> SECURE_FILE_ENCRYPTION.SYS
> DEFENSE DEMO — LIVE RUN

ENCRYPT A FILE. FOR REAL.

Runs the same crypto as the desktop app — no server, no upload. Everything happens right here, in this browser, via the Web Crypto API.

AES-256-GCM PBKDF2 (SHA-256, 150k iter) SHA-256 integrity RSA-2048-OAEP (key wrap)

1 Encrypt a file

Pick any file and a passphrase. The passphrase is stretched into a 256-bit key with PBKDF2, then used to encrypt the file with AES-256-GCM. A random salt and IV are generated per file — nothing is reused.

Output will appear here — SHA-256 of the original file, derived salt, IV, and ciphertext size.

2 Decrypt it back

Upload the .enc file produced above and re-enter the passphrase. GCM's authentication tag means a wrong passphrase or a tampered file fails loudly instead of silently returning garbage.

Output will appear here — decrypted file hash, verified against the original.

3 Wrap the session key with RSA-2048

In the full system, the AES key itself is wrapped with a 2048-bit RSA public key so it can be shared without ever transmitting the passphrase. This step generates a fresh RSA keypair in your browser and wraps a random 256-bit key with it, then unwraps it with the private key to prove round-trip correctness.

Output will appear here — public key fingerprint, wrapped key, and unwrap verification.