The State of Post-Quantum Cryptography
Summary
Explores the ongoing move to post-quantum cryptography, detailing PQC key exchange (ML-KEM) and authentication (ML-DSA), the Merkle Tree Certificates approach, and the PKI/dns ecosystem changes. It highlights timelines (MTC in 2027; wider adoption by 2029–2035), challenges in updating ACME and certificate rotation, and risks around downgrade attacks and CA compromise. Includes a roundup of related security, DNS, and PKI news.