US federal agencies unprepared for post-quantum cryptography
A US Government Accountability Office audit found none of the 24 major federal agencies have fully implemented required preparations for post-quantum cryptography, leaving federal data at risk from future quantum decryption attacks. The agencies have not established complete inventories of vulnerable systems, detailed migration costs, or tested new cryptographic solutions. The GAO report recommends urgent action on technical talent, inventories, and planning to meet looming federal security deadlines.
- No agency completed core quantum security practices
- Critical system inventories remain incomplete
- Few agencies have identified migration or replacement costs
- No comprehensive testing of post-quantum cryptography conducted
- GAO issued 89 targeted recommendations across agencies
Sources covering this
More in Cybersecurity
US and allies disrupt Chinese hacking tools targeting infrastructure
US authorities and international partners have seized domains and tools used by China's Integrity Technology Group to support…
AI-powered attacks target South Korean banks
A cyberattack campaign targeting South Korean financial institutions used AI-based tools to steal personal data, CrowdStrike reported.
Google promotes passkeys as a password alternative
Google is highlighting passkeys as a faster and safer alternative to traditional passwords for its accounts.
Malware found pre-installed on low-cost Android phones
Researchers have discovered malware embedded in the firmware of inexpensive Android smartphones, allowing attackers to remotely install…