News

Mythos Attack Defeats Post-Quantum Cryptography Candidate HAWK After Years of Undetected Weakness

A significant development in the ongoing effort to standardize post-quantum cryptography has emerged as researchers revealed that the HAWK algorithm—a candidate for the third round of the NIST PQC standardization process—contains a fatal flaw discovered through an attack dubbed "Mythos."

HAWK had previously survived years of cryptographic analysis and testing, which had failed to surface the weakness that Mythos successfully exploited. The attack's effectiveness indicates that the algorithm's security assumptions were fundamentally flawed in ways that standard evaluation methods had not detected.

This discovery underscores the rigorous nature of the NIST post-quantum cryptography standardization process, which subjects candidates to multiple rounds of extensive cryptanalysis. However, the HAWK case demonstrates that even thoroughly examined algorithms can harbor vulnerabilities that only emerge through novel attack techniques.

The removal of HAWK as a candidate narrows the field of remaining third-round algorithms that aim to provide security against both classical and quantum computing threats. Researchers continue to evaluate the surviving candidates, with the goal of establishing robust cryptographic standards capable of withstanding future computational advances.

Sources