(TR21) (INCYBER) Crypto-agilité : préparer la transition post-quantique

(TR21) (INCYBER) Crypto-agilité : préparer la transition post-quantique

🎙 INCYBER 👥 7K 📅 April 8, 2026 ⏱ 56 min 👁 57 📄 expert opinion 🧭 2026-08-13
Available in: English (current) Français

Keywords

post-quantumcrypto-agilityhybridmigrationANSSI

Summary

This panel discussion, recorded at the INCYBER Europe 2026 forum, brings together experts from ANSSI, Leonardo, Mozilla, and a quantum security consultant to address the challenges of transitioning to post-quantum cryptography. The conversation begins with an overview of the threat landscape, emphasizing the ‘harvest now, decrypt later’ attack and the long timelines required for migration. Sami Sissi from ANSSI outlines France’s roadmap, including a 2030 recommendation to stop purchasing non-PQC products and a 2027 obligation for products entering qualification to include PQC. The discussion highlights the importance of hybrid approaches, combining classical and post-quantum algorithms, and the distinction between hybridization and crypto-agility. Benjamin Burdouche from Mozilla discusses the evolution of internet protocols, citing TLS 1.3 as an example of a protocol designed with future cryptographic agility in mind. Roberto De Paolis from Leonardo shares his company’s practical approach, starting with inventory and risk assessment, then moving to infrastructure and application updates. The panel emphasizes the need for early action, the role of standards, and the importance of supporting smaller organizations. The discussion concludes with a call for pragmatic steps and the recognition that the transition is a long-term process requiring collaboration across the ecosystem.

194 words

Critical Evaluation

Value of the Information & Strength of the Argument

The discussion provides valuable insights into the practical challenges and strategies for post-quantum transition. The experts argue convincingly that the threat is imminent and that organizations must act now, citing the ‘harvest now, decrypt later’ risk and the long migration timelines. They emphasize the need for crypto-agility, not just as a technical feature but as an architectural principle. The argumentation is solid, grounded in real-world examples like TLS 1.3 and the experiences of Leonardo. However, some claims, such as the specific timelines for quantum computers, are speculative and not backed by detailed evidence. The panel also highlights the importance of hybrid approaches, which is a nuanced and well-reasoned position.

Scientific Rigor, Source Quality, Title Accuracy

The discussion demonstrates a high level of scientific rigor, with experts referencing standards, regulations, and historical precedents. The quality of sources is good, as the participants are directly involved in the field. However, the conversation is largely based on expert opinion rather than peer-reviewed research, and specific citations are sparse. The title accurately reflects the content, focusing on crypto-agility and the post-quantum transition. The forum context adds credibility, but the lack of detailed references slightly reduces the overall rigor.

203 words

Title / Content Match

The title accurately reflects the content, which focuses on crypto-agility and preparing for the post-quantum transition.

Quality & Reliability

7/10

The discussion features recognized experts from ANSSI, Leonardo, Mozilla, and a quantum security consultant, providing authoritative insights. However, the content is largely opinion and experience-based, with limited references to specific studies or verifiable data. The claims are plausible and align with known industry trends, but the lack of detailed citations and the promotional context of the forum slightly reduce the overall reliability.

Key Moments

Cited Sources

Concurring Sources

  • NIST Post-Quantum Cryptography Standardization — The NIST standardization process is referenced in the discussion as a key driver.
  • BSI Post-Quantum Cryptography — The German BSI is mentioned as a counterpart to ANSSI in recommending hybrid approaches.

Dissenting Sources

  • Quantum computing timeline uncertainty — The panelists acknowledge that the exact timeline for quantum computers is uncertain, with estimates ranging from 2035 to 2040, which could affect the urgency of migration.

Contribution & Novelties

The video provides a comprehensive overview of the post-quantum transition from multiple perspectives: government (ANSSI), industry (Leonardo), and internet standards (Mozilla). It clarifies the distinction between hybridization and crypto-agility, and emphasizes the urgency of starting now due to long migration timelines. The discussion offers practical advice for organizations, such as starting with inventory and risk assessment, and highlights the importance of hybrid approaches to mitigate uncertainties in new algorithms.

Pour aller plus loin :

  • Post-quantum cryptography — Overview of the field and its challenges.
  • Harvest now, decrypt later — Explanation of this attack strategy.
  • TLS 1.3 — Details on the protocol discussed as an example of crypto-agility.
  • ANSSI’s post-quantum guidance — Official recommendations from the French cybersecurity agency.

118 words

Radar Profile

The radar profile shows high scores in quantity of information and technical level, reflecting the depth of the discussion. Quality and reliability are slightly lower due to the reliance on expert opinion rather than cited studies. The overall balance indicates a valuable but not fully rigorous source.

Reliability 7/10

💬 No comments were provided for analysis.