How to Handle Quantum Threats in Crypto?

22 replies 316 views
Posts: 32 · Reputation: 237
#1Aug 6, 2020, 11:33 PM
So, Bitmex is throwing around this soft fork idea, right? Basically, if some genius builds a quantum computer that can steal Bitcoins, they wanna freeze stuff. They plan to create this canary fund made of coins vulnerable to quantum attacks... anyone talked about this yet?
4 Reply Quote Share
gang2015Member
Posts: 682 · Reputation: 62
#2Aug 6, 2020, 11:52 PM
Nope, not a peep. I even searched this forum, and nothing came up.
1 Reply Quote Share
alex.byteLegendary
Posts: 170 · Reputation: 5910
#3Aug 7, 2020, 04:02 AM
Sounds like a decent middle ground rather than just freezing everything at once. I mean, some folks might donate just to show quantum computers are a joke. But I think freezing everything right after the canary is claimed is kinda quick.
2 Reply Quote Share
stacksatsHero Member
Posts: 404 · Reputation: 2023
#4Aug 7, 2020, 07:48 AM
Yeah, I get what you mean, but these ideas can get super complicated. Here’s a related thread that dives in: [link]. Also, there's this canary example: [link]. My point is, OP_CHECKSIG could still be relevant if secp256k1 gets wrecked but SHA-256 stays strong. Simplifying rules like "shortest signature wins" might actually work.
3 Reply Quote Share
alex.byteLegendary
Posts: 170 · Reputation: 5910
#5Aug 8, 2020, 12:13 AM
Wait, you think there's a way to generate an address and public key without linking it to a private key? I'm a bit lost here... need some clarity.
2 Reply Quote Share
sigma2016Newbie
Posts: 64 · Reputation: 22
#6Aug 8, 2020, 01:06 AM
For sure! Bitcoin has its own scripting language. You can lock coins to public keys. Like, using OP_TRUE makes it spendable by anyone. This can help test the freezing idea.
1 Reply Quote Share
m00n51Hero Member
Posts: 85 · Reputation: 2161
#7Aug 9, 2020, 06:08 AM
But hold up, secp256k1 has loads of public keys nobody knows the private key for! Like, what even is the private key for 020000000000000000000000000000000000000000000000000000000000000001?
3 Reply Quote Share
Posts: 32 · Reputation: 237
#8Aug 9, 2020, 07:56 AM
Exactly, it’s a deterministic thing. No one knows the corresponding private key, not even the creators. But the canary idea feels flawed in fighting quantum threats. It’s like saying to burglars, ‘We’ve got security!’
3 Reply Quote Share
gang2015Member
Posts: 682 · Reputation: 62
#9Aug 9, 2020, 01:42 PM
You're thinking too much like a criminal. Companies want to avoid bad press and legal issues, so they might not go for vulnerable coins. Think of it like a public service.
1 Reply Quote Share
0xNodeMember
Posts: 671 · Reputation: 80
#10Aug 9, 2020, 03:42 PM
Probably makes more sense to compare it to bug bounty programs. Some companies are already doing similar things. Yeah, the canary donations might be low, but they could still promote their quantum tech.
5 Reply Quote Share
m00n51Hero Member
Posts: 85 · Reputation: 2161
#11Aug 11, 2020, 10:34 PM
But don’t forget, those funds can be traced back to users. I mean, there's a ton of blockchain analysis happening. If you’re not careful, you could expose your identity.
0 Reply Quote Share
seed777Full Member
Posts: 41 · Reputation: 357
#12Aug 11, 2020, 10:45 PM
If reputable firms have the first quantum computer, I doubt they’d go after vulnerable coins. The whole debate is about ensuring we have the right quantum-resistant protocol.
2 Reply Quote Share
sigma2016Newbie
Posts: 64 · Reputation: 22
#13Aug 11, 2020, 11:31 PM
You can only suggest a theory that might work, but it's flawed in reality. If an attacker with a quantum machine thinks differently, that can mess everything up!
2 Reply Quote Share
Posts: 131 · Reputation: 6
#14Aug 13, 2020, 01:50 PM
You’re right! It assumes attackers will take the low-risk route. What if they just go for a straight-up attack instead of playing nice with the detection system?
3 Reply Quote Share
m00n51Hero Member
Posts: 85 · Reputation: 2161
#15Aug 13, 2020, 01:55 PM
If you're worried about lattice attacks, you'd need weak signatures. But even without real signatures, they can just generate them on their own. If they have weak numbers, they can totally crack it.
3 Reply Quote Share
alex.byteLegendary
Posts: 170 · Reputation: 5910
#16Aug 13, 2020, 02:26 PM
What if Satoshi came back and donated coins to the canary fund? Would that push any quantum computer owners to act? Lol.
3 Reply Quote Share
stacksatsHero Member
Posts: 404 · Reputation: 2023
#17Aug 13, 2020, 03:46 PM
Seriously though, does freezing those vulnerable wallets mean they become useless? Like, are those coins burnt?
3 Reply Quote Share
seed777Full Member
Posts: 41 · Reputation: 357
#18Aug 13, 2020, 07:55 PM
Bitcoin wasn’t meant to rely on the reputation of companies. It’s about securing the network, not just the funds.
1 Reply Quote Share
Posts: 131 · Reputation: 6
#19Aug 13, 2020, 08:30 PM
Depends... what’s needed to move those old coins? If we say, ‘Freeze without recovery,’ then yeah, they’re kinda burnt.
5 Reply Quote Share
alex.byteLegendary
Posts: 170 · Reputation: 5910
#20Aug 13, 2020, 11:20 PM
If the new rule says you need both ECDSA and quantum signatures, how's anyone keeping old coins gonna comply? I'm curious about the ethics of burning coins due to protocol changes.
4 Reply Quote Share

Related topics

How to Handle Quantum Threats in Crypto? | Cryptotalks