The Circuitry
THE CIRCUITRYYour one-stop source for all tech news
HOMETODAYNEWSFEEDEVENTS
BOOKMARKS
RSS
© 2026 The Circuitry
About UsSourcesContactCorrectionsPrivacy
  • Today
  • Feed
  • Events
  • Saved
Scroll for more
Verification
VERIFIEDConfidence: HIGH
Source identified
Claims cross-referenced
No discrepancies found
Fact-check summary

BleepingComputer reports Microsoft targeting 2029 for early post-quantum crypto adoption in critical products under its QSP, aligning with the company's August 2025 strategy announcement.

1 caveat
  • ▲No other outlets report a June 2026 acceleration or deadline pull-forward; timeline originates from 2025 Microsoft blog posts.
Sourcing
1source

via BleepingComputer

BleepingComputer · track record
76Stories
100%Verified
430d
All sources →
Markets
MSFT···

Live quote · not investment advice

From The CircuitryWhy The Circuitry

Verified tech news, cross-checked.

Every story is checked against independent sources before it posts — no rumors dressed up as fact.

How we verify →
Home/Tech/Microsoft pulls forward quantum-safe encryption deadline to 2029
VERIFIEDBy Xavier Rivera· ·2 min read

Microsoft pulls forward quantum-safe encryption deadline to 2029

Microsoft is accelerating its quantum-safe security roadmap to transition critical products and services to post-quantum cryptography by 2029. The move reflects advances in quantum computing that have shifted the risk horizon for "harvest now, decrypt later" attacks sooner than previously expected.

Source:BleepingComputer
Post
Microsoft pulls forward quantum-safe encryption deadline to 2029
From The CircuitryWhy The Circuitry

Verified tech news, cross-checked.

Every story is checked against independent sources before it posts — no rumors dressed up as fact.

How we verify →
TL;DRAI · 60 sec read

Microsoft advances its deadline for quantum-safe encryption in critical products to 2029 under the Quantum Safe Program. Faster quantum computing progress has shortened the risk window for current encryption, raising urgency over harvest-now-decrypt-later attacks and the need for updated protocols, crypto-agility, and refreshed trust chains.

Microsoft is speeding up its timetable for adopting quantum-resistant security measures, as breakthroughs in quantum computing have shortened the window before current encryption methods face real threats.

Microsoft sets 2029 deadline for critical products. The company will move "critical products and services" to post-quantum cryptography (PQC) by 2029 under its Microsoft Quantum Safe Program (QSP) while weaving quantum-safe standards into the Secure Future Initiative (SFI) to monitor progress with other security targets.
In a blog post Microsoft explained that "advances in quantum research and development have shifted the risk horizon" and that "cryptographically relevant quantum computers could arrive sooner than previously expected."
For years the firm treated post-quantum migration as a distant priority. In a blog post Microsoft explained that "advances in quantum research and development have shifted the risk horizon" and that "cryptographically relevant quantum computers could arrive sooner than previously expected."


Harvest-now-decrypt-later attacks drive urgency. Even though existing quantum machines cannot break today's encryption, experts have long cautioned against "harvest now, decrypt later" attacks in which adversaries steal and archive encrypted data today for decryption once sufficiently powerful quantum systems emerge.
From The CircuitryThe Feed — live briefs across tech, all day.See what’s happening →

Firms such as Apple, Google, and Signal are already deploying PQC to replace vulnerable public-key algorithms. Microsoft has urged preparation for years but now stresses that the transition timeline must be compressed.

Three priorities guide the accelerated roadmap. Instead of rushing solely to adopt fresh algorithms, the company recommends modernizing underlying infrastructure first. Its three focus areas include adopting up-to-date network protocols such as TLS 1.3 that ease hybrid and post-quantum key exchanges, developing crypto-agility that permits swapping algorithms without rebuilding applications, and refreshing trust chains that secure code signing, certificate issuance, software updates, and hardware-protected keys.

The firm noted that the required preparation work is substantial, so organizations should begin immediately. Integrating the QSP into the Secure Future Initiative will let teams track quantum readiness alongside broader security objectives.
From The CircuitryWhy The Circuitry

Verified tech news, cross-checked.

Every story is checked against independent sources before it posts — no rumors dressed up as fact.

How we verify →
Microsoft withholds details on specific quantum advances. The company has not disclosed which particular developments prompted the schedule change or why it now anticipates earlier quantum breakthroughs. BleepingComputer reached out to Microsoft for clarification on shifts from prior guidance and will update this article if a reply arrives.

EXPERT TAKE

Enterprises should treat Microsoft's 2029 target as a forcing function to audit crypto inventories and build crypto-agility now, before regulatory or customer mandates accelerate the timeline further.

Why this mattersAI · ~100 words

Tap a lens to see what this story means for you.

Morning Brief

Liked this? The Brief brings you the whole day in tech, verified, every morning.

Two minutes, free forever. What's in The Brief →

Reader-supported
DonateBuy me a coffee →Follow@thecircuitry_ →Follow@thecircuitry.to →
HELP US IMPROVE
From The Circuitry

See what’s happening right now

The Feed runs all day — short, verified briefs the moment they break.

Open the Feed →
From The Circuitry

Follow @thecircuitry_

Every story we publish, as it happens. No noise between.

Follow on X ↗On Bluesky ↗

Reader-supported

The Circuitry is a passion project I've always wanted to build, and I love the work behind it.

Running it costs real money. APIs, hosting, time. To keep improving the site and growing this into something useful for everyone, those costs have to be covered.

Any contribution is appreciated. If not, no pressure. Thanks for reading.

Buy me a coffee
MicrosoftQuantum ComputingPost-Quantum CryptographySecurity
More fromBleepingComputer
  • OpenAI confirms GPT-6 Astra reaches Critical cybersecurity threshold

    Tech · 20d
  • Mathspace breach exposes data of 1,079,819 users

    Tech · 21d
  • OpenAI Begins Gradual Release of Astra to ChatGPT Plus Subscribers

    Tech · 21d
More inTech
  • Instinct raises $1B Series C at $10B valuation

    Tech · 1h
  • SpaceX Starship Reaches Orbit for First Time on 14th Flight

    Tech · 2h
  • Apple Hit with $5.7 Billion Verdict in Taction Technology Haptic Patent Case

    Tech · 16h
SupportThe Work

The Circuitry is reader-supported. If you find the daily brief useful, you can buy me a coffee to keep it going.

Buy a coffee →
From The CircuitryWhy The Circuitry

Verified tech news, cross-checked.

Every story is checked against independent sources before it posts — no rumors dressed up as fact.

How we verify →

MORE IN THIS BEAT

All Tech →
  • Tech· 

    Microsoft Outlook Flaw CVE-2026-100208 Could Allow Remote Code Execution

    Microsoft Office Outlook has an integer overflow flaw, CVE-2026-100208, that could let an unauthorized attacker run code over a network. Microsoft scores it 7.5 (High), and an attack needs user interaction.

  • Tech· 

    CISA Adds Exploited Citrix NetScaler Flaw CVE-2026-88772 to KEV Catalog

    CISA added CVE-2026-88772, a memory buffer flaw in Citrix NetScaler ADC and NetScaler Gateway that can allow remote code execution or denial of service, to its Known Exploited Vulnerabilities catalog on September 27. CISA set a September 30 deadline to apply Citrix's mitigations.

  • Tech· 

    High-Severity MONAI Flaw Lets Local Users Run Code via Poisoned Pickle Cache

    CVE-2026-100841 affects every release of the MONAI medical imaging AI framework through 1.6.0. A local user who can write to a shared cache directory can plant a malicious pickle file that runs code in another user's pipeline. It is rated high severity and no stable fix has shipped.

  • Tech· 

    High-Severity Flaw in D-Link DIR-895L Router Has a Public Exploit

    CVE-2026-100740 is an out-of-bounds write in the L2TP code of the D-Link DIR-895L router on firmware A1_102b07. It can be triggered remotely, scores 8.6 (high), and an exploit is public.

  • Tech· 

    IBM Discloses Two More Guardium Data Protection 12.2 Flaws, Including a CVSS 8.8 Bug

    NVD published two more high-severity CVE records for IBM Guardium Data Protection 12.2 on September 25: CVE-2026-85542 (CVSS 8.8), a command injection bug, and CVE-2026-85029 (CVSS 7.5), a path traversal flaw. IBM lists fix pack SqlGuard_12.0p233.