Unchained
Unchained

Is Nic Carter Exaggerating Bitcoin's Quantum Risk? Yes, Says One Core Dev

Matt Corallo says “the community that exists at the time” will make decisions on how Bitcoin deals with the threat of quantum computing. Thank you to our sponsors! ⁠Figure⁠ ⁠Crypto Tax Girl⁠ ⁠Fuse: The Energy Network⁠ When it comes to the quantum computing threat to crypto, the focus is often on Bit

Featured Speakers

Matt Corrallo Guest

Topics Discussed

Episode Summary

Executive Summary: The episode debates whether Bitcoin developers are underreacting to quantum computing risk. Matt Corrallo argues they are actively working on post-quantum fixes and that Bitcoin can migrate faster than critics claim, likely via hash-based signatures and soft forks. He also stresses the market—not developers alone—will decide any eventual hard choice over old coins.

Main Topics: Bitcoin’s quantum threat: urgency vs. FUD (Priority: 5/5): The discussion centers on Nick Carter’s claim that Bitcoin Core devs are sleepwalking into quantum-collapse risk, versus Corrallo’s view that the threat is real but overstated in timing and implementation difficulty. Post-quantum roadmap for Bitcoin (Priority: 5/5): Corrallo outlines a two-step path: first add support for committing to post-quantum public keys now, then later disable insecure legacy spending if quantum becomes a material threat. Which cryptographic schemes Bitcoin should use (Priority: 4/5): He argues hash-based signatures are the only realistic near-term choice, while lattice-based schemes remain too early and could still break classically; he mentions SHRINKS as a likely option. Community governance and market decision-making (Priority: 5/5): A major theme is that no one can speak for “Bitcoin devs” as a whole; changes will emerge from contributors, organizations, and ultimately market consensus, especially around whether to burn or preserve vulnerable coins. Influence of major funders and institutions (Priority: 4/5): The host presses whether entities like BlackRock, ETFs, and other large holders should influence priorities. Corrallo says they matter as stakeholders, but Bitcoin development remains open-source and developer-led. Comparison with Ethereum’s preparedness (Priority: 3/5): Laura Shin contrasts Bitcoin with Ethereum’s more explicit quantum planning and timelines. Corrallo responds that Bitcoin also has serious work underway, but prefers a decentralized open-source process over formal public commitments. Long-term cryptography and AI (Priority: 3/5): The conversation extends to whether AI could trigger cryptographic breakthroughs before quantum computers arrive. Corrallo says the only real defense is redundancy across schemes, but even that has practical limits.

Key Arguments: Most modern wallets already rely on seed phrases that are quantum-safe in derivation, so Bitcoin could soft fork to require proof of seed phrase without forcing all wallets to migrate immediately. The primary near-term task is to add support for committing to post-quantum public keys now, so wallets can prepare at zero cost until quantum risk becomes urgent. Hash-based signatures are the most credible near-term post-quantum option; many other schemes are still too young cryptographically and may be broken classically. A later soft fork could disable insecure legacy spend paths, at which point users would need to sign with the already-committed post-quantum scheme. The main dispute is not whether quantum is real, but when it becomes urgent; current expert timelines still tend to be around a decade, not 2–5 years. Bitcoin development is not centrally directed; there is no single spokesperson, and meaningful progress depends on contributors and organizations already working on the issue. The market, not a committee, will likely decide the treatment of vulnerable/lost coins if a quantum threat becomes imminent. Fear of quantum may affect Bitcoin’s perception earlier than the technology itself; overreaction could be more dangerous in the short term than the threat itself. Large institutions like BlackRock are stakeholders, but they do not control Bitcoin development; they can only influence it like any other participant by contributing, funding, or signaling preferences. AI or other classical breakthroughs are a broader cryptographic risk, but there is no robust way to fully defend against every possible primitive-breaking advance.

Data Points: Post-quantum discussion on Bitcoin Dev mailing list: 30–40% of posts - Corrallo cites a mailing-list trend showing post-quantum discussion has grown to roughly a third to almost half of the conversation. Bitcoin upgrades in the last decade: 2 major upgrades - Laura Shin references SegWit and Taproot as the only two major upgrades over the prior 10 years. SegWit development/debate time: ~2 years - Used to illustrate Bitcoin’s slow upgrade culture. Taproot development/debate time: ~3 years - Cited as another example of Bitcoin’s conservative upgrade pace. Lost/abandoned Bitcoin supply: ~5% of network; 1.7 million BTC - Discussed as a major issue if old vulnerable coins must be burned or disabled. Hash-based signature size increase: ~3x to 20x larger - Corrallo notes PQ hash-based signatures are materially larger than current signatures, depending on wallet/type. NIST deprecation target for quantum-vulnerable crypto: 2030 - Corrallo says agencies are being asked to deprecate vulnerable schemes by 2030. NIST end-of-reliance target: 2035 - He says all reliance on vulnerable schemes should end by 2035. Bitcoin upgrade estimate from Ethan Heilman: ~7 years - Referenced as an optimistic estimate for Bitcoin to upgrade to post-quantum, though Corrallo disputes the need for full migration before preparation. Quantum risk horizon cited by Adam Back: 20–40 years (if then) - Laura quotes Adam Back’s public estimate, which Corrallo says is too dismissive as an upper-bound scenario. Quantum deprecation timeline discussed for wallets: 5 years to start migration; 9 years to finish - Based on government/NIST-style planning horizons discussed in the interview. BlackRock-managed Bitcoin exposure: institutional stakeholder, not core developer - Used in discussion of who should influence Bitcoin policy.

Pivotal Quotes: "people are working on this." — Matt Corrallo: His core rebuttal to the claim that Bitcoin developers are ignoring post-quantum security. "there is no urgency right now." — Peter Wuille (quoted by Laura Shin): Used by the host to illustrate public skepticism among some Bitcoin Core figures about immediate quantum risk. "if these people or a handful of other people potentially don't materially disagree with your change, it might happen." — Matt Corrallo: He pushes back on the idea that all influential devs must be convinced before Bitcoin can change.

Implications: Bitcoin is likely to adopt post-quantum support in stages, with soft-forkable preparation first and political fights later over vulnerable coins. The real risk is less technical impossibility than coordination, incentives, and public perception.

🔓 Sign Up for Unlimited Episode Search

About Unchained

View all episodes from Unchained