Quasa Classic McEliece Standardized for Quantum-Safe Encryption
Article Content
- •Classic McEliece is now an ISO/IEC 18033-2 standard for post-quantum cryptography.
- •The amendment includes multiple parameter sets for enhanced long-term security.
- •Organizations can reference this standard for consistent encryption across borders.
Classic McEliece has been standardized in the ISO/IEC 18033-2 amendment as of July 15, 2026, marking a significant step in post-quantum cryptography. This standardization provides a common framework for organizations in ISO member states to implement code-based encryption against quantum threats. The amendment integrates specific parameter sets, including mceliece6*, mceliece8*, and mceliece4*, which are recommended for long-term security. The announcement has garnered attention across the industry, emphasizing the importance of global consistency in encryption methods. Organizations handling sensitive data over extended periods can now reference this international standard to ensure compatibility in multi-jurisdictional contexts. The Classic McEliece algorithm is based on Goppa codes, providing a conservative security foundation. However, full details require purchasing the ISO document, limiting access to comprehensive information. The standardization is crucial for sectors like international supply chains that need to demonstrate compliance with recognized specifications.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…