~ similar to 2605.02978v1· 20 results
This paper provides a comprehensive, system-level taxonomy for designing quantum-resistant network architectures, moving beyond simple protocol substitutions to address key distribution and management…
Harish Balaji, Aarav Varshney, Prasanna Ravi, Sripal Jain +5 more
This paper addresses the operational challenge of adopting Post-Quantum Cryptography (PQC) in complex financial TLS environments by presenting a methodology to automatically profile and normalize cryp…
This paper demonstrates a non-disruptive, sidecar-based integration of NIST-standardized Post-Quantum Cryptography (PQC) into an open-source 5G core, showing that while it introduces a predictable lat…
This paper experimentally compares ML-DSA and SLH-DSA in TLS 1.3, finding that placing SLH-DSA at the server leaf significantly increases computational cost and latency, suggesting upper-layer placeme…
The paper introduces an operational post-quantum X.509 assurance framework that rigorously validates ML-KEM and ML-DSA certificates and keys across various deployment stages, achieving comprehensive d…
The paper demonstrates that achieving Post-Quantum Cryptography (PQC) readiness requires treating cryptographic discovery as a governance capability to manage complex dependencies and prioritize risk…
This paper quantifies the latency impact of increasing certificate chain sizes required by Post-Quantum Cryptography (PQC) on TLS Time to First Byte (TTFB), finding that Merkle Tree Certificates (MTC)…
The paper presents Broken Quantum, a comprehensive formal security audit that identifies 547 security vulnerabilities across 45 open-source quantum computing simulators, revealing critical flaws in me…
The paper proposes a formal framework to analyze how the combined cryptographic transformations across all layers of a network stack determine the overall post-quantum security posture of a message.
The paper introduces Aquaman, a transparent-proxy architecture that enables quantum-resilient session-key establishment at the network edge, protecting clients that cannot natively support post-quantu…
The paper introduces PQC Validator, a comprehensive, layered framework designed to rigorously test and validate the actual post-quantum cryptographic readiness of cloud-native 5G Core networks, addres…
The paper analyzes persistent TLS misconfigurations and introduces TLSGatekeeper, a high-performance, network-based tool that enforces security policies by monitoring TLS handshakes without requiring…
The paper proposes a layered, modular network architecture combining Quantum Key Distribution (QKD) and Post-Quantum Cryptography (PQC) to achieve scalable, end-to-end post-quantum security in multi-h…
QCIVET introduces a novel contract-based framework to ensure the integrity of hybrid quantum-classical pipelines by verifying both the structure (syntactic) and the behavior (semantic) of quantum stag…
The paper addresses the vulnerability of zero-knowledge proximity proofs in stateful systems by proposing Zairn-ZKP, a method that embeds operational context (like drop identity and policy version) di…
The paper develops a structurally justified framework for measuring Quantum Cryptographic Exposure (HNDL) by showing that the compromise probability factorizes into distinct, interacting components ba…
The paper introduces 'quantum-safe,' a Python library that addresses the remaining 'production gap' in post-quantum cryptography (PQC) by providing robust, easy-to-use hybrid implementations and compr…
The paper proposes a quantum-resilient session-key establishment scheme that fragments a new key across multiple, independently encrypted Tor circuits, requiring an adversary to compromise many circui…
Stephan Krenn, Omid Mir, Thomas Lorünser, Sebastian Ramacher +1 more
The paper proposes a provably secure path validation protocol for large-scale Quantum Key Distribution (QKD) networks that allows receivers to verify network compliance without revealing sensitive top…
The paper introduces PLM-NIDS, a novel intrusion detection system that models network flows as a language based solely on L3/L4 metadata, successfully detecting attacks by identifying deviations from…