
Future-proofing data integrity: Quantum-safe digital signatures in Cloud KMS
Google Cloud has announced the general availability of quantum-safe digital signatures (ML-DSA, SLH-DSA) and post-quantum key encapsulation (ML-KEM) in Cloud KMS. These additions aim to protect long-term data integrity against potential threats from cryptographically relevant quantum computers.
Why it matters
Organizations can protect their sensitive data from future quantum attacks and meet government regulatory timelines for cryptographic transitions. The new variants also allow users to sign large files securely without encountering processing delays.
The details
- Cloud KMS supports ML-DSA and SLH-DSA algorithms across different NIST security levels.
- External-µ variants enable efficient signing of large data payloads through external hashing.
- The updates assist organizations in meeting U.S. government quantum-safe transition timelines.
Show entities and relationshipsHide entities and relationships
In this article
Key connections
BoringSSL includes an implementation of external-µ ML-DSA.
United States Government leads National Institute of Standards and Technology
NIST is an agency of the United States Government.
United States Government leads National Security Agency
NSA is an agency of the United States Government.
National Institute of Standards and Technology regulates ML-DSA
NIST standardized ML-DSA in FIPS 204.
National Institute of Standards and Technology regulates SLH-DSA
NIST standardized SLH-DSA in FIPS 205.
National Security Agency regulates Post-Quantum Cryptography
NSA issued CNSA 2.0 guidance for adopting quantum-resistant cryptographic algorithms.
Show 7 more connectionsShow fewer connections
United States Government is located in United States
The United States Government is located in the United States.
Cloud KMS supports ML-KEM-768 and ML-KEM-1024 for the KEM layer.
BoringSSL is an open-source cryptographic library maintained by Google.
Cloud KMS is Google Cloud's key management service.
Cloud KMS offers general availability for NIST-standardized ML-DSA algorithms.
Cloud KMS offers general availability for NIST-standardized SLH-DSA algorithms.
Cloud KMS uses Post-Quantum Cryptography
Cloud KMS incorporates post-quantum cryptography for key import and PQC insights.
Related events
Google Cloud KMS announces general availability of quantum-safe digital signatures
Get the weekly recap
The stories like this one, picked and explained — once a week, straight to your inbox.