NSA Weakening Post-Quantum TLS Standard (mlkem) — Action Campaign

Written by

in

Source: https://nsa.2026.action.cr.yp.to/

Publisher: Daniel J. Bernstein (cr.yp.to)
Relevant To: Cryptography / encryption standards research
Verification Status: Verified

Notes: Action campaign by cryptographer Daniel J. Bernstein: the NSA is overtly funding standardization of “ietf-tls-mlkem,” which Bernstein characterizes as a deliberate weakening of the more robust hybrid “ietf-tls-ecdhe-mlkem” post-quantum TLS key-exchange standard — part of a documented pattern (NSA’s SIGINT Enabling Project, per the 2013 Snowden-leaked document linked here) of sabotaging cryptographic standards. NSA lost an initial IETF TLS working-group vote but called a second vote and is “packing the room” with participants who’ve never engaged the mailing list before (e.g., NSA’s Mike Jenkins). Bernstein is organizing public objections to the IETF TLS mailing list before the July 7, 2026 comment deadline on draft-ietf-tls-mlkem-08. Directly relevant to encryption-policy advocacy; ties to the CNSA 2.0 algorithms document and IETF “modpod” working group also cataloged in this batch.