Florian Caullery, Crypto Developer, Dark Matter. NSA’s Information Assurance Directorate has announced they will initiate a government-wide transition to quantum-resistant algorithms. Current public-key standards do not meet the requirement for quantum security. Both RSA and ECDSA/ECDH algorithms can be broken in polynomial time with quantum computers.
We tour leading proposals for quantum-safe cryptography: lattice-based, code-based, multivariate, hash-based, and isogeny-based. We will focus on hash-based signatures, a potential replacement for today’s signatures schemes given their well understood and reliable security estimates.