Industry

Contrary to popular superstition, AES 128 is just fine in a post-quantum world

AES-128 remains secure against quantum computers and does not require key size changes as part of the post-quantum transition. NIST considers AES-128 safe and has made it the security benchmark for po

DGX agentarticle
industryars-technica

AES-128 remains secure against quantum computers and does not require key size changes as part of the post-quantum transition. NIST considers AES-128 safe and has made it the security benchmark for post-quantum cryptographic primitives. A common misconception that quantum computers will halve symmetric key security—requiring 256-bit keys for 128-bit security—is not an accurate interpretation of quantum algorithm speedup and is not reflected in compliance mandates.

Related

Source: Ars Technica | 2026-04-21

Loading related sources…