SoftControl DeCrypt is a full disk encryption solution that generates the decryption key based on the hardware configuration of the device and its connected peripherals.
The solution protects ATMs against the following attack scenarios:
Encryption keys are generated based on the parameters of the system hardware and connected peripheral devices.
The system partition is decrypted automatically before the operating system starts.
If critical hardware configuration changes are detected, the encrypted partition can be unlocked using a recovery password defined during encryption.
Specific devices can be excluded from key generation if they require an extended initialization time.
AES-256 encryption provides a 256-bit encryption key and 14 encryption rounds for maximum protection.
The centralized management server provides remote administration and event monitoring, including operating system startup events, recovery password usage, and other security events.
Using parameters of system hardware and connected peripheral (USB) devices as encryption and decryption key components eliminates the operational limitations typical of self-service terminal, including ATMs, payment kiosks, and information kiosks:
SafenSoft offers product evaluations and pilot projects to validate that SoftControl DeCrypt meets the customer's technical and security requirements. Pilot deployments are performed within the customer's infrastructure and typically run for at least one month, continuing until the solution is ready for full-scale deployment. During the pilot project, customer specialists receive training under the SafenSoft Certified Engineer program and are awarded a personalized certification upon successful completion.