Close Menu
AI News TodayAI News Today

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    How Ads Advisor is making Google Ads safer and faster

    How The Vergecast works, 2026 edition

    Apple TV has another busy summer of sci-fi with Silo season 3 in July

    Facebook X (Twitter) Instagram
    • About Us
    • Contact Us
    Facebook X (Twitter) Instagram Pinterest Vimeo
    AI News TodayAI News Today
    • Home
    • Shop
    • AI News
    • AI Reviews
    • AI Tools
    • AI Tutorials
    • Chatbots
    • Free AI Tools
    AI News TodayAI News Today
    Home»AI News»Contrary to popular superstition, AES 128 is just fine in a post-quantum world
    AI News

    Contrary to popular superstition, AES 128 is just fine in a post-quantum world

    By No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Contrary to popular superstition, AES 128 is just fine in a post-quantum world
    Share
    Facebook Twitter LinkedIn Pinterest Email

    “There’s a common misconception that quantum computers will ‘halve’ the security of symmetric keys, requiring 256-bit keys for 128 bits of security,” he wrote. “That is not an accurate interpretation of the speedup offered by quantum algorithms, it’s not reflected in any compliance mandate, and risks diverting energy and attention from actually necessary post-quantum transition work.”

    That’s the easy part of the argument. The much harder part is the math and physics that explains it. At its highest level it comes down to a fundamental difference in the way a brute-force search works on classical computers versus the way it works using Grover’s algorithm. Classical computers can perform multiple searches simultaneously, a capability that allows large tasks to be broken into smaller pieces to complete the overall job faster. Grover’s algorithm, by contrast, requires a long-running serial computation, where each search is done one at a time.

    “What makes Grover special is that as you parallelize it, its advantage over non-quantum algorithms gets smaller,” Valsorda said in an interview. He continued:

    Imagine it with small numbers, let’s say there are 256 possible combinations to a lock, A normal attack would take 256 tries. You decide it’s too long, so you get three friends and you each do 64 tries. “That’s the classical parallelization. With Grover you could in theory do sqrt(256)=16 tries in a row, but if that’s still too long and you again look for help from three friends. Each has to do sqrt(256/4)=8 tries.

    So in total you do 8*4=32 tries, which is more than the 16 you would have done alone! Asking for help to parallelize the attack made the attack slower overall. Which is not the case for classical attacks.

    Of course the numbers are way larger, but if we apply any reasonable constraint on the attacker (like having to finish a run in 10 years), the total work becomes so much more than 2^64.

    Also, 264 was never the right number, because that pretends you can do AES as a single operation on a single qubit. This is somewhat orthogonal. The combination of these two observations turn the actual cost into 2104 give or take, which is well beyond the threshold for security.

    Sophie Schmieg, a senior cryptography engineer at Google, explained it this way:

    AES Contrary fine Popular postquantum superstition world
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleWho is Apple’s new CEO John Ternus?
    Next Article GRAI believes AI can make music more social, not replace artists
    • Website

    Related Posts

    AI News

    How Ads Advisor is making Google Ads safer and faster

    AI News

    What’s the key to better vegan cheese? Microbreweries, one startup says

    AI News

    Yelp’s updated AI assistant can answer questions and book a restaurant or service in one conversation

    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    How Ads Advisor is making Google Ads safer and faster

    0 Views

    How The Vergecast works, 2026 edition

    0 Views

    Apple TV has another busy summer of sci-fi with Silo season 3 in July

    0 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    AI Tutorials

    Quantization from the ground up

    AI Tools

    David Sacks is done as AI czar — here’s what he’s doing instead

    AI Reviews

    Judge sides with Anthropic to temporarily block the Pentagon’s ban

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    How Ads Advisor is making Google Ads safer and faster

    0 Views

    How The Vergecast works, 2026 edition

    0 Views

    Apple TV has another busy summer of sci-fi with Silo season 3 in July

    0 Views
    Our Picks

    Quantization from the ground up

    David Sacks is done as AI czar — here’s what he’s doing instead

    Judge sides with Anthropic to temporarily block the Pentagon’s ban

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Terms & Conditions
    • Privacy Policy
    • Disclaimer

    © 2026 ainewstoday.co. All rights reserved. Designed by DD.

    Type above and press Enter to search. Press Esc to cancel.