • KeyBRIDGE POI
      • KeyBRIDGE RKD
      • KeyBRIDGE eKMS
      • TokenBRIDGE™
  • services
    • consultancy
      • PQC consultancy
    • support
    • managed services
      • Key Exchange & Escrow Service (KEES™)
    • professional services
    • Utimaco Academy
  • blog
  • downloads
    • brochures
    • data sheets
    • case studies
    • white papers
    • webinars
    • e-books
      • PQC for Dummies e-book
      • HSM for Dummies e-book
    • Utimaco Portal
      • integration guides
      • knowledge base
  • partners
    • Partner Program
      • technology partner
    • Partner Locator
  • company
    • about Utimaco
      • legal
      • terms & conditions
      • privacy
        • cookie-policy
    • locations
    • news
      • newsletter
    • events
    • contact
    • careers
    • investors
    • utimaco management
    • business ethics
    • memberships and certifications
    • engagement in research
  • home
  • solutions
    • industries
      • banking and financial services
        • acquirer
        • card scheme
        • issuer
      • government
        • federal government
      • cloud
        • cloud-based innovation
        • multi-cloud agility
      • connected car (V2V)
      • automotive solutions
      • road infrastructure (V2I), toll collection & ITS
      • industrial IoT & manufacturing
      • energy & utilities
      • lottery & gaming
      • media & entertainment
      • telecommunications
    • applications
      • authentication
      • blockchain
      • code signing
      • database encryption
      • document signing
      • key injection
      • post-quantum crypto agility
      • public key infrastructure (PKI)
        • EJBCA
      • random number generator (RNG)
    • compliance
      • certifications & approvals
        • Common Criteria (CC)
        • FIPS 140-2
      • compliance & standardization
        • FISMA, FedRAMP, and FICAM
        • Certificate Policy of the Smart Metering PKI
        • eIDAS
        • GDPR
        • PCI DSS
        • Privacy Shield
  • products
    • general purpose HSM
      • SecurityServer Se Gen2
      • SecurityServer CSe
      • Block-safe
      • CryptoServer CP5 (eIDAS & CC)
      • CryptoServer Cloud
      • TimestampServer
      • Q-safe
    • payment HSM
      • Atalla AT1000
      • PaymentServer Se Gen2
      • PaymentServer CSe
      • Secure Configuration Assistance (SCA)
      • QuickStart Services
      • u.cloud – Atalla PaymentHSMaaS
      • u.trust 360
    • Software Development Kit (SDK)
      • CryptoServer SDK
      • CryptoScript SDK
    • key management
      • Enterprise Key Management
    • HSM simulators
      • Block-safe HSM simulator
      • CryptoServer CP5 simulator (eIDAS & CC)
      • SecurityServer simulator
      • Q-safe HSM simulator
    • form factor
      • LAN appliance
      • PCIe card
      • cloud, “HSM as a Service”
    • KeyBRIDGE
      • KeyBRIDGE POI
      • KeyBRIDGE RKD
      • KeyBRIDGE eKMS
      • TokenBRIDGE™
  • services
    • consultancy
      • PQC consultancy
    • support
    • managed services
      • Key Exchange & Escrow Service (KEES™)
    • professional services
    • Utimaco Academy
  • blog
  • downloads
    • brochures
    • data sheets
    • case studies
    • white papers
    • webinars
    • e-books
      • PQC for Dummies e-book
      • HSM for Dummies e-book
    • Utimaco Portal
      • integration guides
      • knowledge base
  • partners
    • Partner Program
      • technology partner
    • Partner Locator
  • company
    • about Utimaco
      • legal
      • terms & conditions
      • privacy
        • cookie-policy
    • locations
    • news
      • newsletter
    • events
    • contact
    • careers
    • investors
    • utimaco management
    • business ethics
    • memberships and certifications
    • engagement in research

Home / News / Making blockchain security simple: digital wallets & cryptocurrencies protected by Utimaco HSMs

Making blockchain security simple: digital wallets & cryptocurrencies protected by Utimaco HSMs

July 19, 2018
  • Encryption specialist ThothTrust implements Utimaco Hardware Security Module (HSM)
  • Utimaco HSM stores master data encryption key for digital wallets

Singapore, July 19th 2018 – Utimaco, a leading manufacturer of Hardware Security Module (HSM) technology, partners with ThothTrust in Singapore to protect digital wallets and their cryptocurrency assets with Utimaco HSMs and the CryptoScript Software Development Kit (SDK).

ThothTrust is a leading provider of innovative security techniques to prevent leaking of critical data. The Customizable Secure Cryptography (CSC) product offers different security levels and customization options to create a secure environment corresponding to the customer’s unique requirements. In the case of digital wallets, a Wallet Security Module (WSM) ensures cryptocurrency asset security based on a Utimaco HSM as its hardware root of trust.
The Utimaco HSM equipped with the WSM module generates secure digital wallets, which can store up to 255 pieces of 256-bit ECDSA key pairs for cryptocurrency and token transactions.

These keys securely sign cryptocurrency transactions including Bitcoin, Ethereum and many other flavors of Bitcoin, ERC20 compatible tokens as well as tokens that rely on 256-bit ECDSA cryptographic signatures. Signing happens without ever leaving the secure confines of the Utimaco HSM, preventing leakage of transaction keys.
Authentication to the WSM-backed wallets relies on public key challenge-response using ECDSA signatures via an ECC key pair created by the endpoint device and secured using the endpoint’s secure keystore. This keystore usually requires a password or biometric authentication from the user to access the device key pair for authorizing the user’s requested actions (i.e. creating digital signatures for cryptocurrency transactions or managing the wallet).

Users may also securely provision new devices for increased flexibility and accessing their digital wallets and cryptocurrency funds from multiple authorized endpoints. If a user loses all authorized devices, the WSM module features a wallet restoration functionality. This process requires the user to enter a 12-digit PIN code and supply the wallet ID to restore access to the wallet and its cryptocurrency transaction keys. At the same time, a limited number of possible PIN entry retries prevents brute-force attacks against the WSM-backed wallets and results in a lockout period when the number of PIN entries exceeds the threshold. The lockout period is backed by the HSM’s secure clock.
“In an era where digital security is highly complex and dynamic, Utimaco provides robust security standards and a highly adaptable platform that can implement complex and holistic security solutions. Its CryptoScript capability provides a secure environment for executing sensitive business logic to the standards of the FIPS-140 security certification,” says Gerald Tay, Director at ThothTrust.

Apart from securing cryptocurrency assets, the WSM is also capable of being modified for use in traditional mobile payment scenarios, e.g. in the context of tokenized payment applications by adapting the specific codes and scripts.

“ThothTrust and their customers can rely on Utimaco’s longstanding expertise and security standards in the field of hardware security,” says Malte Pollmann, CEO of Utimaco. “Optimized for encryption and crypto applications, the Utimaco HSM minimizes the risk of cryptocurrency assets being stolen from the digital wallets.”
Security is of major importance when it comes to digital wallets, as the financial losses in case of a security breach easily reach several million dollars. A recent breach with a loss of over $20 million is likely due to lost control of authentication keys, which the use of an HSM could have prevented.

About Utimaco

Utimaco is a leading manufacturer of Hardware Security Modules (HSMs) that provide the Root of Trust to many industries, from financial services and payment to the automotive industry, cloud services and the public sector. We keep cryptographic keys and digital identities safe protecting your critical digital infrastructures and high value data assets. Our products enable innovation and support the creation of new business by helping to secure critical business data and transactions.

Founded in 1983, today Utimaco HSMs are deployed across more than 80 countries in more than 1,000 installations. Utimaco employs a total of 200 people, with sales offices in Germany, the US, the UK and Singapore. For more information, visit https://hsm.utimaco.com/.

Follow us: LinkedIn, Twitter, YouTube.

 

Contact Utimaco:
Alexandra Guennewig
E-Mail: pr@utimaco.com
Contact TothTrust:
Gerald Tay
E-Mail: sales@thothtrust.com
Back to overview

Stay on top of our news
Don’t miss out on any Utimaco updates

Subscribe to Utimaco Newsletter

We will keep you posted with news from Utimaco and the industries we protect, as well as information on upcoming events and webinars.

Subscribe now

Partners

Compumatica secure networks GmbH Throughwave (Thailand) Co.,Ltd - Utimaco Hardware Security Modules Partner Telegrupp AS IQuantics Corp Thomas-Krenn.AG MALKOM D.Malińska i Wspólnicy s.j. Nexus - Utimaco Hardware Security Modules Partner AKEA S.A. - Utimaco Hardware Security Modules Partner Cyber Armor Pte Ltd Ascertia - Utimaco Hardware Security Modules Partner VAR Group SpA - Utimaco Hardware Security Modules Partner Fornetix - Utimaco Hardware Security Modules Partner Abrantix AG EUROPEAN DYNAMICS SA. MIcrosec Rohde & Schwarz Cybersecurity GmbH Komar Consulting Inc. - Utimaco Hardware Security Modules Partner Utimaco HSM - InfoGuard Swiss Cyber Security CEGA Security Utimaco HSM - PTESA_profesionales en transacciones electronicas Altacom UAB Softline Solutions GmbH CREAplus Italia S.r.l Macroseguridad Cryptomathic A/S Astel (UK) Ltd. - Utimaco Hardware Security Modules Partner Secure Source Distribution (M) Sdn Bhd - Utimaco Hardware Security Modules Partner Utimaco HSM - QuintessenceLabs Cryptomathic Inc. E-Sign S.A. Microexpert Limited CertiSur S.A. PKI Solutions Inc. Real security d.o.o. Envoy Data Corporation - Utimaco Hardware Security Modules Partner cv cryptovision GmbH SecureMetric Technology Sdn. Bhd. Primekey Solutions AB Synergy Computers (Pvt.) Ltd. - Utimaco Hardware Security Modules Partner Encryption Consulting LLC Nexus - Utimaco Hardware Security Modules Partner Compumatica secure networks B.V. ESYSCO Sp. z o.o. Cogito Group Pty Ltd Clearkey Consulting - Utimaco Hardware Security Modules Partner Perceptus-sp.-z-o.-o. intarsys AG JJNet International Co., Limited - Utimaco Hardware Security Modules Partner Safesoft Kft. Versasec Skytech Computing Solutions Limited. - Utimaco Hardware Security Modules Partner CewTec S.A. CREA plus d.o.o. MTG - Utimaco Hardware Security Modules Partner Baas Control s.r.o. Cryptomathic GmbH PETA (Thailand) Co., Ltd. PrimeKey Labs GmbH Fortiedge Pte Ltd. Nexus Technology GmbH
Find a partner

Share this page

EMEA

Utimaco IS GmbH
Germanusstraße 4
52080 Aachen
Germany
Phone: + 49 241 1696 200

Americas

Utimaco Inc.
900 E Hamilton Ave., Suite 400
Campbell, CA 95008
USA
Phone: +1 844 UTIMACO

APAC

Utimaco IS Pte Limited
80 Raffles Place,
#32-01, UOB Plaza
Singapore 048624
Phone: +65 6622 5347

Utimaco

  • support
  • corporate
  • careers
  • legal
  • terms & conditions
  • privacy
  • cookie-policy
© 2021
to top
  • home
  • solutions
    • industries
      • banking and financial services
        • acquirer
        • card scheme
        • issuer
      • government
        • federal government
      • cloud
        • cloud-based innovation
        • multi-cloud agility
      • connected car (V2V)
      • automotive solutions
      • road infrastructure (V2I), toll collection & ITS
      • industrial IoT & manufacturing
      • energy & utilities
      • lottery & gaming
      • media & entertainment
      • telecommunications
    • applications
      • authentication
      • blockchain
      • code signing
      • database encryption
      • document signing
      • key injection
      • post-quantum crypto agility
      • public key infrastructure (PKI)
        • EJBCA
      • random number generator (RNG)
    • compliance
      • certifications & approvals
        • Common Criteria (CC)
        • FIPS 140-2
      • compliance & standardization
        • FISMA, FedRAMP, and FICAM
        • Certificate Policy of the Smart Metering PKI
        • eIDAS
        • GDPR
        • PCI DSS
        • Privacy Shield
  • products
    • general purpose HSM
      • SecurityServer Se Gen2
      • SecurityServer CSe
      • Block-safe
      • CryptoServer CP5 (eIDAS & CC)
      • CryptoServer Cloud
      • TimestampServer
      • Q-safe
    • payment HSM
      • Atalla AT1000
      • PaymentServer Se Gen2
      • PaymentServer CSe
      • Secure Configuration Assistance (SCA)
      • QuickStart Services
      • u.cloud – Atalla PaymentHSMaaS
      • u.trust 360
    • Software Development Kit (SDK)
      • CryptoServer SDK
      • CryptoScript SDK
    • key management
      • Enterprise Key Management
    • HSM simulators
      • Block-safe HSM simulator
      • CryptoServer CP5 simulator (eIDAS & CC)
      • SecurityServer simulator
      • Q-safe HSM simulator
    • form factor
      • LAN appliance
      • PCIe card
      • cloud, “HSM as a Service”
    • KeyBRIDGE
      • KeyBRIDGE POI
      • KeyBRIDGE RKD
      • KeyBRIDGE eKMS
      • TokenBRIDGE™
  • services
    • consultancy
      • PQC consultancy
    • support
    • managed services
      • Key Exchange & Escrow Service (KEES™)
    • professional services
    • Utimaco Academy
  • blog
  • downloads
    • brochures
    • data sheets
    • case studies
    • white papers
    • webinars
    • e-books
      • PQC for Dummies e-book
      • HSM for Dummies e-book
    • Utimaco Portal
      • integration guides
      • knowledge base
  • partners
    • Partner Program
      • technology partner
    • Partner Locator
  • company
    • about Utimaco
      • legal
      • terms & conditions
      • privacy
        • cookie-policy
    • locations
    • news
      • newsletter
    • events
    • contact
    • careers
    • investors
    • utimaco management
    • business ethics
    • memberships and certifications
    • engagement in research