Quantum Resistance in Blockchain — Which Chains Survive Q-DayΚβαντική Αντοχή στο Blockchain — Ποιες Αλυσίδες Επιβιώνουν
A Google-led study (March 2026) estimates that 1,200 to 1,450 logical qubits (error-corrected quantum bits) could break the math that protects Bitcoin wallets, in about 9 minutes per wallet key with the faster of its two designs. No such machine exists yet. An estimated 4.5M+ BTC sits in exposed wallets. Here is which chains are getting ready.Μελέτη με επικεφαλής την Google (Μάρτιος 2026) εκτιμά ότι 1.200 έως 1.450 λογικά qubits (κβαντικά bits με διόρθωση λαθών) θα μπορούσαν να σπάσουν τα μαθηματικά που προστατεύουν τα wallets του Bitcoin, σε περίπου 9 λεπτά ανά κλειδί wallet με τον ταχύτερο από τους δύο σχεδιασμούς της. Τέτοια μηχανή δεν υπάρχει ακόμα. Εκτιμάται ότι πάνω από 4,5M BTC βρίσκονται σε εκτεθειμένα wallets. Δες ποιες αλυσίδες ετοιμάζονται.
Our view, 21 April 2026. Any picks, ratings or price scenarios on this page are ours, unless credited to someone else. For study only, not advice. Facts and prices may have changed since.Η άποψή μας, 21 Απριλίου 2026. Όποιες επιλογές, αξιολογήσεις ή σενάρια τιμών υπάρχουν σε αυτή τη σελίδα είναι δικά μας, εκτός αν αναφέρεται άλλη πηγή. Μόνο για μελέτη, όχι συμβουλή. Στοιχεία και τιμές μπορεί να έχουν αλλάξει από τότε.
Update, 8 October 2026. Two corrections. First, this page tied the exposed bitcoin to “old wallets”. An address (like an account number) is exposed when its public key, which lets anyone check that a payment really came from the owner, is visible on the blockchain. Most exposed bitcoin sits on addresses, old or new, that coins were already sent from: sending shows the key. In February 2026 the tracker Project Eleven counted 6.91M exposed bitcoin: about 5.0M (72%, our arithmetic) on such addresses, about 1.7M in an early address type and about 0.2M in the newer Taproot type, both of which show the key from the start. Second, the 20.5M ETH (Ether, Ethereum’s coin) further down, Google Quantum AI’s estimate of March 2026, covers only the 1,000 largest wallets, not every wallet that has sent a transaction. Newer counts: our Bunker Mode article (8 October 2026).Ενημέρωση, 8 Οκτωβρίου 2026. Δύο διορθώσεις. Πρώτον, αυτή η σελίδα συνέδεε τα εκτεθειμένα bitcoin με τα «παλιά wallets». Μια διεύθυνση (κάτι σαν αριθμός λογαριασμού) είναι εκτεθειμένη όταν το δημόσιο κλειδί της, με το οποίο ο καθένας ελέγχει ότι μια πληρωμή προέρχεται πράγματι από τον κάτοχο, φαίνεται στο blockchain. Τα περισσότερα εκτεθειμένα bitcoin βρίσκονται σε διευθύνσεις, παλιές ή νέες, από τις οποίες έχουν ήδη σταλεί coins: η αποστολή δείχνει το κλειδί. Τον Φεβρουάριο του 2026 το Project Eleven, που καταγράφει τα εκτεθειμένα bitcoin, μέτρησε 6,91M: περίπου 5,0M (72%, δικός μας υπολογισμός) σε τέτοιες διευθύνσεις, περίπου 1,7M σε έναν πρώιμο τύπο διεύθυνσης και περίπου 0,2M στον νεότερο τύπο Taproot, που δείχνουν και οι δύο το κλειδί από την αρχή. Δεύτερον, τα 20,5M ETH (Ether, το νόμισμα του Ethereum) πιο κάτω, εκτίμηση του Google Quantum AI από τον Μάρτιο του 2026, αφορούν μόνο τα 1.000 μεγαλύτερα wallets, όχι κάθε wallet που έχει στείλει συναλλαγή. Νεότερες μετρήσεις: το άρθρο μας Bunker Mode (8 Οκτωβρίου 2026).
April 21, 2026Panoptic Protocol5 min read5 λεπτά ανάγνωση
Logical qubits to crack Bitcoin (Google est., 2026)Λογικά qubits για να σπάσει το Bitcoin (εκτίμηση Google, 2026)
9 min
Estimated time to crack one keyΕκτιμώμενος χρόνος για ένα κλειδί
4.5M+
BTC in exposed wallets (estimate)BTC σε εκτεθειμένα wallets (εκτίμηση)
2029
Ethereum's quantum-safe targetΟ στόχος του Ethereum για κβαντική ασφάλεια
01 · The 9-Minute AttackΗ Επίθεση των 9 Λεπτών
Quick background: a quantum computer is a new type of machine that can solve certain math problems far faster than any normal computer. Its building blocks are called qubits. A "logical" qubit is an error-corrected one, built from many physical qubits. A crypto wallet has a secret key, which signs payments, and a public key, which anyone can use to check those signatures.Γρήγορο background: ο κβαντικός υπολογιστής είναι ένας νέος τύπος μηχανής που λύνει κάποια μαθηματικά προβλήματα πολύ πιο γρήγορα από κάθε κανονικό υπολογιστή. Τα δομικά του στοιχεία λέγονται qubits. Ένα "λογικό" qubit είναι ένα qubit με διόρθωση λαθών, φτιαγμένο από πολλά φυσικά qubits. Ένα crypto wallet έχει ένα μυστικό κλειδί, που υπογράφει τις πληρωμές, και ένα δημόσιο κλειδί, με το οποίο ο καθένας μπορεί να ελέγξει αυτές τις υπογραφές.
On March 30, 2026, researchers from Google, the Ethereum Foundation, and Stanford published a paper. They estimate that Bitcoin's signatures could be broken with about 20× fewer physical qubits than the previous best estimate.Στις 30 Μαρτίου 2026, ερευνητές από Google, Ethereum Foundation και Stanford δημοσίευσαν μελέτη. Εκτιμούν ότι οι υπογραφές του Bitcoin μπορούν να σπάσουν με περίπου 20× λιγότερα φυσικά qubits από την προηγούμενη καλύτερη εκτίμηση.
Previous best (2023)Προηγούμενη καλύτερη (2023)
~9M qubits~9M qubits
New estimate (2026)Νέα εκτίμηση (2026)
<500K qubits<500K qubits
ATTACK TIMEΧΡΟΝΟΣ ΕΠΙΘΕΣΗΣ
~9 minutes
estimated, on such a machine, to work out one secret key from its public key (part of the work done in advance). Sending coins reveals their public key, and a payment waits about 10 minutes for its block (the next batch of payments added to the chain), so even coins being sent could be at risk.εκτίμηση, σε μια τέτοια μηχανή, για να βρεθεί ένα μυστικό κλειδί από το δημόσιο (με μέρος της δουλειάς έτοιμο από πριν). Όταν στέλνεις coins, το δημόσιο κλειδί τους φαίνεται, και η πληρωμή περιμένει περίπου 10 λεπτά για το block της (την επόμενη δέσμη πληρωμών που μπαίνει στην αλυσίδα), άρα θα μπορούσαν να κινδυνεύσουν ακόμα και coins τη στιγμή που στέλνονται.
The machine doesn't exist yet. The estimates keep shrinking, and in our view most blockchains are not upgrading fast enough.Η μηχανή δεν υπάρχει ακόμα. Οι εκτιμήσεις όμως μικραίνουν, και κατά την άποψή μας τα περισσότερα blockchains δεν αναβαθμίζονται αρκετά γρήγορα.
02 · Two Algorithms, Two AttacksΔύο Αλγόριθμοι, Δύο Επιθέσεις
1
SHOR's ALGORITHM — The Wallet ThiefΑλγόριθμος SHOR — Ο Κλέφτης
The quantum attack that breaks crypto signatures. It takes your public key and works backwards to your secret key. This is the scary one.Η κβαντική επίθεση που σπάει τις crypto υπογραφές. Παίρνει το δημόσιο κλειδί σου και φτάνει στο μυστικό. Αυτή είναι η επικίνδυνη.
2
GROVER's ALGORITHM — The Miner's AnnoyanceΑλγόριθμος GROVER — Ενοχλητικός
A milder attack, on hashing: the scrambling used in mining and in addresses. It speeds up guessing, but only enough to turn a 256-bit lock into a 128-bit one, still far out of reach. Bitcoin mining stays safe: a quantum computer would be far slower than today's mining machines.Πιο ήπια επίθεση, στο hashing: το «ανακάτεμα» που χρησιμοποιούν το mining και οι διευθύνσεις. Επιταχύνει το μάντεμα, αλλά μόνο τόσο ώστε μια κλειδαριά 256 bit να γίνει κλειδαριά 128 bit, που μένει και πάλι εκτός εμβέλειας. Το mining του Bitcoin μένει ασφαλές: ένας κβαντικός υπολογιστής θα ήταν πολύ πιο αργός από τα σημερινά μηχανήματα mining.
⚠️ In plain English: Shor could steal your coins. Grover is a smaller problem. Protecting your wallet signature is the urgent part.⚠️ Με απλά λόγια: ο Shor μπορεί να κλέψει τα coins σου. Ο Grover είναι μικρότερο πρόβλημα. Το επείγον είναι η προστασία των υπογραφών.
03 · Harvest Now, Decrypt LaterΜαζεύω Τώρα, Αποκρυπτογραφώ Μετά
A blockchain is public and permanent: every public key a wallet has ever revealed stays on record. Anyone can keep a copy today and try to crack it once a large quantum computer exists. The nickname: "Harvest Now, Decrypt Later." The coins at risk are the ones still sitting behind a revealed key.Ένα blockchain είναι δημόσιο και μόνιμο: κάθε δημόσιο κλειδί που αποκάλυψε ποτέ ένα wallet μένει καταγεγραμμένο. Οποιοσδήποτε μπορεί να κρατήσει αντίγραφο σήμερα και να προσπαθήσει να το σπάσει όταν υπάρξει μεγάλος κβαντικός υπολογιστής. Το λένε "Harvest Now, Decrypt Later." Κινδυνεύουν τα coins που βρίσκονται ακόμα πίσω από κλειδί που έχει αποκαλυφθεί.
🪙
Bitcoin with a visible public keyBitcoin με ορατό δημόσιο κλειδί
The first coins Bitcoin created went to an early address type that shows the public key as soon as coins arrive. Of these, about 1M bitcoin are thought to belong to Satoshi, Bitcoin’s unknown creator. Most other addresses show the key once coins are sent from them. Either way, the key then stays on the blockchain for good, and a large enough quantum computer could use it to take the coins.Τα πρώτα coins που δημιούργησε το Bitcoin πήγαν σε έναν πρώιμο τύπο διεύθυνσης, που δείχνει το δημόσιο κλειδί μόλις φτάσουν coins. Από αυτά, περίπου 1M bitcoin αποδίδονται στον Satoshi, τον άγνωστο δημιουργό του Bitcoin. Οι περισσότερες άλλες διευθύνσεις δείχνουν το κλειδί μόλις σταλούν coins από αυτές. Και στις δύο περιπτώσεις, από εκεί και πέρα το κλειδί μένει για πάντα στο blockchain, και ένας αρκετά μεγάλος κβαντικός υπολογιστής θα μπορούσε να το χρησιμοποιήσει για να πάρει τα coins.
4.5M+ BTC
💼
Exposed ETH in the 1,000 largest walletsΕκτεθειμένο ETH στα 1.000 μεγαλύτερα wallets
Regular wallets like MetaMask leak their public key the moment they send a transaction. Once leaked, it can never be made private again.Wallets όπως MetaMask αφήνουν το δημόσιο κλειδί μόλις στείλουν μία συναλλαγή. Μόλις διαρρεύσει, δεν γίνεται πια ιδιωτικό.
20.5M ETH
🔐
Validator keys (the stakers)Κλειδιά Validator (stakers)
Ethereum stakers sign blocks with keys (BLS) whose public part sits on-chain for anyone to read. Anyone can collect them today for cracking later.Οι stakers του Ethereum υπογράφουν blocks με κλειδιά (BLS) που το δημόσιο μέρος τους βρίσκεται στο blockchain, ορατό σε όλους. Οποιοσδήποτε μπορεί να τα μαζέψει σήμερα για να τα σπάσει αργότερα.
1M
Retail tip:Για τον απλό χρήστη:On Bitcoin and Ethereum, if your address has never sent a transaction, its public key is usually still hidden, which is much safer: the address is only a scrambled (hashed) form of the key. Exceptions: Bitcoin Taproot addresses (bc1p…) and the early address type above show the key from the start. On Solana and Algorand, the address is the public key itself.Στο Bitcoin και στο Ethereum, αν η διεύθυνσή σου δεν έχει ποτέ στείλει συναλλαγή, το δημόσιο κλειδί της συνήθως είναι ακόμα κρυφό, κάτι πολύ πιο ασφαλές: η διεύθυνση είναι μόνο μια «ανακατεμένη» (hashed) μορφή του κλειδιού. Εξαιρέσεις: οι διευθύνσεις Taproot του Bitcoin (bc1p…) και ο πρώιμος τύπος διεύθυνσης πιο πάνω δείχνουν το κλειδί από την αρχή. Στο Solana και στο Algorand, η διεύθυνση είναι το ίδιο το δημόσιο κλειδί.
04 · The 4 Attack SurfacesΟι 4 Επιφάνειες Επίθεσης
✍️
Your wallet signatureΗ υπογραφή του wallet σου
The math Bitcoin + Ethereum use (ECDSA) can be broken by a large enough quantum computer. Your secret key could be worked out.Τα μαθηματικά που χρησιμοποιούν Bitcoin + Ethereum (ECDSA) μπορεί να τα σπάσει ένας αρκετά μεγάλος κβαντικός υπολογιστής. Το μυστικό κλειδί σου θα μπορούσε να βρεθεί.
🔴 CRITICAL
🏛️
How the network agreesΠώς συμφωνεί το δίκτυο
Ethereum stakers sign blocks with BLS math. If quantum breaks it → an attacker could forge fake "yes" votes → and control the chain.Οι stakers του Ethereum υπογράφουν blocks με BLS. Αν το σπάσει το quantum → ψεύτικες "ναι" ψήφοι → έλεγχος της αλυσίδας.
🔴 CRITICAL
📦
How L2s prove data is realΠώς τα L2 αποδεικνύουν δεδομένα
Arbitrum, Optimism & co. use KZG math to prove their data. A quantum attacker could fake these proofs.Τα Arbitrum, Optimism και άλλα χρησιμοποιούν KZG. Ένας κβαντικός επιτιθέμενος θα μπορούσε να φτιάξει ψεύτικες αποδείξεις.
🟡 HIGH
🔮
Zero-knowledge proofsZero-knowledge αποδείξεις
zkSync, Scroll use SNARK math to prove transactions. Fake proofs could let an attacker drain the bridges.Τα zkSync και Scroll χρησιμοποιούν SNARK. Ψεύτικες αποδείξεις θα μπορούσαν να αδειάσουν τις γέφυρες.
🟡 HIGH
05 · Q-Day TimelineΧρονοδιάγραμμα Q-Day
2026
Google tests quantum-safeGoogle δοκιμάζει quantum-safe
Ethereum now plans its switch for 2029. Experts surveyed by the Global Risk Institute, as quoted by Citi, put the odds of a quantum computer able to break today's keys at 19–34% by 2034 and 60–82% by 2044. Chains that don't upgrade in time risk losing user funds.Το Ethereum σχεδιάζει πλέον τη μετάβασή του για το 2029. Ειδικοί που ρώτησε το Global Risk Institute, όπως τους παραθέτει η Citi, δίνουν πιθανότητα 19–34% ως το 2034 και 60–82% ως το 2044 να υπάρξει κβαντικός υπολογιστής που σπάει τα σημερινά κλειδιά. Όποια αλυσίδα δεν αναβαθμιστεί εγκαίρως ρισκάρει τα coins των χρηστών της.
06 · The 7-Indicator FrameworkΤο Πλαίσιο 7 Δεικτών
How to spot real readiness vs empty marketing. Every blockchain claims "we have a plan." These 7 signs show who's actually done the work.Πώς ξεχωρίζεις την πραγματική ετοιμότητα από το marketing. Όλοι λένε "έχουμε σχέδιο." Αυτά τα 7 σημάδια δείχνουν ποιος δούλεψε.
1 · Signature typeΤύπος Υπογραφής
Quantum-safeQuantum-safe
Do new txs use quantum-proof signatures?Χρησιμοποιούν οι νέες συναλλαγές quantum-proof υπογραφές;
2 · HashingHashing
Strong enoughΑρκετά δυνατό
Hash function strong enough for quantum?Hash αρκετά δυνατό για quantum;
3 · Validator sigsΥπογραφές Validator
Hash-basedHash-based
Validators use quantum-safe signatures?Validators με quantum-safe;
4 · Data proofsΑποδείξεις Δεδομένων
Hash-basedHash-based
L2 data proofs quantum-safe?Αποδείξεις L2 quantum-safe;
5 · Rollup proofsΑποδείξεις Rollup
STARKsSTARKs
Using quantum-safe STARKs (not SNARKs)?STARKs (όχι SNARKs);
6 · Upgrade pathΔιαδρομή Αναβάθμισης
Smart walletsSmart wallets
Can chain upgrade wallets smoothly?Γίνεται ομαλή αναβάθμιση;
7 · Team + fundingΟμάδα + Χρηματοδότηση
Active workΕνεργή δουλειά
Funded research + test networks running?Χρηματοδότηση + test networks;
⭐ The #1 QuestionΤο #1 Ερώτημα
Live now?Ζωντανό τώρα;
Is quantum-proof actually running — or just a blog post?Τρέχει στα αλήθεια — ή μόνο blog post;
07 · NIST Standards — The Size ProblemΠρότυπα NIST — Το Πρόβλημα Μεγέθους
NIST (the US standards agency) approved its first quantum-proof standards on Aug 13, 2024: two signature types (ML-DSA and SPHINCS+, now SLH-DSA), with FALCON still to follow. The catch: they're all way bigger than today's signatures, meaning more data per transaction, more fees, slower chains:Το NIST (αμερικανικός οργανισμός προτύπων) ενέκρινε τα πρώτα quantum-proof πρότυπα στις 13 Αυγ 2024: δύο τύπους υπογραφής (ML-DSA και SPHINCS+, πλέον SLH-DSA), ενώ το FALCON ακολουθεί. Το θέμα: όλες είναι πολύ πιο μεγάλες από τις σημερινές, άρα περισσότερα data ανά συναλλαγή, μεγαλύτερα fees, πιο αργές αλυσίδες:
Today (ECDSA)Σήμερα (ECDSA)
64 B
FALCON-512
666 B
ML-DSA L2
2,420 B
SPHINCS+ max
49,856 B
⚠️ TWO OF THREE, ONE BASKET⚠️ ΤΑ ΔΥΟ ΣΤΑ ΤΡΙΑ, ΣΕ ΕΝΑ ΚΑΛΑΘΙ
2 of 32 στα 3
ML-DSA and FALCON both rest on lattice mathΤα ML-DSA και FALCON στηρίζονται και τα δύο σε μαθηματικά lattices
A breakthrough against lattices could hit bothΜια σημαντική επίθεση στα lattices θα μπορούσε να πλήξει και τα δύο
Reminder: SIKE, another new design, broke in 62 min (2022)Υπενθύμιση: το SIKE, άλλο νέο σχήμα, έσπασε σε 62 λεπτά (2022)
✅ BACKUP PLAN✅ ΕΦΕΔΡΙΚΟ ΣΧΕΔΙΟ
SPHINCS+
Built from simple hashing onlyΑπό απλό hashing μόνο
Different math = insurance policyΔιαφορετικά μαθηματικά = ασφάλεια
Slower and bigger, but battle-testedΠιο αργό, μεγάλο, αλλά δοκιμασμένο
Total score across all 7 signs above. The longer the bar, the more ready the chain is right now. Our Ethereum quantum article grades on a different scale (live options, roadmap and deadline), so some of its grades differ.Συνολικό σκορ στα 7 σημάδια. Μεγαλύτερη μπάρα = πιο έτοιμη αλυσίδα τώρα. Το άρθρο μας για το Ethereum και το quantum βαθμολογεί με άλλη κλίμακα (ενεργές επιλογές, roadmap και προθεσμία), γι' αυτό κάποιοι βαθμοί του διαφέρουν.
Quantum Readiness — April 2026Κβαντική Ετοιμότητα — Απρίλιος 2026
🟢 QRL
A+
LiveΕνεργό
🟢 AlgorandAlgorand
A
LiveΕνεργό
🟢 Nervos CKB
A
LiveΕνεργό
🟡 XRPL
B
TestnetTestnet
🟡 Cardano
B
ResearchΈρευνα
🟡 Ethereum
C
RoadmapRoadmap
🔴 Bitcoin
F
StalledΚολλημένο
🔴 Solana
F
Opt-inOpt-in
🔴 TON
F
NoneΤίποτα
🟢 QRL · A+
Production PioneerΠρωτοπόρος
A blockchain built from day one for quantum. Hash-based signatures live since 2018. Downside: tiny ecosystem, almost no DeFi.Αλυσίδα φτιαγμένη από την πρώτη μέρα για quantum. Hash-based υπογραφές από 2018. Μικρό οικοσύστημα, σχεδόν μηδέν DeFi.
🟢 ALGORAND · A
First Major L1Πρώτο Μεγάλο L1
Quantum-proof signatures live on mainnet. 140,000+ real PQ transactions done. The validator layer isn't upgraded yet, but in our grading they lead the majors.Quantum-proof υπογραφές live στο mainnet. 140.000+ πραγματικές PQ συναλλαγές. Το validator layer δεν έχει αναβαθμιστεί ακόμα, αλλά στη βαθμολογία μας είναι πρώτοι ανάμεσα στις μεγάλες αλυσίδες.
🟡 ETHEREUM · C
Best Roadmap, Years BehindΚαλύτερο Roadmap, Πίσω
Still on old signatures. But they have $2M in research money, 10+ teams, and weekly test networks. Targeting 2029. In our view, the most serious effort of any major chain.Ακόμα σε παλιές υπογραφές. Αλλά έχουν $2M έρευνα, 10+ ομάδες, εβδομαδιαία test networks. Στόχος το 2029. Κατά την άποψή μας, η πιο σοβαρή προσπάθεια από όλες τις μεγάλες αλυσίδες.
🔴 BITCOIN · F
Structural ResistanceΔομική Αντίσταση
No smart wallets natively. The proposed upgrade (BIP-360) only runs on testnet since March 19, 2026. Community can't agree on what to do with Satoshi's dormant coins. Political gridlock.Χωρίς εγγενή smart wallets. Η πρόταση αναβάθμισης (BIP-360) μόνο σε testnet από 19 Μαρ 2026. Δεν συμφωνούν για τα αδρανή coins του Satoshi. Πολιτικό αδιέξοδο.
🔴 SOLANA · F
Speed Over SecurityΤαχύτητα vs Ασφάλεια
Uses older signatures by default. An opt-in quantum-safe vault (Winternitz) has existed since January 2025, but there is no public plan to switch the network. High-speed design makes upgrading even harder: quantum-proof signatures are bigger and slower.Παλιές υπογραφές από προεπιλογή. Από τον Ιανουάριο 2025 υπάρχει ένα προαιρετικό quantum-safe vault (Winternitz), αλλά κανένα δημόσιο σχέδιο για αλλαγή του δικτύου. Ο σχεδιασμός υψηλής ταχύτητας κάνει την αναβάθμιση ακόμα πιο δύσκολη: οι quantum-proof υπογραφές είναι μεγαλύτερες και πιο αργές.
09 · Ethereum — 4 Things That Need FixingEthereum — 4 Πράγματα Προς Διόρθωση
1️⃣
Every user walletΚάθε wallet χρήστη
MetaMask, hardware wallets, everything. 20.5M ETH in the top 1,000 wallets alone is at risk.MetaMask, hardware wallets, τα πάντα. 20,5M ETH μόνο στα top 1.000 wallets κινδυνεύει.
🔴
2️⃣
How stakers voteΠώς ψηφίζουν οι stakers
~1M validators sign blocks with math a large quantum computer could break. Attacker could fake approval votes.~1M validators υπογράφουν με μαθηματικά που μπορεί να σπάσει ένας μεγάλος κβαντικός υπολογιστής. Ψεύτικες ψήφοι.
🔴
3️⃣
L2 blob data (EIP-4844)Blob data L2 (EIP-4844)
L2 rollup data uses math that quantum breaks. Fix: replace with quantum-safe STARK proofs.Τα L2 rollup data χρησιμοποιούν σπαστά μαθηματικά. Αντικατάσταση: STARK.
🔴
4️⃣
Zero-knowledge rollupsZero-knowledge rollups
zkSync, Scroll, Polygon all use breakable math. A quantum attacker could drain the bridges.Τα zkSync, Scroll, Polygon χρησιμοποιούν μαθηματικά που σπάνε. Ένας κβαντικός επιτιθέμενος θα μπορούσε να αδειάσει τις γέφυρες.
Here's the problem: checking a quantum-proof signature costs about 17× to 1,000× more gas than checking today's (gas is the fee you pay per tx). The fix: batch thousands of signatures into one proof.Το πρόβλημα: ο έλεγχος μιας quantum-proof υπογραφής κοστίζει περίπου 17× έως 1.000× περισσότερο gas από τον σημερινό (gas είναι το κόστος ανά συναλλαγή). Λύση: πακετάρεις χιλιάδες υπογραφές σε μία απόδειξη.
ECDSA
3K gas
FALCON-512
50K
ML-DSA L2
200K
SPHINCS+
500K–3M
STARK (naive)STARK (αρχικά)
10M
The fix — signature batching:Η λύση — πακετάρισμα υπογραφών:Instead of checking each signature one-by-one, special provers bundle thousands into a single quantum-safe proof. Split across all the txs, the cost per user drops to almost nothing.Αντί να ελέγχεται κάθε υπογραφή χωριστά, ειδικοί provers πακετάρουν χιλιάδες σε μία quantum-safe απόδειξη. Μοιρασμένο στους χρήστες, το κόστος πέφτει σχεδόν στο μηδέν.
11 · 8 Critical Risks8 Κρίσιμοι Κίνδυνοι
📏
Signatures get much biggerΟι υπογραφές πολύ μεγαλύτερες
Quantum-proof sigs are 10× to 780× larger than today's. That means bigger blocks, higher fees, slower chains.Οι quantum-proof είναι 10× έως 780× πιο μεγάλες. Μεγαλύτερα blocks, ψηλότερα fees, πιο αργές αλυσίδες.
🔴 CRIT
⚖️
Too many upgrades at onceΠολλές αναβαθμίσεις μαζί
Ethereum needs 7+ big upgrades in 3–4 years. The Merge alone took over 6 years. Tight.Το Ethereum χρειάζεται 7+ μεγάλες αναβαθμίσεις σε 3–4 έτη. Μόνο το Merge πήρε 6+ έτη.
Every public key already revealed on-chain stays public for good. Coins still behind those keys can be taken once a large enough machine exists.Κάθε δημόσιο κλειδί που έχει ήδη αποκαλυφθεί στο blockchain μένει δημόσιο για πάντα. Τα coins που είναι ακόμα πίσω από αυτά τα κλειδιά μπορεί να κλαπούν όταν υπάρξει αρκετά μεγάλη μηχανή.
🔴 CRIT
🧬
Two of the three rest on latticesΤα δύο από τα τρία στηρίζονται σε lattices
ML-DSA and FALCON both rest on lattice math, a family of hard puzzles. A breakthrough against it could hit both; SPHINCS+ is the backup.Τα ML-DSA και FALCON στηρίζονται και τα δύο σε μαθηματικά lattices, μια οικογένεια δύσκολων γρίφων. Μια σημαντική επίθεση σε αυτά θα μπορούσε να πλήξει και τα δύο· το SPHINCS+ είναι το εφεδρικό σχέδιο.
🟡 HIGH
🧊
The exposed-bitcoin problemΤο πρόβλημα των εκτεθειμένων bitcoin
Counts of exposed bitcoin up to April 2026 ran from about 4.5M (Deloitte, around 2019) to 6.9M (Project Eleven, February 2026). Newer counts run from 5.1M (ChainQuery, June 2026) to 8.2M (Project Eleven’s live list, September 2026; the jump since February is unexplained). About 1.7M sit in an early address type, among them the coins thought to belong to Satoshi. Should Bitcoin change its rules to lock or destroy (burn) coins left behind exposed keys, before an attacker takes them? No agreement.Οι μετρήσεις των εκτεθειμένων bitcoin ως τον Απρίλιο του 2026 κυμαίνονταν από περίπου 4,5M (Deloitte, γύρω στο 2019) έως 6,9M (Project Eleven, Φεβρουάριος 2026). Οι νεότερες κυμαίνονται από 5,1M (ChainQuery, Ιούνιος 2026) έως 8,2M (η ζωντανή λίστα του Project Eleven, Σεπτέμβριος 2026· το άλμα από τον Φεβρουάριο δεν έχει εξηγηθεί). Περίπου 1,7M βρίσκονται σε έναν πρώιμο τύπο διεύθυνσης, ανάμεσά τους και όσα αποδίδονται στον Satoshi. Πρέπει το Bitcoin να αλλάξει τους κανόνες του ώστε να κλειδώσει ή να καταστρέψει («κάψει») τα coins που μένουν πίσω από εκτεθειμένα κλειδιά, πριν τα πάρει κάποιος επιτιθέμενος; Χωρίς συμφωνία.
🟡 HIGH
🌐
L2 bridges are weak spotsΓέφυρες L2 είναι αδύναμες
Most L2 bridges have admin keys on today's math. A broken bridge could lose everything locked in it.Οι περισσότερες γέφυρες L2 έχουν κλειδιά διαχείρισης σε σημερινά μαθηματικά. Μια σπασμένη γέφυρα θα μπορούσε να χάσει ό,τι είναι κλειδωμένο σε αυτή.
🟡 HIGH
🕵️
Secret government quantumΚρυφό κρατικό quantum
A country could build the attack machine in secret and use it before anyone knows. No advance warning.Μία χώρα μπορεί να φτιάξει τη μηχανή κρυφά και να την χρησιμοποιήσει χωρίς να μάθει κανείς εκ των προτέρων.
🟠 MED
🛠️
Hardware wallets lag behindΥστέρηση hardware wallets
Ledger & Trezor need software updates. Some older models don't have enough memory chips to fit the new signatures.Ledger και Trezor χρειάζονται software update. Παλιότερα μοντέλα δεν έχουν αρκετή μνήμη για τις νέες υπογραφές.
🟠 MED
12 · Who Wins, Who LosesΠοιος Κερδίζει, Ποιος Χάνει
✅ READY OR ON THE WAY✅ ΕΤΟΙΜΕΣ / ΣΤΟ ΔΡΟΜΟ
QRL — quantum-safe from day oneQRL — quantum-safe από την αρχή
Ethereum — best roadmap in our viewEthereum — το καλύτερο roadmap κατά την άποψή μας
XRPL — test network runningXRPL — test network τρέχει
🟢 Money + published research + testing🟢 Λεφτά + δημοσιευμένη έρευνα + δοκιμές
❌ NOT READY❌ ΔΕΝ ΕΙΝΑΙ ΕΤΟΙΜΟΙ
Bitcoin — political deadlockBitcoin — πολιτικό κόλλημα
Solana — opt-in vault onlySolana — μόνο προαιρετικό vault
TON — no consensus planTON — κανένα σχέδιο
Most L2 bridges — vulnerable admin keysΟι πιο πολλές γέφυρες L2 — ευάλωτα admin keys
🔴 No test net + no proposal + running out of time🔴 Χωρίς test net + χωρίς πρόταση + λίγος χρόνος
⚠️ Our view: the hard part isn't the code, it's getting everyone to agree. Chains with active leadership are moving faster.⚠️ Η άποψή μας: το δύσκολο δεν είναι ο κώδικας, είναι να συμφωνήσουν όλοι. Οι αλυσίδες με ενεργή ηγεσία προχωρούν πιο γρήγορα.
Bottom LineΣυμπέρασμα
1,200
Logical qubits to crack BTC (est.)Λογικά qubits για BTC (εκτ.)
9 min
Estimated time per keyΕκτιμώμενος χρόνος ανά κλειδί
2029
Ethereum's targetΟ στόχος του Ethereum
QRL
Only A+ of the 9Μόνο A+ από τα 9
ONE LINEΜΕ ΜΙΑ ΦΡΑΣΗ
🔐 Quantum is no longer science fiction. Our view: chains that upgrade to quantum-safe tech now protect their users' money; chains that wait put billions at risk.🔐 Το quantum δεν είναι πια επιστημονική φαντασία. Η άποψή μας: όσες αλυσίδες αναβαθμιστούν σε quantum-safe τώρα προστατεύουν τα χρήματα των χρηστών τους· όσες περιμένουν βάζουν σε κίνδυνο δισεκατομμύρια.
Disclaimer: Educational only. Not investment advice. Quantum-safe migration plans change weekly. Grades are based on public info as of April 2026 (Google Quantum AI, NIST, pq.ethereum.org, Algorand Foundation, Quantum Computing Report). Update of 8 October 2026: a report by LlamaAI, DefiLlama’s AI research tool, citing Project Eleven, ChainQuery and Deloitte. Always do your own research.Αποποίηση: Μόνο εκπαιδευτικά. Όχι επενδυτική συμβουλή. Τα roadmap αλλάζουν εβδομαδιαία. Βαθμολογία βασισμένη σε δημόσιες πηγές Απριλίου 2026 (Google Quantum AI, NIST, pq.ethereum.org, Algorand Foundation, Quantum Computing Report). Ενημέρωση 8 Οκτωβρίου 2026: έκθεση του LlamaAI, του εργαλείου έρευνας AI του DefiLlama, με στοιχεία του Project Eleven, της ChainQuery και της Deloitte. Κάνε πάντα τη δική σου έρευνα.
Research verified with AI tools.Η έρευνα έχει επαληθευτεί με εργαλεία AI.