Hi all,

We have just published version -01 of the PQ/T Hybrid Composite Signatures WG 
Document: https://datatracker.ietf.org/doc/draft-ietf-jose-pq-composite-sigs/01.

In particular:
- We have expanded the Security Considerations section with considerations for 
key reuse, integrity of the composite public key, and the specific lack of 
SUF-CMA security against quantum adversaries which was highlighted during the 
previous call for adoption of the draft;
- Test vectors for JOSE/COSE for all 6 combinations MLDSA + ECDSA / EdDSA;
- General improvements for better readability.

We would appreciate any feedback from the group, particularly regarding the 
Security Considerations section.

You can also track progress or open issues on our GitHub repository: 
https://github.com/ietf-wg-jose/draft-ietf-jose-pq-composite-sigs

Best,

Lucas

-----Original Message-----
From: [email protected] <[email protected]> 
Sent: 27 February 2026 16:06
To: [email protected]
Cc: [email protected]
Subject: [jose] I-D Action: draft-ietf-jose-pq-composite-sigs-01.txt

Internet-Draft draft-ietf-jose-pq-composite-sigs-01.txt is now available. It is 
a work item of the Javascript Object Signing and Encryption (JOSE) WG of the 
IETF.

   Title:   PQ/T Hybrid Composite Signatures for JOSE and COSE
   Authors: Lucas Prabel
            Sun Shuzhou
            John Gray
            Tirumaleswar Reddy
   Name:    draft-ietf-jose-pq-composite-sigs-01.txt
   Pages:   29
   Dates:   2026-02-27

Abstract:

   This document describes JSON Object Signing and Encryption (JOSE) and
   CBOR Object Signing and Encryption (COSE) serializations for PQ/T
   hybrid composite signatures.  The composite algorithms described
   combine ML-DSA as the post-quantum component and either ECDSA or
   EdDSA as the traditional component.

The IETF datatracker status page for this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-ietf-jose-pq-composite-sigs/

There is also an HTML version available at:
https://www.ietf.org/archive/id/draft-ietf-jose-pq-composite-sigs-01.html

A diff from the previous version is available at:
https://author-tools.ietf.org/iddiff?url2=draft-ietf-jose-pq-composite-sigs-01

Internet-Drafts are also available by rsync at:
rsync.ietf.org::internet-drafts


_______________________________________________
jose mailing list -- [email protected]
To unsubscribe send an email to [email protected]
_______________________________________________
jose mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to