OFICIAL Cloudflare Blog

Preventing quantum downgrade attacks against IPsec

What happened
Based on Cloudflare Blog · Sep 29, 2026

Cloudflare has introduced a mitigation for quantum downgrade attacks on IPsec, developed with the IETF and now in beta for its IPsec products, addressing vulnerabilities in post-quantum cryptography migration.

Preventing quantum downgrade attacks against IPsec
Cloudflare Blog — Cloudflare
Key points
·
Cloudflare collaborated with the IETF to develop a mitigation for quantum downgrade attacks on IPsec, now in beta for its IPsec products.
·
A design flaw in IPsec allows quantum attackers to decrypt traffic between PQ-capable endpoints during the handshake, prompting Cloudflare to accelerate its PQ transition to 2029.
·
Cloudflare’s IPsec operates at the IP layer, enabling secure global connections without MPLS and supporting Magic Transit for DDoS protection.

Cloudflare is advancing protections for IPsec, a core internet security protocol, by introducing a mitigation against quantum downgrade attacks during its Birthday Week announcements. The company collaborated with the IETF to develop this defense, which has been implemented in beta across its IPsec offerings, including Cloudflare IPsec, Cloudflare WAN, and Magic Transit. The move responds to the emerging threat posed by early quantum computers, which could compromise classical cryptography used for secure communications.

The threat of quantum computers breaking widely used cryptographic methods has accelerated the need for post-quantum (PQ) cryptography. Cloudflare is contributing to this migration by making PQ encryption the default in its products, open-sourcing cryptography discovery tools, and launching visibility features for PQ adoption. However, the transition will take years, leaving a gap where classical cryptography must still be supported for compatibility, creating opportunities for downgrade attacks that undermine PQ protections.

Downgrade attacks exploit backwards compatibility by tricking endpoints into using weaker cryptography than they support, effectively bypassing PQ encryption. Cloudflare identified a design flaw in IPsec that enables a sophisticated attack, allowing quantum attackers to decrypt traffic between PQ-capable endpoints during the protocol handshake. While the attack is complex, recent reductions in quantum attack resource estimates have prompted Cloudflare to accelerate its PQ transition timeline to 2029.

IPsec operates at the IP layer of the network stack, deeper than TLS or QUIC, making it foundational to modern infrastructure. Cloudflare’s IPsec products extend secure connections globally without costly MPLS links, while Magic Transit uses IPsec tunnels to shield organizations from attacks like DDoS. The protocol continues to evolve, with PQ key agreement already available and PQ authentication adoption underway, demonstrating the ecosystem’s adaptability to emerging threats.

Original source → Deals on Clipraptor.com →