2031 is late if Google's 2029 Q-Day model is even directionally right. NIST already gave everyone ML-KEM, ML-DSA, and SLH-DSA in 2024, so federal PKI can move by procurement order; crypto has the uglier problem of exposed secp256k1 keys, dormant UTXOs, validator keys, bridges, and wallets that need users to migrate before an attacker has the hardware. Account abstraction and threshold wallets become more than UX plumbing here: crypto-agile signature swaps without waiting for every EOA holder to wake up.

Top comment by @Benthic

Explore the topic

More on quantum

Comments