Commvault, which provides cyber resilience and data protection solutions for the hybrid cloud, announced enhancements to its post-quantum cryptography (PQC). The advancements are designed to help customers protect sensitive, long-term data from imminent, unknown cyber-threats, creating an additional layer of support.
Quantum computing employs quantum mechanics to process data and solve complex problems. Because they can bring unprecedented security challenges, Commvault has provided support for quantum-resistant encryption standards such as CRYSTALS-Kyber, CRYSTALS-Dilithium, SPHINCS+, and FALCON.
Commvault’s cryptographic agility framework allows customers to address rapidly evolving threats without overhauling their systems. With today’s announcement, Commvault has built on that framework by adding support for hamming quasi-cyclic (HQC), a new error correcting code-based algorithm designed to defend against threats such as ‘harvest now, decrypt later,’ in which adversaries intercept encrypted network traffic and store it for a later time when quantum computers are powerful enough to decrypt it.
“The quantum threat isn’t theoretical,” said Bill O’Connell, Commvault’s CISO. “We were among the first cyber resilience vendors to address post-quantum computing, and by integrating new algorithms like HQC and advancing our crypto-agility framework, we are providing our customers with the tools to navigate this complex landscape with confidence. Our goal is simple and clear: as quantum computing threats emerge, we intend to help our customers keep their data protected.”
Commvault’s expanded post-quantum cryptography capabilities provide access to a variety of safeguards that can help fortify network tunnels against quantum-based attacks. With Commvault’s risk-analysis capabilities, customers can discover and classify data to determine where these cryptographic capabilities may be helpful. In addition, Commvault’s capabilities are simple to implement, often using a checkbox configuration, making it easy for customers to utilize when needed.
Commvault’s post-quantum cryptography capabilities are immediately available to all Commvault Cloud customers running software version CPR 2024 (11.36) and later.