As concerns about quantum computing's potential to undermine encryption grow, cryptography expert Filippo Valsorda emphasizes that AES 128 remains a robust option. This encryption standard, established by NIST in 2001, is widely utilized due to its balance of security and efficiency. While AES supports key sizes of 192 and 256 bits, AES 128 has been favored for its optimal resource requirements and proven security record. With no known vulnerabilities over its three-decade existence, the only feasible attack method is brute force, which would require an astronomical 9 billion years to succeed, even with the full computational power of Bitcoin mining in 2026. Recently, some amateur cryptographers have misinterpreted Grover’s algorithm, suggesting that a quantum computer could significantly weaken AES 128's effectiveness. They argue that such a computer would reduce its security to 264, making it vulnerable. However, this assumption overlooks the complexities of quantum computing and its limitations in parallel processing. Thus, AES 128 continues to be a secure choice even in a future dominated by quantum technology.
AES 128 Remains Secure in a Quantum Computing Era
Despite fears surrounding quantum computing's impact on encryption, AES 128 is still a reliable choice for security.
