HomeCybersecurityMDM Work Container: Key Hierarchy & Crypto-Shred Wipe

MDM Work Container: Key Hierarchy & Crypto-Shred Wipe

Interactive 3D simulator of enterprise mobile device management: a hardware root key derives a container KEK that wraps per-app data keys, sandboxing blocks personal apps from crossing the boundary, and a remote wipe crypto-shreds the container key instantly.

Cybersecurity3DModerate60 FPS
exp-mobile-security ↗ Open standalone

This simulator visualizes the security architecture behind enterprise mobile device management (MDM) and mobile application management (MAM): a hardware-anchored root key derives a container key-encryption key, which wraps a separate data-encryption key for every managed app, while personal apps keep their own unrelated keys entirely outside the container boundary. A rogue-access simulation shows app-sandboxing blocking a personal app from reaching container data, and the remote-wipe control demonstrates crypto-shredding — the real technique behind "remote wipe," where deleting one key instantly and irreversibly destroys every managed app's data without touching a single byte of ciphertext.

⚙ Under the hood

An interactive 3D simulator of enterprise mobile device management: a hardware root key derives a container key-encryption key that wraps every managed app's data key, app-sandboxing blocks personal apps from crossing the container boundary, and a remote wipe crypto-shreds the container key to instantly destroy all managed data.

mobile securityMDMencryptionsandboxingkey managemententerprise mobility

3D · Three.js / WebGL renderer · 60 FPS target · runs fully client-side, no install

What did you find?

Add reproduction steps (optional)