Overview

The Hybrid KEM Engine combines the ML-KEM shared secret with a classical X25519 shared secret into a single session key that is secure if either component remains unbroken. The shared secret is computed as SHA3-256(ss_pqc || ss_ecc || ct_ecc || pk_ecc || label), binding the PQC secret to the classical secret and transcript. This X-Wing archetype design provides a straightforward path toward crypto-agile migration, ensuring that systems remain protected against both classical and quantum attackers throughout the transition period.

Key Features

Benefits

Standards and Verification

Standards Compliance

IETF hybrid KEM (X-Wing archetype)

Verification

Combiner verified against a SHA3-256 golden.

Note: "Verified" means RTL byte-exact against official test vectors. It does not imply FIPS 140-3 certification or foundry sign-off.

Availability and Deliverables

Available Verified combiner. Soft IP delivered as foundry-portable RTL.

Standard Deliverables

Firm/hard IP (hardened netlist for a target node) available on foundry enablement.

Related Products

Request a product brief