Back to News
quantum-computing

Oracle Launches Java 27 Featuring Hybrid Post-Quantum Cryptography for TLS 1.3

Mohamed Abdel-Kareem
Loading...
2 min read
0 likes
⚡ Quantum Brief
Oracle Launches Java 27 Featuring Hybrid Post-Quantum Cryptography for TLS 1.3 Oracle (NYSE: ORCL) has announced the general availability of Java 27 (Oracle JDK 27), introducing significant security, runtime, and developer updates across the Java ecosystem. A central focus of the release is advancing enterprise post-quantum cryptography (PQC) readiness to protect global cloud, microservice, and enterprise applications against “harvest now, decrypt later” security threats. Heading the security updates is JEP 527: Post-Quantum Hybrid Key Exchange for TLS 1.3, which integrates hybrid key exchange algorithms natively into the javax.net.ssl APIs.
AI Audio Summary
0:00 / 0:00
Click to play
Untitled design (14).png
Quantum News · Media Library

Oracle Launches Java 27 Featuring Hybrid Post-Quantum Cryptography for TLS 1.3 Oracle (NYSE: ORCL) has announced the general availability of Java 27 (Oracle JDK 27), introducing significant security, runtime, and developer updates across the Java ecosystem. A central focus of the release is advancing enterprise post-quantum cryptography (PQC) readiness to protect global cloud, microservice, and enterprise applications against “harvest now, decrypt later” security threats. Heading the security updates is JEP 527: Post-Quantum Hybrid Key Exchange for TLS 1.3, which integrates hybrid key exchange algorithms natively into the javax.net.ssl APIs. By combining classical key exchange with quantum-resistant key encapsulation mechanisms, Java 27 enables default quantum protection for network communications without requiring application code rewrites. Additionally, Oracle announced Oracle Jipher 20, now included in the Oracle Java Verified Portfolio (JVP), which wraps a FIPS 140-3 validated OpenSSL cryptographic module supporting NIST-standardized ML-KEM (Kyber) and ML-DSA (Dilithium) algorithms. [ Java 27 PQC & Cryptographic Security Enhancements ]Enhancement / FeatureImplementation MechanismSecurity & Operational BenefitJEP 527 (Hybrid TLS 1.3)Native integration via javax.net.ssl standard APIsDefends TLS network streams against future quantum decryption without breaking legacy compatibility.Oracle Jipher 20FIPS 140-3 validated OpenSSL module in Java Verified PortfolioAdds native support for NIST ML-KEM and ML-DSA algorithms in regulated enterprise environments.JEP 538 (PEM Encodings)Third preview for encoding cryptographic objectsStreamlines management and interoperability of quantum-safe keys, certificates, and CRLs. Beyond security enhancements, JDK 27 incorporates performance and language optimizations, including JEP 534 (Compact Object Headers by Default) to reduce JVM heap footprints and JEP 523 (G1 Default Garbage Collector Across All Environments). The updates establish a migration pathway as Oracle executes its roadmap to backport comparable PQC capabilities to long-term support (LTS) Java distributions. Review the official release announcement via Oracle Newsroom here, inspect the technical breakdown on the Java Product Management Blog here, access developer resources on Dev.java here, and explore full platform documentation at Oracle Java here. September 16, 2026 Mohamed Abdel-Kareem2026-09-16T22:28:28-07:00 Leave A Comment Cancel replyComment Type in the text displayed above Δ This site uses Akismet to reduce spam. Learn how your comment data is processed.

Read Original

Tags

post-quantum-cryptography
quantum-cryptography

Source Information

Source: Quantum Computing Report

Discussion

0 professional contributions

Sign in to join this professional discussion.

Be the first to add a constructive contribution.