@techreport{ietf-tls-hybrid-design-16, number = {draft-ietf-tls-hybrid-design-16}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-tls-hybrid-design/16/}, author = {Douglas Stebila and Scott Fluhrer and Shay Gueron}, title = {{Hybrid key exchange in TLS 1.3}}, pagetotal = 23, year = 2025, month = sep, day = 7, abstract = {Hybrid key exchange refers to using multiple key exchange algorithms simultaneously and combining the result with the goal of providing security even if a way is found to defeat the encryption for all but one of the component algorithms. It is motivated by transition to post-quantum cryptography. This document provides a construction for hybrid key exchange in the Transport Layer Security (TLS) protocol version 1.3.}, }