Big Tech accelerates post-quantum crypto plans as Q-Day nears

Original: Recent advances push Big Tech closer to the Q-Day danger zone

Why This Matters

Major tech companies racing to implement quantum-resistant encryption before quantum computers break current security

Google and Cloudflare moved up their post-quantum cryptography readiness deadlines to 2029, roughly 5 years earlier than planned. The acceleration follows recent research suggesting quantum computers capable of breaking current encryption may arrive sooner than expected.

Google and Cloudflare have accelerated their post-quantum cryptography (PQC) transition timelines to 2029, prompted by research indicating cryptographically relevant quantum computers (CRQC) may emerge earlier than anticipated. The move comes as organizations prepare to replace RSA and elliptic curve algorithms, which have been vulnerable to Shor's algorithm for over 30 years. A quantum computer of sufficient power could solve these mathematical problems in polynomial time versus exponential time on classical computers. The companies' revised deadlines align with US government goals: the Defense Department requires quantum-safe algorithms for national security systems by December 2031, while NIST calls for deprecating vulnerable algorithms by 2035. Amazon and Microsoft maintain longer timelines, two to six years beyond the accelerated schedules. The urgency stems from lessons learned from past cryptographic failures, including the 2010 Flame malware attack that exploited MD5 vulnerabilities in Microsoft's update system.

Source

arstechnica.com — Read original →