lattice
Y2Q warning — quantum computers will break RSA & ECDSAtime to quantum 2029 · migrate to lattice
threat: high 48,210 keys get a key

ml-kem (kyber).

The NIST key-encapsulation standard.

ML-KEM — the finalist formerly known as Kyber — is NIST's standardized lattice key-encapsulation mechanism. It's how two parties agree on a shared secret without a quantum computer being able to break it.

standardFIPS 203
basismodule-lwe
securitycategory 3
statusnist standard

the key exchange of the quantum era

ECDH — which secures today's key exchange — dies to shor. ML-KEM replaces it with a lattice problem that has no known quantum attack. It's the drop-in for the quantum era.