Skip to main content

> Term

ML-KEM

NIST FIPS 203 standard: Module-Lattice-Based Key-Encapsulation Mechanism derived from CRYSTALS-Kyber for quantum-resistant public-key cryptography.

Detailed Explanation

Finalized by NIST in August 2024, ML-KEM specifies three security categories: ML-KEM-512 (Category 1), ML-KEM-768 (Category 3), and ML-KEM-1024 (Category 5). It serves as the global standard for quantum-resistant key establishment.

Why It Matters

Provides the statutory and cryptographic standard required by CISA, NSA, and EU ENISA for migration away from vulnerable RSA/ECC algorithms.

Common Failure Mode

Using pre-standardization draft versions (Draft00) that fail interoperability tests with finalized FIPS 203 implementations.

Practical Example

Enterprise cryptography policy enforcing ML-KEM-768 on all TLS termination proxies by 2027.

Production Manifestation

Official compliance standard referenced in US National Security Memorandum 10 (NSM-10) and NIST PQC migration roadmaps.

Frequently Asked Questions

What is ML-KEM in short?

NIST FIPS 203 standard: Module-Lattice-Based Key-Encapsulation Mechanism derived from CRYSTALS-Kyber for quantum-resistant public-key cryptography.

What is the most common failure mode?

Using pre-standardization draft versions (Draft00) that fail interoperability tests with finalized FIPS 203 implementations.

AI Summary

NIST FIPS 203 standard: Module-Lattice-Based Key-Encapsulation Mechanism derived from CRYSTALS-Kyber for quantum-resistant public-key cryptography. Provides the statutory and cryptographic standard required by CISA, NSA, and EU ENISA for migration away from vulnerable RSA/ECC algorithms.