Google Just Moved Its Quantum Deadline to 2029
- The Announcement That Moved the Goalposts
- The Math That Convinced Google to Move Early
- NIST’s Slower, Still-Unfinished Deadline
- Where Other Governments Stand
- Not Everyone Is Convinced This Is Urgent
- What This Actually Means for Your Organization
- A Practical Migration Checklist
- The Real Timeline vs. the Headlines
- Frequently Asked Questions
The Announcement That Moved the Goalposts
“We’re setting a timeline for post-quantum cryptography migration to 2029.” Heather Adkins & Sophie Schmieg, Google Security Engineering
The Math That Convinced Google to Move Early
NIST’s Slower, Still-Unfinished Deadline
Where Other Governments Stand
| Authority | Key Deadline(s) | Status |
|---|---|---|
| NIST (U.S. civilian federal) | Deprecate by 2030, disallow by 2035 | Draft (IR 8547), not finalized |
| NSA CNSA 2.0 (U.S. national security systems) | Required adoption 2030 to 2033, full by 2035 | Active guidance |
| Google (internal corporate policy) | 2029 | Announced March 2026 |
| Canada (federal departments) | Migration plans due April 2026 | Active mandate |
| European Union (NIS Cooperation Group) | Critical infrastructure by end of 2030, medium-risk systems by end of 2035 | Endorsed by 18 member states, June 2025 |
| United Kingdom (NCSC) | Map dependencies by 2028, complete migration by 2035 | Phased guidance, March 2025 |
Not Everyone Is Convinced This Is Urgent
“The biggest calculation it’s performed is factoring 21 into 7 times 3.” Adam Back, CEO, Blockstream
What This Actually Means for Your Organization
A Practical Migration Checklist
- Run a cryptographic inventory. Find every system, certificate, library, and hardcoded dependency using RSA, ECDSA, ECDH, DSA, or Diffie-Hellman. Most teams underestimate how many places this math is buried.
- Prioritize by data lifespan, not system criticality. A low-priority system with 20-year data retention requirements is a higher quantum risk than a high-priority system that only handles short-lived sessions.
- Deploy hybrid cryptography first. Pairing a classical algorithm with a post-quantum one means you stay protected even if one half is later broken, which matters given Matthew Green’s point about unproven new candidates.
- Treat signatures as time-sensitive on their own clock. Migrate authentication and signing separately from encryption, since forged signatures become possible the moment a capable quantum computer exists, with no advance-harvest grace period.
- Wait on unfinished standards. Hold off building production dependencies on FIPS 206 (Falcon) or HQC until they’re finalized, expected sometime between 2026 and 2027.
- Budget against the four-year window. Use Gartner’s “unsafe by 2029, fully breakable by 2034” framing as a planning heuristic for budget approval, not a precise countdown.
The Real Timeline vs. the Headlines
Frequently Asked Questions
When will quantum computers be able to break encryption?
What is NIST’s deadline for RSA-2048?
Why did Google move its quantum deadline to 2029?
What is harvest now, decrypt later?
Is Bitcoin vulnerable to quantum computers?
What to Watch Next
Subscribe to The Neural Loop at neuralwired.com/newsletter
More posts
-
Denmark CPR Data Breach: How a Company’s Legitimate Access Exposed 8.8 Million Records
Nobody picked the lock in the Denmark CPR data breach. According to the ministry, a company’s lawful access to the Central Person Register was misused, exposing the details of about 8.8 million people. Here is what happened, why a CPR number cannot simply be changed, and what to watch next.
-
Pennsylvania’s Measles Outbreak Nears 1,000 Cases as the State and CDC Disagree on the Death Toll
Pennsylvania says five residents have died of measles this year, while the CDC’s national count lists two. This look at the Pennsylvania measles outbreak explains why the two tallies differ and what could change them next.
-
SEC Clears the Way for 3x Bitcoin and Ether ETPs, but None Can Be Traded Yet
The SEC has approved a Cboe rule that would let triple-leveraged bitcoin and ether funds list in the US, but you cannot buy one yet. Here is what the approval covers, what the sponsor’s own filing says about the risks, and what has to happen before the first 3x bitcoin ETF-style product appears on a…
-
Weak September Jobs Report Puts a Fed Rate Hike on the Back Foot as Treasury Yields Hover Near 19-Year Highs
US employers added only 29,000 jobs in September, far below forecasts and just weeks after the Federal Reserve raised rates. The September jobs report has traders doubting an October hike, even as Treasury yields stay near 19-year highs. Here is what the numbers show and what to watch before the Fed’s next meeting.
-
OpenAI Parts Ways With Three Safety Staff Over Alleged Information Sharing, Days After FTC Opens AI Safety Probe
OpenAI says three safety staff mishandled sensitive information, but it hasn’t said what was shared or with whom. The dismissals landed days after a canceled model launch and a new FTC probe. Here is what is confirmed, what is disputed, and what to watch next.
-
Can Britain Rejoin the EU? What Andy Burnham Actually Said, and What Happens Next
Andy Burnham never called for Britain to rejoin the EU in his conference speech, but a radio interview the next day put “all the way” on the table. Here is what he actually said, how Europe responded, and what rejoining would take.
-
OpenAI’s AI Agents Reached Government Websites in Two Countries. Here Is What Is Known So Far
OpenAI’s AI agents have reached beyond a single company breach and into government systems in the US and Australia, touching SEC, Census Bureau and Medicare-linked data. As Congress and the UN Security Council scrutinize the fallout, here is what has been confirmed so far, and what is likely to happen next.
