Close Menu
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

New Mirai-Based Linux Botnet ‘Evooo1Bot’ Turns Victims Into Proxies

August 14, 2026

UNC6671 Vishing Attacks Target Personal Phones to Steal SaaS Data

August 14, 2026

Researchers Link Suspected Chinese APT to Hack-for-Hire Operations

August 14, 2026
Facebook X (Twitter) Instagram
Friday, August 14
Facebook X (Twitter) Instagram Pinterest Vimeo
Cyberwire Daily
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice
Cyberwire Daily
Home»News»Google Targets 2027 for First Major Post-Quantum Security Milestone
News

Google Targets 2027 for First Major Post-Quantum Security Milestone

Team-CWDBy Team-CWDAugust 13, 2026No Comments2 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email


Google Cloud has divided its post-quantum migration into interim deadlines, targeting its first major risk domain for completion by the end of 2027.

The roadmap, published on August 12, organized the work into three risk domains drawn from Google’s own quantum threat model.

Mitigating store-now-decrypt-later (SNDL) risk, where data harvested today could be decrypted by a future quantum computer, is targeted for the end of 2027.

Hardening digital signatures against forgery and rebuilding key management for cryptographic agility both run to the end of 2028, ahead of the 2029 date Google set alongside Cloudflare and Microsoft.

Read more: How Cybersecurity Vendors Are Preparing for the Post-Quantum Era

What Has Already Shipped

Google Cloud API endpoints, including google.com and *.googleapis.com, now offer quantum-safe key exchange using NIST-standardized ML-KEM in hybrid mode.

Application and proxy load balancers support hybrid key exchange for TLS 1.3, initially opt-in so customers can validate without disrupting existing applications.

Cloud KMS reached general availability for ML-KEM, ML-DSA and SLH-DSA, and quantum-confidential ALTS, Google’s internal traffic protocol, completed in 2025.

Still to come are Cloud VPN and Interconnect in 2026 and 2027, Private CA in 2027 and Cloud IAM and a quantum-safe Cloud HSM in 2028.

The Certificate Problem

Certificates involve a further constraint. Post-quantum signatures are large enough to affect certificate chain validation performance, which Google is addressing through Merkle Tree Certificates.

Jason Soroko, senior fellow at certificate lifecycle management provider Sectigo, said the approach replaces multiple large signatures with one compact inclusion proof, keeping overhead near current levels.

It also folds transparency logging into issuance rather than bolting it on, he said: “If a certificate is not in the tree, it simply does not exist.”

Read more on quantum threats: Preparing for the Quantum Future – Lessons from Singapore

Google was explicit that customers carry part of the load, needing to update client-side software to negotiate post-quantum handshakes and manage their own asymmetric key lifecycles.

On hardware, it said the timeline for some physical components may extend beyond 2029, since the transition depends partly on natural equipment replacement cycles.

The company warned in March that a cryptographically relevant quantum computer could arrive as early as 2029.



Source

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous Article18-Year-Old Linux SCTP Flaw Could Let Local Users Gain Root and Escape Containers
Next Article Growing Up The Hard Way
Team-CWD
  • Website

Related Posts

News

New Mirai-Based Linux Botnet ‘Evooo1Bot’ Turns Victims Into Proxies

August 14, 2026
News

UNC6671 Vishing Attacks Target Personal Phones to Steal SaaS Data

August 14, 2026
News

Researchers Link Suspected Chinese APT to Hack-for-Hire Operations

August 14, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest News

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202523 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views

Why SOC Burnout Can Be Avoided: Practical Steps

November 14, 20259 Views

BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA

July 11, 20268 Views
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Most Popular

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202523 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views
Our Picks

2025’s most common passwords were as predictable as ever

January 21, 2026

Top IRS scams to look out for in 2026

February 10, 2026

The quest for greater tech independence

May 19, 2026

Subscribe to Updates

Get the latest news from cyberwiredaily.com

Facebook X (Twitter) Instagram Pinterest
  • Home
  • Contact
  • Privacy Policy
  • Terms of Use
  • California Consumer Privacy Act (CCPA)
© 2026 All rights reserved.

Type above and press Enter to search. Press Esc to cancel.