Case AC9A26 · Cryptography · L3 Applied
Post-Quantum Cryptography
Practise as: Explain it · Interview · Deep dive
Interview questionWhat does quantum computing break in today's crypto, and how are we migrating?
- 01 What is it?
- 02 How is it abused?
- 03 How do you stop it?
What a strong answer covers
Try it out loud first. Then check yourself:
- Shor's algorithm breaks RSA, DH and ECC; Grover only halves symmetric strength, so AES-256 stays safe.
- NIST standardized ML-KEM (FIPS 203, Kyber), ML-DSA (FIPS 204, Dilithium) and SLH-DSA (FIPS 205, SPHINCS+).
- Harvest-now-decrypt-later makes key exchange the urgent priority, ahead of signatures.
- Hybrid key exchange (X25519MLKEM768) is already deployed in TLS by major browsers and CDNs.
- Migration requires crypto inventory and crypto agility; PQC keys and signatures are much larger.
If the interviewer pushes back
- Why deploy hybrid classical+PQC key exchange instead of pure ML-KEM, and what does it cost in handshake size?
Go deeper
cardosec draws a security topic and gives you a clock: explain it out loud with no notes, then see what you covered and what you missed. Free during early access.