Google says it can make security keys unbreakable by quantum computers
Google says it now has a FIDO2 security key implementation that is quantum resilient, claiming it to be the first of its kind.
FIDO2 is the technological standard for passwordless solutions, such as passkeys – which are stored on device – and physical security keys. It was developed by the FIDO alliance, a cross-industry association of which Google, along with the rest of big tech, is a board member.
The new quantum resiliant implementation is part of OpenSK, which is Google’s open source security key firmware that supports both FIDO2 and FIDO U2F. According to the company, it “uses a novel ECC/Dilithium hybrid signature schema that benefits from the security of ECC against standard attacks and Dilithium’s resilience against quantum attacks.”
Hybrid resilience
This schema was codeveloped with the Swiss Federal Institute of Technology in Zurich (ETH Zürich). Google believes that the progress towards practical quantum computers becoming a reality is moving at pace, which is a major concern for the world of cryptography.
Given the outlandish theoretical speeds and abilities that quantum computers are said to achieve, they are capable of cracking standard encryption methods, something even the most powerful of today’s supercomputers can’t do.
Google maintains, however, that with quantum resilient methods, such as the Dilithium algorithm, “we now have a clear path to secure security keys against quantum attacks.”
And even though it may be some time before this brave new world of computing makes its way outside of the labs and into the hands of threat actors – somewhere between 5-50 years on some people’s reckoning – Google thinks that protecting cryptography and all that it underpins is “a massive undertaking which is why doing it as early as possible is vital.”
For security keys, this means users will need to upgrade their models, which in turn means waiting on FIDO to standardize quantum resilient cryptography for them, and for browsers to support their use.
Google took the hybrid approach as the quantum resilient Dilithium algorithm, along with others, could by themselves be vulnerable to compromise from non-quantum computers.
Recently, Google took this same hybrid approach when adding quantum resistant algorithms to Chrome, as part of its effort to make sure the internet as a whole is safe from the new technology.
Since it is open source, anyone can test out the new security key algorithm, or contribute to its research, by accessing the OpenSK from its GitHub page.
Google says it now has a FIDO2 security key implementation that is quantum resilient, claiming it to be the first of its kind. FIDO2 is the technological standard for passwordless solutions, such as passkeys – which are stored on device – and physical security keys. It was developed by the…
Recent Posts
- Google Wallet ID passes will be available in select EU states this summer
- Shokz upgraded its open earbuds with better sound and a lighter design
- Shokz says its clip-on OpenDots 2 earbuds focus on improved volume and bass
- How to watch England vs New Zealand: TV Channels, Full Schedule & 1st Test Preview
- Nomad Goods Promo Codes: Get 25% Off in June 2026
Archives
- June 2026
- May 2026
- April 2026
- March 2026
- February 2026
- January 2026
- December 2025
- November 2025
- October 2025
- September 2025
- August 2025
- July 2025
- June 2025
- May 2025
- April 2025
- March 2025
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023