Now Is the Time to Plan for Post-Quantum Cryptography – DARKReading
RSA CONFERENCE 2022 Even the most future-facing panels at this year's RSA Conference are grounded in the lessons of the past. At the post-quantum cryptography keynote "Wells Fargo PQC Program: The Five Ws," the moderator evoked the upheaval from RSAC 1999 when a team from Electronic Frontier Foundation and Distributed.net broke the Data Encryption Standard (DES) in less than a day.
"We're trying to avoid the scramble" when classical cryptography techniques like elliptic curve and the RSA algorithm inevitably fall to quantum decrypting, said Sam Phillips, chief architect for information security architecture at Wells Fargo. And he set up the high stakes encryption battles often have: "Where were all the DES implemented? Hint: ATM machines."
"We had to set up teams to see where all we were using[was DES] and then establish the migration plan based upon using a risk-based approach," Phillips said. "We're trying to avoid that by really trying to get ahead of the game and do some planning in this case."
Phillips was joined on stage by Dale Miller, chief architect of information security architecture at Wells Fargo, and Richard Toohey, technology analyst at Wells Fargo.
Toohey, a doctoral candidate at Cornell University, handled most of the technical aspects of quantum computing during the panel.
"For most problems, if you have a quantum calculator and a regular calculator, they can add numbers just as well," he explained. "There's a very small subset of problems that are classically very hard, but for a quantum computer, they can solve [them] very efficiently."
These problems are called np-hard problems.
"A lot of cryptography, specifically in asymmetric cryptography, relies on these np-hard type problems things like elliptic curve cryptography, the RSA algorithm, famously and when quantum computers are developed enough, they'll be able to brute-force their way through these," Toohey explained. "So that breaks a lot of our modern classical cryptography."
The reason why we don't have crypto-breaking quantum computers today, despite headline-making offerings from IBM and others, is because the technology to reach that level of power has not been accomplished yet.
"To become a cryptographically relevant quantum computer, a quantum computer needs to have about 1 to 10 million logical qubits, and those logical qubits all need to be made up of about 1,000 physical qubits," Toohey said. "Today, right now, the largest quantum computers are somewhere around 120 physical qubits."
He estimated that to even muster the first logical qubit will take three years, and from there it has to scale up to "a million or so logical qubits. So it's still quite a few years away."
Another technical challenge that needs solving before we get these powerful quantum computers is the cooling systems they require.
"Qubits are incredibly sensitive; most of them have to be held at very low, cryogenic temperatures," Toohey explained. "So because of that, quantum computing architecture is incredibly expensive right now."
Other problems include decoherence and error correction. The panel agreed that the combination of these issues means crypto-cracking quantum computers are eight to10 years away. But that doesn't mean we have a decade to address PQC.
The panel was named for the journalistic model of five questions that start with the letter "w," but that didn't come up until late in the audience Q&A portion.
"Sam was asking the what, the who, the why, the where, and the when," Miller said. "So I think we've covered that in our conversations here."
Most of the titular questions were somewhat vague and a matter of judgment. However, on the concept of when you should start planning for the post-quantum future, there was complete agreement: Now.
"You've got to start the process now, and you have to move yourself forward so that you are ready when a quantum computer comes along," Miller said.
Phillips concurred.
"There is not right now a quantum computer that is commercially viable, but the amount of money and effort going into the work is there to move it forward, because people recognize the benefits that are there, and we are recognizing the risk," he said. "We feel that it's an eventuality, that we don't know the exact time, and we don't know when it'll happen."
Toohey suggested beginning preparations with a crypto inventory again, now.
"Discover where you have instances of certain algorithms or certain types of cryptography, because how many people were using Log4j and had no idea because it was buried so deep?" he said. "That's a big ask, to know every type of cryptography used throughout your business with all your third parties that's not trivial. That's a lot of work, and that's going to need to be started now."
Wells Fargo has a goal to beready to run post-quantum cryptography in five uears, which Miller described as"a very aggressive goal."
"So the time to start is now," he said,"and that's one of the most important takeaways from this get-together."
Pivoting is a key marker of agility for the panel, and agility is vital for being able to react to not just quantum threats, but whatever comes next.
"The goal here should be crypto agility, where you're able to modify your algorithms fairly quickly across your enterprise and be able to counter a quantum-based attack," Miller said. "And I'm really not thinking on a day-to-day basis about when is the quantum computer going to get here. For us, it's more about laying a path and a track for quantum resiliency for the organization."
Toomey agreed about the importance of agility.
"Whether it's a quantum computer or new developments in classical computing, we don't want to be put in a position where it takes us 10 years to do any kind of cryptographic transition," he said. "We want to be able to pivot and adapt to the market as new threats come out."
Because there will be computers that can break current cryptography techniques, organizations do need to develop new encryption methods that stand up to quantum brute-force attacks. But that's only the half of it.
"Don't just focus on the algorithms," Phillips said. "Start looking at your data. What data are you transiting back and forth? And look at devaluing that data. Where do you need to have that confidential information, and what can you do to remove that from the exposure? It will help a lot not only in the crypto efforts, but in terms of who has access to the data and why they have to have access."
One open question loomed over the discussion: When would NIST announce its picks for the new standards to develop for post-quantum cryptography? The answer: Not yet. But the uncertainty is no cause for inaction, Miller said.
"So NIST will continue to work with other vendors and other companies and research groups to look at algorithms that are further out there," he said. "Our job is to be able to allow those algorithms to come into place quickly, in a very orderly manner, without disrupting business or breaking your business processes and [to] be able to keep things moving along."
Phillips agreed. "That's one of the reasons for pushing on plug and play," he said. "Because we know that the first set of algorithms that come out may not satisfy the long-term need, and we don't want to keep jumping through these hoops every time somebody goes through it."
Toohey tied the standards question back into the concept of preparing now.
"That way, when NIST finally finishes publishing their recommendations, and standards get developed in the coming years, we're ready as an industry to be able to take that and tackle it," he said."That's going back to crypto agility and this mindset that we need to be able to plug and play. We need to be able to pivot as an industry very quickly to new and developing threats."
Here is the original post:
Now Is the Time to Plan for Post-Quantum Cryptography - DARKReading
- What's Going On With IonQ Stock Today? - Benzinga - April 1st, 2025 [April 1st, 2025]
- Quantum computer solves optimization problem at Ford's assembly line - Interesting Engineering - April 1st, 2025 [April 1st, 2025]
- Finnish Quantum Startup IQM in Talks to Raise Over 200 Million - Bloomberg.com - April 1st, 2025 [April 1st, 2025]
- Quantum Computing Approach Generates First Ever Truly Random Number - Discover Magazine - April 1st, 2025 [April 1st, 2025]
- National Quantum Computing Centre Launches Insights Paper Exploring Quantum Computings Transformative Potential in Healthcare and Pharmaceuticals -... - April 1st, 2025 [April 1st, 2025]
- JPMorganChase, Quantinuum, Argonne National Laboratory, Oak Ridge National Laboratory and University of Texas at Austin advance the application of... - April 1st, 2025 [April 1st, 2025]
- Certified randomness using a trapped-ion quantum processor - Nature - April 1st, 2025 [April 1st, 2025]
- What's Going On With Quantum Computing Stock Today? - Benzinga - April 1st, 2025 [April 1st, 2025]
- D-Wave Pushes Back At Critics, Shows Off Aggressive Quantum Roadmap - The Next Platform - April 1st, 2025 [April 1st, 2025]
- Quantum Computing Inc. Secures Quantum Photonic Vibrometer Order with Delft University of Technology - Yahoo Finance - April 1st, 2025 [April 1st, 2025]
- How quantum cybersecurity changes the way you protect data - TechTarget - April 1st, 2025 [April 1st, 2025]
- Pasqal Selected for 140-Qubit Quantum Computer to Be Hosted at CINECA - insideHPC - April 1st, 2025 [April 1st, 2025]
- D-Wave and Japan Tobacco use quantum to build a better AI model for drug discovery - SiliconANGLE - April 1st, 2025 [April 1st, 2025]
- Quantum Computing is a cross industry revolution, and we want to be part of it - CTech - April 1st, 2025 [April 1st, 2025]
- Quantum Computing Stocks Fall. Here's A Look At Upcoming News Events. - Investor's Business Daily - April 1st, 2025 [April 1st, 2025]
- Honeywell May Take Quantinuum Public in Next 2 Years. Its a Quantum Thing. - Barron's - April 1st, 2025 [April 1st, 2025]
- The 6 different types of quantum computing technology - TechTarget - April 1st, 2025 [April 1st, 2025]
- Nvidia to Open Quantum Computing Research Center in Boston This Year in a Landmark for Regions Tech Sector - The Harvard Crimson - April 1st, 2025 [April 1st, 2025]
- Quantum Threats Are HereWhy the Next Cybersecurity Boom May Already Be Underway - Baystreet.ca - April 1st, 2025 [April 1st, 2025]
- D-Wave and Japan Tobacco Validate Quantum and AI Workflow Towards Generative Drug Discovery - The Quantum Insider - April 1st, 2025 [April 1st, 2025]
- The High Cost of Quantum Randomness Is Dropping - Quanta Magazine - April 1st, 2025 [April 1st, 2025]
- Beyond encryption: Why quantum computing might be more of a science boom than a cybersecurity bust - oodaloop.com - April 1st, 2025 [April 1st, 2025]
- NVIDIA (NVDA): One of the Best Quantum Computing Stocks to Buy Right Now? - Yahoo Finance - March 18th, 2025 [March 18th, 2025]
- I work at a leading quantum lab: Here are the qualifications recruiters in the field are looking for - Business Insider - March 18th, 2025 [March 18th, 2025]
- 5 wild things quantum computing could unlock now that Big Tech believes a breakthrough is within reach - Yahoo - March 18th, 2025 [March 18th, 2025]
- Controversy erupts over claims Microsoft invented a new state of matter - Salon - March 18th, 2025 [March 18th, 2025]
- Chinese quantum processor is 1 quadrillion times faster than the best supercomputer and it rivals Google's breakthrough Willow chip - Livescience.com - March 18th, 2025 [March 18th, 2025]
- IQM Quantum wants to be the European answer to Google and IBM - Sifted - March 18th, 2025 [March 18th, 2025]
- Twisting atomically thin materials could advance quantum computers - University of Rochester - March 18th, 2025 [March 18th, 2025]
- D-Wave Quantum Stock Hits $11: Heres What This Top Analyst Predicts Ahead - TipRanks - March 18th, 2025 [March 18th, 2025]
- A Computer Has Achieved "Quantum Supremacy" On Real-World Problem For First Time, Company Claims - IFLScience - March 18th, 2025 [March 18th, 2025]
- INVESTOR ALERT: Pomerantz Law Firm Announces the Filing of a Class Action Against Quantum Computing Inc. and Certain Officers - QUBT - PR Newswire - March 18th, 2025 [March 18th, 2025]
- D-Wave Quantum Sets Benchmark with New Computing Advance - News and Statistics - IndexBox, Inc. - March 18th, 2025 [March 18th, 2025]
- Rigettis Rally Hits a Bump Are Insider Sales a Red Flag? - Wall Street Pit - March 18th, 2025 [March 18th, 2025]
- Quantum AI: What Is It and How Does It Work? - CNET - March 18th, 2025 [March 18th, 2025]
- D-Wave Shares Jump 46.9% on Friday - Should You Buy QBTS Stock? - TradingView - March 18th, 2025 [March 18th, 2025]
- 2 Top Quantum Computing Stocks to Buy in 2025 - The Motley Fool - March 13th, 2025 [March 13th, 2025]
- D-Wave Claims Breakthrough. Quantum Computing Stocks Gain. - Investor's Business Daily - March 13th, 2025 [March 13th, 2025]
- Physicists Just Witnessed a Quantum Phase Flip and Its More Mind-Bending Than Expected - SciTechDaily - March 13th, 2025 [March 13th, 2025]
- Beyond Classical: D-Wave First to Demonstrate Quantum Supremacy on Useful, Real-World Problem - Business Wire - March 13th, 2025 [March 13th, 2025]
- What is quantum computing and how it could change the tech world - Yahoo Finance - March 13th, 2025 [March 13th, 2025]
- Quantum Computing Giant IonQ Is Down More Than 60% From its All-Time High. Should You Buy The Dip? - The Motley Fool - March 13th, 2025 [March 13th, 2025]
- D-Wave Deep Dive: A Look at The Quantum Advantage Findings -- And The Questions That Remain - The Quantum Insider - March 13th, 2025 [March 13th, 2025]
- D-Wave claims to have achieved quantum supremacy at last, but others disagree - SiliconANGLE News - March 13th, 2025 [March 13th, 2025]
- D-Wave Claims It Achieves Quantum Supremacy. What the Breakthrough Means for Quantum Computing. - Barron's - March 13th, 2025 [March 13th, 2025]
- D-Wave Posts Wider-Than-Expected Loss. Why the Stock Is Rising After Earnings. - Barron's - March 13th, 2025 [March 13th, 2025]
- Nu Quantum Partners With The University of Sussex, Cisco, and Infineon to Scale Trapped Ion Quantum Computers - The Quantum Insider - March 13th, 2025 [March 13th, 2025]
- IonQ Could Be a Quantum Computing Powerhouse, but Is It a Buy Right Now? - The Motley Fool - March 13th, 2025 [March 13th, 2025]
- D-Wave Quantum Inc. Reports Fourth Quarter and Year-End 2024 Results - TradingView - March 13th, 2025 [March 13th, 2025]
- Hybrid Quantum Workflow Moves Toward Real-World Applications - IoT World Today - March 13th, 2025 [March 13th, 2025]
- As NVIDIAs Quantum Day Nears, Analysts Suggest Event is More Than a Gesture - The Quantum Insider - March 13th, 2025 [March 13th, 2025]
- D-Wave Posts Wider-Than-Expected Loss. Why the Stock Is Rising Anyway. - MSN - March 13th, 2025 [March 13th, 2025]
- Recent Breakthroughs Accelerate The Race For Quantum Computing - Forbes - March 13th, 2025 [March 13th, 2025]
- An operating system for executing applications on quantum network nodes - Nature.com - March 13th, 2025 [March 13th, 2025]
- D-Wave Reports Quantum Advantage in Materials Simulation Study - HPCwire - March 13th, 2025 [March 13th, 2025]
- Experts Weigh in on Microsofts Topological Qubit Claim - Physics - March 13th, 2025 [March 13th, 2025]
- Quantum Computing Inc. To Attend 37th Annual ROTH Conference - PR Newswire - March 13th, 2025 [March 13th, 2025]
- Quantum leap: Passwords in the new era of computing security - BleepingComputer - March 13th, 2025 [March 13th, 2025]
- Quantum computing will reach its inflection point in 2029: How investors should prepare - Finextra - March 13th, 2025 [March 13th, 2025]
- Quantum computing - Unlocking science, and maybe your bank account - Home Team Science and Technology Agency - March 13th, 2025 [March 13th, 2025]
- SXSW 2025 live coverage: The potential of quantum computing, Ireland's prime minister makes a splash, and a Metallica concert in Apple Vision Pro -... - March 13th, 2025 [March 13th, 2025]
- QuamCore Emerges From Stealth With $9 Million in Seed Funding to Build Worlds First Scalable 1 million Qubit Quantum Computer - The Quantum Insider - March 13th, 2025 [March 13th, 2025]
- QuamCore Emerges with $9M Seed Funding to Build Scalable Million-Qubit Quantum Computer - Quantum Computing Report - March 13th, 2025 [March 13th, 2025]
- QuamCore emerges from stealth with $9 million in Seed funding to build a 1 million qubit quantum computer - Scientific Computing World - March 13th, 2025 [March 13th, 2025]
- D-Wave says it achieved quantum supremacy using its computer - Fast Company - March 13th, 2025 [March 13th, 2025]
- D-Waves Annealing Quantum Computer Just Beat a Supercomputer Heres Why It Matters - Wall Street Pit - March 13th, 2025 [March 13th, 2025]
- Recently, a series of quantum computer-themed exchange-traded funds (ETFs) have been released in the.. - - March 13th, 2025 [March 13th, 2025]
- China unveils quantum computer thats one quadrillion times faster than existing supercomputers - Yahoo Finance UK - March 7th, 2025 [March 7th, 2025]
- China unveils quantum computer that could spell new era of processors - The Independent - March 5th, 2025 [March 5th, 2025]
- Startup PsiQuantum says it is making millions of quantum computing chips - Reuters - March 1st, 2025 [March 1st, 2025]
- A quantum computing startup says it is already making millions of light-powered chips - The Conversation - March 1st, 2025 [March 1st, 2025]
- Quantum Breakthrough: Microsoft and Purdue Unlock the Future of Topological Qubits - SciTechDaily - March 1st, 2025 [March 1st, 2025]
- Interested in Quantum Computing Investing? Here Are 4 Fantastic Picks to Maximize Your Odds of Picking a Winner - The Motley Fool - March 1st, 2025 [March 1st, 2025]
- If I Could Only Buy 1 Quantum Computing Stock, This Would Be It - The Motley Fool - March 1st, 2025 [March 1st, 2025]
- Amazon unveils quantum chip, aiming to shave years off development time - Reuters - March 1st, 2025 [March 1st, 2025]
- Quantum Computing Is Finally Here. But What Is It? - Bloomberg - March 1st, 2025 [March 1st, 2025]
- Microsoft makes quantum computing breakthrough - Drexel University The Triangle Online - March 1st, 2025 [March 1st, 2025]
- Google, Microsoft, and now Amazon: The quantum computing race is heating up - Quartz - March 1st, 2025 [March 1st, 2025]
- Groundbreaking qubit technology reduces errors in quantum computing - The Brighter Side of News - March 1st, 2025 [March 1st, 2025]
- Fortanix Tackles Quantum Computing Threats With New Algorithms - Dark Reading - March 1st, 2025 [March 1st, 2025]