同じアルゴリズム、異なるルールブック
世界はポスト量子暗号の数学について合意した。しかし、その使い方については合意していない――そして、ネットワーク上のトラフィックはすでにその形を変えている。この2週間の4つの動向と、それがニュージーランドにとって何を意味す…
私たちのサービス
A measured, evidence-led baseline of your quantum exposure. We identify which systems and datasets carry potential post-quantum risk, benchmark your posture against NZISM and frameworks, and characterise the threat honestly, including where there is no threat worth acting on. You finish with a clear picture and a defensible priority order.
Exposure snapshot, NZ$4,500 + GST. An external read of every public domain, mail exchanger and certificate you run, a discovery session, a shelf-life inventory of your most important datasets, an NZISM 2.4 gap check, and a short written report with a priority order. About two weeks.
Full readiness snapshot, NZ$12,500 + GST. Everything above, plus an inside cryptographic inventory of the systems that protect your long-lived data (keys, certificates, libraries, protocols), a supplier readiness check industry-standard vendor questions, a frozen point-in-time baseline for future re-scans, a board-ready report, and a leadership briefing. About three to four weeks.
A phased, costed transition plan for the systems that warrant it. We sequence the work against your operational constraints, supplier dependencies and regulatory timeline, using hybrid strategies that keep you interoperable throughout. This is the organisational programme, not a cryptographic parts swap. The hard part of PQC migration is the coordination, and coordination is what the roadmap manages. From there we work the plan together, staying agile as new or unexpected challenges arise. Our flexibility and transparency keep the migration fluid.
Standards move, suppliers ship, and your own systems change. A regular re-scan and review keeps your baseline current, tracks your suppliers’ readiness, and flags what has shifted since the last point of reference. This way quantum risk stays a managed line item rather than an ad hoc audit. We keep up to date with the frameworks, standards, regulatory policies and guideline updates and will advise you when action or change is recommended or necessary.
最近のアップデート
世界はポスト量子暗号の数学について合意した。しかし、その使い方については合意していない――そして、ネットワーク上のトラフィックはすでにその形を変えている。この2週間の4つの動向と、それがニュージーランドにとって何を意味す…
スタンドファースト: 認定されたハードウェアセキュリティモジュール、電力グリッドを対象とした法案、そして証明書レイヤーを指摘するフィンランドの研究プログラム。1週間に生じた3つの動きが同じことを示している——ポスト量子移…
暗号化データを「収集」することが敵対者にとって実際にどれほどのコストを意味するのか、蓄積されたデータを解読するために何が必要なのか、そして本当の脅威はどこに潜んでいるのか。本稿では、第一原理から出発した五段階のゲートフレ…
7月28日、Anthropicはそのモデル Claude Mythos Preview を用いて得た2件の暗号解析結果を公開した。一つはAESの縮小ラウンド変形に対する攻撃を改良したもので、理論的には興味深いが実用上は無…
6月から7月にかけての3週間で、耐量子暗号に関する米国の厳格な期限、量子安全技術として認められないものを明確に示した米軍の声明、そしてRSA-2048とP-256の解読コストを機械検証した論文が相次いで発表された。ニュー…
量子コンピューティングとセキュリティに関する包括的な新調査を読み進めるうち、十分に対処されていない一つの問題に何度も立ち返ることになった。同じ週に発表された2本の専門論文が、組織を量子安全にすることがなぜますます難しくな…
2026年6月2日、ポスト量子暗号(PQC)対応スキャナーを、2026年4月14日に評価したニュージーランドの重要インフラ118事業者に対して再実行しました。暗号移行の話においては7週間は短い期間であり、その結果は数字に…
2026年5月第2週に発表された3本の論文は、ポスト量子移行スタックのそれぞれ異なる部分を取り上げている。次世代デジタル署名候補に関するNISTの新たな報告書、本番稼働中の銀行でのPQC概念実証デプロイ、そしてRaspb…
6G標準化はまだ数年先だが、その暗号化の選択はすでに行われつつある。ファイブアイズのPQC移行期限はすべて、最初の商用6Gラジオが期待される時期より前に設定されている。東芝ブリストル研究所の新論文は、NISTが標準化した…
新しいarXivプレプリントが、すべてのオーストラリアの銀行——そしてその延長として、傘下のすべてのNZサブシディアリー——がすでに答えを出しておくべきだった問いに数字で迫る:ポスト量子署名はリアルタイム決済のSLA内で…