
Post-quantum email security advances on two IETF tracks
Two August 18 milestones advanced composite ML-KEM for CMS and a CNSA 2.0 S/MIME profile—useful signals for planning, not final standards.
Read postFiltered archive
Focused briefings from the Blog archive for teams working through Technical decisions.
Filtered analysis
9 published briefs in this filter.

Two August 18 milestones advanced composite ML-KEM for CMS and a CNSA 2.0 S/MIME profile—useful signals for planning, not final standards.
Read post
Cloudflare now supports ML-DSA certificates on the edge-to-origin hop. The operational lesson is that key agreement, authentication and downgrade resistance must be measured as separate controls.
Read post
03
NIST draft SP 800-230 adds smaller, faster SLH-DSA parameter sets for sign-once, verify-many workflows. The catch is operational: each signing key has a strict signature limit.
Read post
04
NIST moved nine additional post-quantum signature candidates into Round 3 in May 2026. That is algorithm diversity planning, not a pause button for ML-DSA and SLH-DSA migration.
Read post
08
Running ML-KEM alongside ECDH in TLS 1.3 across distributed infrastructure is straightforward in theory. This composite rollout model highlights practical planning issues around certificate chain sizes, middlebox interference, and HSM firmware constraints.
Read post
09
ML-KEM (FIPS 203) is the NIST standard. X-Wing is a hybrid combiner that pairs ML-KEM with X25519. Understanding when to use each, and why hybrid matters during the migration window.
Read post