Post-quantum TLS: ML-KEM, X25519MLKEM768, and the hybrid handshake
Traces why TLS added post-quantum key exchange, how ML-KEM (FIPS 203) works, how the X25519MLKEM768 hybrid construction is built, and how the 2024-2026 browser rollout grew the ClientHello past one packet.
· 21 min read