Apple makes its quantum-resistant encryption open source
Overview
Apple has released its post-quantum cryptography implementations in an open-source format, allowing researchers to analyze and verify the work. This move aims to safeguard encrypted data against potential future threats posed by quantum computers, which could compromise current public-key encryption methods. The release includes mathematical proofs and verification tools housed in the corecrypto library, which is integral to Apple's operating systems and services. By making this technology accessible for independent evaluation, Apple is fostering transparency and collaboration in the field of cryptography. This is important as quantum computing advances, potentially jeopardizing data security for users across various platforms.
Key Takeaways
- Affected Systems: Apple's corecrypto library and associated operating systems and services
- Timeline: Disclosed on October 2023
Original Article Summary
Apple has published its post-quantum cryptography implementations in corecrypto, together with mathematical proofs and verification tools for independent expert evaluation, allowing external researchers to review the work and reproduce the company’s analysis. Post-quantum cryptography is designed to protect encrypted data from future quantum computers that could break widely used public-key encryption algorithms. A new approach to formal verification of Apple corecrypto (Source: Apple) Corecrypto, the cryptography library used throughout Apple operating systems and services, provides … More → The post Apple makes its quantum-resistant encryption open source appeared first on Help Net Security.
Impact
Apple's corecrypto library and associated operating systems and services
Exploitation Status
No active exploitation has been reported at this time. However, organizations should still apply patches promptly as proof-of-concept code may exist.
Timeline
Disclosed on October 2023
Remediation
Not specified
Additional Information
This threat intelligence is aggregated from trusted cybersecurity sources. For the most up-to-date information, technical details, and official vendor guidance, please refer to the original article linked below.
Related Topics: This incident relates to Apple.