Chrome switching to NIST-approved ML-KEM quantum encryption

Share:

Google is updating the post-quantum cryptography used in the Chrome browser to protect against TLS attacks using quantum computers and to mitigate store-now-decrypt-later attacks.

The upcoming change will swap Kyber used in hybrid key exchanges to a newer, and slightly modified version, renamed as Module Lattice Key Encapsulation Mechanism (ML-KEM).

This change comes roughly five months after Google rolled out the post-quantum secure TLS key encapsulation system on Chrome stable for all users, which also caused some problems with TLS exchanges.

The move from Kyber to ML-KEM though is not related to those early problems, that got resolved soon after manifesting. Rather, its a strategic choice to abandon an experimental system for a NIST-approved and fully standardized mechanism.

ML-KEM was fully endorsed by the U.S. National Institute of Standards and Technology (NIST) in mid-August, with the agency publishing the complete technical specifications of the final version at the time.

Google explains that despite the technical changes from Kyber to ML-KEM being minor, the two are essentially incompatible, so a switch had to be made.

“The changes to the final version of ML-KEM make it incompatible with the previously deployed version of Kyber,” explains Google.

“As a result, the codepoint in TLS for hybrid post-quantum key exchange is changing from 0x6399 for Kyber768+X25519, to 0x11EC for ML-KEM768+X25519.”

Abandoning Kyber

Google explains that support for Kyber has to be removed entirely because post-quantum cryptography involves much larger data sizes compared to pre-quantum algorithms.

For instance, a Kyber-based key exchange can take up over 1,000 bytes, and post-quantum signatures like ML-DSA are even bulkier—leading to over 14,000 bytes in a typical handshake.

Should Google decide to maintain support for Kyber in addition to ML-KEM, network performance and efficiency on Chrome would be seriously hurt.

Google notes that server operators could temporarily support both standards to maintain security for a broader set of clients and help make the transition smoother for clients that haven’t upgraded yet, but ML-KEM should be the final target for all stakeholders.

A proposed solution (IETF draft) for the long term is for servers to announce what cryptographic algorithms they support via DNS, so the client uses the appropriate key from the start, avoiding extra round trips during the handshake.

The update is to be implemented in Chrome 131 (current version is 128), scheduled for release on November 6, 2024.

Users of development channels like Chrome Canary, Beta, and Dev, should see ML-KEM support earlier.

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
1:36 pm, Jun 22, 2025
weather icon 26°C
L: 24° | H: 27°
overcast clouds
Humidity: 48 %
Pressure: 1013 mb
Wind: 16 mph SW
Wind Gust: 0 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 99%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 4:43 am
Sunset: 9:21 pm
DailyHourly
Daily ForecastHourly Forecast
Today 10:00 pm
weather icon
24° | 27°°C 0 mm 0% 16 mph 61 % 1013 mb 0 mm/h
Tomorrow 10:00 pm
weather icon
14° | 23°°C 0.2 mm 20% 15 mph 80 % 1016 mb 0 mm/h
Tue Jun 24 10:00 pm
weather icon
14° | 26°°C 0 mm 0% 16 mph 77 % 1015 mb 0 mm/h
Wed Jun 25 10:00 pm
weather icon
16° | 27°°C 0 mm 0% 9 mph 86 % 1013 mb 0 mm/h
Thu Jun 26 10:00 pm
weather icon
17° | 24°°C 1 mm 100% 15 mph 95 % 1018 mb 0 mm/h
Today 4:00 pm
weather icon
21° | 24°°C 0 mm 0% 16 mph 47 % 1013 mb 0 mm/h
Today 7:00 pm
weather icon
21° | 23°°C 0 mm 0% 13 mph 53 % 1012 mb 0 mm/h
Today 10:00 pm
weather icon
17° | 17°°C 0 mm 0% 10 mph 61 % 1012 mb 0 mm/h
Tomorrow 1:00 am
weather icon
18° | 18°°C 0 mm 0% 12 mph 73 % 1011 mb 0 mm/h
Tomorrow 4:00 am
weather icon
17° | 17°°C 0.2 mm 20% 13 mph 80 % 1011 mb 0 mm/h
Tomorrow 7:00 am
weather icon
14° | 14°°C 0.2 mm 20% 13 mph 63 % 1013 mb 0 mm/h
Tomorrow 10:00 am
weather icon
17° | 17°°C 0 mm 0% 13 mph 46 % 1014 mb 0 mm/h
Tomorrow 1:00 pm
weather icon
21° | 21°°C 0 mm 0% 12 mph 32 % 1015 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€89,148.38
-1.12%
Ethereum(ETH)
€1,976.05
-6.79%
Tether(USDT)
€0.87
0.02%
XRP(XRP)
€1.75
-5.74%
Solana(SOL)
€115.68
-6.12%
USDC(USDC)
€0.87
0.00%
Dogecoin(DOGE)
€0.135047
-4.58%
Shiba Inu(SHIB)
€0.000010
-5.26%
Pepe(PEPE)
€0.000008
-8.83%
Peanut the Squirrel(PNUT)
€0.218233
13.10%
Scroll to Top