Vitalik Buterin Maps Quantum Upgrade to Ethereum to Replace Core Cryptography

ETH-3,74%
BTC-2,77%

In brief

  • Buterin pointed out four Ethereum components that rely on cryptography vulnerable to quantum attacks.
  • The plan replaces BLS, KZG, and ECDSA with hash-based, lattice-based, or STARK-based systems.
  • Recursive aggregation aims to reduce high gas costs from quantum-safe signatures and proofs.

Ethereum co-founder Vitalik Buterin on Thursday called for a broad overhaul of the network’s cryptographic foundations, warning that advances in quantum computing could break core parts of the protocol, while laying out a multi-stage plan to replace them. In a post on X, Buterin identified four vulnerable areas: consensus-layer BLS signatures, data availability tools known as KZG commitments, the ECDSA signature scheme used by standard user accounts, and zero-knowledge proof systems used by applications and layer-2 networks. Each could be tackled step by step, he said, with dedicated solutions at each layer of the protocol. “One important thing upstream of this is choosing the hash function,” Buterin wrote. “This may be ‘Ethereum’s last hash function,’ so it’s important to choose wisely.” The post comes as the Ethereum Foundation elevated post-quantum security to a top priority.

 Quantum computers threaten Ethereum, Bitcoin, and the broader crypto industry because they could eventually break the public-key cryptography that secures wallets and signs transactions, allowing attackers to derive private keys from exposed public keys and move funds. To face this issue head-on, the Ethereum Foundation launched a dedicated Post-Quantum team in January and earlier this month released a seven-fork upgrade plan, dubbed the “Strawmap,” that would integrate quantum-resistant signatures and STARK-friendly cryptography into the network’s consensus design through 2029. At the consensus layer, Buterin proposed replacing BLS signatures—the cryptographic proofs validators use to approve blocks—with hash-based alternatives, which researchers view as more resistant to quantum attacks. He also suggested using STARKs, a type of zero-knowledge proof, to compress many validator signatures into a single attestation.

For data availability, Buterin said there would be tradeoffs. Ethereum relies on KZG commitments to verify that block data is properly structured and available. STARKs could perform the same function, but they lack a mathematical property called linearity that enables two-dimensional data availability sampling. “This is okay, but the logistics of this get harder if you want to support distributed blob selection,” Buterin wrote. User accounts and proof systems face steep cost increases under quantum-resistant cryptography. Verifying today’s ECDSA signature costs about 3,000 gas, while a hash-based quantum-resistant signature would cost roughly 200,000 gas. The difference is larger for proofs: a ZK-SNARK costs 300,000 to 500,000 gas to verify, compared with about 10 million gas for a quantum-resistant STARK—an expense too high for most privacy and layer-2 applications. “The solution again is protocol-layer recursive signature and proof aggregation,” Buterin said, pointing to the Ethereum Improvement Proposal 8141. Under EIP-8141, each transaction would include a “validation frame” that can be replaced by a STARK verifying it executed correctly. All validation frames in a block could then be aggregated into a single proof, keeping the on-chain footprint small even as individual signatures grow larger. Buterin said the proving step could occur at the mempool layer rather than during block production, with nodes propagating valid transactions every 500 milliseconds alongside a proof of validity. “It’s manageable, but there’s a lot of engineering work to do,” he said.

Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to Disclaimer.

Articoli correlati

Vitalik 背書仍遭否,Hegota 升級棄用量子抗性幀交易

以太坊開發者在3月27日的會議上決定不將幀交易列為Hegota升級的優先功能,因其複雜度高。幀交易原本設計為提高量子抗性及提供帳戶抽象,但開發者對其實作複雜度及升級時程的影響表示擔憂。雖然未獲正式優先權,但幀交易仍被標記為「考慮納入」,未來會討論其技術可行性。

MarketWhisper1h fa

以太坊价格新闻:ETH突破2400美元需三大关键指标回暖

以太坊近期经历6%回调,重测2050美元关口,市场对是否能反弹至2400美元保持谨慎。突破需满足去中心化交易所活跃度反弹、机构信心回升及期货市场溢价回归合理区间。目前以太坊价格已下跌31%,市场需求疲软,短期内上涨动力不足,投资者需关注链上数据与资金流向。

GateNews1h fa

Bitcoin và Ethereum chiếm 80% vốn hóa thị trường crypto

Bitcoin and Ethereum dominate the cryptocurrency market, holding approximately 67% and 13% of total market capitalization, respectively. This concentration indicates a strong preference for relatively stable assets among investors. Bitcoin is considered "digital gold," while Ethereum leads in decentralized applications and smart contracts. Their price movements significantly influence the overall market trends.

TapChiBitcoin1h fa

某巨鲸花费1557万枚USDC增持7543枚ETH

BlockBeats 消息,3 月 27 日,据 Onchain Lens 监测,某巨鲸以 2064 美元均价花费 1557 万枚 USDC 买入 7543 枚 ETH,并将其投入收益策略。 该巨鲸目前总计持有 29,451 枚 ETH,价值约 6083 万美元。

BlockBeatNews1h fa

以太坊开发者投票将 Frame Transactions 提案降级,不列入 Hegota 升级核心议程

以太坊开发者在会议中决定将Frame Transactions标记为“考虑纳入”状态而非核心提案,预计Hegota升级于2026年下半年推出,首个核心提案为FOCIL。尽管Vitalik Buterin等人支持,但因复杂性问题而遭到反对。

GateNews1h fa
Commento
0/400
Nessun commento