Vitallaw Federal Agencies Unprepared for Quantum Cyber Threats, GAO Reports
Article Content
- •GAO found zero out of 24 federal agencies prepared for quantum threats.
- •A cryptographically relevant quantum computer could emerge by the 2030s.
- •The GAO issued 89 recommendations to improve agency readiness for quantum cryptography.
The Government Accountability Office (GAO) has reported that none of the 24 federal agencies reviewed are fully prepared for the impending threat posed by quantum computers capable of breaking current encryption methods. The report highlights that agencies have not established necessary inventories of vulnerable cryptographic systems or developed plans for transitioning to quantum-resistant cryptography. Experts estimate that a cryptographically relevant quantum computer (CRQC) could be developed as soon as the 2030s, posing a significant risk of data compromise. The GAO made 89 recommendations to improve agency readiness, but noted that agencies lack expertise, processes, and funding assessments for post-quantum cryptography (PQC). The report is a public version of a sensitive document released in September 2025, which did not reflect recent agency actions. The risks include potential data harvesting by malicious actors, who could decrypt sensitive information once a CRQC becomes available.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Common questions
What is a cryptographically relevant quantum computer?
What actions are recommended for federal agencies?
What is the risk of not transitioning to quantum-resistant cryptography?
Continue Reading
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited In late September 2026, two critical zero-day vulnerabilities (CVE-2026-88771 and CVE-2026-88772) in Citrix NetScaler ADC and Gateway were actively exploited, allowing remote code execution. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on…
Critical Citrix NetScaler Vulnerabilities Actively Exploited in Finland The National Cyber Security Centre Finland (NCSC-FI) issued an alert regarding critical vulnerabilities in Citrix NetScaler ADC and Gateway products, specifically CVE-2026-88771 and CVE-2026-88772, which are being actively exploited in Finland. These vulnerabilities allow attackers to execute remote code without…