Quantum Shield

Hybrid post-quantum TLS endpoint

This endpoint negotiates the TLS 1.3 key-exchange group X25519MLKEM768, a hybrid of classical X25519 and the standardised ML-KEM-768 (Kyber). It is quantum-safe against the harvest-now-decrypt-later threat to the key exchange.

Scan this host with qbom. The CBOM should record the key-exchange group as X25519MLKEM768. The certificate signature stays classical, because public CAs do not issue PQC certificates yet. That is the expected state of hybrid PQC TLS today.

Timble Technologies - Quantum Shield platform demo. Not for production traffic.