{"id":17945,"date":"2024-08-06T09:45:42","date_gmt":"2024-08-06T13:45:42","guid":{"rendered":"https:\/\/www.thesslstore.com\/blog\/?p=17945"},"modified":"2025-03-21T09:34:57","modified_gmt":"2025-03-21T13:34:57","slug":"harvest-now-decrypt-later-hndl","status":"publish","type":"post","link":"https:\/\/www.thesslstore.com\/blog\/harvest-now-decrypt-later-hndl\/","title":{"rendered":"Harvest Now, Decrypt Later (HNDL): A Look at This Current &amp; Future Threat"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\">HNDL retrospective decryption attacks are a major concern for more than half of the professionals <a href=\"https:\/\/www2.deloitte.com\/us\/en\/pages\/about-deloitte\/articles\/press-releases\/harvest-now-decrypt-later-attacks-pose-security-concern-quantum-computing.html\">surveyed by Deloitte<\/a>. We\u2019ll explore what these quantum-related future threats are and how you can future-proof your enterprise against them<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Bad guys, right now, might be loading up your most sensitive data like it\u2019s clearance day at their favorite warehouse store.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Your data is encrypted? They don\u2019t care. Threat actors are putting your data \u201con ice,\u201d storing it until quantum computing capabilities come along that can break modern encryption schemes. (And <a href=\"https:\/\/www.thesslstore.com\/blog\/researchers-are-moving-up-the-clock-for-q-day\/\">Q-Day might be here sooner than you think!<\/a>)<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This activity is known as a \u201charvest now, decrypt later\u201d attack. We\u2019ll explore what HNDL attacks are and how you can harden your cyber defenses and data against these threats now and in the future.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Let\u2019s hash it out.<span id=\"newline\"><\/span><\/p>\n\n\n<span style=\"--tl-form-height-m:120.9844px;--tl-form-height-t:120.9844px;--tl-form-height-d:120.9844px;\" class=\"tl-placeholder-f-type-shortcode_17586 tl-preload-form\"><span><\/span><\/span>\n\n\n<h2 class=\"wp-block-heading\">What Is a Harvest Now, Decrypt Later (HDNL) Attack?<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Harvest now, decrypt later is a surreptitious two-part cyber attack in which threat actors collect sensitive information now for use at a later date. It\u2019s about collecting a wealth of encrypted data now that can be capitalized upon \u201ctomorrow\u201d (i.e., whenever these silicone-based systems become available outside a laboratory setting). For this reason, this method is also called \u201cstore now, decrypt later\u201d and \u201ccatch now, break later\u201d attacks.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Bad guys are biding their time until quantum computers are readily available, simply collecting and storing the information in the meantime. After all, why should they invest all of the time, effort, and resources required to break cryptographic algorithms that future quantum computers will be able to break within a matter of minutes, hours, or days?<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Why Quantum Computing Is the Key to HNDL Attacks<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Quantum computers harness the power of the quantum mechanics <a href=\"https:\/\/www.nist.gov\/image\/superpositiongif\">superposition principle<\/a> (i.e., the ability for elements to exist in multiple states simultaneously). This computational power is central to concerns about harvest now, decrypt later attacks. This is why quantum-safe (or, more accurately, quantum-<em>resistant<\/em>) cryptosystems must withstand the processing power of quantum computers. As such, data must be cryptographically secured using <a href=\"https:\/\/www.thesslstore.com\/blog\/quantum-resistant-encryption-why-its-critical-to-future-cybersecurity\/\">quantum-resistant algorithms<\/a> (i.e., <a href=\"https:\/\/www.thesslstore.com\/blog\/post-quantum-cryptography-data-security-in-a-post-quantum-world\/\">post-quantum cryptography<\/a>). &nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Cryptographically relevant quantum computers are expected to break the factorization problem that\u2019s at the heart of modern public key encryption schemes. Basically, any data secured by modern public key encryption schemes alone would be at risk of compromise once the quantum tools are available. It doesn\u2019t matter whether you\u2019re a small business or one of the world\u2019s biggest enterprises; we\u2019ll all require the same <a href=\"https:\/\/www.thesslstore.com\/blog\/post-quantum-encryption\/\">post-quantum encryption<\/a> and key exchange algorithms that are specifically designed to combat quantum computer-based attacks.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/ieeexplore.ieee.org\/document\/365700\">Shor\u2019s Algorithm<\/a> is poised to break the public key cryptography schemes we rely on today that are based on the discrete logarithm (ECDH) and prime factorization (RSA) integers. Wondering how it all works? Rather than me trying to explain it, you can hear it straight from the horse\u2019s mouth and get the low-down from mathematician Peter Shor himself:<\/p>\n\n\n\n<figure class=\"wp-block-embed is-type-video is-provider-youtube wp-block-embed-youtube wp-embed-aspect-16-9 wp-has-aspect-ratio\"><div class=\"wp-block-embed__wrapper\">\n<iframe loading=\"lazy\" title=\"What is Shor&#039;s factoring algorithm?\" width=\"960\" height=\"540\" src=\"https:\/\/www.youtube.com\/embed\/hOlOY7NyMfs?feature=oembed\" frameborder=\"0\" allow=\"accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share\" referrerpolicy=\"strict-origin-when-cross-origin\" allowfullscreen><\/iframe>\n<\/div><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\">Hybrid Algorithms Help You Bridge the Gap in the Meantime<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The crypto-agile approach of using hybrid algorithms aims to nip in the bud the security issues posed by Shor\u2019s Algorithm. This is why the Internet Engineering Task Force (IETF) recommends using <a href=\"https:\/\/www.ietf.org\/archive\/id\/draft-reddy-uta-pqc-app-03.html#name-hybrid-public-key-encryption\">hybrid public key encryption (HPKE) algorithms<\/a> to fend off modern attacks and protect data against future cryptographic attacks (like HNDL).<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">An example of an HPKE algorithm is <strong>X25519Kyber768Draft00<\/strong>. This hybrid algorithm \u2014 the combination of the traditional elliptic curve cryptography [ECC] key exchange algorithm X25519 and the Kyber-768 Module Lattice Key Encapsulation Mechanism [ML-KEM] \u2014 is used by <a href=\"https:\/\/www.thesslstore.com\/blog\/google-chrome-adds-support-for-a-hybrid-post-quantum-cryptographic-algorithm\/\">Google Chrome<\/a> and <a href=\"https:\/\/blog.cloudflare.com\/post-quantum-to-origins\/\">Cloudflare<\/a> as of 2023). <a href=\"https:\/\/news.zoom.us\/post-quantum-e2ee\/\">Zoom announced<\/a> in May 2024 that it deployed Kyber-768 to enable end-to-end encryption (E2EE) for its Zoom Meetings with plans to employ it for Zoom Phone and Rooms products next.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Lattice-based algorithms are mathematically difficult problems to solve as doing so requires figuring out the shortest and closest vectors. (Lattices are typically multi-dimensional charts. The more dimensions that are taken into account when calculating the lattice points [bases], the more challenging the lattice is to solve.) Putting it simply, these algebraic problems are nightmares for mathematically challenged individuals but great for PQC digital security.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Here\u2019s a quick primer on how lattice-based cryptography works, if you want to learn more:<\/p>\n\n\n\n<figure class=\"wp-block-embed is-type-video is-provider-youtube wp-block-embed-youtube wp-embed-aspect-16-9 wp-has-aspect-ratio\"><div class=\"wp-block-embed__wrapper\">\n<iframe loading=\"lazy\" title=\"Lattice-based cryptography: The tricky math of dots\" width=\"960\" height=\"540\" src=\"https:\/\/www.youtube.com\/embed\/QDdOoYdb748?feature=oembed\" frameborder=\"0\" allow=\"accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share\" referrerpolicy=\"strict-origin-when-cross-origin\" allowfullscreen><\/iframe>\n<\/div><\/figure>\n\n\n<span style=\"--tl-form-height-m:905.547px;--tl-form-height-t:998.172px;--tl-form-height-d:998.172px;\" class=\"tl-placeholder-f-type-shortcode_18375 tl-preload-form\"><span><\/span><\/span>\n\n\n<h2 class=\"wp-block-heading\">How a Harvest Now, Decrypt Later Attack Works<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Unlike many other modern cyber attacks that give attackers instant gratification, harvet now, derypt later attacks require patient attackers who are willing to wait for more reliable quantum capabilities. HNDL attackers can set up eavesdropping tools to collect a plethora of encrypted data that they can then sit on for the next 3-10 years.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1009\" height=\"764\" src=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2024\/08\/how-an-hndl-attack-works-shadow.png\" alt=\"An illustration demonstrating a harvest now, decrypt later attack (HNDL)\" class=\"wp-image-17949\" srcset=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2024\/08\/how-an-hndl-attack-works-shadow.png 1009w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2024\/08\/how-an-hndl-attack-works-shadow-300x227.png 300w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2024\/08\/how-an-hndl-attack-works-shadow-768x582.png 768w\" sizes=\"auto, (max-width: 1009px) 100vw, 1009px\" \/><figcaption class=\"wp-element-caption\"><em>Image caption: A basic illustration showing what an HNDL attack is and how it&#8217;s dangerous for users and businesses. <\/em><\/figcaption><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">Of course, there\u2019s no rush or time limit to decrypt certain types of information. For example, an HNDL attack is ideally suited for evergreen data such as social security numbers, bank account information, government secrets, and other sensitive data that aren\u2019t prone to change much (if at all) and\/or have perpetual value.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">For example, secret plans for a nuclear weapon or your company\u2019s most secret intellectual property aren\u2019t likely to lose their value within the next few years.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This differs from, say, credit cards, which change more frequently due to the owners\u2019 name changes, card expiration dates, and reported fraud issues. This isn\u2019t evergreen data and cybercriminals know it can lose its intrinsic value if it\u2019s not used quickly. &nbsp;&nbsp;<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Attackers Are Getting Smarter About What They Choose to Save<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Let\u2019s face it: there\u2019s a <a href=\"https:\/\/www.thesslstore.com\/blog\/how-much-data-is-in-the-world-and-how-do-you-secure-it\/\">ridiculous amount of data in the world<\/a>, and the overwhelming amount of data businesses generate and store is growing at an inordinate rate. And attackers want to get their hands on your most valuable secret data.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Effective HNDL attacks aren\u2019t about harvesting every scrap of data attackers can get their hands on. It behooves attackers to make more educated guesses about which data payloads to steal to achieve the highest value, as data storage costs can certainly add up over time, particularly when someone is storing massive quantities for years.)<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">So, how do HNDL threat actors figure out which encrypted data to store or dump? On the surface, you can\u2019t. All encrypted data just looks like a bunch of gibberish without the necessary decryption key. But there are contextual clues that cybercriminals can analyze to figure out which data might hold the most value:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Transmission source and destination IP addresses (i.e., to whom or where it is being sent or received from)<\/li>\n\n\n\n<li>Transaction frequencies &nbsp;<\/li>\n\n\n\n<li>Application connection behaviors and patterns<\/li>\n\n\n\n<li>Data transmission sizes<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\">Who\u2019s Thought to Be Responsible for HNDL Attacks?<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Technically, anyone can be an harvest now, decrypt later attacker. If you have a way to get your hands on organizations\u2019 encrypted sensitive data payloads, then you have the potential to carry out \u201cstore now, decrypt later\u201d attacks in the future with the help of quantum computing technologies.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">However, when people within the industry discuss these types of attacks, they typically refer to the <a href=\"https:\/\/www.technologyreview.com\/2021\/11\/03\/1039171\/hackers-quantum-computers-us-homeland-security-cryptography\/\">threats posed by nation-state threat actors<\/a> and other large groups of bad actors. Basically, the biggest threats are the groups of individuals or government-sponsored entities that have more resources and data storage at their disposal rather than necessarily the individual attackers (though they still pose threats as well). &nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Knowing all of this, what steps can you take to help protect your data now against these retrospective decryption attacks in the future?<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">How to Protect Your Organization Against HNDL Attacks<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\">1. Start Planning Your PQC Strategy Now (If You Haven\u2019t Already Done So)<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Back in November 2023, we shared our top takeaways from the second annual <a href=\"https:\/\/www.thesslstore.com\/blog\/key-takeaways-from-the-second-pki-consortium-post-quantum-cryptography-conference\/\">PKI Consortium\u2019s Post-Quantum Cryptography Conference<\/a>. One of the key insights shared by many of the experts is that it\u2019s a mistake for organizations to wait to start figuring out a game plan.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Adopting PQC isn\u2019t simply a matter of swapping out classical PKI digital certificates for shiny new PQC certs; there\u2019s a lot more to it that\u2019s required. It also boils down to implementing a wealth of new policies, processes, procedures, and technologies.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">For example, here are a few of the ways you can start preparing your organization for an inevitable Quantum future:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Inventory your cryptographic assets so you know what you need to secure.<\/li>\n\n\n\n<li>Closely manage your PKI lifecycle to address any vulnerabilities that pop up quickly.<\/li>\n\n\n\n<li>Integrate quantum-based threats and considerations into your ongoing risk analyses.<\/li>\n<\/ul>\n\n\n<span style=\"--tl-form-height-m:927.562px;--tl-form-height-t:999.781px;--tl-form-height-d:999.781px;\" class=\"tl-placeholder-f-type-shortcode_17591 tl-preload-form\"><span><\/span><\/span>\n\n\n<h3 class=\"wp-block-heading\">NIST and Other Global Experts Are Finalizing a Standardized Approach<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The National Institute of Standards and Technology (NIST) has been working hard with other industry experts over the past several years to finalize <a href=\"https:\/\/csrc.nist.gov\/Projects\/post-quantum-cryptography\/post-quantum-cryptography-standardization\">new PQC standards<\/a>. The NIST PQC Team has been holding a <a href=\"https:\/\/csrc.nist.gov\/Projects\/post-quantum-cryptography\/workshops-and-timeline\/pqc-seminars\">series of seminars<\/a> and their goal is to publish finalized standards this year that organizations can implement in the near future.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">For example, they\u2019ve published four draft algorithms (one key encapsulation algorithm and three digital signature algorithms) that are nearing final standardization:<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li><a href=\"https:\/\/pq-crystals.org\/kyber\/index.shtml\">CRYSTALS-KYBER<\/a> (a module lattice-based key encapsulation algorithm that\u2019s used for key establishment and encryption)<\/li>\n\n\n\n<li><a href=\"https:\/\/pq-crystals.org\/dilithium\/index.shtml\">CRYSTALS-DILITHIUM<\/a> (a module lattice-based general-purpose digital signing algorithm)<\/li>\n\n\n\n<li><a href=\"https:\/\/sphincs.org\/\">SPHINCS+<\/a> (another digital signature algorithm featuring stateless hash-based security properties)<\/li>\n\n\n\n<li><a href=\"https:\/\/falcon-sign.info\/\">FALCON+<\/a> (a third digital signature algorithm, but one that\u2019s NTRU lattice-based and will be applicable for more specific use cases)<\/li>\n<\/ol>\n\n\n\n<p class=\"wp-block-paragraph\">The first three PQC algorithms are expected to be released sometime this summer (2024). However, the fourth (FALCON+) likely won\u2019t be released until later in the year.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">2. Enable the Kyber Hybrid Key Exchange Algorithm in Chrome<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">If you haven\u2019t done so already, enable the X25519Kyber768Draft00 algorithm in your organization\u2019s Google Chrome web clients. Also, ensure your employees are keeping their endpoint devices\u2019 browsers up to date so they have the latest protections and updates.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Of course, once NIST finalizes the PQC standards for its chosen algorithms, be sure to adopt support for the latest version and remove support for X25519Kyber768Draft00 at that time.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">3. Upgrade Your Private PKI Certificates to PQC<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">For enterprises that want to secure their internal IT server infrastructure, software apps, users, and endpoint devices, you don\u2019t have to wait to use hybrid cryptographic algorithms. <a href=\"https:\/\/www.thesslstore.com\/solutions\/digicert-trust-lifecycle-manager.aspx\">DigiCert Trust Lifecycle Manager<\/a> offers several certificate templates that support PQC Module Lattice Digital Signature Algorithm (ML-DSA) keys.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Implementing a hybrid approach means that bad guys will have to break not one, but two cryptosystems in order to gain access to your plaintext data.<\/p>\n\n\n\n<div class=\"wp-block-media-text is-stacked-on-mobile has-central-palette-1-color has-central-palette-19-background-color has-text-color has-background has-link-color wp-elements-df71ca0f6981c387e221e229e1883794\"><figure class=\"wp-block-media-text__media\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"516\" src=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2024\/02\/trust-lifecycle-manager-dashboard-tools-1024x516-1.png\" alt=\"\" class=\"wp-image-17524 size-full\" srcset=\"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2024\/02\/trust-lifecycle-manager-dashboard-tools-1024x516-1.png 1024w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2024\/02\/trust-lifecycle-manager-dashboard-tools-1024x516-1-300x151.png 300w, https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2024\/02\/trust-lifecycle-manager-dashboard-tools-1024x516-1-768x387.png 768w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure><div class=\"wp-block-media-text__content\">\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<h2 class=\"wp-block-heading has-central-palette-7-color has-text-color has-link-color wp-elements-eec278cd911a009bda9c639e68f22e55\" id=\"h-digicert-trust-lifecycle-manager-simplifies-pki-digital-certificate-management\">DigiCert Trust Lifecycle Manager Simplifies PKI &amp; Digital Certificate Management<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">DigiCert Trust Lifecycle Manager is an all-in-one PKI &amp; certificate lifecycle management (CLM) solution. Explore how this tool can help you keep a close eye on your PKI and avoid certificate outages.<\/p>\n\n\n\n<div class=\"wp-block-buttons is-layout-flex wp-block-buttons-is-layout-flex\">\n<div class=\"wp-block-button\"><a class=\"wp-block-button__link has-central-palette-7-background-color has-text-color has-background has-link-color wp-element-button\" href=\"https:\/\/www.thesslstore.com\/solutions\/digicert-trust-lifecycle-manager.aspx\" style=\"color:#ffffff\">Learn More<\/a><\/div>\n<\/div>\n\n\n\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n<\/div><\/div>\n\n\n\n<h3 class=\"wp-block-heading\">4. Swap Out Your Long-Term Keys for Ones Generated Using PQC Algorithms<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Some digital certificate uses and applications within your organization may entail using certificates with longer device and cryptographic key lifespans than others. For example, IoT devices have lifespans ranging upwards of 20 years!<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">There are plenty of legitimate reasons why companies may not actively change out their IoT device keys, with reasons ranging from physical logistics to some devices not being capable of over-the-air (OTA) updates. But regardless of the reason why, it means that if those devices rely on classical cryptosystems, they\u2019re at risk of store now, decrypt later attacks.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">As you can imagine, swapping out the keys for these devices whenever possible is critical, particularly if you\u2019re expecting them to remain active on your network or within your IT ecosystem for years to come.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">5. Look Out for Publicly Trusted SSL\/TLS Certificates in the Future<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Unfortunately, PQC <a href=\"https:\/\/www.thesslstore.com\/blog\/what-is-a-website-security-certificate-and-what-does-it-do-for-your-business\/\">SSL\/TLS certificates<\/a> from publicly trusted <a href=\"https:\/\/www.thesslstore.com\/blog\/what-is-a-certificate-authority-ca-and-what-do-they-do\/\">certificate authorities<\/a> (CAs) aren\u2019t available yet. (Creating an entirely new set of cryptographic algorithms isn\u2019t exactly a walk in the park \u2014 these things take time, after all!) \u00adBut once they are available, you\u2019ll want to implement these algorithms across your networks and IT infrastructure as soon as possible.&nbsp;<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Final Thoughts on Harvest Now, Decrypt Later Attacks<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Harvest now, decrypt later attacks are real-world threats that will affect your organization and customers now and more acutely in the future. As you\u2019ve learned, you can take steps to fight back against these dual-pronged attacks.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">CRQCs are coming; few dispute that. But even knowing this, there\u2019s no reason to panic. Use the time now to prepare for the worst so that your organization is as prepared as possible. This approach puts you in the best position possible to deal with any curveballs that may come your way.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">By implementing hybrid PQC algorithms now within your ecosystem, you\u2019re taking steps to prevent bad guys from decrypting and using your sensitive data against you (and your customers) later.&nbsp; &nbsp;&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>HNDL retrospective decryption attacks are a major concern for more than half of the professionals surveyed by Deloitte. We\u2019ll explore what these quantum-related future threats are and how you can&#8230;<\/p>\n","protected":false},"author":17,"featured_media":17947,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":"","tve_updated_post":"","tve_custom_css":"","tve_user_custom_css":"","tve_globals":{},"tcb2_ready":0,"tcb_editor_enabled":0,"tve_landing_page":"","_tve_header":"","_tve_footer":""},"categories":[13107,16],"tags":[13287,13288],"class_list":["post-17945","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-beyond-hashed-out","category-hashing-out-cyber-security","tag-harvest-now-decrypt-later","tag-hndl","post-with-tags"],"views":5930,"jetpack_featured_media_url":"https:\/\/www.thesslstore.com\/blog\/wp-content\/uploads\/2024\/08\/harvest-now-decrypt-later-hndl-feature.jpg","_links":{"self":[{"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/posts\/17945","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/users\/17"}],"replies":[{"embeddable":true,"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/comments?post=17945"}],"version-history":[{"count":0,"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/posts\/17945\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/media\/17947"}],"wp:attachment":[{"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/media?parent=17945"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/categories?post=17945"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.thesslstore.com\/blog\/wp-json\/wp\/v2\/tags?post=17945"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}