2025-09-10
Tomas Gustavsson and David Hook from Keyfactor join the “What’s in the SOSS” podcast from the Open Source Security Foundation (OpenSSF) to discuss post-quantum cryptography (PQC), what it is, and why crypto agility and entropy are critical.
The quantum threat is real, and the clock is ticking. With government deadlines set for 2030, organizations have just five years to migrate their cryptographic infrastructure before quantum computers can break current RSA and elliptic curve systems.
In this episode of the “What’s in the SOSS” podcast from OpenSSF, David Hook (VP Software Engineering) and Tomas Gustavsson (Chief PKI Officer) from Keyfactor join host Yesenia to break down post-quantum cryptography, from ELI5 explanations of quantum-safe algorithms to the critical importance of crypto agility and entropy. Learn why the financial sector and supply chain security are leading the charge, discover the hidden costs of migration planning, and find out why your organization needs to start inventory and testing now, because once quantum computers arrive, it’s too late.