Hardware-Rooted Zero-Trust Security

OmniCloak

Trust Should Be Established in Hardware — Not Assumed by Software.

Modern endpoint security fails the moment firmware is compromised. OmniCloak moves the point of trust below the operating system, into silicon and firmware, so a compromised device is identified and contained before it is ever trusted with sensitive data.

HARDWARE IDENTITY
FIRMWARE INTEGRITY
OS HARDENING
ATTESTATION
CONNECTIVITY
AI TELEMETRY
The Problem

The OS cannot be trusted to report on the hardware beneath it.

Once firmware is compromised, every security control that runs above it — antivirus, EDR, MDM — is operating on a foundation that has already been undermined. OmniCloak solves this by moving the root of trust below the OS entirely.

Firmware attacks are invisible to the OS

Malicious firmware persists across OS reinstalls, wipes, and even hardware resets. Traditional security tools have no visibility into this layer.

Stored keys can be extracted

Software-based key storage is vulnerable to extraction by a sufficiently privileged attacker. A key that can be copied provides no real security guarantee.

Attestation is often an afterthought

Most platforms check device health at enrollment, not continuously. A device that passes initial checks can be compromised the next day without triggering any alert.

Network access is granted before integrity is verified

Conventional zero-trust architectures still grant provisional access while verification is in progress. OmniCloak denies access until attestation passes — no exceptions.

The Architecture

A six-layer chain of trust, rooted in silicon.

01

Hardware Identity via Physical Unclonable Function

A PUF derives a device-specific cryptographic identity from unclonable manufacturing variation in the silicon itself. There is no stored key to extract — the identity is the hardware.

02

Continuous firmware integrity verification

A memory-safe, Rust-based firmware layer verifies its own integrity continuously during operation — not just at boot. Tampering is detected in real time.

03

Silicon-level OS hardening and peripheral isolation

Strict application sandboxing enforced at the silicon level means a compromised application cannot access hardware it was not explicitly granted — camera, microphone, storage, or network.

04

SPDM attestation before every sensitive operation

The SPDM standard provides cryptographic proof of device identity and integrity. Sensitive operations are gated on passing attestation — not on a policy that can be overridden.

05

Attestation-conditional network and satellite access

Network access — including Starlink Direct-to-Cell satellite connectivity — is conditional on passing attestation. A device that fails its integrity checks is denied access before any data moves.

06

CyberCloak AI telemetry for fleet-wide anomaly detection

Once devices are deployed, CyberCloak monitors fleet-wide behavioral patterns for anomalies. Threats that evade device-level controls are surfaced at the fleet level.

Products

Purpose-built hardware. Proprietary security stack.

OmniCloak sources commodity OEM hardware and transforms it with proprietary firmware, OS, and identity provisioning. The result is a device whose security properties are independently verifiable — not a marketing claim.

OmniCloak Secure Laptop

Enterprise-grade endpoint security rooted in silicon. Compatible with conventional WiFi and Starlink Direct-to-Cell satellite connectivity.

$1,999.99
$499/year CyberCloak subscription
PUF-derived hardware identity
Rust-based firmware with continuous integrity verification
SPDM attestation protocol
CyberCloak AI monitoring included first year

OmniCloak Secure Smartphone

Mobile security that does not compromise on verifiability. The same six-layer chain of trust in a form factor built for field use.

$999.99
$299/year CyberCloak subscription
PUF-derived hardware identity
Silicon-level peripheral isolation
Attestation-conditional connectivity
Starlink Direct-to-Cell satellite support
6
Trust layers
0
Stored keys to extract
Pre-alpha
Development stage
EU
Headquartered

Built for government agencies, defense-adjacent organizations, and financial institutions where independently verifiable hardware security is a requirement — not a preference.

Leadership

OmniCloak's technical vision originated with a cybersecurity researcher and has been expanded into technical and business reality by a team of hardware and software specialists and seasoned industry and investment professionals.

Eric Taylor

Chief Technology Officer

Black Hat USA speaker. Leads the Cosmo Lab, OmniCloak's internal hardware security testing function. Featured in the 2026 documentary Midnight in the War Room.

Juan Manuel Revuelta Pérez

Director & Treasurer

Director, Startup Europe Accelerator. CEO, FINNOVA.EU. Nearly thirty years of experience in European affairs.

Ryan Gibson

Director

CEO, Global Compliance Applications Corp. Partner, Co-Founder & Director, SilverBear Capital Inc. Over two decades in public markets, technology, and finance.

Massimiliano Luca Dragoni

Director

President, Atomi Group Srl. Former Senior Policy Officer, European Commission DG CNECT.

Hardware security for the era of firmware-level threats.

OmniCloak is in active pre-alpha hardware development, with a fully specified architecture and a six-month roadmap toward an initial deployment milestone. We are seeking strategic partners aligned with the government, defense, and financial institution market.