Google announced a new Chrome program to make HTTPS certificate authentication resilient to future quantum attacks by evolving Certificate Transparency (CT) toward Merkle Tree Certificates (MTCs). The approach is designed to mitigate the risk that a sufficiently capable quantum computer running Shor’s algorithm could forge classical signatures used in today’s PKI/CT ecosystem (e.g., forging Signed Certificate Timestamps to make unlogged certificates appear valid). Rather than immediately adding post-quantum X.509 certificate chains into the Chrome Root Store, Google is pursuing MTCs through the IETF’s new PLANTS working group (PKI, Logs, And Tree Signatures), replacing heavyweight serialized signature chains with compact Merkle proofs of inclusion anchored by a CA-signed tree head.
Google’s design combines classical and post-quantum cryptography (including ML-DSA) so an attacker would need to break both to successfully forge proofs, while keeping handshake/CT authentication data small. Ars Technica reports Google is using “clever math” to keep MTC-related authentication artifacts roughly 64 bytes (similar to current CT proofs) despite post-quantum key and signature size growth, and that the system is already implemented in Chrome with Cloudflare enrolling roughly 1,000 TLS certificates to test MTC behavior; Cloudflare is currently generating the distributed ledger, with a plan for CAs to eventually assume that role.

Track how attackers are adapting to this technology.
9 events from the most recent confirmed update back to the earliest known activity.
Google plans to launch a Chrome Quantum-resistant Root Store and program in Q3 2027 that supports only Merkle Tree Certificates, operating alongside the existing Chrome Root Program during transition.
As the second rollout phase, Google plans to bootstrap public Merkle Tree Certificates with qualified Certificate Transparency log operators, expanding the system beyond feasibility testing.
Google said Chrome expects to support post-quantum X.509 certificates for private PKIs later in 2026, while deferring such support for the public Chrome Root Store in favor of Merkle Tree Certificates.
TrustAsia Technologies filed what appears to be the first certificate authority application for Chrome’s Merkle Tree Certificate test root store in Chromium Issue 538260165. The filing signals that independent CAs are beginning to implement Google’s emerging MTC-based post-quantum web PKI architecture.
Google said the new quantum-resistant root store approach is already implemented in Chrome, combining classical and post-quantum protections to harden certificate proof mechanisms against future forgery.
The IETF formed the PKI, Logs, And Tree Signatures (PLANTS) working group to develop a standards-based approach for Merkle Tree Certificates and related post-quantum web PKI changes.
Google publicly announced a multi-year Chrome initiative to make HTTPS certificate authentication resilient to future quantum-computing threats by using Merkle Tree Certificates instead of embedding post-quantum cryptography directly into public X.509 chains.
Google began experimenting with Merkle Tree Certificates on real internet traffic with Cloudflare, using a fail-safe model backed by traditional X.509 certificates. Ars Technica reports Cloudflare enrolled about 1,000 TLS certificates in the test deployment.
Google states its planned quantum-resistant root store will complement the Chrome Root Store introduced in 2022, establishing the existing trust framework that the new program will extend rather than replace immediately.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Follow how adversaries are adapting to this technology, and where it touches your stack today.
10 references tracked. Mallory keeps watching after this page renders.
postquantum.com
Open sourcedarkreading.com
Open sourcescworld.com
Open sourcecybersecuritynews.com
Open sourcesecurity.googleblog.com
Open sourcesecurity.googleblog.com
Open sourcechromium.org
Open sourcedatatracker.ietf.org
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.