FIPS 203finalA1NIST · 2024-08-13

ML-KEM — Module-Lattice Key Encapsulation

ML-KEM replaces classical key agreement for confidentiality. It is the primitive behind hybrid TLS key exchange and most cloud key-establishment roadmaps.

What it changes in practice
  • ·Confidentiality against harvest-now-decrypt-later depends on this primitive being deployed, not merely standardised
  • ·Hybrid deployment with X25519 or NIST curves is the mainstream pattern
Last verified 2026-09-06
Same layer