The Quantum Computing Threat Approaches, Cryptocurrency May Be Exposed to Risks Before Banks

marsbitPublished on 2026-07-28Last updated on 2026-07-28

Abstract

Quantum computing poses a significant threat to all cryptographic systems, including banks and governments, but decentralized cryptocurrencies with public ledgers like Bitcoin are likely the first practical target. Experts warn that a cryptographically relevant quantum computer (CRQC), capable of running Shor's algorithm to break the elliptic curve cryptography securing most crypto wallets, could emerge around 2029. Recent research shows the required quantum resources for such attacks are shrinking dramatically, potentially enabling key extraction in minutes. The core vulnerability for cryptocurrencies is not the cryptography itself—post-quantum standards are being developed—but the slow, decentralized governance required to implement upgrades. Unlike centralized banks that can swiftly transition, Bitcoin needs near-unanimous consensus among its global network, a historically difficult process as seen in past upgrades. Estimates suggest migrating all vulnerable Bitcoin funds could take at least 76 days of dedicated network time, and it must be completed before a CRQC exists to prevent "now-or-never" attacks on exposed keys. The threat is not binary; it begins when a quantum computer can decrypt data before it loses value, not necessarily in real-time. A significant portion of Bitcoin (estimated at millions of coins) already has public keys permanently exposed on-chain, making them vulnerable to eventual "static attacks." While technical solutions exist, the race is against ...

Author: Omkar Godbol

Compilation: AididiaoJP, Foresight News

Quantum computing poses a potential risk to all global systems relying on encryption technology, from major banks to government networks, without exception. However, due to its inherently decentralized nature and public ledger design, cryptocurrency is likely to be the first technology truly "tested."

"Cryptocurrency is the canary in the coal mine," said Eddy Zervigon, CEO of Quantum Xchange, in an interview with CoinDesk. The company focuses on building cybersecurity infrastructure resilient to quantum attacks, covering finance and other fields. He explicitly stated that the most likely place for issues to appear first is cryptocurrency networks.

"Because it's decentralized, it will be the first place to be attacked," Zervigon said. "Once you see that happening there, it means a quantum computer with cryptography-related capabilities has emerged somewhere."

What is referred to as a "quantum computer with cryptography-related capabilities" is a machine capable of effectively running Shor's algorithm, cracking the elliptic curve cryptography (ECDSA over secp256k1) that Bitcoin and other cryptocurrencies rely on. This algorithm can efficiently solve the elliptic curve discrete logarithm problem, thereby deriving the private key from the public key and gaining control over assets in the corresponding wallet. Currently, such a machine does not exist. However, industry estimates for its emergence are being compressed, not pushed back.

"Companies like Microsoft, IBM, and others investing tens of billions in developing quantum computers generally believe that commercially relevant, cryptography-related quantum computers will appear around 2029," Zervigon said. "This isn't something I made up; it's based on public statements from people like IBM's Arvind Krishna."

This timeline aligns closely with recent hardware and algorithmic progress. Earlier this year, research from Google's Quantum AI team showed that the number of physical qubits required to crack the elliptic curve cryptography protecting major cryptocurrencies like Bitcoin and Ethereum has dropped to less than 500,000, a reduction of about 20 times from previous common estimates in the millions. The research also noted that, with certain parameters fixed in a precomputation phase, an attack targeting exposed public keys could potentially be completed in as little as about 9 minutes. Considering Bitcoin's average block time is about 10 minutes, this means an attacker has a certain probability of forging a signature and transferring funds before a transaction is confirmed, after it enters the mempool. These findings have prompted observers, including those at Google, to move forward their estimates for so-called "Q-Day" (the point when cryptography-relevant quantum computers become practically available) to around 2029.

Simultaneously, the White House is striving to develop a powerful quantum computer before 2028 and plans to migrate high-value assets and federal data to post-quantum cryptography standards by 2030. "This sets the timetable and creates a sense of urgency," Zervigon said.

Consensus Speed Is the Real Risk Factor

Zervigon is not alone in pointing out that cryptocurrency's core weakness lies in its slow governance processes, not the cryptography itself.

Deutsche Digital Assets explicitly framed this issue as a speed difference between traditional finance and decentralized rails.

The institution wrote in a July 23rd analysis: "The real difference—and the honest answer to the 'Bitcoin is particularly vulnerable' narrative—lies in governance speed."

It explained that an investment bank like JPMorgan Chase doesn't need permission from millions of anonymous global participants before upgrading its cryptographic infrastructure. "It just needs a board resolution, a budget, and a vendor. Large financial institutions can and will migrate to post-quantum standards faster, quieter, and more predictably than decentralized public blockchains. This is not anti-Bitcoin; it's a call to take its governance processes seriously."

Academic research further supports this assessment. A 2024 paper published on arXiv, titled "Downtime Required for Making Bitcoin Quantum-Safe," points to Bitcoin's own upgrade history as a cautionary precedent.

The researchers wrote: "Before any upgrade process can begin, 90% consensus must be reached among Bitcoin miners on the specific details of the upgrade. Historically, major changes to the Bitcoin network have met with high resistance. A prominent example is the SegWit upgrade in 2017."

That upgrade caused severe division within the community, ultimately leading to the Bitcoin blockchain splitting via a hard fork into multiple versions, giving rise to networks like Bitcoin Cash and Bitcoin Gold. The paper also estimated that, even under ideal conditions (full network bandwidth dedicated to the upgrade, zero overhead), the cumulative minimum processing time required to migrate all currently quantum-vulnerable unspent transaction outputs (UTXOs) to post-quantum secure addresses is about 76 days. If spread over a longer period, it would significantly slow normal transaction speeds. More critically, due to the risk of "immediate attack"—where an attacker could potentially complete a crack before block confirmation once a user initiates a transaction and exposes a public key—the entire migration must be completed *before* a cryptography-relevant quantum computer emerges, otherwise existing assets could still be exposed.

Therefore, the post-quantum cryptographic algorithms themselves (such as NIST-standardized ML-DSA, etc.) may be ready in time. The real uncertainty is whether Bitcoin's governance layer can reach sufficiently high consensus within a sufficiently short timeframe and complete network-wide deployment.

'Q-Day' Is Not a Point in Time, But a Trend

The market often models the quantum threat as a binary event: encryption algorithms work perfectly until a specific date, after which they suddenly fail completely. Zervigon believes this framework is flawed, as it underestimates how early the risk actually begins to materialize.

"Everyone talks about the moment you can crack the algorithm," he said. "You don't actually need to crack it in an instant to achieve the effect. If I take three months or six months to decrypt data that still has value, I've already achieved the same goal."

This compresses the typical timeline calculations. A quantum computer doesn't need sufficient throughput to crack a signature in real-time to pose a threat; it only needs enough throughput to complete the crack before the underlying data or funds lose their value to the attacker. In reality, a significant portion of Bitcoin (estimated by research to be around one-third, corresponding to millions of coins) already has its public keys permanently exposed on-chain. These assets could face a "static attack" once a capable quantum computer is available—attackers could compute slowly, without racing against block times.

For the entire crypto industry, this is both a warning and a stress test. Traditional financial institutions can migrate quickly via centralized decisions, while the decentralized advantage of public blockchains like Bitcoin may become an implementation obstacle when facing an external technological threat requiring high coordination. The industry consensus is that technical solutions already exist; the true test is whether governance can keep pace with the closing time window.

Cryptocurrency may become the earliest area to sound the alarm in the quantum era. Once the canary falls, broader financial infrastructure will also have to confront the same challenge.

Related Questions

QAccording to the article, why might cryptocurrencies be the first systems to be tested by quantum computing threats?

ADue to their decentralized nature and public ledger design, cryptocurrencies likely lack the centralized governance and rapid upgrade capabilities of traditional financial systems, making them an earlier and easier target for practical testing by quantum attacks.

QWhat is a 'cryptographically relevant quantum computer' as defined in the article, and what is its estimated arrival timeline?

AA cryptographically relevant quantum computer is one capable of effectively running Shor's algorithm to break elliptic curve cryptography (like ECDSA used by Bitcoin). Based on industry statements from companies like IBM and Microsoft, the estimated arrival time for such a machine is around 2029.

QWhat does the article identify as the core vulnerability of Bitcoin in the face of quantum threats, beyond the cryptography itself?

AThe article identifies slow governance and consensus processes as Bitcoin's core vulnerability. Achieving the high level of consensus required for a major network upgrade (like migrating to post-quantum cryptography) is historically difficult and time-consuming, unlike centralized institutions like banks that can act swiftly.

QWhat is the 'instantaneous attack' risk mentioned in the article regarding quantum threats to cryptocurrencies?

AThe 'instantaneous attack' risk refers to a scenario where, once a user broadcasts a transaction exposing their public key, an attacker with a cryptographically relevant quantum computer could potentially crack the private key and forge a new transaction to steal the funds before the original transaction is confirmed in a block.

QHow does the article suggest we should view the 'Q-Day' (the day quantum computers break current cryptography)?

AThe article argues that viewing 'Q-Day' as a single, precise moment when cryptography suddenly fails is a flawed framework. The threat materializes earlier—if a quantum computer can decrypt valuable data or steal funds within a timeframe where they still hold value (e.g., months for static funds), it achieves the same harmful effect, effectively compressing the perceived safe timeline.

Related Reads

The Heart of the 'Artificial Sun': China Builds Largest Magnet for Fusion Reactor

On June 27, 2026, China's Institute of Plasma Physics announced the successful development and comprehensive testing of two key superconducting magnets for its "artificial sun" fusion reactor project. These magnets are crucial for containing plasma exceeding 100 million degrees Celsius within a vacuum chamber using powerful magnetic fields. The first is a D-shaped toroidal field magnet, claimed to be the world's largest for a fusion reactor. Measuring 21m long and weighing 582 tons, it has 1.3 times the volume and triple the stored energy of its counterpart in the international ITER project. Key parameters include a 98 kA operating current and 120 GJ of stored energy. Sixteen such magnets will eventually form a ring generating a central field of 6.5 Tesla to confine the plasma. Concurrently tested was a high-temperature superconducting central solenoid. It stably carries 60 kA of current and plays a critical role in inducing and sustaining the plasma current, essentially "igniting" the fusion reaction. All key technologies and materials are domestically developed, with 47 patents filed. The magnets are destined for the BEST (Burning Plasma Experimental Superconducting Tokamak) device, with assembly planned by 2027 and a demonstration of power generation targeted for around 2030. Fusion is pursued as a potential source of vast, clean energy without long-lived radioactive waste. While this marks a significant technical achievement, the article's concluding AI perspective notes the ongoing race between China's state-funded, large-scale approach and private ventures in other countries betting on compact, high-field magnets, highlighting funding sustainability as a key long-term factor.

cryptonews.ru21m ago

The Heart of the 'Artificial Sun': China Builds Largest Magnet for Fusion Reactor

cryptonews.ru21m ago

Trading

Spot
活动图片