Jump to main content

VS-NfD Hypervisor for Classified and Sensitive Workloads

Secure multi-tenant virtualization built on Cloud Hypervisor and KVM. Designed for regulated environments with strong isolation requirements and a clear path toward BSI accreditation.

Built on KVM and Cloud Hypervisor

Memory-safe: written in Rust

Near-zero downtime live migration

100% open-source and lock-in free

Trusted by industry leaders

Our trusted partners

BSI VS-NfD OPERATIONAL APPROVAL

Cyberus Hypervisor receives BSI Operational Approval up to VS-NfD

This shows that a virtualization stack based on KVM and Cloud Hypervisor is eligable for accreditation. The operational approval marks the next major step toward becoming the first VS-NfD-accredited Hypervisor in Germany.

BSI certificate for Cyberus Hypervisor 1.0 by Cyberus Technology GmbH for security functions and limited use.
Blue translucent cloud icon with data stacks above a lock symbolizing secure cloud storage.
ENABLING A EUROPEAN SOVEREIGN CLOUD

Use Case: Apeiro-RA Project

We work with SAP’s CobaltCore team to co-design a Kubernetes-based OpenStack distribution for enterprise and public sector use.

At its core is the Cyberus Hypervisor – an open-source, secure, and high-performance virtualization solution. Integrated with OpenStack-Nix, it enables reproducible, modular, and infrastructure-as-code cloud deployments.

  • Kubernetes-based OpenStack

  • Openstack-Nix
    Integration

  • Near-Zero Downtime Live Migration

  • Operational
    Support

Customer testimonial from Secunet

"The cooperation with Cyberus Technology was a decisive factor for us in successfully launching our edge gateway platform medical connect in the market. The team's expertise and commitment have been instrumental in enabling us to offer our customers a secure and reliable solution."


Torsten Redlich
Global Head Medical Security
Secunet
Cyberus Hypervisor architecture

The Core of our Cloud-Solution

Diagram of Cyberus Cloud Hypervisor architecture with VMs, cloud hypervisor, scheduler, APIs, OS, Linux Kernel layers.
  • Secure and Reliable Isolation

    Runs cloud hypervisor in VMX root mode—minimizing attack surface without sacrificing performance.

  • API-First Orchestration

    Unified VM scheduler + external APIs enable fully automated provisioning, scaling, and lifecycle management.

  • Clear Responsibility Model

    Distinct “Cyberus vs. Integrator vs. Shared” ownership boundaries streamline integration and support.

Benefits

The benefits of our Hypervisor

Modular, secure, and high-performance by design—our hypervisor stack enables near-zero downtime updates, seamless integration, and near-native speed.

Modularity


  • Pluggable Components
    Swap or extend hypervisor services (scheduler, APIs, add-ons) on demand with near-zero downtime.
  • Layered Abstractions
    Thin base OS + KVM kernel + cloud hypervisor stack keeps each layer independent and replaceable.
  • Integrator-Friendly
    Well-documented interfaces let your team plug in custom logic or third-party tools in minutes.

Security (Rust)


  • Memory-Safe Codebase

    VMM written in Rust to eliminate classes of vulnerabilities (buffer overflows, use-after-free, etc.).
  • Auditable & Verifiable
    Deterministic builds and clear module boundaries support code reviews, formal checks and compliance.
  • Cleared by Gemany's BSI
    Same architecture underlies our VS-NfD approved variant, cleared by Germany's BSI for classified workloads.

Performance


  • Near-Native Throughput
    Minimal context switches deliver bare-metal-like I/O and CPU performance.
  • Elastic Resource Allocation
    Rapid VM spin-up and real-time scaling ensure you only pay for exactly the resources you use.
  • Cache-Aware Scheduling
    Intelligent placement keeps working sets hot and maximizes multi-tenant efficiency.