35+
IP cores across 8 product families, from math primitives to complete algorithm accelerators.
3/3
All three NIST PQC standards (FIPS 203, 204, 205) as verified hardware IP. One of very few vendors worldwide.
ACVP
Every core verified byte-exact against official NIST Automated Cryptographic Validation Protocol vectors.
Portable
Foundry-portable synthesizable RTL. Soft IP runs on any process node; firm/hard IP available on engagement.

Eight families.
One complete portfolio.

From the three NIST post-quantum standards to symmetric encryption, entropy generation, and secure integration, everything a quantum-safe SoC needs.

Browse all cores.

Status Family
ml_kemAvailable
Post-Quantum Cryptography

ML-KEM Core

NIST FIPS 203 module-lattice key encapsulation. All three security levels (512/768/1024), runtime-selectable. Full KeyGen, Encaps, Decaps with FO transform.

ml_dsaAvailable
Post-Quantum Cryptography

ML-DSA Core

NIST FIPS 204 module-lattice digital signatures. All levels (44/65/87), runtime-selectable. Full KeyGen, Sign with rejection loop, and Verify.

slh_dsaAvailable
Post-Quantum Cryptography

SLH-DSA Core

NIST FIPS 205 stateless hash-based signatures (SPHINCS+). Conservative, lattice-free alternative for defense-in-depth and long-lived roots of trust.

hybrid_kemAvailable
Crypto-Agile Hybrid

Hybrid KEM Engine

X-Wing-style hybrid KEM binding ML-KEM to X25519. Shared secret secure if either component remains unbroken. SHA3-256-based binding.

hybrid_sigAvailable
Crypto-Agile Hybrid

Hybrid Signature Engine

Composite ML-DSA + classical signatures. Domain-separated message representative with both-must-verify decision logic.

keccak_f1600Available
PQC Building Blocks

Keccak-f[1600] Core

FIPS 202 permutation engine underlying all SHA-3, SHAKE, and cSHAKE operations. Verified vs XKCP KATs + 200 randomized vectors.

keccak_shake_xofAvailable
PQC Building Blocks

SHAKE-128/256 XOF

FIPS 202 extendable-output sponge with absorb, pad, and squeeze. Arbitrary output length for key derivation and sampling.

keccak_sha3Available
PQC Building Blocks

SHA3-224/256/384/512

FIPS 202 fixed-output SHA-3 hash functions. All four output lengths. Verified vs hashlib including empty-message KATs.

ntt_r16Available
PQC Building Blocks

NTT Core (Radix-16)

FIPS 203 256-point forward/inverse NTT (q=3329). Parameterized single-butterfly datapath. Roadmap: R8 (area), R32 (4x throughput).

poly_multAvailable
PQC Building Blocks

Polynomial Multiplier

FIPS 203 NTT-domain base multiplication. Verified by composition: INTT of basemul equals the negacyclic convolution product.

rejection_samplerAvailable
PQC Building Blocks

Rejection Sampler

FIPS 203 Parse: uniform sampler for the ML-KEM public matrix from a SHAKE-128 source. Constant-time rejection loop.

cbd_samplerAvailable
PQC Building Blocks

CBD Noise Sampler

FIPS 203 SamplePolyCBD. Constant-time centered binomial distribution sampling for noise polynomials.

aes256Available
Symmetric Encryption

AES-256 Engine

FIPS 197 encrypt + decrypt. Iterative single-block, 14 rounds at 1 per cycle, packed-constant S-box. Foundation for GCM/XTS/CTR.

aes_gcmAvailable
Symmetric Encryption

AES-256-GCM

SP 800-38D authenticated encryption (96-bit IV). GCTR + serial GF(2^128) GHASH. Byte-stream variant with AXI-Stream-lite interface.

aes_xtsAvailable
Symmetric Encryption

AES-256-XTS

IEEE 1619 / SP 800-38E storage encryption. Full-block + byte-aligned ciphertext stealing. Verified vs NIST ACVP enc+dec vectors.

sha2_familyAvailable
Symmetric Encryption

SHA-2 Family

FIPS 180-4 SHA-256/384/512 with streaming input and internal padding. Verified vs hashlib + FIPS 180-4 KATs.

hmac_sha256Available
Symmetric Encryption

HMAC-SHA-256 / SHA-512

FIPS 198-1 / RFC 2104 keyed-hash message authentication. Runtime lengths. Verified vs RFC 4231 test cases.

hkdf_sha256Available
Symmetric Encryption

HKDF-SHA-256

RFC 5869 extract-and-expand key derivation. Verified vs RFC 5869 TC1. For deriving session keys, key material expansion.

rfc5649_keywrapRoadmap
Symmetric Encryption

RFC 5649 AES Key Wrap

AES key wrapping with padding for secure key transport. Standards-compliant key encryption for HSM and key management applications.

qrng_photonic_srcIn Design
Random Number Generation

Photonic Quantum Entropy Source

Vacuum-fluctuation balanced-homodyne on GF Fotonix/45SPCLO. Entropy traceable to a quantum observable with live min-entropy bound.

qrng_healthAvailable
Random Number Generation

SP 800-90B Health Tests

Continuous Repetition-Count + Adaptive-Proportion tests with sticky alarms and output gating. Production variance monitor.

qrng_condAvailable
Random Number Generation

Vetted Conditioner

SP 800-90B section 3.1.5 vetted conditioning via SHAKE256. Back-pressure support. Production uses multi-core SHA3-256.

qrng_qcrAvailable
Random Number Generation

Quantum-to-Classical Ratio Monitor

Windowed integer-variance monitor. Asserts quantum_ok when on/off variance ratio clears threshold. Division-free, measurable quantum entropy.

qrng_ctrlAvailable
Random Number Generation

QuantaSE-Q RBG Top

SP 800-90C sequencer: quantum-ratio-gated startup, health + quantum gated output, selectable DRBG output stage.

ctr_drbgAvailable
Random Number Generation

CTR_DRBG (AES-256)

SP 800-90A section 10.2.1, no derivation function, 384-bit seedlen. The certifiable DRBG with published NIST DRBGVS vectors.

hmac_drbgAvailable
Random Number Generation

HMAC_DRBG (SHA-256)

SP 800-90A HMAC-based DRBG. RTL byte-exact vs official NIST ACVP hmacDRBG vectors (Instantiate, Reseed, Generate, Generate).

qrng_drbgAvailable
Random Number Generation

Hash_DRBG (SHA3-256)

SP 800-90A section 10.1.1 hash-based DRBG, 440-bit seedlen. SHA3-256 based for the QuantaSE-Q back-end.

sca_maskingRoadmap
Side-Channel Protection

Boolean & Arithmetic Masking

First-order masking wrappers for PQC and symmetric cores. Shuffled sampling and power-flattening controller.

fault_sensorsRoadmap
Side-Channel Protection

Fault-Injection Sensors

Voltage and clock glitch detectors, laser fault-injection sensors. FD-SOI body-bias native power flattening.

rv32imc_pqcRoadmap
Root of Trust

Hardened RV32IMC Core

RISC-V core with PQC ISA extensions for cryptographic acceleration. Hardened against fault injection and side-channel attacks.

secure_boot_romRoadmap
Root of Trust

Secure Boot ROM

ML-DSA-65-anchored chain of trust from power-on through firmware to application. PQC-signed boot attestation.

pkcs11_interpRoadmap
Root of Trust

PKCS#11 v3.1 Command Interpreter

Hardware PKCS#11 command processing for HSM and secure element applications. Standards-compliant cryptographic token interface.

secure_axiRoadmap
Secure Interconnect

Secure AXI Fabric

Tamper interlocks, per-master access control, and crypto MMU for secure SoC-level interconnect.

qli_d2d_phyRoadmap
Secure Interconnect

QLI Die-to-Die PHY

Radix-16 native die-to-die physical layer for chiplet-based secure SoC architectures.

Byte-exact to NIST.
Not just "it round-trips."

Every Dyber IP core is verified against the same test vectors a FIPS certification lab uses. Our methodology: golden model passes ACVP, then RTL is tied byte-exact to that golden. No gaps, no approximations.

Step 1

Golden Model

Python reference model built to the NIST specification. Passes the official ACVP test vector set at every parameter level.

Step 2

RTL Tie-Out

SystemVerilog RTL output compared byte-for-byte against the golden model. cocotb regressions run across the full parameter space.

Step 3

Continuous Validation

Self-checking testbenches run on every commit. ACVP vectors are frozen at the NIST standard; no drift, no regressions.

Standards
FIPS 203 FIPS 204 FIPS 205 FIPS 197 FIPS 180-4 FIPS 202 SP 800-90A SP 800-90B SP 800-90C SP 800-38D SP 800-38E RFC 2104 RFC 5869

Flexible licensing
for every stage.

From 90-day evaluation through perpetual production. No per-unit royalties on perpetual licenses.

TierDescriptionIncludes
Evaluation 90-day evaluation with full RTL access for design-in assessment. Full RTL, FPGA synthesis + simulation, technical support (email). No production rights.
Per-Design Single SoC/ASIC design with production rights for one product line. All eval deliverables + production rights (1 design), integration support, 12 months updates.
Volume Multi-design license with per-unit royalty structure for high-volume. Unlimited designs, volume-tiered royalties, dedicated FAE support, custom modifications.
Perpetual Unlimited use across all products with no per-unit royalties. Unlimited designs + volume, zero royalties, priority engineering support, joint roadmap input.

All licenses include NDA-protected deliverables. Government/defense licensing available through Carahsoft.

What you get.

Standard deliverables for all Available soft IP. Firm/hard IP (hardened netlist for a target node) is available on foundry enablement.

RTL

Synthesizable SystemVerilog

Foundry-portable RTL with synthesis scripts and constraint templates. Technology-independent by default.

Verification

Self-Checking Testbenches

cocotb regressions tied to ACVP vectors. Python golden reference model included for independent validation.

Documentation

Integration Guide

Complete user guide, interface specification, timing diagrams, and integration examples for SoC design-in.

Request a
product brief.

Detailed specifications, block diagrams, and resource estimates for any IP core in the portfolio. NDA-protected evaluation available.