Quantum Impact on Bitcoin Security

11 replies 95 views
tonyprotoMember
Posts: 2 · Reputation: 58
#1Sep 24, 2021, 10:14 PM
Lately, there's been a lot of buzz about quantum computing possibly threatening Bitcoin's security. A bunch of folks here believe that when it happens, we’ll see an upgrade to a quantum-resistant algorithm that’ll make things safer.
3 Reply Quote Share
dave.forkMember
Posts: 143 · Reputation: 185
#2Sep 25, 2021, 03:43 AM
Totally agree, all holders will definitely need to create new keys that are quantum-safe and move their crypto over. If Satoshi doesn’t upgrade them, those coins could be in serious danger.
4 Reply Quote Share
yield2016Full Member
Posts: 16 · Reputation: 538
#3Sep 25, 2021, 07:23 AM
Yeah. But what does 'lost' even mean here? Some coins can be reclaimed if they end up at public keys whose private keys are thought to be 'lost'. If an address never spends, those coins stay in limbo.
0 Reply Quote Share
dave.forkMember
Posts: 143 · Reputation: 185
#4Sep 25, 2021, 07:48 AM
You're right. But I think when we talk about a quantum transition, we need to focus on the encryption. SHA-256 just won’t cut it anymore. We might need to switch to something like CRYSTALS-Dilithium or FALCON... those are the front-runners for quantum resistance.
1 Reply Quote Share
gang2015Member
Posts: 215 · Reputation: 62
#5Sep 27, 2021, 04:43 AM
Um, just to clarify, Bitcoin doesn’t actually use encryption like you're saying. What you’re talking about is cryptography or ECDSA. Stressed about quantum figuring out hash collisions? Not needed. ECDLP is where the real worry lies.
3 Reply Quote Share
Posts: 47 · Reputation: 24
#6Sep 27, 2021, 09:51 AM
By the way, what kind of address does Satoshi even have? P2PK or P2PKH? I mean, P2PKH has been around since Bitcoin 0.1.0.
3 Reply Quote Share
0xLaserFull Member
Posts: 107 · Reputation: 641
#7Sep 27, 2021, 11:14 AM
Quick answer. We essentially need to upgrade old addresses (the ones that start with 1 or 3) to Bech32 or Bech32m. That's where we'll see more security.
1 Reply Quote Share
cobra51Newbie
Posts: 30 · Reputation: 31
#8Sep 28, 2021, 01:30 PM
It really depends on the algorithm we choose, right? Normally, these newer algorithms come with bigger signature sizes or longer verification times. Can’t have it all.
4 Reply Quote Share
CalmStakeFull Member
Posts: 1 · Reputation: 380
#9Sep 28, 2021, 07:34 PM
Honestly, SHA256 is the least of our worries with quantum coming. The ASIC miners for SHA256 are probably gonna be faster even after quantum tech advances.
3 Reply Quote Share
tonyprotoMember
Posts: 2 · Reputation: 58
#10Sep 29, 2021, 05:13 AM
Definitely. But remember, you’re mixing things up. The algorithms you mentioned are for signatures, while SHA256 is just a hash function. They do totally different things.
1 Reply Quote Share
alex21Full Member
Posts: 54 · Reputation: 522
#11Sep 29, 2021, 12:31 PM
I think there’s some cool discussions existing here. But what’s the real difference between quantum-proof and quantum-resistant? Can anything really be quantum-proof?
3 Reply Quote Share
Posts: 1111 · Reputation: 35
#12Sep 29, 2021, 06:27 PM
You might wanna check out 2025 plans. AWS, Microsoft, Google, and others are looking to offer pay-per-use access for quantum computing. It’s not just in the West though; China's doing research too, but good luck accessing that.
3 Reply Quote Share

Related topics