<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: bwesterb</title><link>https://news.ycombinator.com/user?id=bwesterb</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Sat, 02 May 2026 09:09:12 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=bwesterb" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by bwesterb in "Will you heed my warnings now?"]]></title><description><![CDATA[
<p>Most approaches have missing "capabilities" that can be tracked. Adam Zalcman lays them out for superconducting qubits here. <a href="https://westerbaan.name/~bas/rwpqc2026/adam.pdf" rel="nofollow">https://westerbaan.name/~bas/rwpqc2026/adam.pdf</a><p>For the neutral atoms approach in particular there doesn't seem to be a clear capability missing anymore to building a full scale CRQC: each of the separate components has been demonstrated. Of course when they try to put everything together they'll undoubtedly hit unexpected issues with integration. Wish I could be a fly on the wall at those labs.</p>
]]></description><pubDate>Thu, 30 Apr 2026 13:21:21 +0000</pubDate><link>https://news.ycombinator.com/item?id=47962025</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47962025</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47962025</guid></item><item><title><![CDATA[New comment by bwesterb in "Will you heed my warnings now?"]]></title><description><![CDATA[
<p>Scott used to be that guy.</p>
]]></description><pubDate>Thu, 30 Apr 2026 10:09:46 +0000</pubDate><link>https://news.ycombinator.com/item?id=47960359</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47960359</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47960359</guid></item><item><title><![CDATA[New comment by bwesterb in "Will you heed my warnings now?"]]></title><description><![CDATA[
<p>The abacus thing is pretty funny, but it's dangerously uninformed. <a href="https://bas.westerbaan.name/notes/2026/04/02/factoring.html" rel="nofollow">https://bas.westerbaan.name/notes/2026/04/02/factoring.html</a></p>
]]></description><pubDate>Thu, 30 Apr 2026 10:07:54 +0000</pubDate><link>https://news.ycombinator.com/item?id=47960351</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47960351</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47960351</guid></item><item><title><![CDATA[New comment by bwesterb in "Will you heed my warnings now?"]]></title><description><![CDATA[
<p>It'll be a 90/10 rule: 90% of the upgrades will be straightforward. It's important the 10% that'll be hard early. For many it's probably already too late.</p>
]]></description><pubDate>Thu, 30 Apr 2026 09:56:06 +0000</pubDate><link>https://news.ycombinator.com/item?id=47960262</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47960262</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47960262</guid></item><item><title><![CDATA[New comment by bwesterb in "Will you heed my warnings now?"]]></title><description><![CDATA[
<p>QKD is cool and all, but it just doesn't scale to the whole Internet. <a href="https://blog.cloudflare.com/you-dont-need-quantum-hardware/" rel="nofollow">https://blog.cloudflare.com/you-dont-need-quantum-hardware/</a></p>
]]></description><pubDate>Thu, 30 Apr 2026 09:54:18 +0000</pubDate><link>https://news.ycombinator.com/item?id=47960256</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47960256</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47960256</guid></item><item><title><![CDATA[New comment by bwesterb in "Will you heed my warnings now?"]]></title><description><![CDATA[
<p>Where available, you can migrate. Even if PQ is not yet available it helps to:<p>1. Make sure your dependencies are up to date. Move to a recent version of your crypto libraries.
2. Make sure your server can install multiple certificates: you'll need that unless you control all your clients.
3. Automate certificate issuance as far as possible.<p>Also, what you can do now is to run the following wargame: assume the CRQC arrived. What's the business impact?<p>For the migration itself I see three parallel streams.<p>1. Main push of straight-forward cases (TLS, etc.) Might need to wait a bit for software support.<p>2. Hard cases: crypto baked into hardware; custom protocols; keys in tight spaces (JWT in URLs); etc. You need to bubble those up soon to make decisions on how to fix them.<p>3. External dependencies. Barely any vendor has a PQ roadmap, so asking now is probably early, but you can figure out what to do if they don't get their stuff ready in time.</p>
]]></description><pubDate>Thu, 30 Apr 2026 09:53:12 +0000</pubDate><link>https://news.ycombinator.com/item?id=47960249</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47960249</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47960249</guid></item><item><title><![CDATA[New comment by bwesterb in "Will you heed my warnings now?"]]></title><description><![CDATA[
<p>We're almost done countering store-now/decrypt-later, but the biggest part of the job, post-quantum authentication, still remains. Like Google, we target 2029 to be done .</p>
]]></description><pubDate>Thu, 30 Apr 2026 09:46:43 +0000</pubDate><link>https://news.ycombinator.com/item?id=47960209</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47960209</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47960209</guid></item><item><title><![CDATA[New comment by bwesterb in "Will you heed my warnings now?"]]></title><description><![CDATA[
<p>SSH is working on a drop-in as we speak. TLS is further along: most stacks already support X25519MLKEM768 (by default!) to counter store-now/decrypt-later. PQ certs are not widely supported yet, but that's being sped up as we speak.</p>
]]></description><pubDate>Thu, 30 Apr 2026 09:45:29 +0000</pubDate><link>https://news.ycombinator.com/item?id=47960197</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47960197</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47960197</guid></item><item><title><![CDATA[Will you heed my warnings now?]]></title><description><![CDATA[
<p>Article URL: <a href="https://scottaaronson.blog/?p=9718">https://scottaaronson.blog/?p=9718</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=47958942">https://news.ycombinator.com/item?id=47958942</a></p>
<p>Points: 87</p>
<p># Comments: 101</p>
]]></description><pubDate>Thu, 30 Apr 2026 06:30:30 +0000</pubDate><link>https://scottaaronson.blog/?p=9718</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47958942</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47958942</guid></item><item><title><![CDATA[New comment by bwesterb in "Cloudflare targets 2029 for full post-quantum security"]]></title><description><![CDATA[
<p>When it's real, it's too late.</p>
]]></description><pubDate>Wed, 08 Apr 2026 12:07:47 +0000</pubDate><link>https://news.ycombinator.com/item?id=47689080</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47689080</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47689080</guid></item><item><title><![CDATA[New comment by bwesterb in "Cloudflare targets 2029 for full post-quantum security"]]></title><description><![CDATA[
<p>You sure? Defenders get funding if things break—not when they actually did their job.</p>
]]></description><pubDate>Wed, 08 Apr 2026 12:07:21 +0000</pubDate><link>https://news.ycombinator.com/item?id=47689079</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47689079</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47689079</guid></item><item><title><![CDATA[New comment by bwesterb in "Cloudflare targets 2029 for full post-quantum security"]]></title><description><![CDATA[
<p>Yeah, it's rough. Important to understand now for each product / system what the business impact is if it's not upgraded in time.</p>
]]></description><pubDate>Wed, 08 Apr 2026 12:04:05 +0000</pubDate><link>https://news.ycombinator.com/item?id=47689052</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47689052</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47689052</guid></item><item><title><![CDATA[New comment by bwesterb in "Cloudflare targets 2029 for full post-quantum security"]]></title><description><![CDATA[
<p>They are large, but they're not that slow actually. We've been testing them for almost a decade now. I agree that rushing is bad. That's why we need to start moving now, so that we're not rushing even closer to the deadline.</p>
]]></description><pubDate>Wed, 08 Apr 2026 12:02:17 +0000</pubDate><link>https://news.ycombinator.com/item?id=47689028</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47689028</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47689028</guid></item><item><title><![CDATA[New comment by bwesterb in "Cloudflare targets 2029 for full post-quantum security"]]></title><description><![CDATA[
<p>Yeah, PQ certificate transparency is crucial for downgrade protection: <a href="https://westerbaan.name/~bas/rwpqc2026/bas.pdf" rel="nofollow">https://westerbaan.name/~bas/rwpqc2026/bas.pdf</a></p>
]]></description><pubDate>Wed, 08 Apr 2026 12:01:03 +0000</pubDate><link>https://news.ycombinator.com/item?id=47689008</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47689008</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47689008</guid></item><item><title><![CDATA[New comment by bwesterb in "A cryptography engineer's perspective on quantum computing timelines"]]></title><description><![CDATA[
<p>> I could also be misremembering our conversation, but I thought you had said something like 2029 or 2030 in our 2020 conversation<p>Think that must've been around 2022. It'd have been me mentioning 2030 regulatory deadlines. So far progress in PQC adoption has been mostly driven by (expected) compliance. Now it'll shift to a security issue again.<p>> My concern is that there's so much human and financial capital behind quantum computing that the "experts" have lots of reason to try to convince you that it's going to happen any day now.<p>There've been alarmist publications for years. If it were just some physicists again, I'd have been sceptical. This is the security folks at Google pulling the alarm (among others.)<p>> [B]ut we also don't have any proof (existence or theoretical) that proves they are actually possible.<p>The theoretic foundation is pretty basic quantum mechanics. It'd be a big surprise if there'd be a blocker there. What's left is the engineering. The problem is that definite proof means an actual quantum computer... which means it's already too late.<p>> The other challenge is we don't know where BQP fits<p>This is philosophy. Even P=NP doesn't imply cryptography is hopeless. If the concrete cost between using and breaking is large enough (even if it's not asymptotically) we can have perfectly secure systems. But this is quite a tangent.<p>> Should we prepare for QC on the cryptography side?<p>A 10% chance it happens by 2030, means we'll need to migrate by 2029.<p>> it and ongoing in terms of slowing down worldwide communications<p>We've been working hard to make the impact negligible. For key agreement the impact is very small. And with Merkle Tree Certificates we also make the overhead for authentication negligible.</p>
]]></description><pubDate>Wed, 08 Apr 2026 11:53:09 +0000</pubDate><link>https://news.ycombinator.com/item?id=47688932</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47688932</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47688932</guid></item><item><title><![CDATA[New comment by bwesterb in "Cloudflare targets 2029 for full post-quantum security"]]></title><description><![CDATA[
<p>No need for a TLS 1.4.<p>Leaf certificates don't last long, but root CAs do. An attacker can just mint new certs from a broken root key.<p>Hopefully many devices can be upgraded to PQ security with a firmware update. Worse than not receiving updates, is receiving malicious firmware updates, which you can't really prevent without upgrading to something safe first.</p>
]]></description><pubDate>Tue, 07 Apr 2026 16:40:06 +0000</pubDate><link>https://news.ycombinator.com/item?id=47677983</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47677983</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47677983</guid></item><item><title><![CDATA[New comment by bwesterb in "Cloudflare targets 2029 for full post-quantum security"]]></title><description><![CDATA[
<p>Waiting now means rushing even more close to the deadline! We added stats on origin support for post-quantum encryption. Not as much support as browsers of course, but better than I expected. Still a long road (and authentication!). <a href="https://radar.cloudflare.com/post-quantum" rel="nofollow">https://radar.cloudflare.com/post-quantum</a></p>
]]></description><pubDate>Tue, 07 Apr 2026 16:33:13 +0000</pubDate><link>https://news.ycombinator.com/item?id=47677868</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47677868</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47677868</guid></item><item><title><![CDATA[New comment by bwesterb in "Cloudflare targets 2029 for full post-quantum security"]]></title><description><![CDATA[
<p>If we do our job, it changes nothing. Problem with security generally: no spectacle if it's all correct. :)</p>
]]></description><pubDate>Tue, 07 Apr 2026 15:55:46 +0000</pubDate><link>https://news.ycombinator.com/item?id=47677274</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47677274</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47677274</guid></item><item><title><![CDATA[New comment by bwesterb in "Cloudflare targets 2029 for full post-quantum security"]]></title><description><![CDATA[
<p>At least it's time bound: hope to have this job done by 2029!</p>
]]></description><pubDate>Tue, 07 Apr 2026 15:51:43 +0000</pubDate><link>https://news.ycombinator.com/item?id=47677205</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47677205</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47677205</guid></item><item><title><![CDATA[New comment by bwesterb in "A cryptography engineer's perspective on quantum computing timelines"]]></title><description><![CDATA[
<p>Don't recognise you from your username, but thanks for the respect. (Update: ah, Vitali! Nice to hear from you.)<p>If you look back at my writing from 2025 and earlier, I'm on the conservative end of Q-day estimates: 2035 or later. My primary concern then is that migrations take a lot of time: even 2035 is tight.<p>I'm certainly not an expert on building quantum computers, but what I hear from those that are worries me. Certainly there are open challenges for each approach, but that list is much shorter now than it was a few years ago. We're one breakthrough away from a CRQC.</p>
]]></description><pubDate>Tue, 07 Apr 2026 11:34:18 +0000</pubDate><link>https://news.ycombinator.com/item?id=47673581</link><dc:creator>bwesterb</dc:creator><comments>https://news.ycombinator.com/item?id=47673581</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=47673581</guid></item></channel></rss>