<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <channel>
    <title>DEV Community: Meso Amad</title>
    <description>The latest articles on DEV Community by Meso Amad (@amad_meso).</description>
    <link>https://dev.to/amad_meso</link>
    <image>
      <url>https://media2.dev.to/dynamic/image/width=90,height=90,fit=cover,gravity=auto,format=auto/https:%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Fuser%2Fprofile_image%2F3927554%2Fd87fb0be-35af-46c5-ab5b-4b339bfd0279.png</url>
      <title>DEV Community: Meso Amad</title>
      <link>https://dev.to/amad_meso</link>
    </image>
    <atom:link rel="self" type="application/rss+xml" href="https://dev.to/feed/amad_meso"/>
    <language>en</language>
    <item>
      <title>How I implemented AES-256-GCM Hardware Locking in Java to avoid SaaS fees</title>
      <dc:creator>Meso Amad</dc:creator>
      <pubDate>Wed, 13 May 2026 18:40:22 +0000</pubDate>
      <link>https://dev.to/amad_meso/how-i-implemented-aes-256-gcm-hardware-locking-in-java-to-avoid-saas-fees-5cbg</link>
      <guid>https://dev.to/amad_meso/how-i-implemented-aes-256-gcm-hardware-locking-in-java-to-avoid-saas-fees-5cbg</guid>
      <description>&lt;p&gt;The Problem: The "SaaS Tax" on Small Portfolios&lt;/p&gt;

&lt;p&gt;As I began scaling my portfolio, I hit a wall: the cost of licensing servers. Most security solutions require a monthly subscription or a "call-home" server that you have to maintain. If the server goes down, your apps stop working. If you stop paying, your business dies.&lt;/p&gt;

&lt;p&gt;I wanted a Zero-Maintenance model—something where the security is baked into the source code, requiring no external dependencies or recurring fees.&lt;br&gt;
The Solution: Hardware-Locked AES-256-GCM&lt;/p&gt;

&lt;p&gt;I decided to build NexusShield, a standalone Java engine designed for high-volume app production. Here is the architectural logic I used:&lt;/p&gt;

&lt;p&gt;Encryption: I implemented AES-256-GCM because it provides both confidentiality and data integrity (authentication tags) without needing separate MACs.&lt;/p&gt;

&lt;p&gt;Key Derivation: To prevent brute-force attacks on the hardware hash, I used PBKDF2 with SHA-256, ensuring the master keys are never stored in plain text.&lt;/p&gt;

&lt;p&gt;Hardware Handshake: The logic generates a unique fingerprint based on the user's hardware (CPU/Motherboard), meaning the license is tethered to that machine and cannot be simply copied to another.&lt;/p&gt;

&lt;p&gt;The Architecture&lt;/p&gt;

&lt;p&gt;Instead of a server, the "Handshake" happens locally. The app checks the hardware signature against an encrypted license file. No internet? No problem. It’s perfect for professional-grade assets where privacy and uptime are non-negotiable.&lt;br&gt;
Why Source Code?&lt;/p&gt;

&lt;p&gt;I’m a firm believer in Digital Asset Ownership. When you buy a security engine, you should own the "factory," not just a key to a door someone else owns. This is why I've moved my entire portfolio to this model.&lt;/p&gt;

&lt;p&gt;If you're building your own portfolio and want to skip the months of cryptographic research and system architecture, you can check out the full NexusShield PRO engine on Gumroad.&lt;/p&gt;

&lt;p&gt;&lt;a href="https://mesoamad.gumroad.com/l/NexusShield" rel="noopener noreferrer"&gt;Get The Full NexusShield Source Code&lt;/a&gt;&lt;/p&gt;

&lt;p&gt;It includes the full Java source code, the Admin KeyGenerator, and a detailed technical whitepaper for immediate integration.&lt;/p&gt;

</description>
      <category>java</category>
      <category>security</category>
      <category>architecture</category>
      <category>showdev</category>
    </item>
    <item>
      <title>Check out what I have been working on!</title>
      <dc:creator>Meso Amad</dc:creator>
      <pubDate>Wed, 13 May 2026 10:11:48 +0000</pubDate>
      <link>https://dev.to/amad_meso/check-out-what-i-have-been-working-on-f1g</link>
      <guid>https://dev.to/amad_meso/check-out-what-i-have-been-working-on-f1g</guid>
      <description>&lt;div class="ltag__link--embedded"&gt;
  &lt;div class="crayons-story "&gt;
  &lt;a href="https://dev.to/amad_meso/why-i-built-a-zero-maintenance-licensing-engine-and-why-im-done-with-saas-subscriptions-441n" class="crayons-story__hidden-navigation-link"&gt;How I implemented AES-256-GCM Hardware Locking in Java to avoid SaaS fees&lt;/a&gt;


  &lt;div class="crayons-story__body crayons-story__body-full_post"&gt;
    &lt;div class="crayons-story__top"&gt;
      &lt;div class="crayons-story__meta"&gt;
        &lt;div class="crayons-story__author-pic"&gt;

          &lt;a href="/amad_meso" class="crayons-avatar  crayons-avatar--l  "&gt;
            &lt;img src="https://media2.dev.to/dynamic/image/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto/https%3A%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Fuser%2Fprofile_image%2F3927554%2Fd87fb0be-35af-46c5-ab5b-4b339bfd0279.png" alt="amad_meso profile" class="crayons-avatar__image"&gt;
          &lt;/a&gt;
        &lt;/div&gt;
        &lt;div&gt;
          &lt;div&gt;
            &lt;a href="/amad_meso" class="crayons-story__secondary fw-medium m:hidden"&gt;
              Meso Amad
            &lt;/a&gt;
            &lt;div class="profile-preview-card relative mb-4 s:mb-0 fw-medium hidden m:inline-block"&gt;
              
                Meso Amad
                
              
              &lt;div id="story-author-preview-content-3657741" class="profile-preview-card__content crayons-dropdown branded-7 p-4 pt-0"&gt;
                &lt;div class="gap-4 grid"&gt;
                  &lt;div class="-mt-4"&gt;
                    &lt;a href="/amad_meso" class="flex"&gt;
                      &lt;span class="crayons-avatar crayons-avatar--xl mr-2 shrink-0"&gt;
                        &lt;img src="https://media2.dev.to/dynamic/image/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto/https%3A%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Fuser%2Fprofile_image%2F3927554%2Fd87fb0be-35af-46c5-ab5b-4b339bfd0279.png" class="crayons-avatar__image" alt=""&gt;
                      &lt;/span&gt;
                      &lt;span class="crayons-link crayons-subtitle-2 mt-5"&gt;Meso Amad&lt;/span&gt;
                    &lt;/a&gt;
                  &lt;/div&gt;
                  &lt;div class="print-hidden"&gt;
                    
                      Follow
                    
                  &lt;/div&gt;
                  &lt;div class="author-preview-metadata-container"&gt;&lt;/div&gt;
                &lt;/div&gt;
              &lt;/div&gt;
            &lt;/div&gt;

          &lt;/div&gt;
          &lt;a href="https://dev.to/amad_meso/why-i-built-a-zero-maintenance-licensing-engine-and-why-im-done-with-saas-subscriptions-441n" class="crayons-story__tertiary fs-xs"&gt;&lt;time&gt;May 12&lt;/time&gt;&lt;span class="time-ago-indicator-initial-placeholder"&gt;&lt;/span&gt;&lt;/a&gt;
        &lt;/div&gt;
      &lt;/div&gt;

    &lt;/div&gt;

    &lt;div class="crayons-story__indention"&gt;
      &lt;h2 class="crayons-story__title crayons-story__title-full_post"&gt;
        &lt;a href="https://dev.to/amad_meso/why-i-built-a-zero-maintenance-licensing-engine-and-why-im-done-with-saas-subscriptions-441n" id="article-link-3657741"&gt;
          How I implemented AES-256-GCM Hardware Locking in Java to avoid SaaS fees
        &lt;/a&gt;
      &lt;/h2&gt;
        &lt;div class="crayons-story__tags"&gt;
            &lt;a class="crayons-tag crayons-tag--filled  " href="/t/showdev"&gt;&lt;span class="crayons-tag__prefix"&gt;#&lt;/span&gt;showdev&lt;/a&gt;
            &lt;a class="crayons-tag  crayons-tag--monochrome " href="/t/java"&gt;&lt;span class="crayons-tag__prefix"&gt;#&lt;/span&gt;java&lt;/a&gt;
            &lt;a class="crayons-tag  crayons-tag--monochrome " href="/t/security"&gt;&lt;span class="crayons-tag__prefix"&gt;#&lt;/span&gt;security&lt;/a&gt;
            &lt;a class="crayons-tag  crayons-tag--monochrome " href="/t/architecture"&gt;&lt;span class="crayons-tag__prefix"&gt;#&lt;/span&gt;architecture&lt;/a&gt;
        &lt;/div&gt;
      &lt;div class="crayons-story__bottom"&gt;
        &lt;div class="crayons-story__details"&gt;
          &lt;a href="https://dev.to/amad_meso/why-i-built-a-zero-maintenance-licensing-engine-and-why-im-done-with-saas-subscriptions-441n" class="crayons-btn crayons-btn--s crayons-btn--ghost crayons-btn--icon-left"&gt;
            &lt;div class="multiple_reactions_aggregate"&gt;
              &lt;span class="multiple_reactions_icons_container"&gt;
                  &lt;span class="crayons_icon_container"&gt;
                    &lt;img src="https://assets.dev.to/assets/sparkle-heart-5f9bee3767e18deb1bb725290cb151c25234768a0e9a2bd39370c382d02920cf.svg" width="18" height="18"&gt;
                  &lt;/span&gt;
              &lt;/span&gt;
              &lt;span class="aggregate_reactions_counter"&gt;1&lt;span class="hidden s:inline"&gt; reaction&lt;/span&gt;&lt;/span&gt;
            &lt;/div&gt;
          &lt;/a&gt;
            &lt;a href="https://dev.to/amad_meso/why-i-built-a-zero-maintenance-licensing-engine-and-why-im-done-with-saas-subscriptions-441n#comments" class="crayons-btn crayons-btn--s crayons-btn--ghost crayons-btn--icon-left flex items-center"&gt;
              Comments


              &lt;span class="hidden s:inline"&gt;Add Comment&lt;/span&gt;
            &lt;/a&gt;
        &lt;/div&gt;
        &lt;div class="crayons-story__save"&gt;
          &lt;small class="crayons-story__tertiary fs-xs mr-2"&gt;
            2 min read
          &lt;/small&gt;
            
              &lt;span class="bm-initial"&gt;
                

              &lt;/span&gt;
              &lt;span class="bm-success"&gt;
                

              &lt;/span&gt;
            
        &lt;/div&gt;
      &lt;/div&gt;
    &lt;/div&gt;
  &lt;/div&gt;
&lt;/div&gt;

&lt;/div&gt;


</description>
    </item>
  </channel>
</rss>
