< ciso
brief />
Tag Banner

All news with #post quantum cryptography tag

129 articles

Google Cloud announces quantum-safe key import preview

🔒 Google Cloud announced the preview of quantum-safe key import for software-based keys in Cloud KMS, extending its post-quantum offerings including quantum-safe digital signatures and KEMs. The feature uses hybrid public key encryption (HPKE) to wrap keys in a quantum-resistant envelope during transit, mitigating store-now, decrypt-later risks. The import workflow integrates with existing Cloud KMS APIs and supports client-side wrapping via libraries like Tink and OpenSSL, with options for X-Wing, ML-KEM-768, or ML-KEM-1024 and AES-256-GCM for symmetric wrapping.
read more →

Google Cloud lays out staged post-quantum migration

🔒 Google Cloud published a staged post-quantum migration roadmap on August 12, splitting work into three risk domains from its quantum threat model. The provider targets mitigating store-now-decrypt-later (SNDL) risks by end of 2027, with signature hardening and key management agility running to end of 2028. Several services already support hybrid NIST-standardized ML-KEM and related primitives, while others (Cloud VPN, Private CA, Cloud HSM) phase in through 2028. Google warns hardware replacement cycles may extend some transitions beyond 2029.
read more →

Google Cloud roadmap to post-quantum readiness

🔒 Google Cloud publishes an updated roadmap to migrate its infrastructure and services to post-quantum cryptography by 2029, addressing risks like Store Now, Decrypt Later and signature forgery. The plan prioritizes API endpoints, load balancers, Cloud KMS, and key management while collaborating on standards such as NIST and IETF. Google outlines domain-specific timelines through 2027–2028 and emphasizes shared responsibilities with customers for operational readiness.
read more →

Python Adds Post‑Quantum Encryption Support

🔐 The Python ecosystem now offers post‑quantum cryptography via a new pip-installable library. Funded by the Sovereign Tech Agency, contributions to pyca/cryptography add support for ML-KEM and ML-DSA, the NIST-standard key-establishment and digital-signature primitives. The announcement emphasizes there is no immediate emergency, but adopting crypto agility is prudent.
read more →

Cloudflare Named Visionary in Both 2026 Magic Quadrants

🔒 Cloudflare reports it was named the only vendor recognized as a Visionary in both the 2026 Gartner Magic Quadrant for SASE Platforms and the 2026 Gartner Magic Quadrant for Security Service Edge. The post credits customer feedback and highlights Cloudflare One’s unified SASE architecture, built-in AI agent governance, native post-quantum encryption, and predictable pricing. It argues that modern SASE must be composable, programmable, and ready for agentic operations and quantum threats.
read more →

ALB and NLB Add RFC 9151 CNSA 1.0 TLS Policies

🔐 AWS Application Load Balancer (ALB) and Network Load Balancer (NLB) now support TLS security policies aligned to RFC 9151 to meet Commercial National Security Algorithm (CNSA) 1.0 requirements. These policies implement NSA-defined cryptographic controls for TLS 1.2 and TLS 1.3. Customers can apply RFC 9151-compliant or broader interoperability policies to minimize disruption during client transitions. The feature is available across all AWS Commercial, GovCloud (US), and China regions at no extra cost.
read more →

Anthropic AI speeds cryptanalysis of Hawk and AES

🔍 Anthropic’s Claude Mythos Preview aided researchers in accelerating attacks against two cryptographic targets: the Hawk post-quantum signature candidate and a reduced-round variant of AES-128. The findings do not threaten real-world deployments but reduce Hawk’s effective security margin and produce a new AES cryptanalytic technique called "Mobius Bridge." Anthropic emphasizes these results improve understanding of cryptographic robustness rather than compromise production systems.
read more →

Cloudflare adds post‑quantum origin authentication

🔒 Cloudflare now supports post-quantum authentication for Authenticated Origin Pulls and the Custom Origin Trust Store using ML-DSA signatures. This enables mutually authenticated TLS between Cloudflare and customer origin servers to resist quantum-enabled impersonation attacks. The company describes configuration steps, verification methods, and engineering changes made to support ML-DSA in its control and data plane services.
read more →

Google Cloud KMS Adds Quantum‑Safe Digital Signatures

🔒 Google Cloud Key Management Service (Cloud KMS) now offers general availability support for quantum‑safe digital signatures (ML‑DSA, SLH‑DSA) and ML‑KEM post‑quantum key encapsulation. The release addresses the challenge of signing large payloads by supporting pre‑hash and external‑µ variants to enable efficient HSM and KMS signing workflows. Cloud KMS includes multiple ML‑DSA and SLH‑DSA variants mapped to NIST security categories to help organizations meet emerging standards and regulatory timelines. Developers can manage PQC keys and integrate signing via the Cloud KMS API with documentation and examples provided.
read more →

Practical Roadmap for Post‑Quantum Cryptography Readiness

🔒 The shift to Post‑Quantum Cryptography (PQC) is now a practical priority for security, architecture, procurement, and compliance teams. The White House EO sets firm federal deadlines for PQC adoption in 2030–2031 and prompts broader supply‑chain impacts, making 2026–2027 critical planning years. Organizations should inventory cryptographic dependencies, assess vendor readiness, prioritize systems vulnerable to “harvest now, decrypt later” threats, and build crypto‑agility. Fortinet tools like FortiManager, FortiAnalyzer, and FortiGate hardware acceleration support discovery, risk measurement, and targeted protection to help operationalize PQC migration.
read more →

Microsoft Secure Future Initiative July 2026 Report

🔒 This progress report outlines Microsoft’s Secure Future Initiative (SFI) two-year effort to strengthen security foundations, apply AI for proactive defense, and prepare for future challenges such as post-quantum risks. It highlights layered controls—identity, access governance, segmentation, and secure engineering defaults—paired with cultural and governance measures to make protections durable. The report also shares lessons, practical guidance, and metrics of organizational adoption.
read more →

Cloudflare on ML‑DSA and the PQ signature landscape

🔒 Cloudflare explains why ML‑DSA, the NIST‑standardized post‑quantum signature, must be used for the initial migration even though better schemes may arrive later. The post‑quantum transition is underway: most traffic already uses ML‑KEM encryption, and Cloudflare targets full post‑quantum protection by 2029. The post outlines tradeoffs among candidate signature families — size, speed, and implementation risks — and highlights why specialization and generalist schemes will both be needed.
read more →

CISO Playbook for Post‑Quantum Mandates and Migration

🔒 This guide explains regulatory timelines and a strategic playbook for CISOs and senior leaders to manage post-quantum cryptography (PQC) migrations across large organizations. It outlines the practical split between short‑lived protocol upgrades (like TLS) and long‑lived embedded devices, recommends centralized governance via a cryptography center of excellence, and emphasizes board-level framing, vendor engagement, and phased execution to meet compliance deadlines.
read more →

France ends certification of non-quantum encryption

🔒 France’s cybersecurity agency ANSSI announced it will stop certifying security products that lack quantum-resistant encryption beginning in 2027, accelerating a national shift to post-quantum cryptography. ANSSI’s decision effectively forces French government bodies and critical operators to adopt quantum-safe solutions, as its approval is required for official use. The agency advised businesses to purchase only quantum-safe products by 2030 to ensure compliance and future-proofing.
read more →

Microsoft Accelerates Move to Post‑Quantum Cryptography

🔒 Microsoft announced an acceleration of its Quantum Safe Program to transition critical products and services to post‑quantum cryptography by 2029. The company plans to integrate PQC requirements into its Secure Future Initiative and emphasize crypto‑agility, TLS 1.3 adoption, and protection of trust chains such as code signing and certificates. Microsoft urged organizations to begin migration now due to advances in quantum research and rising risk of 'harvest now, decrypt later.'
read more →

Microsoft Expedites Transition to Post‑Quantum Cryptography

🔒 Microsoft says it is accelerating its move to post-quantum cryptography, citing advances in quantum R&D and a shifting "risk horizon." CTO Mark Russinovich announced a goal to migrate critical products and services to PQC by 2029, and linked the work to its Microsoft Quantum Safe Program and Secure Future Initiative. The company outlined three pillars—upgrading network cryptography to TLS 1.3, building crypto-agility for data at rest, and modernizing crypto trust chains—and provided practical steps for organizations to begin their PQC transition.
read more →

Microsoft accelerates quantum-safe transition to 2029

🔒 Microsoft has accelerated its quantum-safe roadmap, saying advances in quantum computing bring the need to replace current encryption sooner than expected. The company plans to transition critical products and services to post-quantum cryptography (PQC) by 2029 under its Quantum Safe Program and integrate quantum-safe requirements into its Secure Future Initiative. Microsoft emphasizes modernizing infrastructure, enabling crypto-agility, and updating trust chains to ease future migrations.
read more →

Microsoft accelerates quantum-safe security timeline

🔐 Microsoft is advancing its quantum-safe timeline, now targeting transition of critical products and services to post-quantum cryptography by 2029. The company is embedding PQC requirements into its Secure Future Initiative to ensure clear ownership, measurable milestones, and platform readiness. Priorities include modernizing network cryptography, enabling crypto-agility, and securing chains of trust across keys, certificates, and signing. Microsoft urges organizations to begin discovery and modernization now to reduce long-term risk.
read more →

Start Post‑Quantum Cryptography with Credentials

🔐 Today’s public-key cryptography faces a future threat from quantum computers that can render intercepted ciphertext and stored credentials decryptable. Agencies like the NSA and standards bodies such as NIST have set Q-day deadlines between 2027 and 2035 to phase in quantum-resistant algorithms, while enterprises face multi-year migrations. A practical approach is credentials-first: inventory secrets, prioritize long-lived, high-impact credentials, adopt hybrid cryptography, and design for crypto-agility to reduce Harvest Now, Decrypt Later risks.
read more →

Executive Order Accelerates Post‑Quantum Readiness

🔒 The White House Executive Order signed June 22, 2026 mandates migration of federal systems to NIST‑approved post‑quantum cryptography, setting milestones for key establishment by 2030 and digital signatures by 2031. It extends urgency to critical infrastructure, federal contractors, and procurement, highlights "harvest now, decrypt later" risk, and calls for cryptographic bill of materials guidance to drive visibility and operational readiness.
read more →