Chip Security
A Paradigm Shift from Passive Defense to Active Immunity
The Jahport secure chip platform is built on the CC EAL6+ certification baseline and integrates more than 20 security protection technologies, the proprietary Bothnia secure operating system, and comprehensive protection across the entire computing process, redefining hardware security in the era of the Internet of Things (IoT).
CC EAL6+ High-grade Certification
20+ protection technologies — active fault tolerance, multi-modal redundancy and forward error correction — controlled from development to delivery for both security and reliability.
Bothnia Secure OS
Runs the Jahport Bothnia secure OS (TEE, GP-compliant), compatible with legacy secure chips and international standards, with a full development and simulation environment.
Full-Lifecycle Multi-Layer Defense
Trusted computing, confidential computing and crypto acceleration in one, with a GEM5-based high-fidelity development platform.

PQC Quantum Security
Built for “harvest now, decrypt later” threats
As quantum computing moves from lab to industry, Shor’s algorithm threatens RSA and ECC. Jahport delivers quantum security via PQC, keeping the hardware root of trust trustworthy for the next decade.
- Native support for ML-KEM (Kyber) / ML-DSA (Dilithium) / SLH-DSA (Sphincs+) standardized PQC algorithms
- Integrated classical + post-quantum design for smooth dual-track migration
- Multi-core heterogeneous, dynamic redundancy for crypto-agility and long-term evolution
Physically Unclonable Function (PUF)
The inherent “fingerprint” of every chip
PUF leverages inherent microscopic variations in chip manufacturing (e.g., random threshold-voltage fluctuation) to create an unclonable identity; its intrinsic randomness prevents attackers from reproducing an identical chip via reverse engineering or physical copying.
- Native PUF-based authentication; hardware-unique ID with no burning required
- Keys generated on demand, used internally and destroyed after use — eliminating key-storage risk at the root
- Combined with TRNG and anti-SPA/DPA to resist side-channel attacks


Dynamic Heterogeneous Redundancy
Full-stack protection from boot to runtime
With dynamic heterogeneous redundancy, the system counters unknown attacks and fault injection via multi-modal redundancy, FEC and active fault tolerance — upgrading security from static rules to dynamic immunity.
- Secure-boot chain verifies firmware layer by layer, rooted in hardware
- Runtime dynamic defense with real-time monitoring and isolation
- Trusted + confidential computing + crypto acceleration across the compute lifecycle
The first inventor of theChinese national SM2 standard
Jahport completed the SM2 national cryptography standard in 2004 and contributed to SM9, holding core patents for both the Chinese and international SM2 standards.
SM2 national standard (2012)
SM2 Chinese standard (2016)
SM2 international standard (2016)
SM9 national standard (2020)
Also contributed to CCRC-EAL-TR-072-2026the “Anti-counterfeiting IC chip without CPU — technical requirements” certification spec, the first IT security certification spec in this field
Full-lifecycle security enablement
starting from the secure chip
From the first chip selection to millions of devices running in the field — Jahport's chip-firmware-cloud security system covers every critical stage of a hardware product.
Chip Selection
Full-stack secure chips & platforms
- BLE / NFC / UWB / Wi-Fi secure SoCs
- Cryptographic SE & card SDK
- Bothnia secure OS (TEE / GP)
- Jawind-API messaging middleware
Solution Design
Identity · data · personalization
- Identity management (SummerCool)
- SM-DP data preparation (Dhaulagiri)
- Chip personalization (Paradiso)
- Algorithm design · design review · support
Production & Testing
Keys · distribution · mass production
- TOKEN service platform (Makalu)
- Remote app distribution (Annapurna)
- Key management (CryptoBase)
- Algorithm libraries · MP tools · pre-certification
In-Field Operation
Continuous device security
- CA system (Gompa)
- Trusted service management (Everest)
- Identity-based CDN (Blanc)
- Ongoing protection for connected devices
Walk with the standard setters
Build security into thechip’s DNA
Get the PQC, PUF and platform whitepapers, or talk with our security architects about your scenario.
