IP Library Granted Patent US 12,683,781
Granted Patent B2
US 12,683,781 · App. 18/607,838 · Granted Jul 14, 2026

Quantum vault for protecting secrets against quantum computing

Inventor: Avesta Hojjati (Austin, TX)
Assignee: DigiCert, Inc.
H04L9/16G06N10/20H04L9/0825
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,683,781
App. No.
18/607,838
Granted
Jul 14, 2026
Kind
B2
Abstract

Systems and methods for managing a quantum vault for storing a secret include, responsive to a determination of a first level of quantum computing processing capability, defining a first encryption algorithm for the quantum vault such that the first encryption algorithm is sufficient to protect against the first level of quantum computing, such that a first layer of the quantum vault is configured with the first encryption algorithm; and monitoring the quantum computing processing capability; and responsive to a determination of a second level of the quantum computing processing capability where the first encryption algorithm is no longer sufficient to protect against, defining a second encryption algorithm for the quantum vault such that the second encryption algorithm is sufficient to protect against the second level of quantum computing processing capability, and such that the second encryption algorithm is configured as an outermost layer over the first encryption algorithm.

Claims (40)

1 . A method for managing a quantum vault for storing a secret, the method comprising steps of:

responsive to a determination of a first level of quantum computing processing capability, defining a first encryption algorithm for the quantum vault such that the first encryption algorithm is sufficient to protect against the first level of quantum computing processing capability, such that a first layer of the quantum vault is configured with the first encryption algorithm;

monitoring the quantum computing processing capability; and

responsive to a determination of a second level of the quantum computing processing capability where the first encryption algorithm is no longer sufficient to protect against, defining a second encryption algorithm for the quantum vault such that the second encryption algorithm is sufficient to protect against the second level of quantum computing processing capability, and such that the second encryption algorithm is configured as an outermost layer over the first encryption algorithm

wherein one of

the first encryption algorithm includes a classical encryption algorithm and the second encryption algorithm includes a Post Quantum Cryptography (PQC) algorithm, or

the first encryption algorithm includes a first Post Quantum Cryptography (PQC) algorithm and the second encryption algorithm includes a second PQC algorithm.

2 . The method of claim 1 , wherein the steps further include:

continuing the monitoring and adding one or more additional layers with one or more additional encryption algorithms, based on the monitoring of quantum computing processing capability.

3 . The method of claim 2 , wherein, at any given time, an outermost layer of the quantum vault is sufficient to protect against a current level of quantum computing processing capability.

4 . The method of claim 1 , wherein the steps further include:

causing a new quantum vault to be created after the determination of the second level with a first layer of the new quantum vault utilizing the second encryption algorithm.

5 . The method of claim 1 , wherein the quantum computing processing capability is based on qubit processing capability.

6 . The method of claim 1 , wherein the secret is an encryption key associated with one of a symmetric algorithm and an asymmetric algorithm.

7 . A cloud service comprising one or more processors and memory storing instructions that, when executed, cause the one or more processors to perform steps of:

responsive to a determination of a first level of quantum computing processing capability, defining a first encryption algorithm for a quantum vault, configured to store and protect a secret, such that the first encryption algorithm is sufficient to protect against the first level of quantum computing processing capability, such that a first layer of the quantum vault is configured with the first encryption algorithm;

monitoring the quantum computing processing capability; and

responsive to a determination of a second level of the quantum computing processing capability where the first encryption algorithm is no longer sufficient to protect against, defining a second encryption algorithm for the quantum vault such that the second encryption algorithm is sufficient to protect against the second level of quantum computing processing capability, and such that the second encryption algorithm is configured as an outermost layer over the first encryption algorithm

wherein one of

the first encryption algorithm includes a classical encryption algorithm and the second encryption algorithm includes a Post Quantum Cryptography (PQC) algorithm, or

the first encryption algorithm includes a first Post Quantum Cryptography (PQC) algorithm and the second encryption algorithm includes a second PQC algorithm.

8 . The cloud service of claim 7 , wherein the steps further include:

continuing the monitoring and adding one or more additional layers with one or more additional encryption algorithms, based on the monitoring of quantum computing processing capability.

9 . The cloud service of claim 8 , wherein, at any given time, an outermost layer of the quantum vault is sufficient to protect against a current level of quantum computing processing capability.

10 . The cloud service of claim 7 , wherein the steps further include:

causing a new quantum vault to be created after the determination of the second level with a first layer of the new quantum vault utilizing the second encryption algorithm.

11 . The cloud service of claim 7 , wherein the quantum computing processing capability is based on qubit processing capability.

12 . The cloud service of claim 7 , wherein the secret is an encryption key associated with one of a symmetric algorithm and an asymmetric algorithm.

13 . A method for managing a quantum vault for storing a secret, the method comprising steps of:

responsive to a determination of a first level of quantum computing processing capability, defining a first encryption algorithm for the quantum vault such that the first encryption algorithm is sufficient to protect against the first level of quantum computing processing capability, such that a first layer of the quantum vault is configured with the first encryption algorithm;

monitoring the quantum computing processing capability;

responsive to a determination of a second level of the quantum computing processing capability where the first encryption algorithm is no longer sufficient to protect against, defining a second encryption algorithm for the quantum vault such that the second encryption algorithm is sufficient to protect against the second level of quantum computing processing capability, and such that the second encryption algorithm is configured as an outermost layer over the first encryption algorithm; and

causing a new quantum vault to be created after the determination of the second level with a first layer of the new quantum vault utilizing the second encryption algorithm.

14 . The method of claim 13 , wherein the steps further include:

continuing the monitoring and adding one or more additional layers with one or more additional encryption algorithms, based on the monitoring of quantum computing processing capability.

15 . The method of claim 14 , wherein, at any given time, an outermost layer of the quantum vault is sufficient to protect against a current level of quantum computing processing capability.

16 . The method of claim 13 , wherein the first encryption algorithm includes a classical encryption algorithm and the second encryption algorithm includes a Post Quantum Cryptography (PQC) algorithm.

17 . The method of claim 13 , wherein the first encryption algorithm includes a first Post Quantum Cryptography (PQC) algorithm and the second encryption algorithm includes a second PQC algorithm.

18 . The method of claim 13 , wherein the quantum computing processing capability is based on qubit processing capability.

19 . The method of claim 13 , wherein the secret is an encryption key associated with one of a symmetric algorithm and an asymmetric algorithm.