Quantum Threats To Bitcoin, Cryptocurrency and Blockchain

Authors

  • Rubayat Khan, PhD Genomics Core Facility, Office of the Vice Chancellor for University of Nebraska Medical Center, Omaha, Nebraska, USA
  • Mazharul Karim, PhD Environmental Science and Engineering, University of Texas at El Paso, El Paso, Texas, USA https://orcid.org/0000-0003-4412-1819
  • Don Roosan, PharmD, PhD 3Computer Science, School of Engineering and Computational Sciences, Merrimack College, North Andover, Massachusetts, USA https://orcid.org/0000-0003-2482-6053

DOI:

https://doi.org/10.30953/bhty.v9.496

Keywords:

Bitcoin, blockchain security, healthcare blockchain, ML-DSA, post-quantum cryptography, quantum computing, SLH-DSA

Abstract

Objective: The authors evaluated how quantum computing threatens the cryptographic primitives used in Bitcoin and other blockchain systems. These findings were translated into a standards-aligned post-quantum migration profile for healthcare ledgers, including consent, identity, provenance, audit, and encrypted off-chain data exchange.

Methodology: Narrative analysis, theoretical security analysis, and healthcare-oriented deployment mapping of classical public-key and hash primitives used in blockchain protocols were paired with an implementation-oriented migration profile based on finalized National Institute of Standards and Technology (NIST) post-quantum standards. We summarize the mathematical assumptions underlying Rivest–Shamir–Adleman (RSA), Elliptic Curve Cryptography/Elliptic Curve Digital Signature Algorithm (ECC)/ECDSA, and Secure Hash Algorithm (SHA-2/SHA-3-family) hash functions; analyze their susceptibility to Shor’s and Gro­ver’s quantum algorithms; compare Federal Information Processing Standards (FIPS) 203 Module-Lattice-Based Key-Encapsulation Mechanism Standard (ML-KEM), FIPS 204 Module-Lattice-Based Digital Signature Standard (ML-DSA), and FIPS 205 Stateless Hash-Based Digital Signature Standard (SLH-DSA); and map their distinct roles to healthcare-ledger authorization, auditability, identity, and encrypted off-chain exchange. The term Advanced Hybrid Module-LWE & Code-Based (AHMC) is used only as shorthand for a standards-aligned hybrid PQC migration profile and does not denote a proprietary product, a novel algorithm, or a new cryptographic primitive. Proposed adoption of hybrid, quan­tum-resistant cryptographic primitives for cryptocurrency wallets, transaction signatures, and ledger security during an interim migration period (hybrid classical + PQC, followed by PQC-only). Qualitative and implementation-oriented assessment of (1) break feasibility of RSA/ECC under Shor’s algorithm, (2) effective security reduction for hash functions under Grover’s algorithm, (3) security assumptions and composition requirements of a standards-aligned hybrid migration profile, (4) transaction-size and verification-cost impact, and (5) healthcare-specific implications for long-retention consent, identity, provenance, and audit records.

Results: Shor’s algorithm reduces integer factorization and discrete logarithms to polynomial time, directly compromising RSA and ECC/ECDSA once fault-tolerant, large-scale quantum computers exist. Grover’s algorithm yields a quadratic speedup for brute-force search, effectively halving the security margin of symmetric keys and hash functions at fixed output sizes. The AHMC-L1/L3/L5 profiles use ML-KEM-512/768/1024 for key establishment and ML-DSA-44/65/87 for transaction authentication, with SLH-DSA as a hash-based fallback. During a hybrid ECDSA+PQC migration, verification requires one classical and one PQC verification per authorization; transaction-size overhead is dominated by PQC signatures, approximately 2.4 KB for ML-DSA-44, 3.3 KB for ML-DSA-65, and 4.6 KB for ML-DSA-87 before script and encoding overhead. For healthcare ledgers, these findings support selective use of post-quantum signatures for:

  • high-value state transitions,
  • one-time public-key registration where possible, and
  • continued off-chain storage of protected health information.

Deployment suitability remains contingent on workflow-specific latency, storage, availability, key lifecycle, and side-channel testing.

Conclusions: Quantum risk to blockchain signatures has direct implications for healthcare systems that depend on long-lived consent, identity, provenance, and audit records. A staged, standards-aligned migration profile can preserve authorization and ledger verifiability while keeping protected health information off-chain. The AHMC label refers only to this migration profile, not to a new cryptographic primitive; healthcare adoption requires open implementations, empirical benchmarking, crypto-agile key governance, and side-channel-resistant engineering.

Downloads

Download data is not yet available.

Author Biography

Rubayat Khan, PhD, Genomics Core Facility, Office of the Vice Chancellor for University of Nebraska Medical Center, Omaha, Nebraska, USA

 

   

References

1. Nakamoto S. Bitcoin: a peer-to-peer electronic cash system [Internet]. 2008 [cited 2026 Jan 23]. Available from: https://bitcoin.org/bitcoin.pdf

2. Antonopoulos AM. Mastering Bitcoin: unlocking digital cryptocurrencies. 2nd ed. Sebastopol (CA): O’Reilly Media; 2017.

3. Narayanan A, Bonneau J, Felten E, Miller A, Goldfeder S. Bitcoin and cryptocurrency technologies: a comprehensive introduction. Princeton (NJ): Princeton University Press; 2016.

4. Buterin V. Ethereum whitepaper: a next-generation smart contract and decentralized application platform [Internet]. 2014 [cited 2026 Jan 23]. Available from: https://ethereum.org/whitepaper/

5. Buterin V, Griffith V. Casper the friendly finality gadget [Preprint]. 2017 [cited 2026 Jan 23]. Available from: https://arxiv.org/abs/1710.09437

6. Diffie W, Hellman M. New directions in cryptography. IEEE Trans Inf Theory. 1976;22(6):644-54.

7. Rivest RL, Shamir A, Adleman L. A method for obtaining digital signatures and public-key cryptosystems. Commun ACM. 1978;21(2):120-6.

8. Miller VS. Use of elliptic curves in cryptography. In: Williams HC, editor. Advances in cryptology, CRYPTO ’85. Lecture Notes in Computer Science. Berlin: Springer; 1986. p. 417-26.

9. Koblitz N. Elliptic curve cryptosystems. Math Comput. 1987;48(177):203-9.

10. Boneh D, Shoup V. A graduate course in applied cryptography [Internet]. 2020 [cited 2026 Jan 23]. Available from: https://toc.cryptobook.us/

11. Hankerson D, Menezes A, Vanstone S. Guide to elliptic curve cryptography. New York: Springer; 2004.

12. Johnson D, Menezes A, Vanstone S. The elliptic curve digital signature algorithm (ECDSA). Int J Inf Secur. 2001;1(1):36-63.

13. Nielsen MA, Chuang IL. Quantum computation and quantum information. 10th anniversary ed. Cambridge: Cambridge University Press; 2010.

14. Kaye P, Laflamme R, Mosca M. An introduction to quantum computing. Oxford: Oxford University Press; 2007.

15. Mavroeidis V, Vishi K, Zych MD, Jøsang A. The impact of quantum computing on present cryptography. Int J Adv Comput Sci Appl. 2018;9(3):405-14.

16. National Academies of Sciences, Engineering, and Medicine. Quantum computing: progress and prospects. Washington (DC): The National Academies Press; 2019.

17. Shor PW. Algorithms for quantum computation: discrete logarithms and factoring. In: Proceedings of the 35th Annual Symposium on Foundations of Computer Science; 1994 Nov 20-22; Santa Fe, NM. Los Alamitos (CA): IEEE Computer Society Press; 1994. p. 124-34. doi: 10.1109/SFCS.1994.365700.

18. Shor PW. Polynomial-time algorithms for prime factorization and discrete logarithms on a quantum computer. SIAM J Comput. 1997;26(5):1484-509.

19. Proos J, Zalka C. Shor’s discrete logarithm quantum algorithm for elliptic curves. Quantum Inf Comput. 2003;3(4):317-44.

20. Roetteler M, Naehrig M, Svore KM, Lauter K. Quantum resource estimates for computing elliptic curve discrete logarithms [Preprint]. 2017 [cited 2026 Jan 23]. Available from: https://arxiv.org/abs/1706.06752

21. Grover LK. A fast quantum mechanical algorithm for database search. In: Proceedings of the 28th Annual ACM Symposium on Theory of Computing; 1996 May 22-24; Philadelphia, PA. New York: Association for Computing Machinery; 1996. p. 212-19. doi: 10.1145/237814.237866.

22. Brassard G, Høyer P, Tapp A. Quantum cryptanalysis of hash and claw-free functions. In: Lucchesi CL, Moura A, editors. LATIN ’98: theoretical informatics. Lecture Notes in Computer Science. Berlin: Springer; 1998. p. 163-9.

23. Bernstein DJ. Cost analysis of hash collisions: will quantum computers make SHARCS obsolete? [Internet]. In: SHARCS '09 Workshop Record: Proceedings of the 4th Workshop on Special-purpose Hardware for Attacking Cryptographic Systems; 2009 Sep 9-10; Lausanne, Switzerland. 2009. p. 105-16 [cited 2026 Jan 23]. Available from: https://cr.yp.to/hash/collisioncost-20090517.pdf

24. Amy M, Di Matteo O, Gheorghiu V, Mosca M, Parent A, Schanck JM. Estimating the cost of generic quantum pre-image attacks on SHA-2 and SHA-3 [Preprint]. 2016 [cited 2026 Jan 23]. Available from: https://arxiv.org/abs/1603.09383

25. Bernstein DJ, Lange T. Post-quantum cryptography. Nature. 2017;549(7671):188-94.

26. Mosca M. Cybersecurity in an era with quantum computers: will we be ready? [Preprint]. Cryptology ePrint Archive. 2015; Report No.: 2015/1075 [cited 2026 Jan 23]. Available from: https://eprint.iacr.org/2015/1075

27. Aggarwal D, Brennen GK, Lee T, Santha M, Tomamichel M. Quantum attacks on Bitcoin, and how to protect against them. Ledger. 2018;3:68-90.

28. Stewart I, Ilani S, Ozawa T, Yamamoto L. Committing to quantum resistance: a slow defence for Bitcoin against a fast quantum computing attack. R Soc Open Sci. 2018;5(6):180410.

29. National Institute of Standards and Technology. SHA-3 standard: permutation-based hash and extendable-output functions [Internet]. Gaithersburg (MD): National Institute of Standards and Technology (US); 2015. (FIPS PUB 202) [cited 2026 Jan 23]. Available from: https://csrc.nist.gov/pubs/fips/202/final

30. Merkle RC. A digital signature based on a conventional encryption function. In: Pomerance C, editor. Advances in cryptology, CRYPTO ’87. Lecture Notes in Computer Science. Berlin: Springer; 1988. p. 369-78.

31. Boneh D. Twenty years of attacks on the RSA cryptosystem. Notices Am Math Soc. 1999;46(2):203-13.

32. Bernstein DJ. Introduction to post-quantum cryptography. In: Bernstein DJ, Buchmann J, Dahmen E, editors. Post-quantum cryptography. Berlin: Springer; 2009. p. 1-14.

33. Chen L, Chen L, Jordan S, Liu YK, Moody D, Peralta R, et al. Report on post-quantum cryptography [Internet]. Gaithersburg (MD): National Institute of Standards and Technology (US); 2016. (NISTIR 8105) [cited 2026 Jan 23]. Available from: https://csrc.nist.gov/pubs/ir/8105/final

34. Alagic G, Alperin-Sheriff J, Apon D, Cooper D, Dang Q, Kelsey J, et al. Status report on the second round of the NIST post-quantum cryptography standardization process [Internet]. Gaithersburg (MD): National Institute of Standards and Technology (US); 2020. (NISTIR 8309) [cited 2026 Jan 23]. Available from: https://csrc.nist.gov/pubs/ir/8309/final

35. National Institute of Standards and Technology. Post-quantum cryptography standardization [Internet]. Gaithersburg (MD): National Institute of Standards and Technology (US); 2016 [cited 2026 Jan 23]. Available from: https://csrc.nist.gov/projects/post-quantum-cryptography/post-quantum-cryptography-standardization

36. Moody D. The NIST post-quantum cryptography standardization process [Internet]. Gaithersburg (MD): National Institute of Standards and Technology (US); 2020 [cited 2026 Jan 23]. Available from: https://csrc.nist.gov/projects/post-quantum-cryptography

37. National Institute of Standards and Technology. Module-lattice-based key-encapsulation mechanism standard [Internet]. Washington (DC): U.S. Department of Commerce; 2024. (FIPS 203) [cited 2026 Jan 23]. Available from: https://csrc.nist.gov/pubs/fips/203/final

38. National Institute of Standards and Technology. Module-lattice-based digital signature standard [Internet]. Washington (DC): U.S. Department of Commerce; 2024. (FIPS 204) [cited 2026 Jan 23]. Available from: https://csrc.nist.gov/pubs/fips/204/final

39. National Institute of Standards and Technology. Stateless hash-based digital signature standard [Internet]. Washington (DC): U.S. Department of Commerce; 2024. (FIPS 205) [cited 2026 Jan 23]. Available from: https://csrc.nist.gov/pubs/fips/205/final

40. Peikert C. A decade of lattice cryptography. Found Trends Theor Comput Sci. 2016;10(4):283-424.

41. Micciancio D, Regev O. Lattice-based cryptography. In: Bernstein DJ, Buchmann J, Dahmen E, editors. Post-quantum cryptography. Berlin: Springer; 2009. p. 147-91.

42. Langlois A, Stehlé D. Worst-case to average-case reductions for module lattices. Des Codes Cryptogr. 2015;75(3):565-99.

43. Stebila D, Mosca M. Post-quantum key exchange for the Internet and the Open Quantum Safe project. In: Avanzi R, Heys H, editors. Selected areas in cryptography - SAC 2016. Lecture Notes in Computer Science. Cham: Springer; 2017. Vol. 10532. p. 1-24.

44. Crockett E, Paquin C, Stebila D. Prototyping post-quantum and hybrid key exchange and authentication in TLS and SSH [Internet]. In: Proceedings of the 2nd NIST Post-Quantum Cryptography Standardization Conference; 2019 Aug 22-24; Santa Barbara, CA. Gaithersburg (MD): National Institute of Standards and Technology (US); 2019 [cited 2026 Jan 23]. Available from: https://csrc.nist.gov/CSRC/media/Events/Second-PQC-Standardization-Conference/documents/accepted-papers/stebila-prototyping-post-quantum.pdf

45. Alkim E, Ducas L, Pöppelmann T, Schwabe P. Post-quantum key exchange: a new hope [Internet]. In: 25th USENIX Security Symposium (USENIX Security 16); 2016 Aug 10-12; Austin, TX. Berkeley (CA): USENIX Association; 2016. p. 327-43 [cited 2026 Jan 23]. Available from: https://www.usenix.org/conference/usenixsecurity16/technical-sessions/presentation/alkim

46. Buchmann J, Dahmen E, Szydlo M. Hash-based digital signature schemes. In: Bernstein DJ, Buchmann J, Dahmen E, editors. Post-quantum cryptography. Berlin: Springer; 2009. p. 35-93.

47. Güneysu T, Oder T, Pöppelmann T, Schwabe P. Lattice-based signatures: optimization and implementation on reconfigurable hardware. IEEE Trans Comput. 2015;64(7):1954-67.

48. Bindel N, Brendel J, Fischlin M, Gonçalves B, Steinwandt R. Transitioning to a quantum-resistant public key infrastructure. In: Mosca M, editor. Post-quantum cryptography. Berlin: Springer; 2017. p. 384-405.

49. Sendrier N. Code-based cryptography. In: van Tilborg HCA, Jajodia S, editors. Encyclopedia of cryptography and security. Boston (MA): Springer; 2011.

50. Overbeck R, Sendrier N. Code-based cryptography. In: Bernstein DJ, Buchmann J, Dahmen E, editors. Post-quantum cryptography. Berlin: Springer; 2009. p. 95-145.

51. Ducas L, Durmus A, Lepoint T, Lyubashevsky V. Learning a zonotope and more: cryptanalysis of NTRUSign countermeasures. In: Takagi T, Peyrin T, editors. Advances in cryptology, ASIACRYPT 2017. Lecture Notes in Computer Science. Cham: Springer; 2017. p. 433-63.

52. McEliece RJ. A public-key cryptosystem based on algebraic coding theory [Internet]. Pasadena (CA): Jet Propulsion Laboratory; 1978. (DSN Progress Report 42-44). p. 114-16 [cited 2026 Jan 23]. Available from: https://tda.jpl.nasa.gov/progress_report/42-44/44N.PDF

53. Agbo CC, Mahmoud QH, Eklund JM. Blockchain technology in healthcare: a systematic review. Healthcare (Basel). 2019;7(2):56.

54. Elangovan D, Long CS, Bakrin FS, Tan CS, Goh KW, Yeoh SF, et al. The use of blockchain technology in the health care sector: systematic review. JMIR Med Inform. 2022;10(1):e17278.

55. Maurer UM. Fast generation of prime numbers and secure public-key cryptographic parameters. J Cryptol. 1995;8(3):123-55.

56. Kocher P, Jaffe J, Jun B. Differential power analysis. In: Wiener M, editor. Advances in cryptology, CRYPTO ’99. Lecture Notes in Computer Science. Berlin: Springer; 1999. p. 388-97.

57. Genkin D, Pachmanov L, Pipman I, Tromer E. Physical key extraction attacks on PCs. Commun ACM. 2016;59(6):70-9.

Published

2026-08-31

How to Cite

Khan, R., Karim, PhD, M., & Roosan, PharmD, PhD, D. (2026). Quantum Threats To Bitcoin, Cryptocurrency and Blockchain. Blockchain in Healthcare Today, 9(2). https://doi.org/10.30953/bhty.v9.496