AWS Secrets Manager now supports hybrid post-quantum TLS using ML-KEM (X25519MLKEM768) to protect secrets from 'harvest now, decrypt later' quantum threats. The feature is automatically enabled in Secrets Manager Agent v2.0.0+, Lambda Extension v19+, and CSI Driver v2.0.0+. SDK support is available for Rust, Go, Node.js, Kotlin, Python (OpenSSL 3.5+), and Java v2 (v2.35.11+). No code changes are required for most users on latest client versions. Activation can be verified via CloudTrail logs.
Sort: