Tools

News

Notícias

Classificados

Cursos

Broker

IPv4:

IPv6:

 

UpOrDown
Ping
MTR
Smokeping
MTU Detect
Portscan
DNS
HTTP/SSL
My IP
IP Calc
IP Extractor
Uptime Monitor

AES-128 Holds Up in Post-Quantum Era

Image © Arstechnica
Cryptography researchers counter the belief that quantum computers render AES-128 insecure, arguing 128-bit symmetric keys remain robust in a post-quantum world.

In the face of a widely discussed quantum threat, cryptography researcher Filippo Valsorda argues that AES-128 remains strong in a post-quantum world. While quantum computers threaten many public-key systems, symmetric keys like AES-128 do not lose security as dramatically as is often claimed.

He explains that the key difference lies in how brute-force searches behave classically versus with Grover’s algorithm. Grover’s algorithm offers a quadratic speedup, not an exponential one, so the security reduction from 128 bits to 64 bits is not as dire as some warnings suggest. When attackers must finish within realistic timeframes, parallelizing the quantum search does not trivially halve security, and the total work, under reasonable constraints, remains far beyond 2^64.

Experts, including Sophie Schmieg of Google, describe the cost in terms of core-seconds rather than simple key-length reductions. Schmieg highlights that even with quantum acceleration, AES-128 would require enormous resources, pushing the effective security well beyond the 128-bit target under practical scenarios.

NSA guidance remains nuanced: while some interpretations advocate AES-256 for very long-term confidentiality, the NSA’s Commercial National Security Algorithm Suite still references AES-256 as a design choice to avoid fragmentation across security levels. This is not a universal condemnation of AES-128, but a policy choice for certain threat models.

Overall, the message is pragmatic: prioritize transitioning to post-quantum asymmetric algorithms and secure key exchange, but preserve the strong, well-understood symmetric primitives like AES-128 for now. The consensus is that AES-128 is not broken, and the ongoing work should focus on the larger challenges posed by quantum-ready cryptography.

 

Arstechnica

Notícias relacionadas

Tecnologia Amplifica Falhas: 4 Pré-requisitos
IBM reforça segurança IA 2026
Biogás Suzuki na Índia: Segurança e ESG
Liderança em TI: executor ou tradutor de valor 2026
Apple escolhe John Ternus como CEO
Oi: Dívida de 42 bi e salvamento estratégico

O ISP.Tools sobrevive graças aos anúncios.

Considere desativar seu bloqueador de anúncios.
Prometemos não ser intrusivos.

Consentimento para cookies

Utilizamos cookies para melhorar a sua experiência no nosso site.

Ao utilizar o nosso site, você concorda com o uso de cookies. Saiba mais