Feeds.4Sysops Cloudflare Launches Post-Quantum Authentication for Origin Connections
Article Content
- •Cloudflare now supports post-quantum authentication for origin server connections.
- •ML-DSA certificates and hybrid key exchange enhance security against quantum threats.
- •The implementation follows the resolution of a TLS compatibility issue.
Cloudflare has implemented post-quantum authentication for connections to customer origin servers, enhancing security against future quantum computing threats. This follows the resolution of a TLS compatibility incident that affected earlier deployments. Administrators can now utilize ML-DSA certificates combined with X25519MLKEM768 hybrid key exchange to secure both authentication and session keys. The move is part of Cloudflare's broader strategy to achieve full post-quantum security by 2029, addressing the risks of quantum attacks on classical credentials. The company has previously enabled post-quantum encryption for visitor-to-Cloudflare connections in 2022 and 2023. This development is crucial as quantum computing advancements threaten existing cryptographic standards, prompting a shift in security protocols across the industry.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (5)
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…