JSConf JP

You've Been Hacked. It Just Hasn't Happened Yet.

SessionTrack AEnglish

Your data is in superposition: both secure and stolen. Somewhere, right now, TLS traffic is being recorded- not cracked, just stored, patiently, until a quantum computer arrives to open it. Intelligence agencies call it "harvest now, decrypt later," and NIST has already set the deadline: the encryption behind HTTPS retires by 2030- banned(!) by 2035. The breach is in progress; it just hasn't happened yet.

The good news: this isn't a physics talk, and the fix doesn't require a PhD. We'll demystify the post-quantum era for working developers, what quantum computers actually break (less than you fear), what's already being shipped by the big players, where the risk really lives in your stack, and how to prepare hands-on in modern server-side runtimes. You'll leave knowing what needs to change in how you build software, what doesn't, and how to make the next crypto migration boring.

This talk works in both states: before Q-day, and slightly too late.