Europol tells crypto wallet providers to begin post-quantum testing as exposure risk grows

Europol tells crypto wallet providers to begin post-quantum testing as exposure risk grows

N
News Editor
2026-10-08 10:46:41
Europol on Wednesday published two reports on quantum-computing security risks, with the cryptocurrency-focused paper identifying wallets as the most exposed part of the system. The agency said the keys used to control wallets and authorize transactions are the primary point of vulnerability, because a sufficiently powerful quantum computer could derive a private key from a public key and let an attacker spend the funds. At the same time, Europol said the hash functions securing blockchains themselves remain broadly resistant to quantum attacks, and it stressed that machines with that level of capability do not yet exist. Timing remains uncertain, according to the agency’s press release. The report says cryptocurrencies are not expected to collapse because of quantum computing, but argues that long-term security depends on early preparation. Europol recommends that wallet providers start testing and deploying wallets enabled for post-quantum cryptography, while blockchain projects should integrate post-quantum algorithms into their core protocols. It also warns that wallets with already exposed public keys have no cryptographic remedy; the only option is to move funds into new, unexposed wallets before any attack occurs. Drawing on a 2024 paper, Europol said upgrading every Bitcoin UTXO to post-quantum signatures would require at least 76 days of cumulative downtime, or about 300 days if only one-quarter of each block were reserved for migration. It also warned that NIST-standardized post-quantum signatures are 10 to 120 times larger than Bitcoin’s ECDSA signatures, which could strain block space and raise fees.

Europol published two reports on Wednesday covering security risks tied to quantum computing, and the report focused on cryptocurrencies identifies wallets as the most exposed part of the system. The agency called on organizations, policymakers and the crypto industry to start preparing now.

In the report, Europol’s European Cybercrime Centre said the keys used to control wallets and authorize transactions are the main point of exposure. A quantum computer with sufficient power could derive a wallet’s private key from its public key, allowing an attacker to spend the funds.

Europol said the hash functions that secure the blockchain itself remain largely resistant to quantum attacks. Machines with that capability do not yet exist, and the agency said in its press release that the timeline for such capabilities remains uncertain.

Unchained reported in April that a Google paper pointed to 2029 as the year quantum computers could break the cryptography securing Bitcoin and Ethereum.

Europol says collapse is not the base case

The report concluded that 「Cryptocurrencies will not collapse due to quantum computing」, while adding that long-term security will require proactive defense.

Its main findings include:

  • Proactive adaptation is the more likely outcome, rather than systemic collapse.
  • Wallet providers should begin testing and deploying wallets enabled for post-quantum cryptography.
  • Blockchain projects should build post-quantum algorithms into their core protocols.
  • Users should move funds to quantum-resistant wallets once those wallets become available.

For wallets with public keys that are already exposed, the report said there is no cryptographic fix. The only solution it offered is to move funds to new, unexposed wallets before any attack takes place.

Bitcoin migration could take months and consume block space

Europol cited a 2024 paper that estimated the minimum cumulative downtime required to upgrade every Bitcoin UTXO to post-quantum signatures at 76 days.

As one example, the agency said the migration would take about 300 days if only one-quarter of each block’s capacity were allocated to the process.

Europol also said signatures from NIST-standardized post-quantum schemes are 10 to 120 times larger than the ECDSA signatures Bitcoin uses today. That, it warned, could overload block space and push fees higher.

Second report looks at store-now-decrypt-later attacks

The second report examines attackers who collect encrypted data now and wait to decrypt it once more powerful computers become available.

That report was developed with University Carlos III of Madrid. Europol said there is no clear evidence that this technique is being used systematically at scale.

This article was originally published by Bit.Fan. For more cryptocurrency news and market insights, visit www.bit.fan.
100

Disclaimer:

The market information, project data, and third-party content displayed on this platform are for industry information sharing only and do not constitute any form of investment advice or return commitment.

Cryptocurrency trading carries high risks. Users should fully assess their risk tolerance and make independent decisions. All profits, losses, and legal responsibilities are borne by the users themselves.