# Bitcoin and Quantum Computing

# Bitcoin and Quantum Computing

**By Neha Narula**
**Published: April 3, 2026**

Source: https://nehanarula.org/2026/04/03/bitcoin-and-quantum-computing.html

---

Bitcoin's cryptographic signatures would be compromised by a cryptographically-relevant quantum computer (CRQC). The existential threat level depends on two factors: the probability a CRQC emerges within a given timeframe, and the likelihood Bitcoin successfully upgrades before then.

## Risk Framework

- (A) Likelihood of CRQC appearance by a specific date
- (B) Likelihood Bitcoin fails to upgrade by that date

Using Google's quantum research as reference: a Google researcher suggested "a 10% chance of a CRQC existing by 2030." With Taproot activation taking nearly four years, Narula estimates perhaps a 50% chance of successful post-quantum soft fork and wallet migration by 2029, yielding a 5% probability Bitcoin breaks due to quantum threats by 2030.

## Key Technical Challenges

1. Which signature scheme? Post-quantum options involve tradeoffs — larger signatures or longer verification times could increase node costs or reduce transaction capacity.
2. Transaction consensus handling for non-upgraded UTXOs remains philosophically and technically unclear.
3. Implementation timeline and strategy present coordination challenges in Bitcoin's decentralized ecosystem.
4. Wallet ecosystem adoption requires convincing exchanges, custodians, and individual users to upgrade and migrate coins — separate from consensus-layer changes.

## Investment and User Perspectives

For investors, the quantum threat should factor into Bitcoin's valuation floor. For developers, the technical uncertainty discourages long-term commitment to non-post-quantum cryptography work.

"I think A is high enough to warrant prioritizing designing, implementing, and evaluating post-quantum signature schemes and consensus upgrades in Bitcoin now."

## Common Counterarguments Addressed

- FUD claims: the underlying threat is technically valid
- CRQC may never exist: betting against "smart people figuring things out" is historically unwise
- Current factoring limits: quantum progress doesn't follow intuitive scaling patterns
- Other systems face similar risks: banking and internet will likely upgrade; Bitcoin's decentralization makes this harder
- Google sabotage theories: two independent truths can coexist

## Call to Action

No finalized specifications, implementations, or ecosystem coordination exist. Narula advocates for prioritizing this work through institutional support and developer recruitment.
