← All storiesTechnologyDeveloping story

Contrary to popular superstition, AES 128 is just fine in a post-quantum world

A stubborn misconception is hampering the already hard work of quantum readiness. With growing focus on the existential threat quantum computing poses to some of the most crucial and widely used forms of encryption, cryptography engineer Filippo Valsorda wants to make one thing absolutely clear: Contrary to popular mythology that refuses to die, AES 128 is perfectly fine in a post-quantum world. AES 128 is the most widely used variety of the Advanced Encryption Standard, a block cipher suite formally adopted by NIST in 2001. While the specification allows 192- and 256-bit key sizes, AES 128 was widely considered to be the preferred one because it meets the sweet spot between computational resources required to use it and the security it offers. With no known vulnerabilities in its 30-year history, a brute-force attack is the only known way to break it. With 2128 or 3.4 x 1038 possible key combinations, such an attack would take about 9 billion years using the entire bitcoin mining resources as of 2026. Over the past decade, something interesting happened to all that public confidence. Amateur cryptographers and mathematicians twisted a series of equations known as Grover’s algorith

1
updates in timeline
1
distinct sources
1 day
story span
Apr 21, 2026
latest update

Apr 21, 2026 → Apr 21, 2026

LATEST DEVELOPMENT
Apr 21, 2026·Ars TechnicaT2 · Outlet report
Contrary to popular superstition, AES 128 is just fine in a post-quantum world

A stubborn misconception is hampering the already hard work of quantum readiness. With growing focus on the existential threat quantum computing poses to some of the most crucial and widely used forms of encryption, cryptography engineer…

Read original at Ars Technica →
ACTIVITY · UPDATES PER MONTH
Apr 26

1 updates from 1 source.

Showing 1 of 1 updates

Timeline (1 updates)

April 2026

1 update
Apr 21, 2026·Ars TechnicaT2 · Outlet reportLATEST
Contrary to popular superstition, AES 128 is just fine in a post-quantum world

A stubborn misconception is hampering the already hard work of quantum readiness. With growing focus on the existential threat quantum computing poses to some of the most crucial and widely used forms of encryption,…

Read original at Ars Technica →

Sources & evidence (1)

What this story stands on. Tier 0 is a primary record or the subject's own words; higher tiers must be attributed, never stated as bare fact.

T2 · Outlet report× 1
COVERAGE BY SOURCE
Ars Technica 1
STRONGEST EVIDENCE
T2 · Outlet reportArs TechnicaApr 21, 2026

A stubborn misconception is hampering the already hard work of quantum readiness. With growing focus on the existential threat quantum computing poses to some of the most crucial and widely used forms of encryption, cryptography engineer…

View source →

Tier key: T0 = Primary source · T1 = Wire · T2 = Outlet report · T3 = Commentary

Related stories

TechnologyT2 · Outlet report

Peter Sarlin's QuTwo reaches $380M valuation in angel round | TechCrunch

Last day to exhibit your breakthrough to 10,000+ tech leaders at Disrupt is on Oct 2. Book Exhibit Table Now. Disrupt doors open Oct. 13. Get your pass and bring someone with you…

1 update1 source
May 6, 2026
Latest: Peter Sarlin's QuTwo reaches $380M valuation in angel round | TechCrunch · TechCrunch
TechnologyT2 · Outlet report

iOS 26.5 will add end-to-end encryption for RCS messages between Apple and Android - Engadget

The latest test version of iOS 26.5 includes a changelog about bringing some new protections to texts. The smartphone operating system will be rolling out end-to-end encryption…

1 update1 source
May 4, 2026
Latest: iOS 26.5 will add end-to-end encryption for RCS messages between Apple and Android - Engadget · Engadget
GeneralT2 · Outlet report

One dead as train travelling at 99mph collides with lorry in France

A train driver has died after his high-speed passenger train collided with a lorry at a level crossing in France while travelling at an estimated 160km/h (99mph). The incident…

4 updates3 sources7 days long
Apr 7, 2026 → Apr 14, 2026
Latest: France bets €500 million that quantum computing is the tech race Europe can finally win · The Next Web
TechnologyT2 · Outlet report

Mistral AI raises $830M in debt to set up a data center near Paris | TechCrunch

Last day to exhibit your breakthrough to 10,000+ tech leaders at Disrupt is on Oct 2. Book Exhibit Table Now. Disrupt doors open Oct. 13. Get your pass and bring someone with you…

2 updates2 sources2 weeks long
Mar 30, 2026 → Apr 13, 2026
Latest: Quantum computing: A tech race Europe could win? · BBC
TechnologyT2 · Outlet report

How Should We Prepare for the Looming Quantum Encryption Apocalypse?

In 1994, American mathematician Peter Shor developed a quantum algorithm with the potential to dismantle major cryptography schemes. If realized in quantum hardware, Shor’s…

1 update1 source
Apr 11, 2026
Latest: How Should We Prepare for the Looming Quantum Encryption Apocalypse? · Gizmodo
TechnologyT2 · Outlet report

Quanscient and Haiqu ran a 15-step nonlinear quantum fluid simulation

This article was published on April 2, 2026 A new quantum algorithm ran a 15-step nonlinear fluid simulation around a solid obstacle on real quantum hardware, the most physically…

1 update1 source
Apr 2, 2026
Latest: Quanscient and Haiqu ran a 15-step nonlinear quantum fluid simulation · The Next Web