Bitcoin Braces For Quantum Shock — Inside Two Radical New Rescue Plans
Multiple devs and founders have been speaking publicly about concrete submit‑quantum paths for Bitcoin. Two totally different proposals have caught the crypto world’s consideration.
Bitcoin’s Net-Watchers Start Building Their Blackwall
The ticking clock marking 2029 as the possible “deadline” for quantum computers to have the ability to break Bitcoin and Ethereum’s cryptography has made devs roll up their sleaves and get to work.
The latest spike of the Bitcoin quantum-panic or “quantum FUD” (concern, uncertainty and doubt) has moved on from the preliminary chaos that ensued following Google’s “doomsday” whitepaper to a race towards an enemy that doesn’t but exist. In the previous days, two Bitcoin devs landed at totally different proposals aimed to guard Bitcoin from the longer term risk of quantum assaults.
One of them consists in a “Taproot kill‑change + zk‑proof restoration” path for present UTXOs (Unspent Transaction Outputs). The different is a QSB (Quantum Safe Bitcoin), a transaction‑stage building that makes particular person spends quantum‑secure right now with none comfortable fork (rule adjustments that keep suitable with previous software program).
Both approaches assume Shor‑model quantum computer systems (quantum computer systems based mostly on Shor’s algorithm) will nuke the mathematics behind Bitcoin’s present signatures (ECDSA/Schnorr), however they differ on how a lot of Bitcoin wants to alter: consensus guidelines vs person‑stage tooling.
Let’s look at each proposals carefully.
Solution #1
The first resolution comes from Olaoluwa Osuntokun, co‑founder and CTO of Lightning Labs (the principle firm constructing the Lightning Network implementation) and Tim Ruffing, co‑creator and contributor on Schnorr/Taproot, multisignature schemes like MuSig2 and a maintainer of Bitcoin’s core elliptic‑curve library.
On a submit made on the social media X on April 8, Osuntokun resurfaced Ruffing’s July 2025 whitepaper on Bitcoin’s post-quantum security in an effort to suggest an answer for one of many issues offered within the paper: “to create a variant of seed-lifting that doesn’t reveal the pockets’s grasp secret”. He referred to as this “zk-STARK proof”.
within the face of quantum adversary, a generally mentioned emergency comfortable fork for Bitcoin could be to disable the Taproot keyspend path (https://t.co/Gzx8NVui3N), successfully turning it into one thing that resembling BIP-360
assuming an present precautionary soft-fork so as to add a pq…
— Olaoluwa Osuntokun (@roasbeef) April 8, 2026
In plain language, Osuntokun’s instrument creates a particular cryptographic proof (the zk‑STARK) that allows you to show you actually have the unique pockets secret behind a given Taproot handle, and that you just used the usual pockets guidelines to get from that secret to this handle. They essential facet of the zk-STARK proof is that it does this with out ever revealing the key itself, or any personal keys, to anybody.
If, sooner or later, Bitcoin does a quantum‑protection comfortable fork that disables regular key‑based mostly spends, many BIP‑86 Taproot wallets could possibly be caught and unable to maneuver cash. With this proof, these customers get an additional “escape hatch”: they will show possession of their Taproot cash through the seed‑derivation proof and transfer funds in a brand new, quantum‑secure means, though the previous key‑spend path is turned off.
He mentioned all of the technicalities behind this on the Bitcoin dev mailing list.
The resolution has discovered acceptance, and it’s been typically acquired very nicely within the crypto group.
Looks like this doubtlessly solves the thorniest situation round quantum proofing Bitcoin: confiscation of cash.
A PQ comfortable fork like BIP360 successfully “confiscates” cash by completely disabling spends from sure “susceptible” wallets the place public keys have been revealed.… https://t.co/wV49BIXmx2
— Vijay Selvam (@VijaySelvam) April 9, 2026
Solution #2
The second, and extra polemic resolution, comes from Avihu Mordechai Levy, a cryptography engineer at StarkWare who works on zero‑data proofs and STARKs. His whitepaper, published yesterday, exhibits easy methods to make particular person Bitcoin transactions quantum‑secure right now, utilizing Lamport‑model one‑time signatures plus a “hash‑to‑signature” proof‑of‑work puzzle, with zero adjustments to Bitcoin’s base protocol.
Quantum-Safe Bitcoin Transactions Without Softforkshttps://t.co/1lx5waX9VV pic.twitter.com/Ni7pA6dEsC
— Avihu Levy
(@avihu28) April 9, 2026
QSB replaces the previous signature‑dimension PoW (which quantum assaults may fully break by discovering tiny ECDSA r‑values) with a RIPEMD‑160‑based mostly puzzle that solely depends on hash pre‑picture resistance, which is merely weakened, not destroyed, by Grover’s algorithm (quantum tech).
Again in plain language, what QSB does is it throws away the previous “make the signature tiny” proof‑of‑work trick, as a result of a powerful quantum laptop may cheat that by exploiting the elliptic‑curve math. Instead, QSB makes use of a brand new puzzle constructed on the RIPEMD‑160 hash operate. Breaking a hash like that’s extraordinarily exhausting, even with a quantum laptop.
QSB matches in legacy script limits and provides round 118‑bit submit‑quantum pre‑picture safety. However, it prices a whole bunch of {dollars} in off‑chain GPU work per transaction and requires non‑commonplace naked scripts mined through personal relay providers. This is why many are calling QSB a “final resort” or perhaps a “whale-grade band-aid”.
I’m not claiming this isn’t grossly inefficient, nor that it wouldn’t make sense to ultimately enhance the protocol layer if a cleaner resolution emerges.
My level is solely that it’s false to say this sort of whale-grade band-aid doesn’t exist already on the present protocol…
— Coinjoined Chris
(@coinjoined) April 10, 2026
A Philosophical Split
The group is not arguing if quantum breaks ECDSA/Schnorr, however easy methods to stage an orderly migration. Let’s do not forget that the creator of Bitcoin, Satoshi Nakamoto himself, assured in 2010 {that a} gradual transition to post-quantum, stronger know-how, was doable for Bitcoin.
Taproot‑based mostly restoration tries to guard your entire UTXO set with minimal worth destruction, whereas some outstanding voices nonetheless argue non‑migrated cash ought to merely expire quite than be “rescue” in bizarre methods, to protect Bitcoin’s financial story.
Cover picture from Perplexity. BTCUSD chart from Tradingview.


(@avihu28)
(@coinjoined)