Wrap a key using X25519 ECDH to derive a KEK, then AES-KW.
An ephemeral X25519 key pair is generated; the shared secret is derived via HKDF-SHA256. The ephemeral public key is returned so the recipient can recompute the KEK.
Recipient's X25519 public key (hex, 32 bytes).
Key material to wrap (>= 16 bytes, multiple of 8).
Wrap a key using X25519 ECDH to derive a KEK, then AES-KW.
An ephemeral X25519 key pair is generated; the shared secret is derived via HKDF-SHA256. The ephemeral public key is returned so the recipient can recompute the KEK.