Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

iTechGuides is reader-supported. When you buy through links on our site, we may earn an affiliate commission. As an Amazon Associate I earn from qualifying purchases. Learn more

An Ethereum Foundation researcher has urged the blockchain industry to prepare calmly for a hypothetical risk: powerful AI might help uncover a mathematical shortcut that weakens elliptic-curve signatures before quantum computers can break them. That is a warning about a possible future discovery—not a demonstrated way to steal wallet keys. CoinDesk reports that no practical attack on Bitcoin or Ethereum wallet keys has been shown.

What Justin Drake warned about

Ethereum Foundation researcher Justin Drake called for gradual preparation, saying: “Today I call upon the blockchain industry to calmly begin planning for ‘bunker mode,’” according to Decrypt’s October 7, 2026 report. Drake’s proposal is a controlled migration toward fresh addresses whose public keys have not appeared on-chain. The Block reports that he presented this as a personal recommendation, not an emergency order, and cautioned against panic or rushed transfers.

The concern is not that an AI would guess a wallet’s secret key by brute force. Ethereum standard accounts use ECDSA signatures on the secp256k1 curve. A transaction is authorized with a private key; if an attacker could derive that private key from the corresponding public key, the attacker could sign transactions. Drake’s scenario is that AI might help people discover a new mathematical technique that makes that derivation practical. No such practical wallet-key attack has been demonstrated, according to CoinDesk.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Decrypt attributes the phrase “in the worst case in months not years” to Drake. It describes a worst-case possibility, not a forecast or confirmed timeline. The reported OpenAI figures do not change that evidence status: CoinDesk says OpenAI released 722 mathematical manuscripts produced by an unreleased model and tested it on approximately 4,000 research problems. Those are measures of mathematical work and evaluation, not evidence that a model recovered wallet keys or broke ECDSA.

How the AI scenario differs from the quantum threat

Question AI-assisted mathematical shortcut Quantum attack
Proposed mechanism AI could help researchers find a classical mathematical technique that weakens elliptic-curve cryptography. A sufficiently capable quantum computer could use quantum algorithms and hardware to attack vulnerable cryptography.
Evidence status Hypothetical; no practical wallet-key attack has been demonstrated, according to CoinDesk. A recognized future cryptographic concern. Ethereum.org says no quantum computer today can break Ethereum’s cryptography.
Timing Drake’s “in the worst case in months not years” wording is explicitly a worst-case scenario, not a prediction. The timeline is uncertain. Ethereum.org says current hardware is far from the required capability and describes the threat as not imminent.
What users should do now Follow official guidance; Drake’s personal proposal is not a blanket instruction to transfer funds. Ethereum.org says users have nothing to do for now.

Ethereum.org cites a March 2026 Google Quantum AI estimate of roughly 1,200 logical qubits as a possible requirement to break 256-bit elliptic-curve cryptography. That is an estimate about a quantum attack, not an AI capability and not evidence of a present-day attack.

What public-key exposure means for an Ethereum account

Ethereum.org explains that a standard account’s address is derived from a hash of its public key. An account that has only received ether has not exposed its public key through a sent transaction; the key remains obscured by that hash. Once a standard account sends a transaction, its public key is exposed on-chain.

This distinction helps explain the idea behind fresh addresses, but it is not a reason to move funds immediately. Transactions can introduce their own risks, and current Ethereum guidance does not tell users to migrate now. Drake’s reported proposal should be understood as a planning concept rather than step-by-step consumer advice.

Free tools Windows power users keep installed

One-click scans. No signup required.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Ethereum’s post-quantum work goes beyond wallet keys

Ethereum’s cryptographic exposure is broader than standard-account signatures. The Ethereum.org roadmap identifies several areas that may need upgrades:

  • ECDSA account signatures: used by standard Ethereum accounts to authorize transactions.
  • BLS validator signatures: used in Ethereum’s proof-of-stake infrastructure.
  • KZG commitments: cryptographic commitments used by Ethereum infrastructure.
  • Some zero-knowledge proof systems: these may also need post-quantum alternatives.

The roadmap describes work on hash-based validator signatures and related infrastructure. It also identifies account signature agility through EIP-8141, an account-abstraction proposal that remains under consideration. Ethereum.org gives approximate 2029 infrastructure targets while warning that plans may change; these are roadmap targets, not a guarantee of completion on that date.

Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.Support on Ko-Fi

What Ethereum users should do now

Ethereum.org’s current quantum guidance says no quantum computer today can break Ethereum’s cryptography and users have nothing to do for now. It expects future wallet software to guide any eventual migration. For now, follow official Ethereum and wallet-provider guidance rather than moving assets in response to a worst-case scenario or buying a product marketed as a fix for ECDSA.

That current advice does not dismiss the value of industry preparation. Protocol developers can work on cryptographic upgrades before a threat becomes immediate; ordinary users should not mistake that preparation for evidence that their wallets are presently being broken.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.