Kaviaz Technology Kaviaz Technology
An engineer examines a holographic geometric lattice structure above a chip, with a classical lock icon dissolving into the lattice — representing the shift to post-quantum cryptography
Semiconductor IP

Xiphera

Complete hardware cryptographic IP, from AES and ECC through to PQC

  • AES
  • SHA-2/3
  • ECC
  • RSA
  • TLS 1.3
  • MACsec
  • IPsec
  • PQC

Xiphera is a Finnish cybersecurity company building pure-hardware (no CPU, no software) cryptographic IP cores for FPGA and ASIC, spanning traditional and post-quantum algorithms. Its product lines include nQrux® hardware trust engines and xQlave® post-quantum cryptography, targeting space, defense and telecom markets with long product lifecycles, and it has already adopted post-quantum standards such as ML-KEM and ML-DSA to get products ahead of the security challenges quantum computing brings.

Visit website
Products & capabilities

Xiphera portfolio

Hashing

Hash Functions

The full SHA-3 family (224/256/384/512-bit) plus SHAKE, cSHAKE and derivatives KMAC, TupleHash and ParallelHash, alongside a separate SHA-2/HMAC/HKDF offering for key derivation and message authentication, compliant with NIST standards.

Visit website
Symmetric

Symmetric Encryption

AES-GCM, AES-CTR, AES-XTS, versatile AES and side-channel-protected AES, plus ChaCha20-Poly1305 (AEAD) and Ascon — platform/device-agnostic, for secure data communication, storage encryption and IoT security.

  • AES-GCM, CTR, OFB, CFB, ECB, CBC, XTS
  • ChaCha20-Poly1305, Ascon
Visit website
Asymmetric

Asymmetric Cryptography

Three offerings: ECDH/ECDSA on NIST curves, Curve25519 for key exchange and signatures, and RSA signature verification — device-agnostic across FPGA/ASIC, and pairable with Xiphera's xQlave PQC cores for a hybrid classical + PQC model.

  • Elliptic curves: X25519, Ed25519, NIST P curves, ECDH, ECDSA
  • RSA signature verification
Visit website
Protocols

Security Protocols

MACsec, a Layer 2 point-to-point protocol using AES-GCM with 128- or 256-bit keys; IPsec for securing IP packets, common in VPNs; and TLS 1.3 with cryptographic computation and key management entirely in hardware, from a few Gbps to several tens of Gbps.

Visit website
Random numbers

TRNG / PRNG

The XIP8001B Balanced TRNG uses AES-CBC-MAC-based entropy extraction, fully digital with no multipliers or DSP blocks, compliant with NIST SP 800-22/SP 800-90B and FIPS 140-3 ready, passing PractRand and TestU01 test suites; paired with a PRNG for a full NIST SP800-90C-compliant RNG.

Visit website
Post-quantum

Post-Quantum Cryptography

ML-KEM (Kyber) for quantum-resistant key exchange and ML-DSA (Dilithium) for quantum-secure digital signatures, both NIST-standardized, supporting hybrid mode with classical ECC/RSA, pure hardware with no embedded CPU — trusted by over 20 technology companies globally.

Visit website

Want to know more about Xiphera?

We can arrange a vendor technical briefing, an evaluation licence and a deployment plan to get your team productive quickly.