惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

cs.AI updates on arXiv.org
cs.AI updates on arXiv.org
C
CERT Recently Published Vulnerability Notes
GbyAI
GbyAI
Google DeepMind News
Google DeepMind News
C
CXSECURITY Database RSS Feed - CXSecurity.com
AWS News Blog
AWS News Blog
V
Vulnerabilities – Threatpost
T
Tenable Blog
P
Proofpoint News Feed
C
Check Point Blog
T
The Exploit Database - CXSecurity.com
F
Full Disclosure
P
Privacy & Cybersecurity Law Blog
美团技术团队
U
Unit 42
C
Cyber Attacks, Cyber Crime and Cyber Security
阮一峰的网络日志
阮一峰的网络日志
Simon Willison's Weblog
Simon Willison's Weblog
量子位
AI
AI
Spread Privacy
Spread Privacy
Help Net Security
Help Net Security
Know Your Adversary
Know Your Adversary
IT之家
IT之家
K
KPMG report finds enterprise disconnect between AI and its ROI | CIO
P
Proofpoint News Feed
Recent Commits to openclaw:main
Recent Commits to openclaw:main
L
LangChain Blog
I
Intezer
T
The Blog of Author Tim Ferriss
爱范儿
爱范儿
月光博客
月光博客
Recorded Future
Recorded Future
O
OpenAI News
WordPress大学
WordPress大学
Microsoft Security Blog
Microsoft Security Blog
J
Java Code Geeks
Y
Y Combinator Blog
Engineering at Meta
Engineering at Meta
S
Security @ Cisco Blogs
Recent Announcements
Recent Announcements
P
Privacy International News Feed
NISL@THU
NISL@THU
MongoDB | Blog
MongoDB | Blog
W
WeLiveSecurity
B
Blog RSS Feed
Blog — PlanetScale
Blog — PlanetScale
博客园 - Franky
Cyberwarzone
Cyberwarzone
H
Hacker News: Front Page

PostQuantum – Quantum Computing, Quantum Security, PQC

Lightning Network's Quantum Problem Bitcoin's Quantum Vulnerability — Anatomy How Close Is the Quantum Threat? Resource Estimates The Quantum Threat to Cryptocurrencies: What's Real Lattice-Based PQC "Limitations" Paper — A Reality Check China's Hanyuan-2 Dual-Core Quantum Computer Pick One Layer First for Your Post-Quantum Migration Cisco Quantum Switch: Room-Temperature Qubit Routing IonQ Claims Q-Day by 2029 — Here's What They Actually Said Project Eleven's 110-Page Quantum Blockchains Report QuantWare Raises $178M Series B Q-CTRL Claims Practical Quantum Advantage Quantum Computing Simulates 12,635-Atom Protein How Quantum Snake Oil Vendors Respond to Hard Questions Simulated Quantum Entanglement | PostQuantum.com Quantum Snake Oil: Guide to Misleading Quantum Terms Quantum AI Trading — Quantum Snake Oil Dictionary Quantum-Proof — Quantum Snake Oil Dictionary Quantum-Grade Encryption — Quantum Snake Oil Dictionary Quantum-Safe Certified — Quantum Snake Oil Dictionary Military-Grade Quantum Encryption | PostQuantum.com What Is a QBOM? Quantum Bill of Materials vs CBOM Explained Quantum-Inspired Encryption — Quantum Snake Oil Dictionary What Is Trust Now, Forge Later (TNFL)? Quantum Blockchain — Quantum Snake Oil Dictionary What Is PQC Migration? The Largest Cryptographic Overhaul Quantum Financial System (QFS) | PostQuantum.com What Is QKD (Quantum Key Distribution)? What Is Quantum Error Correction (QEC)? Unhackable Quantum Encryption | PostQuantum.com Unconditionally Secure — Quantum Snake Oil Dictionary Perfect Secrecy — Quantum Snake Oil Dictionary Information-Theoretic Security | PostQuantum.com Quantum Encryption / Quantum Cryptography Quantum-Enhanced — Quantum Snake Oil Dictionary Quantum-Safe vs Quantum-Resistant vs Post-Quantum Anatomy of Quantum Denial: Bitcoin's Example What Is a Logical Qubit? The Metric That Actually Matters What Is a CRQC? Quantum Computer That Breaks Encryption What Is Q-Day? When Quantum Computers Break Encryption What Is Harvest Now, Decrypt Later (HNDL)? What Is Grover's Algorithm? What Is Shor's Algorithm? The Quantum Threat Explained What Is Quantum Safe? What the Label Means for CISOs What Is Quantum Computing Security? What Is Quantum Cyber Security? What Is Quantum Cryptography? QKD, PQC, and related? Quantum Security: A Complete Guide for Security Leaders What Is Post-Quantum Cryptography (PQC)? Crypto-Agility Is an Architecture Problem, Not a Library Swap IBM Quantum Advantage 2026: Heron + Fugaku Analyzed Aaronson Warns: CRQC by 2029 Is Plausible U.S. Quantum Policy: NQI Reauthorization and PQC Bills The Narrow Advantage: Why Quantum Computing Will Transform Five Industries and Disappoint Twenty The Error Correction Revolution Rewriting Quantum Timelines The Signature Supply Chain: How Deep Does Digital Trust Go? Quantum Chemistry's Honest Ledger: What the Resource Estimates Actually Say About Drug Discovery, Catalysis, and Materials Design Why Quantum Won't Save Wall Street (Yet): An Honest Assessment of Quantum Computing in Finance PQC Standards Fragmentation Quantum Sovereignty and the Utility Trap The Decoder Bottleneck: The CRQC Challenge Nobody Is Talking About IonQ Publishes Complete Fault-Tolerant Blueprint for Trapped Ions — The Walking Cat Architecture Quantum Computing by 2033: Which Industries Win, Which Wait, and Why Nature Reviews Publishes the Definitive CMOS–Spin Qubit Compatibility Assessment IonQ Photonic Interconnect: First Networked Commercial Quantum Computers QuEra Achieves 2:1 Physical-to-Logical Qubit Ratio With Ultra-High-Rate qLDPC Codes Grover's Algorithm vs AES - Why "Ignore It" Is Almost Right McKinsey Quantum Monitor 2026: Tipping Point? Meta PQC Migration Playbook: Lessons for CISOs NVIDIA Ising: Open AI Models for Quantum Calibration and Error Correction Harvard's Cascade Neural Decoder PQC Signature Migration Before Encryption Architecture Matters as Much as the Algorithm: Q-CTRL's Heterogeneous Quantum Computer Design Cuts RSA-2048 to 190k-381k Qubits China's Quantum Sensing Ecosystem: From Deep-Sea Diamonds to Drone-Mounted Submarine Hunters China's Quantum Sensing Ecosystem: From Deep-Sea Diamonds to Drone-Mounted Submarine Hunters China's Quantum Networking and QKD — World's Most Ambitious Quantum Communication Program Anthropic's Mythos Preview and the End of a Twenty-Year Cybersecurity Equilibrium China's Quantum Networking and QKD — World's Most Ambitious Quantum Communication Program Cloudflare Joins Google: Two Internet Giants Now Say 2029 for Post-Quantum Migration China's Quantum Computing Hardware: The Core Capability the West Keeps Misjudging China's Quantum Computing Hardware: The Core Capability the West Keeps Misjudging QuiX Quantum Achieves First Below-Threshold Error Mitigation in Photonic Quantum Computing China's Quantum Talent Ecosystem: Building a Superpower's Workforce Quantum Threat Timeline Report 2025: Record Predictions, But Can the Survey Keep Up? China's Quantum Talent Ecosystem: Building a Superpower's Workforce China's Hefei National Laboratory: The Nerve Center of a Quantum Superpower China's Hefei National Laboratory: The Nerve Center of a Quantum Superpower Gauge Theory Meets Quantum Computing China's 15th Five-Year Plan Makes Quantum an Industrial Imperative — Not Just a Research Priority China's 15th Five-Year Plan Makes Quantum an Industrial Imperative — Not Just a Research Priority QuantumShield360 AI Achieves World's First Complete Post-Quantum Cryptography Migration — Full Quantum Resilience Across All Enterprise Systems 10,000 Qubits to Run Shor's Algorithm Google Quantum AI Achieves 10x Reduction in Resources to Break Bitcoin's Cryptography The U.S. Intelligence Community Just Put Quantum on Equal Footing with AI. And Expanded the Threat Definition Google Just Drew a Line in the Sand: PQC Migration by 2029 Silicon Crosses the Logical Threshold: First Universal Logical Operations Demonstrated in a Silicon Quantum Processor The 1,000-Qubit Ceiling That Probably Isn't Science Confirms What Large Corporate Survivors Already Knew - Organizational Bullshit Makes You Worse at Your Job A New Algorithm Shrinks the Quantum Attack Surface for ECC Quantinuum Squeezes 94 Logical Qubits from 98 Physical — But What Does It Actually Mean?
Patented Cryptography: A Patent Isn
Marin Ivezic · 2026-06-25 · via PostQuantum – Quantum Computing, Quantum Security, PQC

Table of Contents

This article is part of the Quantum Snake Oil Dictionary a series examining terms used in quantum technology marketing. The series is divided into Red Flag Terms (terms with no established technical meaning that almost always signal hype or fraud) and Misused Terms (legitimate concepts routinely stripped of context in marketing). This entry is a Misused Term.

A note before we begin. This entry examines “patented cryptography,” along with “patented encryption” and “patent-pending security,” as the phrase appears in product marketing. I am not writing about any specific company, product, or individual. A vendor that holds a cryptographic patent might be selling strong technology or weak technology. The patent itself does not tell you which, and that is the entire point of this entry.

What a Patent Actually Certifies

A patent is a grant from a national patent office. To obtain one, an inventor must show that the claimed invention is new, non-obvious to a skilled practitioner, and useful. An examiner searches prior art to decide whether the idea has been described before and whether it represents an inventive step. That is the whole test.

Notice what is absent. Nowhere in that process does anyone evaluate whether a cryptographic scheme is secure. There is no cryptanalysis stage at the patent office. Examiners are trained to assess novelty, not to mount differential attacks or check whether a key-recovery shortcut exists. A scheme that is trivially breakable can be patented as readily as one that is sound, provided the broken scheme is novel. Novelty and security are unrelated properties, and a patent measures only the first.

This is not a flaw in the patent system. Patents exist to protect commercial rights in an invention, not to certify its fitness for a security purpose. Expecting a patent to vouch for cryptographic strength is like expecting a trademark registration to vouch for a product’s safety.

Security Comes From Analysis, Not a Grant Number

Cryptographers settled this question long ago. A cipher earns trust by being published, attacked, and left standing after sustained effort by people motivated to break it. This is the working meaning of Kerckhoffs’s principle: a system should remain secure even when everything about it except the key is public knowledge. Secrecy of the design is not a security property. It is a liability waiting to be discovered.

The NIST post-quantum cryptography standards show how real assurance accumulates. The algorithms now published as ML-KEM, ML-DSA, and SLH-DSA went through multiple rounds of open competition across several years, during which cryptographers worldwide tried to break every candidate and published what they found. Several submissions died in public during that process. The survivors are trusted precisely because thousands of expert-hours were spent attacking them in the open. None of that assurance came from a patent. As Bruce Schneier has put it, the good cryptography is not the patented cryptography.

Patents Are Orthogonal to Security

The cleanest way to see that a patent says nothing about security is to look at cases on both sides.

RSA was patented (U.S. Patent 4,405,829) and is one of the most analyzed and trusted public-key systems in history. NTRU, a lattice-based scheme whose descendants influenced today’s standardized PQC, was also patented and is well regarded. Patents did not make either one secure, but they did not make them suspect either.

Now the other side. The Algebraic Eraser, a patented key-agreement protocol promoted for low-power devices, was broken by cryptanalysis despite its patent. The patent protected a commercial position; it did nothing to stop the attack. Patent status and security are independent variables. Knowing that a scheme is patented should move your estimate of its strength in neither direction.

When “Patented” Becomes a Red Flag

If a patent is neutral, why include the term in a dictionary of warning signs? Because of how it gets used. The signal flips from neutral to negative when a patent is offered as the security argument itself, and especially when it is paired with a refusal to disclose the design for independent review.

Schneier described the pattern decades ago with a company called TriStrata, which claimed a proprietary security solution it would not explain because the method was patent-pending. The result, he noted, is that the patent and the proprietary control give cryptographers a reason not to analyze the claims at all, leaving customers to simply trust the vendor. He captured the absurdity with an analogy worth keeping: be wary of the doctor who says he has invented and patented a brand-new treatment made of tortilla-chip powder, has never tried it on anyone, but is certain it works better than anything else.

A patent is a public document. If reading the design would let an attacker break the scheme, the scheme was never secure to begin with. So when a vendor leans on “patented” as a reason to trust the security while declining to let anyone examine the cryptography, the patent is functioning as a substitute for scrutiny rather than as protection for a design that has also survived it.

Questions to Ask a Vendor

“Is the underlying algorithm published, and has it been independently cryptanalyzed?” A patent is already public, so there is no secrecy argument against publishing the cryptographic design. If the answer is no, ask why not.

“Which standardized algorithm does the product implement, and what specifically does the patent cover?” A patent on a protocol, a hardware optimization, or an integration method is ordinary and fine. A patent presented as the reason the encryption is unbreakable is the thing to question.

“If the patent is the security argument, what stops an attacker who simply reads it?” This question has no good answer when the design depends on secrecy, which is exactly why it is worth asking.

The Bottom Line

A patent certifies that an idea is new and non-obvious. It says nothing about whether a cryptographic scheme is secure, because the patent office performs no cryptanalysis. Strong cryptography and weak cryptography are both patentable, and real-world examples sit on both sides of the line. Treat “patented” as commercial information, not security information. The cryptography worth trusting is the cryptography that has been published and attacked in the open, whether or not anyone also filed a patent on it.

Quantum Upside & Quantum Risk - Handled

My company - Applied Quantum - helps governments, enterprises, and investors prepare for both the upside and the risk of quantum technologies. We deliver concise board and investor briefings; demystify quantum computing, sensing, and communications; craft national and corporate strategies to capture advantage; and turn plans into delivery. We help you mitigate the quantum risk by executing crypto‑inventory, crypto‑agility implementation, PQC migration, and broader defenses against the quantum threat. We run vendor due diligence, proof‑of‑value pilots, standards and policy alignment, workforce training, and procurement support, then oversee implementation across your organization. Contact me if you want help.

Talk to me Contact Applied Quantum