quantum-audit v0.2.3 Adds Migration Guides, Hybrid Detection, and 50+ Library Scans
The open-source tool quantum-audit has released version 0.2.3, expanding its cryptographic vulnerability scanner to cover more than 50 libraries, up from 20 in the previous release. The update introduces actionable migration paths for every critical finding, guiding developers toward post-quantum alternatives such as Dilithium for ECDSA signatures and SHA-3 for hash functions. A new hybrid detection mode recognises projects mid-transition between classical and post-quantum cryptography, reducing critical score penalties by 50% when both vulnerability types are present. Projects employing two or more post-quantum libraries receive an additional scoring bonus, rewarding a defence-in-depth approach to quantum security. The release also adds CLI flags for CI threshold enforcement, package ignoring, and HTML or CSV report exports, along with support for scanning Solidity smart contract files.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.
Discussion (0)
Log in to join the discussion and vote.
Log in