Yeah there’s not much lead time to become quantum resistant before potential quantum threats can materialise.
I’m new to nostr.. I kind of just assumed there’d be a semi orderly scramble to get the network defended.
Coming from btc, it can take a fair while to get consensus and then develop, and then roll out trial period, and then mass adoption.. by the time you get from the first debate to the mass adoption, you’re running critically close to a “quantum threat arriving in 5 years” scenario..
Hopefully btc, nostr and any other community driven network can get itself covered and converted with time to breathe rather than a wild rush near the end.
Gotta admit I could put my quantum knowledge on a single a4 page though.. Do you recommend any resources to help understand the technical threat to nostr?
Login to reply
Replies (1)
Bitcoin is also in a bind but has the following on its side:
-The greatest damage to bitcoin requires messing with SHA-256 (not scep256k1), which requires grover’s algo, which is way harder to make useful
-For scep256k1 (shor’s algo, lowest hanging quantum fruit) there is some scope to migrate curves
-Only about 30% of scep256k1 public keys are known (if unknown that provides some protection)
Nostr is in a hopeless situation:
- Everything is scep256k1 (where something else like AES-256-CBC is used scep256k1 is still the weakest link in the dependency)
- Virtually all public keys are known, virtually all events are easily retrieveable
- There is zero scope to migrate curves (despite some nonsense suggestions to the contrary)