All Algorithms

NTRU

Quantum Unsafe

Key Exchange algorithm

This algorithm will be broken by a cryptographically relevant quantum computer. Migration is recommended.

Algorithm Details

Category

Key Exchange

Quantum Safety

Quantum Unsafe

Key Lengths (bits)

509, 677, 821

Known Vulnerabilities

  • Lattice reduction (non-standardized parameter sets)

Migration Recommendation

Recommended post-quantum replacement:

Migrate to ML-KEM-768

Notes

Original NTRU submissions used non-standardized parameters. The underlying lattice problem may be quantum-resistant, but without NIST standardization and rigorous parameter selection, it is classified as unsafe. Use NIST-standardized ML-KEM instead.

Discover which algorithms your organization is using.

Run Free Assessment
NetflixOracleFigmaCoinbaseDellServiceNowAppleDeloitteNikeAWSJPMorgan ChaseT-MobileAtlassianBoschStripeL'OrealDatadogMicrosoftPalantirHPRobinhoodEYSonyCanvaVisaAutoCADDiscordBellAdobeCharles SchwabE*TRADENVIDIAGoogleJohnson & JohnsonFidelityClaudeMastercardIntuitBoeingAT&TShopifyPwCOpenAIKPMGIBMDatabricksSalesforceGitHubAmerican ExpressWorkday