0age
@0age
imagine ECDSA is demonstrated to be broken by quantum computing tomorrow now everyone’s scrambling to move funds into a smart wallet with quantum-resistant signature verification ASAP what’s the best implementation of this currently out there? does one even exist?
14 replies
39 recasts
119 reactions
Dan Romero
@dwr.eth
curious if @vitalik.eth has thought about this
4 replies
29 recasts
61 reactions
Shriphani Palakodety
@shriphani
NIST recommends figuring out a migration strategy to PQC by 2035 https://csrc.nist.gov/pubs/ir/8547/ipd Signal has been using pqc in its protocol since last year
0 reply
0 recast
3 reactions
polymutex
@polymutex.eth
He has written about this in the past: tl;dr: Assuming that most EOAs are BIP-32-based, require a ZK proof of ownership of the BIP-32 seed phrase (which can't be derived by a quantum attacker) to authorize moving EOA funds. https://ethresear.ch/t/how-to-hard-fork-to-save-most-users-funds-in-a-quantum-emergency/18901
0 reply
0 recast
2 reactions
EulerLagrange.eth
@eulerlagrange.eth
Sha256 and similar hash functions are considered quantum safe. STARKs use hash functions heavily and so are also considered quantum safe. So in a pinch you could hard fork an upgrade where everyone switches to a new key, and a zk proof of knowledge is used for the new private key instead of normal signatures.
2 replies
0 recast
9 reactions
qwewqe
@ytruret
Have you considered reaching out to @vitalik.eth directly to ask him about it?
0 reply
0 recast
0 reaction