
TL;DR
France's ANSSI will stop certifying security products that do not use quantum-resistant encryption starting in 2027. This decision aims to protect against future quantum computing threats, particularly Harvest Now, Decrypt Later (HNDL) attacks.
✦ Why It Matters
Start evaluating and transitioning to quantum-resistant encryption solutions to ensure compliance with upcoming regulations.
Key Takeaways
Full Summary
ANSSI's announcement at the France Quantum 2026 conference marks a significant shift in cybersecurity policy, requiring all security products to incorporate post-quantum cryptography (PQC) to maintain certification. This decision is driven by concerns over potential future quantum attacks that could compromise current encryption methods.
By 2027, products lacking PQC will be ineligible for use in French government and critical infrastructure, effectively barring vendors from one of Europe's largest technology markets. The agency emphasizes that this move is not just technical but also relates to governance and national sovereignty.
Industry leaders are already noting a surge in demand for quantum-safe products, indicating a shift in market dynamics. ANSSI's approach includes a preference for hybrid cryptographic solutions, combining classical and post-quantum algorithms, which adds complexity for vendors.
Related