Key Encapsulation Mechanisms (KEM) is a special case of Public Key Encryption (PKE) that was recently standardized by National Institute of Standards and Technology in USA. The broader adoption of the term in industry practice was necessitated by the discovery of the malleability property of ciphertext, which led to new approaches PKE. New standard initiated refactoring of all cryptographic software libraries and this process relates to the problems of cryptographic agility. This Systematization of Knowledge (SoK) addresses the developments of public key encryption methods and the main challenges that drive the specialization of KEM in cryptographic software. Based upon our findings from a systematic literature review, we present a formal analysis that provides cryptographic users a means of better understanding of KEM and its roles in cryptographic migrations in IoT systems. We have identified the main milestones of KEM evolution and structured it into four development areas. We found that the evolution of KEM is defined by a variety of mathematical foundations that always reflect various aspects of the cryptosystem. Our findings indicate that academia, industry practitioners and standardization bodies propagate such approaches into practice by additional abstraction layers in cryptographic software libraries. However, the libraries is still not in consensus, which is confirmed after the discovery of a new class of libraries, cryptographic bindings. To structure the mentioned phenomena, we introduced a novel, three-facet, consumer-centered mapping of the data security domain. We believe our contribution can help researchers and practitioners to have a broader and deeper understanding of data encryption tooling in context of cryptographic migrations.

SoK: Evolution of the Key Encapsulation Mechanism’s Role in Cryptographic Migrations for IoT Systems / Alexandr, Silonosov; Casalicchio, Emiliano; Henesey, Lawrence. - In: IEEE ACCESS. - ISSN 2169-3536. - 14:(2026), pp. 10595-10614. [10.1109/ACCESS.2026.3654143]

SoK: Evolution of the Key Encapsulation Mechanism’s Role in Cryptographic Migrations for IoT Systems

Casalicchio Emiliano
Secondo
Supervision
;
2026

Abstract

Key Encapsulation Mechanisms (KEM) is a special case of Public Key Encryption (PKE) that was recently standardized by National Institute of Standards and Technology in USA. The broader adoption of the term in industry practice was necessitated by the discovery of the malleability property of ciphertext, which led to new approaches PKE. New standard initiated refactoring of all cryptographic software libraries and this process relates to the problems of cryptographic agility. This Systematization of Knowledge (SoK) addresses the developments of public key encryption methods and the main challenges that drive the specialization of KEM in cryptographic software. Based upon our findings from a systematic literature review, we present a formal analysis that provides cryptographic users a means of better understanding of KEM and its roles in cryptographic migrations in IoT systems. We have identified the main milestones of KEM evolution and structured it into four development areas. We found that the evolution of KEM is defined by a variety of mathematical foundations that always reflect various aspects of the cryptosystem. Our findings indicate that academia, industry practitioners and standardization bodies propagate such approaches into practice by additional abstraction layers in cryptographic software libraries. However, the libraries is still not in consensus, which is confirmed after the discovery of a new class of libraries, cryptographic bindings. To structure the mentioned phenomena, we introduced a novel, three-facet, consumer-centered mapping of the data security domain. We believe our contribution can help researchers and practitioners to have a broader and deeper understanding of data encryption tooling in context of cryptographic migrations.
2026
Encryption;Public key;Encapsulation;Software libraries;Security;Software;Codes;Safety;Resistance;Quantum computing;Key encapsulation mechanisms;KEM;cryptographic agility;software libraries;migrations;end-to-end encryption (E2EE);cryptographic transition;post-quantum cryptography (PQC);algorithms;standards
01 Pubblicazione su rivista::01a Articolo in rivista
SoK: Evolution of the Key Encapsulation Mechanism’s Role in Cryptographic Migrations for IoT Systems / Alexandr, Silonosov; Casalicchio, Emiliano; Henesey, Lawrence. - In: IEEE ACCESS. - ISSN 2169-3536. - 14:(2026), pp. 10595-10614. [10.1109/ACCESS.2026.3654143]
File allegati a questo prodotto
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11573/1768687
 Attenzione

Attenzione! I dati visualizzati non sono stati sottoposti a validazione da parte dell'ateneo

Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus ND
  • ???jsp.display-item.citation.isi??? ND
social impact