SEC536: Adversarial AI - Penetration Testing AI Systems


Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsKey findings:
The review's overall pattern centers on separating key delivery from the data path itself: rather than treating post-quantum migration as a single algorithm swap, Phio TX addresses the "harvest now, decrypt later" risk by requiring an attacker to compromise two independent channels instead of one. This dual-channel, crypto-agile approach lets organizations meet near-term compliance deadlines with existing infrastructure while keeping a clear path to standardized PQC as algorithms mature. In testing, reviewers evaluated Phio TX-C in a site-to-site VPN configuration (HQ to branch), registering nodes to the cloud service and integrating with existing IPsec tunnels via SKIP, then measuring performance under forced key rotations and live algorithm switching.
In this webcast, we explore Quantum XChange’s Phio TX platform—a quantum-safe key distribution solution designed to provide crypto-agility, out-of-band key delivery, and future-proof protection for regulated industries and critical infrastructure.

Phio TX is a quantum-safe key-distribution overlay from Quantum XChange that delivers encryption keys on a separate channel from the data path, augmenting existing VPN and encryption systems rather than replacing them.
No. In SANS Institute's testing, measured throughput and latency matched baseline performance, with key rotations invisible to users and no added latency even during heavy transfers.
Yes. During testing, the out-of-band algorithm was switched from ML-KEM-1024 to Classic McEliece and HQC via a YAML/CLI edit, with new keys using the updated algorithms within seconds and the VPN continuing uninterrupted.
Phio TX's modules are FIPS 140-3 validated and align with CNSA 2.0 roadmaps, and the platform supports out-of-band pre-shared keys to help meet NSM-8 and NSM-10 mandates ahead of the 2035 deadline.
In SANS Institute's hands-on evaluation, Phio TX-C added a quantum-resistant shield to an existing VPN in under an hour, requiring no routing changes.


Charles “Charlie” Goldner is a Senior Technical Engineer at Counter Hack. With over two decades of experience working for SANS, the U.S. Army, and the Nevada National Guard, he brings a wealth of public and private sector expertise to the classroom.
Read more about Charles Goldner















