VM-Class Secure, Millisecond-Fast Cloud-Native Apps With #Hyperlight + #Nanvix

Digital Transformation = Agile + APIs + AppSec
Security Architect at the Public Health Agency of Canada. Formerly TBS Cyber security & part of the team that launched the Canadian Digital Service.
| blog | https://mikewilliamson.wordpress.com |
| github | https://github.com/sleepycat |
VM-Class Secure, Millisecond-Fast Cloud-Native Apps With #Hyperlight + #Nanvix

Try to unsee it
Level: impossible.
Last year, my position was that we still had time to design PQ authentication mechanisms.
Now, based on the pace of progress and on statements like Google's, I believe:
1. we need to finish rolling out PQ key exchange yesterday
2. we need to start rolling out PQ auth now
3. it's too late to ship any new non-PQ design or system
https://blog.google/innovation-and-ai/technology/safety-security/cryptography-migration-timeline/
This is a briliant take...
Sovereign by Design: Strategic Options for Canadian #AI #Sovereignty
"Canada still has options to strengthen our capacity, reduce foreign leverage, build partnerships, and modernize our institutions. However, the time to act is short."
#Digital #Sovereignty A Framework to improve digital readiness of the Government of Canada
"The invisible #Unicode characters were devised decades ago and then largely forgotten. That is, until 2024, when hackers began using the characters to conceal malicious prompts fed to AI engines. While the text was invisible to humans and text scanners, #LLMs had little trouble reading them and following the malicious instructions they conveyed."
"2025’s exploited vendors followed the same pattern we observed last year, with big tech experiencing the most zero-day exploitation and security vendors following directly behind.
...
#Cisco and #Fortinet remain commonly targeted networking and security vendors, while #Ivanti and #VMware continue to see exploitation that reflects the high value threat actors place on VPNs and virtualization platforms."
https://cloud.google.com/blog/topics/threat-intelligence/2025-zero-day-review