0
Deep & Emerging Tech·July 30, 2026·1 min read

NIST’s Andrew Regenscheid Explains the Transition to Post-Quantum Cryptography

Share

NIST is now in public education mode on post-quantum crypto, which usually precedes harder timelines and procurement requirements. Inventory where you use public-key crypto—especially in long-lived devices and data—and get a migration plan on paper before your largest customers or regulators force one on you.

Deep & Emerging Tech

Amazon researchers link the compromises of four npm packages, including axios, over the past 18 months to the North Korea-linked group tracked as Sapphire Sleet

Four compromised npm packages over 18 months—via social engineering of maintainers—reinforces that your software supply chain risk now includes upstream humans, not just code. Lock down dependency policies, pin and mirror critical packages, and assume popular OSS components are active targets for state-linked actors.