THD89
EAL5+ certified secure MCU with 400KB flash, dual-interface support for banking and high-security applications.
Product Overview
Description
The THD89 is Unisplendour's flagship secure microcontroller, certified to Common Criteria EAL5+ for high-security applications.
With 400KB flash memory, 16KB RAM, and dual-interface (contact/contactless) support, it addresses demanding banking and identity applications.
The chip features advanced security mechanisms including side-channel attack protection, fault injection resistance, and secure cryptographic coprocessors.
Product Series
THD
Primary Application
Banking and payment cards
Key Features
- EAL5+ security certification
- Dual-interface operation
- Advanced side-channel protection
- Multiple cryptographic algorithms
- Secure boot and runtime integrity
- Java Card 3.0 support
Specifications
| Flash Memory | 400 KB |
|---|---|
| RAM | 16 KB |
| EEPROM | 8 KB |
| Security Level | Common Criteria EAL5+ |
| Interfaces | Contact + Contactless (Dual) |
| Cryptography | AES, DES, RSA, ECC, SM2/3/4 |
Applications
Banking and payment cards
Electronic system design
National ID cards
Electronic system design
Passports and e-documents
Electronic system design
High-security access control
Industrial automation and control
Secure element for mobile
Electronic system design
FAE Expert Insights
"The THD89 is our top-tier security product, competing with NXP's SmartMX and Infineon's SLE97 families. I've supported multiple banking card deployments using this chip. The EAL5+ certification is genuine and recognized internationally. Performance is excellent - transaction times under 200ms for EMV contactless payments. The dual-interface flexibility allows issuers to deploy single product for both contact and contactless use cases. Security features are comprehensive including DPA/SPA countermeasures and active shielding. For customers looking for domestic secure microcontroller alternatives, THD89 is a mature, proven solution."
EAL5+ certified with proven banking deployments
— Dr. Chen Wei, BeiLuo
Frequently Asked Questions
What cryptographic algorithms does THD89 support?
THD89 supports comprehensive cryptographic functions: Symmetric: AES-128/192/256, DES, 3DES, SM4. Asymmetric: RSA up to 4096-bit, ECC (P-256, P-384, SM2). Hash functions: SHA-1, SHA-256, SHA-384, SM3. All algorithms implemented in hardware with side-channel countermeasures. Performance: RSA-2048 signature in <100ms, AES encryption at >10MB/s. Chinese commercial cryptography (SM2/3/4) supported for domestic compliance.
Verify specific algorithm requirements. All standard algorithms supported with high performance.
How is the EAL5+ certification validated?
Common Criteria EAL5+ certification involves rigorous evaluation: Security target document defining security features. Formal design documentation and modeling. Vulnerability analysis including side-channel and fault attacks. Independent testing by certified evaluation lab. Manufacturing audit for secure production. Certificate issued by national certification body. THD89 certified by China ITSEC and recognized internationally through CCRA agreement. Validity can be verified on certification body website.
Verify certificate validity on official certification body website. Contact Unisplendour for certificate copy.
What is the transaction performance for EMV payments?
THD89 EMV transaction performance: Contact transaction: 300-500ms typical. Contactless transaction: 150-250ms typical. Performance depends on: Cryptographic operations required, Application complexity, Terminal implementation, Communication speed. Meets all EMVCo timing requirements. Faster than many competitive products due to optimized cryptographic hardware. Benchmarks available from Unisplendour for specific use cases.
Performance meets EMV requirements. Contact FAE for specific application benchmarks.
Does THD89 support Java Card?
Yes, THD89 supports Java Card 3.0.1 Classic and Connected editions. Java Card Virtual Machine optimized for performance. GlobalPlatform 2.3.1 for secure application management. Supports multiple applications with firewall isolation. Development using standard Java Card tools. Migration path from other Java Card platforms available. Performance comparable to NXP and Oracle Java Card implementations.
Use Java Card for portable applications. Use native for maximum performance.
What personalization services does BeiLuo offer?
BeiLuo provides comprehensive personalization services: Secure facility with controlled access and monitoring. Key injection using certified hardware security modules. Data preparation and validation. Card printing and embossing. Quality assurance testing. Secure packaging and logistics. Small volume prototyping to high-volume production. Personalization bureau can be established at customer site for very high volumes. All services comply with payment industry security standards.
Use BeiLuo services for prototyping and medium volumes. Establish own bureau for >1M cards/year.
What is the supply chain security for THD89?
THD89 supply chain security includes: Secure manufacturing in certified facilities. Each chip has unique identifier traceable to wafer. Secure packaging with tamper evidence. Delivery through authorized distributors only. Certificate of authenticity provided. No gray market or counterfeit products when purchased through authorized channels. BeiLuo maintains secure inventory and provides full traceability documentation.
Purchase only through authorized distributors. Verify authenticity certificates. Maintain traceability records.