Skip to content

Post-Quantum Malware

Risk Level Status

Post-quantum malware refers to the hypothetical future threat of malware leveraging quantum computing to break current cryptographic protections (RSA, ECC). While sufficiently powerful quantum computers don’t yet exist, adversaries are conducting “harvest now, decrypt later” (HNDL) campaigns — collecting encrypted data today for decryption once quantum computers mature.

AlgorithmClassical SecurityQuantum (Shor’s)
RSA-2048~112 bitsBroken
RSA-3072~128 bitsBroken
ECC P-256~128 bitsBroken
ECC P-384~192 bitsBroken
AES-256256 bits128 bits (Grover’s)
SHA-256256 bits128 bits (Grover’s)
PhaseDescription
1. Harvest NowCollect encrypted traffic, TLS sessions, VPN traffic, encrypted files, backups
2. StoreLong-term cold storage; data retains value for decades
3. WaitWait for Cryptographically Relevant Quantum Computer (CRQC)
4. Decrypt LaterRun Shor’s algorithm on CRQC to break RSA/ECC keys
5. ExploitDecrypt harvested data; forge signatures; impersonate identities
Data TypeSensitivity LifetimeRisk
State secrets25-50+ yearsCritical
IP / Trade secrets10-30 yearsCritical
PII / Medical10-20+ yearsHigh
Financial records7-10 yearsHigh
TLS session keysEphemeralLow (PFS helps)
SourceCRQC Estimate
NIST2030-2040
NSA/CISA”Within 10-15 years”
Academic15-30 years
Commercial (IBM, Google)2030+
AlgorithmTypeStandardised
CRYSTALS-KyberKEM2024 (FIPS 203)
CRYSTALS-DilithiumSignature2024 (FIPS 204)
FALCONSignature2024 (FIPS 205)
SPHINCS+Signature2024 (FIPS 206)
  • Inventory all crypto — Certificates, VPNs, SSH, TLS, disks, backups
  • Migrate to PQC — Kyber (KEM), Dilithium (sig), hybrid modes
  • Crypto-agility — Design for algorithm swaps without redesign
  • Minimise data lifetime — Don’t store sensitive data for decades
  • Hybrid cryptography — Classical + PQC during transition
  • Monitor NIST PQC — Standards finalised 2024; implement
  • TLS 1.3 + PFS — Ephemeral keys limit HNDL value
TechniqueIDRelevance
ExfiltrationT1041Harvest encrypted data
Subvert Trust ControlsT1553Forge signatures post-quantum