Sebastien Rousseau

CRYPTOGRAPHY NA POST-QUANTUM

Safiyar Quantum don CIB: Daga KyberLib zuwa Tarin Biyan Kuɗi Mai Juriya ga Quantum

Juya BIS Quantum Dawn da taswirar PQC ta G7 Janairu 2026 zuwa shirin sauyawa na matakin hukumar — daga gwajin KyberLib zuwa tarin biyan kuɗi mai crypto-agile, na ML-KEM da ML-DSA.

7 min read
Banner for: Safiyar Quantum don CIB: Daga KyberLib zuwa Tarin Biyan Kuɗi Mai Juriya ga Quantum

Takardar BIS Quantum Dawn da taswirar PQC ta G7 Cyber Expert Group na Janairu 2026 sun zo cikin watanni kaɗan na juna kuma suna faɗin abu ɗaya a registers biyu. Na farko yana tsara shi a matsayin matsalar daidaitawa ta babban banki. Na biyu yana tsara shi a matsayin umarnin gudanarwa na matakin Treasury ga manyan banki. Ko ta yaya, ƙaurar post-quantum takarda ce ta hukumar yanzu, ba bayanin bincike ba.

Shekara da ta gabata banki zai iya ambato FIPS 203 da FIPS 204 a bita na tsaro kuma ya kira hakan dabarar crypto. Tambayar 2026 ta fi kaifi: wadanne layuka, da wace ranar, da wace fallback, sa hannu wa a ƙarƙashin SM&CR. KyberLib yana amsa wani ɓangare na wannan tambaya tare da aiwatarwar ML-KEM da ML-DSA mai inspectable, mai aminci ga ƙwaƙwalwa. Sauran — juya kayan aiki zuwa shirin kamfani — shi ne aikin wannan rubutun.

01. Lokacin shi ne yanzu

Hasashen shirye-shirye na yau da kullum a cikin banki na Tier-1 a tsakiyar 2026 shi ne sararin shekaru biyar don kwamfutar quantum mai dacewa da cryptography (CRQC), tare da yiwuwar mai mahimmanci a baya. Wannan shi ne lambar aikin da BIS, G7 Cyber Expert Group, da yawancin hukumomin cyber na ƙasa ke amfani da ita lokacin da suke magana da kamfanoni masu mahimmanci na tsari. Bita na shirye-shiryen kuɗi na EY yana amfani da tsari iri ɗaya a cikin bincikensa na sauyawar post-quantum.

Sararin shekaru biyar ba shi ne dukan labarin ba. Harvest-now-decrypt-later (HNDL) yana nufin abokan gaba ba sa buƙatar CRQC mai aiki a yau. Suna buƙatar adana mai arha da haƙuri. Duk wani TLS session, payload na umarnin custody, ko canja wurin fayil tsakanin banki da aka kare ta RSA-2048 ko ECC akan X25519 a yau ɗan takara ne don decryption na baya-bayan nan. Don alkawarin riƙewa na shekaru 25 — ma'auni a custody, kuɗin kasuwanci da securitisation — taga bayyanawa ta riga ta buɗe.

Sakamako biyu suna biyowa. Sirri ba shi kaɗai ke kan haɗari ba; sahihancin umarnin da aka sa hannu na dogon lokaci yana da muhimmanci sosai, wanda shi ne dalilin da ya sa FIPS 204 ML-DSA ke zama tare da FIPS 203 ML-KEM a kowane shirin ƙaurar 2026 mai aminci. Kuma aikin ba zai iya zama cutover guda mai girma ba; dole ne a tsara shi, ta nau'in bayanai da ta layi, yana farawa da mafi tsayi.

02. Daga KyberLib zuwa crypto-agility

Yi la'akari da KyberLib a matsayin shaida cewa primitives suna aiki a Rust, a CI, kuma a cikin runtime mai aminci ga ƙwaƙwalwa — sannan ku tsara sauran tarin don haka primitive ya zama mai musantawa. Crypto-agility shi ne ka'idar injiniya da ke da muhimmanci fiye da kowane zaɓi na algorithm. Tarihin sauyawar cryptography — DES zuwa AES, SHA-1 zuwa SHA-256, SSLv3 zuwa TLS 1.3 — shi ne tarihin cibiyoyin da suka ƙirƙira algorithm a bayan wrapper suna gama tsabta, da cibiyoyin da suka shigar da algorithm zuwa cikin samfuran samfuri suna biya don shi shekaru goma.

Siffar mai amfani da ita sananne ne. Duk wani inda lambar ke taɓa key-encapsulation mechanism ko digital signature ana yin sa hanya ta interface na cikin gida wanda ke ɗaukar algorithm mai suna da saitin parameters mai sigar. Aiwatarwa a bayanta tana farawa a matsayin ML-KEM-768 da ML-DSA-65 na KyberLib — kuma ana ba ta damar musantawa a runtime don ginin hybrid (X25519 tare da ML-KEM-768, ECDSA tare da ML-DSA-65), ko don primitive na gaba da aka ƙirƙira ranar da NIST ya buga ɗaya. Wannan shi ne abin da rubutun KyberLib da Ƙaurar Banki ta Post-Quantum ke zayyana a matakin kayan aiki; sigar matakin CIB ita ce cryptographic bill of materials (CBOM) — kowane primitive, saitin parameter, sigar laburaren, da ƙungiyar mallaka, an taswirar zuwa kowane iyaka na biyan kuɗi, custody, da tsabtacewa a cikin banki.

Hybrid shi ne tsohuwar sauyawa. Jagorancin NIST da zane-zane na IETF hybrid key-exchange sun yarda cewa hanyar da ta dace ita ce classical-plus-PQC akan handshake ɗaya har sai aiwatarwar PQC ta tara isasshen lokutan filin don tsayawa kanta. Banki ba su a matsayin da za su saka caca akan primitive guda yana rayuwa ta cryptanalysis na shekaru ashirin da biyar. Suna a matsayin da za su gudanar da hybrid, su shigar da komai, kuma su riƙe zaɓin sauke ɓangaren classical daga baya.

Harajin hybrid — ainihin farashin crypto-agility

Hybrid shi ne zaɓi madaidaici. Ba shi da kyauta. ClientHello na hybrid TLS 1.3 mai ɗauke da X25519MLKEM768 yana gudana kusan 1.2 KB maimakon ~150 bytes; sa hannun ML-DSA-65 shi ne ~3.3 KB idan aka kwatanta da 64 bytes na ECDSA-P256; aikin CPU kowace ma'amala kusan ya ninka duk inda ƙafar hybrid take zaune kusa da na classical. Akan layuƙan wholesale clearing inda hukunce-hukuncen settlement ke zaune cikin tagogi na 5-10 ms, ƙarin farashin handshake-RTT da latency na sa hannu kowane saƙo ba su zama kurakurai na zagayawa ba — dole ne a tsara su cikin capacity planning kuma a ambace su a cikin SLA da mai aiki ya yi alkawari. Takarda ta hukumar ya kamata ta buga tasirin throughput da tail latency da ake tsammani a kowane matakin ƙaura, ba kawai zaɓin algorithm ba. Banki da suka shiga hybrid ba tare da ma'auni mai aunawa ba suna gano farashin a lokacin bita na lamarin farko.

Hakikanin masu sayarwa — dogaro da HSM da KMS

KyberLib ya tabbatar da primitives a Rust kawai. Hanyar crypto ta samarwa a cikin banki na Tier-1 ba ta gudana a Rust kawai — tana gudana ta HSMs na kasuwanci (Thales, Entrust, Utimaco) da kuma ta cloud key-management services (AWS KMS, Azure Key Vault, Google Cloud KMS) waɗanda ke nannade modules ɗaya da mai sayarwa ya samar. Firmware mai iya PQC akan waɗannan modules na fitowa; ko shirin ƙaura zai tsaya yana dogara akan ko jirgin HSM na musamman na banki da matakin KMS suna da algorithms na FIPS 203 / FIPS 204 da aka tabbatar, an fallasa su a saman API da tarin aikace-aikacen ke amfani da shi, kuma ana tallafa musu akan hanyar firmware da banki ya tsara. Wannan dogaro ya na cikin CBOM da kuma akan programme risk register, tare da alkawuran mai sayarwa masu suna ta kowace kwata. Shirin PQC ba tare da alkawari na firmware na mai sayarwa ba shi ne shirin da ke zamewa lokacin da mai samarwa ɗaya ya sanar da jinkirin hanyar PQC.

03. PQC a biyan kuɗi da hanyoyin aiki na CIB

Tsarin ƙaura ba shi da iri ɗaya. Biyan kuɗi na manyan ma'amaloli, repo, custody da kuɗin kasuwanci suna ɗauke da mafi tsayi na sirri, mafi girman ƙimar ma'amala ɗaya, da mafi kaifi na fallasa ga abokan ma'amala idan aka jabunta umarnin da aka sa hannu daga baya. Sun fara.

Manyan layuka — haɗin matakin mai aiki zuwa CHAPS, TARGET2, Fedwire da CHIPS — su ne ɗan takara mafi bayyana, kuma mafi daidaitawa. Manyan banki ba za su ƙyale cutover na PQC mara daidaitawa akan waya ba. Wannan shi ne dalilin da gwaje-gwajen BIS Project Leap suka shafi: su ne wurin da manyan kuɗaɗen ajiya ke gwajin damuwa tare na hybrid PQC akan zirga-zirgar tsabtacewa, kafin kowane umarni na samarwa. Mahalarta CIB suna fitowa tare da profile na hybrid TLS 1.3, labarin sarrafa mabuɗi, da shirin sabuntar hardware-security-module (HSM) tare da lambobi na gaske.

Kuɗin kasuwanci shi ne matsalar shiru, mafi tsayi. Wasiƙar bashi da aka sa hannu a yau tana da ƙarfi shekaru kuma sau da yawa ana adana shi shekaru da yawa. Sa hannu da aka kare ta ECDSA kawai akan taga riƙewa na shekaru 25 daidai shi ne misalin barazana wanda aka sanya wa HNDL suna. Maganin shi ne sa hannu biyu yayin sauyawa — ECDSA tare da ML-DSA-65 akan kayan aiki ɗaya — don haka abun da aka sa hannu na dogon lokaci ya kasance mai tabbatarwa a ƙarƙashin duk wani tsarin sa hannu da ya rayu.

Hanyoyin aiki na custody da na ayyukan tsaro suna a tsakanin biyun: ƙanana ga kowace ma'amala fiye da tsabtacewar manyan ma'amaloli amma sun fi girma sosai a kundi, kuma a bayan yarjejeniyoyin abokan ciniki na dogon lokaci waɗanda ke wuce ƙarni masu yawa na algorithm. Tsarin mai amfani iri ɗaya ne: ganewa kowane sa hannu da kowane iyaka na key-encapsulation, ba shi shigar da CBOM, yi shi ta wrapper na crypto-agility, kuma ƙaurar nau'in bayanai mafi tsayi zuwa hybrid da farko. QKD yana da wurinsa akan takamaiman haɗin point-to-point — rubutun da ya gabata kan Rarraba Mabuɗin Quantum yana bayyana inda — amma ba madadin fitar da ML-KEM da CBOM ke jagoranta a fadin kadarorin ba. FHE shi ne ƙari a gefen nazari, ba layi na biyan kuɗi ba.

04. Hukumomi, masu tsara dokoki da bayyanawa

Tattaunawar bayyanawa ta kama injiniyan. Bayanin G7 Cyber Expert Group na Janairu 2026 a sarari yana neman kamfanoni masu tsari su samar da CBOM, shirin ƙaurar mai kwanan wata, da mai zartarwa mai alhakin — harshen da ya taswirar kai tsaye zuwa SM&CR a Burtaniya da kuma tanade-tanaden alhakin hukumar na DORA Article 5 a EU. Tsarin babban birnin haɗarin aiki na Basel III shi ne ɓangare na uku na shiru: faɗuwa da sauyawar cryptography ta haifar haɗarin aiki ne, tare da farashin babban birnin.

Takarda ta hukumar da ta tsaya wa wannan binciken tana amsa tambayoyi huɗu. Menene jerin — wadanne tsarin ke amfani da wadanne primitives a wace saitin parameter, masu mallakar suna da kuma sigar laburaren mai suna. Menene tsari — wadanne layuka da nau'in bayanai ke ƙaura da farko, tare da matakai masu kwanan wata da aka ɗaure da BIS Project Leap da kuma jiragen ƙasa na sakin cikin gida. Menene fallback — wadanne ginin hybrid suke a wuri, wace sa ido yake a wuri, da kuma yadda banki ke komawa cikin aminci idan primitive na PQC ya faɗi cryptanalysis bayan turawa. Wa ya sa hannu — wace senior manager ƙarƙashin SM&CR ke mallakar shirin.

Tambayoyin da darektan masu zaman kansu masu girma ya kamata su yi kai tsaye ne. Shin jerin cryptography ya cika ko an dauki samfurin. Shin shirin ƙaurar yana da kwanan wata akan sararin CRQC na shekaru biyar ko goma. Shin kayan aikin da aka sa hannu na dogon lokaci — wasiƙun bashi, umarnin custody, takaddun securitisation — an rufe su ta hanyar tsarin sa hannu biyu a yau ko ta ECDSA na classical kawai. Shin matsayin PQC na banki ana iya bayyana wa abokan ma'amala da hukumomin tantance a kan buƙata. Kuma sunan wa yake kusa da shi a bayanin alhakin SM&CR.

Kammalawa

Sauyawar post-quantum ba ya zama tambaya ta ko primitives suna nan ba. Suna nan; an buga FIPS 203 da FIPS 204; KyberLib da laburare masu kama da haka suna a samarwa. Tambayar ita ce ko CIB zai iya gudanar da shirin shekaru da yawa, mai crypto-agile, mai jagorantar CBOM a fadin biyan kuɗi, custody, da kuɗin kasuwanci — ƙarƙashin DORA, SM&CR, tsarin haɗarin aiki na Basel III, da kallon manyan banki da ke gudanar da BIS Project Leap. Banki da ke yin la'akari da 2026 a matsayin shekarar shirye-shirye da 2027 a matsayin shekarar fitar da hybrid na farko za su bayyana ƙaurar mai tsabta ga hukumominsu a 2030. Waɗanda ke yin la'akari da Quantum Dawn a matsayin aikin gida na wani za su bayyana wani abu daban gabaki ɗaya.

Fara da CBOM. Yi wrapper ga kowane primitive. Ƙaurar mafi tsayi da farko. Sa hannunka a kai.

An bita na ƙarshe .

Bita ta ƙarshe .

Sake buga wannan labarin

Kwafa tsarin Medium

# Safiyar Quantum don CIB: Daga KyberLib zuwa Tarin Biyan Kuɗi Mai Juriya ga Quantum — Sebastien Rousseau

> Originally published at [https://sebastienrousseau.com/ha/2026-06-25-quantum-dawn-cib-kyberlib-quantum-resilient-payments-stack-2026/](https://sebastienrousseau.com/ha/2026-06-25-quantum-dawn-cib-kyberlib-quantum-resilient-payments-stack-2026/)

Daga KyberLib zuwa shirin CIB na kamfani — yadda banki ke matsawa daga gwajin FIPS 203 ML-KEM da FIPS 204 ML-DSA zuwa tarin biyan kuɗi mai juriya ga quantum.

Read the full article on sebastienrousseau.com: https://sebastienrousseau.com/ha/2026-06-25-quantum-dawn-cib-kyberlib-quantum-resilient-payments-stack-2026/

Kwafa tsarin Mastodon

Safiyar Quantum don CIB: Daga KyberLib zuwa Tarin Biyan Kuɗi Mai Juriya ga Quantum — Sebastien Rousseau

Daga KyberLib zuwa shirin CIB na kamfani — yadda banki ke matsawa daga gwajin FIPS 203 ML-KEM da FIPS 204 ML-DSA zuwa tarin biyan kuɗi mai juriya ga quantum.

https://sebastienrousseau.com/ha/2026-06-25-quantum-dawn-cib-kyberlib-quantum-resilient-payments-stack-2026/

Kwafa an tsara don LinkedIn

Safiyar Quantum don CIB: Daga KyberLib zuwa Tarin Biyan Kuɗi Mai Juriya ga Quantum — Sebastien Rousseau

Daga KyberLib zuwa shirin CIB na kamfani - yadda banki ke matsawa daga gwajin FIPS 203 ML-KEM da FIPS 204 ML-DSA zuwa tarin biyan kuɗi mai juriya ga quantum.

Ga abubuwan da ya kamata a lura da su na dabarun:

- 01. Lokacin shi ne yanzu. Hasashen shirye-shirye na yau da kullum a cikin banki na Tier-1 a tsakiyar 2026 shi ne sararin shekaru biyar don kwamfutar quantum mai dacewa da cryptography (CRQC), tare da yiwuwar mai mahimmanci a baya.
- 02. Daga KyberLib zuwa crypto-agility. Yi la'akari da KyberLib a matsayin shaida cewa primitives suna aiki a Rust, a CI, kuma a cikin runtime mai aminci ga ƙwaƙwalwa — sannan ku tsara sauran tarin don haka primitive ya zama mai musantawa.
- 03. PQC a biyan kuɗi da hanyoyin aiki na CIB. Tsarin ƙaura ba shi da iri ɗaya.
- 04. Hukumomi, masu tsara dokoki da bayyanawa. Tattaunawar bayyanawa ta kama injiniyan.

Menene hanyar ƙungiyar ku wajen magance ƙalubalen da aka kawo a wannan rubuce-rubucen?

→ https://sebastienrousseau.com/ha/2026-06-25-quantum-dawn-cib-kyberlib-quantum-resilient-payments-stack-2026/

#CryptographyNaPostQuantum #Pqc #Kyberlib #MlKem #MlDsa

Sebastien Rousseau | CC-BY-4.0
Buga wannan labari

Safiyar Quantum don CIB: Daga KyberLib zuwa Tarin Biyan Kuɗi Mai Juriya ga Quantum — Sebastien Rousseau

Daga KyberLib zuwa shirin CIB na kamfani — yadda banki ke matsawa daga gwajin FIPS 203 ML-KEM da FIPS 204 ML-DSA zuwa tarin biyan kuɗi mai juriya ga quantum.

BibTeX

@online{rousseau2026safiyar,
  author  = {Rousseau, Sebastien},
  title   = {{Safiyar Quantum don CIB: Daga KyberLib zuwa Tarin Biyan Kuɗi Mai Juriya ga Quantum — Sebastien Rousseau}},
  year    = {2026},
  url     = {https://sebastienrousseau.com/ha/2026-06-25-quantum-dawn-cib-kyberlib-quantum-resilient-payments-stack-2026/},
  urldate = {2026}
}

RIS

TY  - GEN
AU  - Rousseau, Sebastien
TI  - Safiyar Quantum don CIB: Daga KyberLib zuwa Tarin Biyan Kuɗi Mai Juriya ga Quantum — Sebastien Rousseau
PY  - 2026
UR  - https://sebastienrousseau.com/ha/2026-06-25-quantum-dawn-cib-kyberlib-quantum-resilient-payments-stack-2026/
ER  -

Vancouver

Rousseau S. Safiyar Quantum don CIB: Daga KyberLib zuwa Tarin Biyan Kuɗi Mai Juriya ga Quantum — Sebastien Rousseau. sebastienrousseau.com. 2026 Jun 25. Available from: https://sebastienrousseau.com/ha/2026-06-25-quantum-dawn-cib-kyberlib-quantum-resilient-payments-stack-2026/

Chicago

Rousseau, Sebastien. "Safiyar Quantum don CIB: Daga KyberLib zuwa Tarin Biyan Kuɗi Mai Juriya ga Quantum — Sebastien Rousseau." sebastienrousseau.com. June 25, 2026. https://sebastienrousseau.com/ha/2026-06-25-quantum-dawn-cib-kyberlib-quantum-resilient-payments-stack-2026/.

APA

Rousseau, S. (2026, June 25). Safiyar Quantum don CIB: Daga KyberLib zuwa Tarin Biyan Kuɗi Mai Juriya ga Quantum — Sebastien Rousseau. sebastienrousseau.com. https://sebastienrousseau.com/ha/2026-06-25-quantum-dawn-cib-kyberlib-quantum-resilient-payments-stack-2026/

Sake buga wannan labari

Safiyar Quantum don CIB: Daga KyberLib zuwa Tarin Biyan Kuɗi Mai Juriya ga Quantum — Sebastien Rousseau

Daga KyberLib zuwa shirin CIB na kamfani — yadda banki ke matsawa daga gwajin FIPS 203 ML-KEM da FIPS 204 ML-DSA zuwa tarin biyan kuɗi mai juriya ga quantum.

An lasisin wannan labari a karkashin Creative Commons Attribution 4.0 International. Sake bugawa na bukatar nuna asalin URL na asali.

Safiyar Quantum don CIB: Daga KyberLib zuwa Tarin Biyan Kuɗi Mai Juriya ga Quantum — Sebastien Rousseau

Daga KyberLib zuwa shirin CIB na kamfani — yadda banki ke matsawa daga gwajin FIPS 203 ML-KEM da FIPS 204 ML-DSA zuwa tarin biyan kuɗi mai juriya ga quantum.

Originally published at https://sebastienrousseau.com/ha/2026-06-25-quantum-dawn-cib-kyberlib-quantum-resilient-payments-stack-2026/ by Sebastien Rousseau.
Licensed under CC-BY-4.0.