Video yükleniyor...

Video Yüklenemedi

Ana Sayfaya Dön

Breaking secp256k1: Quantum Attacks on Bitcoin Signatures | Fred King at BTC Prague

10,915 görüntüleme • 17 gün önce •via X (Twitter)

2 Yorum

NaoX | Post-Quantum Chain profil fotoğrafı
NaoX | Post-Quantum Chain17 gün önce

Worth flagging in that talk if it isn't already, the exposure isn't every Bitcoin address equally. Any address that's revealed its public key on chain, reused addresses, old P2PK outputs, is exposed to Shor's algorithm the moment a capable enough machine exists. Fresh P2PKH addresses hide the key until spend. That distinction changes what a realistic migration path needs to cover

Antonio Gomes profil fotoğrafı
Antonio Gomes17 gün önce

Would love to see the recording when it's up. The part that never gets enough airtime in these talks is which addresses are exposed today. Any P2PK output or reused P2PKH address has its public key sitting on chain, and that includes a big chunk of the 2009 to 2011 coins. That's an attack surface that exists right now and just needs the hardware to catch up. Curious if King puts a number on how much of the supply falls into that bucket

Benzer Videolar

Can a sufficiently powerful quantum computer forge the signatures used to authorize Bitcoin and Ethereum transactions? What would it take to upgrade both networks before that happens? In this new lecture, Stanford cryptographer Dan Boneh explores why blockchains may turn to signatures built from hash functions. He also presents new research on threshold signing. The talk ends with the questions Bitcoin still has to answer, including whether post-quantum signatures will require larger blocks, what happens to abandoned coins, and how someone such as Satoshi could prove ownership after Bitcoin’s current signatures have been retired. 00:00 Why blockchains need to prepare for quantum computers 03:05 Why Bitcoin may bet on hash-based signatures 06:25 The “big footgun” in stateful signatures 08:58 A quantum-safe signature that takes one billion hashes 14:13 Inside SLH-DSA’s virtual tree 20:30 How Bitcoin and Ethereum could make the switch 23:48 What happens when a wallet loses its state? 32:47 Can threshold signing survive the quantum transition? 36:39 How to hide lattice cryptography from the blockchain 38:49 Why threshold one-time signatures seem impossible 45:36 How context prevents forged signatures 49:37 The forgotten idea behind Winternitz signatures 54:50 Turning one-time signatures into threshold signatures 1:04:27 Will quantum-safe signatures require bigger Bitcoin blocks? 1:06:26 Abandoned bitcoin and Satoshi’s recovery problem

a16z crypto

119,209 görüntüleme • 23 gün önce