Important News:SafeLogic's CryptoComply Achieves FIPS 140-3 Validation for 28 OEs and Receives Certificate #4781! Read the blog post!
The SafeLogic Blog
2024 Year in Review
January 8, 2025 •Evgeny Gervis
In 1942, Admiral Chester Nimitz led the US Navy to a crucial victory over the Japanese Navy in the battle of Midway, changing the course of World War II in the Pacific. A crucial factor for this victory was the work of US codebreakers, led by Commander Joseph Rochefort, which provided Admiral Nimitz with both the exact location and timing of the Japanese Navy’s attack. This is only one of many examples in history where cryptography and cryptanalysis changed the course of history. The race between the code makers and codebreakers is ongoing, and here at SafeLogic, we never forget what is at stake when it comes to getting cryptography right.
This past year, the world of cryptography made history. It was my honor and privilege to attend an August 13th meeting at the White House on the day the National Institute of Standards (NIST) introduced three new quantum-resistant cryptographic algorithm standards. Ever since that day, we have seen a significant uptick in interest in migrating to post-quantum cryptography (PQC), making quantum resilience an idea whose time has come.
Our job at SafeLogic is to stay ahead of cryptography developments by being proactive and bringing validated, holistic, interoperable, and crypto-agile cryptographic solutions to our customers. These solutions enable enduring privacy and trust in the ever-changing digital world. We have been on this mission for over twelve years, and with all the historic developments in 2024, we have been busy!
We have previously written about three tsunamis of change happening simultaneously in the world of cryptography: the transition from FIPS 140-2 to FIPS 140-3, more stringent requirements for entropy generation, and of course, migration to PQC. In 2024, SafeLogic made significant strides in each one of these areas.
To streamline our customers’ transition to FIPS 140-3, SafeLogic secured multiple FIPS 140-3 validations, with SafeLogic’s CryptoComply v3 software securing FIPS 140-3 validation on the most extensive set of Operating Environments (OEs). This is a significant achievement that enables SafeLogic to assist its customers in adopting FIPS 140-3 validated cryptography on a wide variety of OEs from mobile, to server, to cloud, to embedded, to mainframes, and everything in between.
SafeLogic had also been preparing to meet NIST’s new requirements for strong, FIPS validated sources of entropy. In that respect, SafeLogic has been working hard on a new product that we plan to release sometime in Q1 of FY25. That product has gone through extensive lab testing and is now undergoing validation by NIST. With this new product, SafeLogic customers will be able to claim the use of a strong, FIPS validated, software-based source of entropy on the same extensive set of OEs as supported by our FIPS 140-3 validated CryptoComply software.
Finally, in the realm of PQC, SafeLogic has been running an early access program for its upcoming PQC module since announcing it at the RSA conference. Most recently, SafeLogic announced an early access program for its new product called CryptoComply PQ TLS, which adds quantum resistance to quantum-vulnerable TLS connections. SafeLogic has also been collaborating with NIST’s National Cybersecurity Center of Excellence (NCCoE) in 2024 as lead for the PQC Risk Management and Migration Prioritization workstream.
In addition to our work in FIPS 140-3, entropy, and PQC, SafeLogic continued to innovate in areas such as policy-driven crypto-agility and cryptographic use discovery – both crucial in the context of PQC migration and also ongoing cryptographic management. We have also introduced our new CryptoComply for Go module and released the first third-party OpenSSL 3.x compatible module for iOS (available as both FIPS 140-2 and FIPS 140-3). Additionally, to make it easier for US Government agencies to purchase SafeLogic software directly, we announced our partnership with Carahsoft in September.
2024 was another year of strong double-digit growth for SafeLogic as our business continues to grow in leaps and bounds. None of this success would be possible without our amazing customers, partners, Board, shareholders, and, of course, our employees! Thank you for all your support and help in 2024. We are looking forward to what is ahead of us in 2025. Let us continue to work together to ensure a continued secure cryptographic future!
Evgeny Gervis
Evgeny is the CEO of SafeLogic.
Popular Posts
Search for posts
Tags
- FIPS 140 (112)
- FIPS validation (85)
- Encryption (70)
- cryptography (68)
- NIST (62)
- CryptoComply (60)
- SafeLogic (58)
- Industry News (54)
- cryptographic module (51)
- Conversations (49)
- CMVP (48)
- RapidCert (46)
- compliance (41)
- Ray Potter (33)
- SafeLogic News (33)
- Event (27)
- federal (27)
- CAVP (23)
- Cybersecurity (23)
- FIPS 140-3 (21)
- OpenSSL (16)
- government (14)
- FedRAMP (13)
- post-quantum cryptography (13)
- CryptoCompact (12)
- Cryptology (12)
- DoD (12)
- RSA (12)
- healthcare (12)
- partners (12)
- NSA (11)
- PQC (11)
- Cloud (9)
- security (9)
- CMMC (8)
- Suite B (8)
- testing (8)
- whitepaper (8)
- Approved Products List (APL) (6)
- HITECH (6)
- ICMC (6)
- lab (6)
- CEO (5)
- NIST 800-171 (5)
- NIST 800-53 (5)
- OpenSSL 3.0 (5)
- iOS (5)
- procurement (5)
- C3PAO (4)
- Common Criteria (4)
- HITECH Act (4)
- OpenSSL 3.x (4)
- TLS 1.3 (4)
- deadline (4)
- encrypt (4)
- innovation (4)
- procure (4)
- public sector (4)
- Air Force (3)
- BSAFE (3)
- DFARS (3)
- HIPAA Safe Harbor (3)
- HITECH Safe Harbor (3)
- OpenSSL 1.1.1 (3)
- POA&M (3)
- magazine (3)
- queue (3)
- transition (3)
- 3PAO (2)
- ACVP (2)
- BAA (2)
- CIO (2)
- CSP (2)
- Cyber Defense Magazine (2)
- Defense Industrial Base (2)
- Entropy Source Validation (2)
- HIPAA security controls (2)
- Historical Status (2)
- MFA (2)
- OpenSSL 1.0.2 (2)
- SPRS (2)
- StateRAMP (2)
- entropy (2)
- excellence (2)
- finance (2)
- founder (2)
- gold (2)
- leader (2)
- maturity (2)
- overlap (2)
- pilot (2)
- rsa conference (2)
- solution (2)
- sponsors (2)
- sunset (2)
- vendor (2)
- year (2)
- Active Status (1)
- Alliance for Digital Innovation (1)
- Android (1)
- CIO Prime Views (1)
- DHS (1)
- DIU (1)
- DIUx (1)
- DOJ (1)
- DoDIN APL (1)
- FCA (1)
- FIPS Compliance (1)
- FISMA (1)
- GSA (1)
- HITRUST (1)
- Matt Cornelius (1)
- Matthew Cornelius (1)
- Maturity Model (1)
- NCCoE (1)
- OMB (1)
- SLED (1)
- SP800-131A (1)
- SP800-90A (1)
- TLS 1.1 (1)
- background (1)
- best (1)
- co-founder (1)
- codies (1)
- congress (1)
- cybertech (1)
- education (1)
- elliptic curve cryptography (1)
- extended (1)
- faq (1)
- fintech (1)
- fiscal (1)
- fiscal year (1)
- fraud (1)
- globee (1)
- hill (1)
- interview (1)
- kratos (1)
- libgcrypt (1)
- national cybersecurity strategy (1)
- opportunities (1)
- parallel (1)
- profile (1)
- public (1)
- representatives (1)
- reseller (1)
- senate (1)
- senators (1)
- simplify (1)
- state (1)
- stealth mode (1)
- story (1)
- terminology (1)
- trophy (1)
- whistleblower (1)
- whistleblowing (1)