A new path for Kyber on the web
ID: 55c92de0-7f4f-592e-9224-c44182b46b22
STIX ID: report--55c92de0-7f4f-592e-9224-c44182b46b22
Feed Name: Google Online Security Blog
Google’s Chrome team announced that starting in Chrome 131, the browser will replace the experimental Kyber768+X25519 hybrid post-quantum TLS key exchange with the standardized ML-KEM768+X25519 (codepoint 0x11EC), implemented in BoringSSL. Chrome will not support both schemes concurrently, will update key share prediction to ML-KEM, and will apply the existing PostQuantumKeyAgreementEnabled flag and enterprise policy to both. Operators are encouraged to update servers, and future work aims to enable DNS-based key share prediction via an emerging IETF draft to avoid extra round trips with large PQ algorithms.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
