logo

Protecting your secrets from tomorrow’s quantum risks

ID: b3ca985e-84c8-5a40-9300-9f18006d4803

STIX ID: report--b3ca985e-84c8-5a40-9300-9f18006d4803

Feed Name: AWS Security Blog

Date Published: 2026-04-24

Date Updated: 2026-04-27

Author: Stéphanie Mbappe

...
...

AWS Secrets Manager now enables hybrid post-quantum TLS key exchange using ML-KEM by default for supported clients to mitigate harvest-now, decrypt-later risk; the post details required client and SDK versions, how to verify negotiation (CloudTrail tlsDetails showing X25519MLKEM768), troubleshooting steps, and migration guidance to upgrade agents, extensions, drivers, or SDK dependencies.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.