The first Type 1 bare-metal hypervisor with native post-quantum cryptography. Open source. Zero license fees. Enterprise support when you need it.
Open-source core with no per-socket, per-VM, or per-host licensing. Run on unlimited hardware.
Native ML-KEM and ML-DSA at every layer. Compliant with CNSA 2.0 timelines before the 2030 deadline.
Built on proven KVM technology. Live migration, snapshots, high availability clustering out of the box.
Tiered support packages with SLA-backed response times, dedicated engineers, and custom integrations.
After the Broadcom acquisition, VMware licensing costs have increased 2x to 12x for many organizations. QuantaVirt gives you enterprise-grade virtualization with post-quantum security, no per-socket fees, and no vendor lock-in.
Built on the Linux KVM hypervisor that already runs the majority of the world's cloud workloads, QuantaVirt adds what no other hypervisor offers: native post-quantum cryptographic protection at every layer.
Feature-for-feature, QuantaVirt delivers enterprise virtualization with security no competitor can match.
| Capability | QuantaVirt | VMware ESXi | Proxmox VE | Microsoft Hyper-V |
|---|---|---|---|---|
| License Cost | Free (open source) | $$$$ | Free (open source) | Included w/ Windows Server |
| Hypervisor Type | Type 1 (bare metal) | Type 1 | Type 1 | Type 1 |
| Post-Quantum Crypto | Native | None | None | None |
| VM Memory Encryption | ML-KEM + SEV/TDX | SEV/TDX only | SEV/TDX only | VBS only |
| Signed Boot Chain | ML-DSA-65 | RSA/ECDSA | Standard Secure Boot | Standard Secure Boot |
| Hardware Crypto Accel. | QUAC-100 + AVX2 | None | None | None |
| Live Migration | PQC-encrypted | Encrypted (classical) | Encrypted (classical) | Encrypted (classical) |
| REST API | Yes | Yes | Yes | PowerShell / WMI |
| GPU Passthrough | VFIO | DirectPath I/O | VFIO | DDA |
| CNSA 2.0 Compliant | Yes | No | No | No |
| Vendor Lock-in | None | High | None | Microsoft ecosystem |
"The quantum threat to encrypted data is not a future problem. Adversaries are harvesting encrypted data today for decryption once cryptographically relevant quantum computers exist. Organizations must begin transitioning to post-quantum cryptography now."
NSA, CNSA 2.0 Advisory, 2022
Every data path through QuantaVirt is protected with NIST-standardized post-quantum cryptographic algorithms. No bolt-on modules, no afterthought patches.
All guest memory pages encrypted with ML-KEM-768 derived keys. Per-VM key isolation with hardware-enforced boundaries via AMD SEV-SNP or Intel TDX.
Virtual disk encryption using ML-KEM key wrapping with AES-256-GCM data encryption. Transparent to guest operating systems.
ML-DSA-65 signed boot chain from firmware through hypervisor to guest kernel. Tamper detection at every stage.
PQC-encrypted live migration between hosts. VM state and memory pages protected in transit with ML-KEM key exchange.
Hardware-accelerated post-quantum TLS termination for guest network traffic. Transparent to applications.
100+ Mbps quantum random number generation distributed to all guest VMs via virtio-rng device emulation.
CNSA 2.0 mandates post-quantum cryptography for national security systems by 2030. Harvest-now-decrypt-later attacks make the timeline even more urgent.
CNSA 2.0 compliant virtualization for sensitive government and defense environments. Meets NSA quantum-resistant requirements ahead of mandate deadlines.
Protect financial data and transactions against harvest-now-decrypt-later attacks. Long-lived financial records require quantum-safe encryption today.
HIPAA-regulated patient records and pharmaceutical research data with 20+ year confidentiality requirements need post-quantum protection now.
SCADA and OT virtualization for power grids, water systems, and industrial control. Long asset lifetimes demand quantum-resistant security.
QuantaVirt is fully functional without a support contract. When your organization needs SLA-backed support, dedicated engineers, or custom integrations, we offer tiered packages.
Full-featured hypervisor with community support. Ideal for development, testing, and non-critical workloads.
For production deployments that need guaranteed response times and direct access to Dyber engineers.
For mission-critical environments requiring 24/7 coverage, dedicated support, and custom engineering.
QuantaVirt runs directly on bare metal, with no host OS between the hypervisor and hardware. Every layer is secured with post-quantum cryptography.
| Ring | Layer | Detail |
|---|---|---|
| Ring 3 | Guest Applications | Unmodified applications running inside VMs |
| Ring 0 | Guest Kernels | Linux, Windows, FreeBSD guest operating systems |
| Ring -1 | QuantaVirt Hypervisor | KVM-based VMM with PQC subsystem |
| Hardware | CPU + QUAC-100 | Intel VMX / AMD SVM + PCIe crypto acceleration |
| Component | Minimum | Recommended |
|---|---|---|
| CPU | Intel VT-x / AMD SVM | EPYC w/ SEV-SNP or Xeon w/ TDX |
| Memory | 4 GB | 64 GB+ ECC |
| Storage | 20 GB | NVMe SSD, 500 GB+ |
| Crypto | Software fallback | QUAC-100 PCIe accelerator |
| Network | 1 GbE | 10/25 GbE with SR-IOV |
No special hardware required. QuantaVirt operates in software-only mode without QUAC-100 hardware, using optimized AVX2/AVX-512 implementations of PQC algorithms. Hardware acceleration is recommended for production deployments exceeding 100 VMs.
Download QuantaVirt for free, explore the documentation, or talk to our team about enterprise support for your deployment.