Summary
Nitrokey Storage is a USB device that operates as a “digital latchkey” to protect your
data and user accounts. It allows for the secure encryption of emails, files
and hard drives, secure login on the web and contains encrypted mass storage for
your files. The encryption keys are stored securely in the hardware at all
times. Insecure and difficult-to-remember passwords are
replaced with this secure and easy-to-use USB key.
Nitrokey is made entirely in Germany and stands
out on the market because it is 100% open-source and uses 100% open hardware,
which in the times of NSA, hacker attacks and Trojans is the only option
that allows users to keep control of their data and rule out dangerous
backdoors. It is also the first hardware worldwide with hidden storage, which
enables users to plausibly deny the existence of additional encrypted data (e.g. during
border controls).
We are a
team of passionate security experts concerned about privacy. We started the
Nitrokey project (at the time named Crypto Stick) in 2008 and have since
released several products that have already garnered positive user feedback. We
have been developing Nitrokey Storage for several years and need your support
to get the production stage started.
![]()
What We Need & What You Get
During the
last seven years we have donated our valuable time to the global community in developing
Nitrokey's hardware and software. In order to commence production we need to
cover significant external costs upfront. This is why we need you to preorder.
![]()
During this campaign you can receive a unique Nitrokey Storage with
lifelong support for free.
Should we fall short of our funding goal we will still deliver you the Nitrokey Storage as promised by utilising private funds to cover the remaining costs.
The Impact
IT security
is currently a dominant topic in the media, and one that
concerns everybody. Global hacker attacks and surveillance scandals continually
shake the foundations of our world. Our mission and slogan is to “secure your
digital life”. Nitrokey is a secure and easy-to-use USB key that aims to replace passwords and enable encryption wherever possible.
In the
post-Snowden world in which we live, it is clear that security devices have to
be open-source and use open hardware. Without open-source system security
can’t be guaranteed and spy agencies can backdoor proprietary devices. This is
why all our developments are 100% open-source and open hardware. Nitrokey is the only open security key available.
We are aware that secure solutions often fail
because they are too complicated to use. This is why we aim to combine security
with ease of use. Nitrokey should be as easy-to-use as a door key.
The Team
Jan Suhr, Coordination and architecture – Jan is cofounder and has more than eight years of experience in IT
security, having previously worked for a
large IT consulting firm in Germany and Singapore. He campaigns for data privacy, data security
and open source on a volunteer basis.
Rudolf Böddeker, Nitrokey Storage software and hardware engineer – Rudolf is cofounder and has 30 years of experience in embedded programming and hardware development. He focuses on safety and security critical systems and likes solving complex problems.
George Gkitsas, Nitrokey App and Pro software engineer – George has been involved in the Nitrokey project since he was a Google Summer of Code student. His main focuses are the development of Nitrokey Pro firmware and of the Nitrokey App. The Nitrokey App is required in order to administrate the Nitrokey Storage.
Third party vendors for the production of the casing, electronics, and fulfilment of logistics (shipments).
The Schedule
We plan to start shipping the Nitrokey Storage on 2nd May 2016. You can see in the diagram below that the development of the casing is the next crucial step. Our production schedule is based on previous experiences developing similar casings for the existing Nitrokey products. This experience makes us confident that we will deliver in time.
![]()
Risks & Challenges
-
Potential
technical issues of electronics or casing: With four stable products already available we are familiar with the process required to deliver a
professional hardware product to our customers. This experience is valuable because it has taught us that
initially minor aspects can turn out to be big challenges. For instance
developing a casing requires more specific expertise than we initially thought. The Nitrokey Storage electronics have been in beta-test for one year already and have so
far proven stable.
-
Potential
technical issues relating to firmware: We are currently aware of one bug
in the firmware. We are confident that we can fix it in the remaining timeframe
(see schedule). Any further bugs can be patched by firmware updates.
-
In
case we fail to reach the funding goal, we will utilize private funds to
cover the remaining sum.
-
Potential
security issues: The Nitrokey Storage firmware and hardware have already
been verified by Cure53, a
professional third-party security auditor. Further security issues can be
patched by firmware updates.
Besides
purchasing the perks, please promote our campaign to all your friends, family
and colleagues. Write a blog article about the campaign, publicise it in your
social networks. The success of this crowdfunding campaign depends not just on
us the developers but on the entire community of users, supporters and
especially on you.
Product Images
![]()
More images are available in the gallery, the link to which can be found at the top of this page.
What can Nitrokey Storage be used for?
- Secure login on the web, to network services, local computers and for access control
- Secure key storage for email encryption
- Mobile-encrypted mass storage to carry your files with you securely
- Hard disk and file encryption
- To protect server keys or PKI keys
Nitrokey Storage Features
- Encryption of emails, hard drives, and other data via a highly secure smart card. Secure keys are protected by the hardware at all times.
- Secure login on the web and protection against identity theft via one-time passwords.
- Secure transport and exchange of sensitive files via encrypted mass storage (up to 64 GB).
- The first hardware worldwide with hidden storage, which allows
users to plausibly deny the existence of additional encrypted data (e.g. during
border controls).
- 100% open-source and open hardware. No backdoors for intelligence services.
What does the Nitrokey Storage protect against?
- Computer viruses and malware can’t steal the secret encryption keys hidden in the hardware.
- In case of loss or theft the secure encryption keys and encrypted
data remain secure, even withstanding sophisticated attacks with
laboratory equipment.
- Intelligence services try to backdoor security equipment. Because
Nitrokey is available as open-source, everybody can check it for
backdoors.
- In situations such as border controls the user can state a wrong
password and technically it can’t be proven that a hidden encrypted area
exists containing further data.
- User error can result in sending and revealing secret encryption
keys. Nitrokey prevents this potentiality by keeping all secret keys
secure in its hardware.
- Malicious firmware updates (e.g. BadUSB) are prevented by using a dedicated password for firmware updates. Installed firmware can be exported and verified.
What happens if I lose my Nitrokey Storage?
- Access is PIN-protected and after six incorrect attempts the Nitrokey
locks itself permanently and effectively destroys all data. This way
your data remains secure.
- Secret encryption keys can be backed up during initialisation, so that the
keys can still be used to access separate encrypted data.
How secure is Nitrokey Storage?
- An integrated OpenPGP smart card protects against cryptographic
side-channel attacks and physical attacks. Even attacks with advanced
laboratory equipment can be withstood.
- The secure architecture results in encryption of all sensitive data by the smart card.
- Cure53, a company specialising in security audits, has already reviewed the hardware and firmware of Nitrokey Storage and has deemed it secure.
- State of the art cryptographic algorithms are used: RSA with up to 4096 bit and AES-256 in CBC mode.
Which operating systems are supported?
- Windows
- Mac OS X
- GNU/Linux
The History
In 2008 Jan Suhr, Rudolf Böddeker and another friend were travelling
and found themselves looking to use encrypted emails in internet cafés,
which meant the secret keys had to remain secure against computer
viruses and Trojans. Some proprietary USB dongles existed at the time,
but were either technically insufficient or were not available for use
by private persons. So without further ado they started developing an
appropriate USB key themselves.
The three friends released the Crypto
Stick as open-source hardware on 27th December 2009. In the years to
follow the Crypto Stick became popular in the open-source and security
community and almost 1000 devices were produced and distributed on a
non-profit basis. On 1st January 2015 Crypto Stick was renamed Nitrokey,
in order to both professionalize the project and account for its users'
high standards. It was then that the company Nitrokey was born. With its vision to "protect your digital life" Nitrokey has already been voted Germany's #12 tech startup.