wolfSSL has introduced experimental support for Hybrid Public Key Encryption (HPKE) in its wolfCOSE library, targeting constrained and Internet of Things (IoT) devices. The update enables these devices to encrypt Concise Binary Object Representation (CBOR) messages to one or multiple recipients without requiring custom key-wrapping implementations. HPKE, standardized under RFC 9180, combines a key encapsulation mechanism (KEM), a key derivation function (KDF), and an authenticated encryption with associated data (AEAD) scheme into a single, misuse-resistant public-key encryption framework.
Implementation details
The HPKE feature is disabled by default and must be explicitly enabled through the WOLFCOSE_EXPERIMENTAL flag alongside per-operation macros. This design ensures the core wolfCOSE library remains lightweight while allowing developers to opt into experimental functionality. The implementation supports both single-recipient (COSE_Encrypt0) and multi-recipient (COSE_Encrypt) encryption scenarios. All six HPKE enable selectors are available, each independently gated to provide granular control over feature activation.
wolfSSL has included paired command-line commands, self-tests, and a runnable HPKE example to facilitate adoption. The release also features negative acknowledgement tests to confirm the feature remains inactive unless explicitly enabled. Full command-line validation of 44 tests was conducted, with no failures reported. Despite its experimental status, the feature is positioned as foundational work, with a documented graduation path for future stabilization.
Background: COSE (CBOR Object Signing and Encryption) is a standard for securing CBOR data, commonly used in IoT and constrained environments where bandwidth and processing power are limited. HPKE (Hybrid Public Key Encryption) simplifies public-key encryption by combining key exchange and encryption into a single operation, reducing the risk of implementation errors.
Practical implications
For developers working with IoT or embedded systems, the addition of HPKE to wolfCOSE reduces the complexity of implementing secure messaging. By eliminating the need for hand-rolled key wrapping, the feature lowers the barrier to entry for encryption in resource-constrained environments. However, its experimental status means adopters should expect potential changes as the implementation matures. The requirement to enable the feature through macros also ensures that production deployments remain unaffected unless explicitly configured.
The feature’s multi-recipient support could be particularly valuable for scenarios involving device fleets or distributed systems, where messages must be securely delivered to multiple endpoints. The inclusion of self-tests and validation tools further aids developers in verifying their implementations, reducing the likelihood of misconfigurations.
What to watch
As HPKE support in wolfCOSE is currently marked as experimental (P0), its evolution will depend on community feedback and adoption. The documented graduation path suggests wolfSSL intends to stabilize the feature in future releases, but no timeline has been provided. Developers integrating this functionality should monitor updates to the library and be prepared to adjust their implementations as the feature progresses toward general availability.
Companies mentioned
Automated pipeline · SaaS
Synthesized from 1 industry feed on 30 Sep 2026. Passed independent editor verification (score 95/100) before publication. Style guide v1.4.
Sources
Decision trail
- Checking for duplicates — New story No recent or in-pipeline article covers wolfCOSE adding COSE HPKE encryption.
- Checking for duplicates — New story pre_write:; No recent or in-pipeline article covers wolfCOSE adding HPKE encryption.
- Writing the article — Draft created article_id=630 slug=wolfssl-adds-hpke-encryption-to-wolfcose-for-iot-devices
-
Editor review — Approved
- Score: 95/100
- Style compliance: Headline exceeds 90-character limit (92 characters). Shorten to meet style guide requirements.
- Factual grounding: Source does not specify the exact release or PR number (#70) as a verifiable fact for inclusion in the body. While mentioned in the source, it is not critical to the core news and could be omitted to avoid unverified details.
- Style compliance: Background block includes uncontroversial industry common knowledge but slightly exceeds the recommended 2-4 sentence limit (5 sentences). Condense to improve adherence to style guide.
- Generating reader Q&A — Generated 4 items
- Assigning hero image — Reused library image reused image #283
- Linking related stories — Linked 4 relations from 323 candidates
- Publishing — Published wolfssl-adds-hpke-encryption-to-wolfcose-for-iot-devices
- Mastodon — Posted https://mstdn.social/@hostingpaper/117361028730396598




Discussion · coming soon
Be the first to join the thread when community discussion launches.