Why we cannot wait for better post-quantum signature algorithms

2026-07-10T19:24:09Zcf2fde49c571e76dc007a279d7b27b0fdebcfbeaa630bec48e9dad1eea91e45c
AI-securityAPI-tokensCloudforce-OneCopy-FailIPsecMCPML-DSAManaged-OAuthOAuthPQCPingoraProject-GlasswingWAFaccount-abuse-protectionautomated-triageclient-side-securityfrontier-modelshybrid-KEMkernel-privilege-escalationpost-quantumpost-quantum-migrationrequest-smugglingscoped-permissionsthreat-intelvulnerability-harness

What happened

Collection of Cloudflare security blog posts (Mar–Jul 2026) covering post-quantum cryptography and migration planning (ML-DSA recommendation, PQ IPsec via hybrid ML-KEM, 2029 target for full PQ), vulnerability discovery and response (multi-stage vulnerability harness, automated triage, Copy Fail Linux kernel privilege escalation response with zero customer impact), fixes to request smuggling in Pingora OSS (fixed in Pingora 0.8.0), defenses for AI/frontier models (Project Glasswing, AI Security for Apps GA), real-time WAF integration with Cloudforce One threat intel, OAuth and token/security-l

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
cloudflare_security_blog
Record identifier
cf2fde49c571e76dc007a279d7b27b0fdebcfbeaa630bec48e9dad1eea91e45c
Enrichment time
2026-07-10T19:24:09Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.