Tuesday, July 21, 2026

Why Quantum Computing Matters, Even If You Never Touch One

I logged into my bank app last week to move some money to pay some bills. A padlock icon appeared next to the address bar. Secure connection. I didn't think about it again. Somewhere, someone already has a copy of that session, sitting on a hard drive, waiting.

That padlock runs on a math problem: factor a huge number into its two prime components. A classical computer needs longer than the age of the universe to do that. A large enough quantum computer, running an algorithm built for exactly this job, does it in hours. That computer does not exist yet. It is being built right now, funded by billions of dollars, and no government or company controlling that funding will announce the day it works.

You do not get to wait for that announcement. Security researchers call the attack already underway harvest now, decrypt later. Think about what you have touched on the web this year: your bank, your medical portal, your voter registration, your immigration or legal filings, your tax return, your cloud photo backup. State-backed intelligence services and criminal groups are copying that same traffic from millions of other people today, and storing it cheaply. Almost none of it needs to be cracked now. It needs to still exist, on somebody's drive, the day a quantum computer catches up. Then all of it becomes readable at once.

NIST finalized three new encryption standards built to resist this and set 2035 as the deadline to retire the vulnerable ones. Cloudflare and Google are not waiting until then; they have committed to migrating by 2029. Banks, hospitals, and government agencies holding decades-long records are moving faster still, because for them the clock already ran out on some of what they are protecting.

The fix is not a patch on the old method. It replaces the math underneath it. Government researchers finalized a new set of encryption methods built to survive a quantum computer, the same way today's methods survive an ordinary one. Companies are not waiting to switch over all at once, either. Cloudflare, Google, and Apple already run two locks on the same connection at the same time: the old one and the new one. If someone finds a weakness in the new lock, the old one still holds. If a quantum computer breaks the old lock, the new one still holds. Traffic protected this way stops being worth harvesting, because breaking one lock alone gets an attacker nothing.

Getting every bank, hospital, and government agency onto the new locks is the slow part. It means finding every place the old encryption sits inside a system and replacing it without breaking what depends on it. The federal government has published a shared plan for doing exactly that, across every agency and industry. None of it requires anything from you. It happens inside the apps and websites you already use.

The fix only protects what gets encrypted after it is installed, though. Anything copied under the old lock before that happens is already sitting on somebody's drive, and nothing reverses that. New encryption prevents future harvesting. It does not undo what has already been taken.

Diagram claude.ai generated

Nothing solves the data that is already sitting on somebody's drive. There is no way to reach into another party's storage, revoke a copy, or make it unreadable again. The new locks protect what gets encrypted after they are installed. They have no effect on a copy that left your device years earlier.

How much that matters depends on what kind of data it is. A password can be changed after the fact, so a stolen password loses most of its value once you reset it. A medical record, a Social Security number, or a biometric scan cannot be changed. Whatever gets exposed on that front stays exposed for good. It also depends on how long the data needed to stay private in the first place. Something that only mattered for a few years is probably already safe by the time a quantum computer shows up. Something that needed to stay private for decades, a government file, a company's trade secrets, a hospital's records, is running on a clock that started the day it was copied, not the day the quantum computer arrives.

Most people are not personally worth the effort. A patient attacker spends storage on high-value targets: government communications, corporate research, hospital systems, banks. If you end up exposed, it is more likely through one of those institutions holding your data than through anyone singling you out.

There is not much a consumer can do about data that is already gone. A few things still help:

   Rotate what can be rotated. Change passwords regularly. A password manager makes it cheap enough to do more than once.

   Turn on two-factor authentication. It stops a harvested password from being enough to log in on its own, since an attacker also needs your phone, an authenticator app, or a security key. It does not protect the data itself. A hospital record, a legal filing, or an old email that already left your device is untouched by it, because it only fires at login, not on the traffic that carries the data.

   Not every two-factor method is equal. A text message code can be intercepted or rerouted if someone tricks your phone carrier into moving your number to a new SIM. An authenticator app is safer, since the code generates on your phone instead of traveling over the phone network. A hardware security key is safer still, a small physical device that checks a site's real address before it responds, so it does not work on a convincing fake login page. Use one for your email, your bank, and your password manager itself.

   Assume what cannot be rotated is already out. Watch for misuse instead of trying to prevent something that may have already happened. A credit freeze and fraud alerts catch someone using a stolen Social Security number long before you would otherwise notice.

   Keep your software current. The new locks only work if your browser, phone, and apps are recent enough to use them. An old browser is still running the old lock alone.

   Think twice about what you put online today. Anything sent through email, cloud storage, or a messaging app now can still be harvested under the old lock until your provider finishes switching over.

   Ask the institutions holding your data. A bank or hospital's own migration timeline affects your exposure more than anything you do personally, and it is a fair question to put to them directly.

None of it undoes what has already been copied. It limits what is still worth harvesting and reduces the damage from what is not.

The padlock on my banking app will look exactly the same through all of this. Behind it, the locks are being swapped one at a time: bank by bank, cloud provider by cloud provider. The question left is not whether the new lock exists. It is how much of your data got copied before it arrived.

No comments: