Bitcoin Forum
April 16, 2026, 02:00:39 AM *
News: Latest Bitcoin Core release: 30.2 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: BIP-361  (Read 59 times)
dkbit98 (OP)
Legendary
*
Offline Offline

Activity: 2940
Merit: 8626


AntiSwap.io - NO AML/KYC EXCHANGER MONITORING


View Profile WWW
April 15, 2026, 09:14:50 AM
Merited by LoyceV (6), BitMaxz (1)
 #1

What do you think about newly proposed BIP-361 for Post Quantum Migration and Legacy Signature Sunset?
Several bitcoin developers and Jameson Lopp are supporting this proposal that would freeze quantum vulnerable wallets, including dormant coins for Satoshi Nakamoto and everyone else.
It is estimated that around 6.7 million BTC is currently held in legacy wallet addresses, that is almost 32% of bitcoin supply!

There are three offered proposals:

Quote
Phase A: Disallows sending of any funds to quantum-vulnerable addresses, hastening the adoption of PQ address types.

Phase B: Renders ECDSA/Schnorr spends invalid, preventing all spending of funds in quantum-vulnerable UTXOs. This is triggered by a well-publicized flag-day five years after activation.

Phase C (TBD): Pending further research, a separate BIP proposing a method to allow quantum safe recovery of legacy UTXOs, likely via zero knowledge proof of possession of a corresponding BIP-39 seed phrase.

You can read Bip-361 github page here:
https://github.com/bitcoin/bips/blob/master/bip-0361.mediawiki


Code:
[center][table][tr][td][font=Arial Black][size=24pt][glow=#222,1][nbsp][url=https://en.antiswap.io/?utm_source=bitcointalk_s3][size=5pt][sup][size=21pt][b][color=#03adfd]🛡[/b][/sup][/size][size=13pt][nbsp][/size][size=5pt][sup][size=18pt][color=#fff]Anti[color=#3b82f6]Swap[/sup][/size][nbsp][nbsp][size=14pt][sup][size=8pt][i][color=#fff]NO[nbsp]AML/KYC—EXCHANGER[nbsp]MONITORING[/sup][/size][nbsp][nbsp][size=6pt][sup][size=16pt][glow=#03adfd,1][nbsp][font=Impact][color=#fff]900+[/font][nbsp][/glow][/size][/sup][/size][size=6pt][sup][size=16pt][glow=#3b82f6,1][nbsp][size=8pt][sup][size=8pt][color=#fff]EXCHANGERS[/size][/sup][/size][nbsp][/glow][/size][/sup][/size][/url][nbsp][nbsp][font=Arial][b][size=14pt][sup][size=8pt][url=https://bitcointalk.org/index.php?topic=5568680.msg66184227#msg66184227][color=#fff]BITCOINTALK[/url][/size][/sup][/size][/font][nbsp][size=9pt][sup][size=18pt][color=#3b82f6]│[/size][/sup][/size][nbsp][font=Arial][b][size=14pt][sup][size=8pt][url=https://t.me/+qGCCD6ncnctiZTli][color=#fff]TELEGRAM[/url][/size][/sup][/size][/font][nbsp][nbsp][/td][/tr][/table][/center]
LoyceV
Legendary
*
Offline Offline

Activity: 4004
Merit: 21611


Thick-Skinned Gang Leader and Golden Feather 2021


View Profile WWW
April 15, 2026, 09:57:06 AM
 #2

First: I'm far from an expert on quantum decryption, but I've read things Wink
It is estimated that around 6.7 million BTC is currently held in legacy wallet addresses, that is almost 32% of bitcoin supply!
As far as I understand, those are only at risk after exposing the public key, although given fast enough quantum decryption that could be enough time to replace a transaction after it's broadcasted and before it's confirmed.

Quote
Quote
Phase B: Renders ECDSA/Schnorr spends invalid, preventing all spending of funds in quantum-vulnerable UTXOs. This is triggered by a well-publicized flag-day five years after activation.
I was surprised when I saw that Taproot addresses introduced risks that Segwit fixed. But those 5 years, in some scenarios, may even be too late.

Quote
Quote
Phase C (TBD): Pending further research, a separate BIP proposing a method to allow quantum safe recovery of legacy UTXOs, likely via zero knowledge proof of possession of a corresponding BIP-39 seed phrase.
How's that going to work for addresses that don't have a corresponding seed phrase? Or just funds sent to pubkey, like Satoshi's mined coins?

¡uʍop ǝpᴉsdn pɐǝɥ ɹnoʎ ɥʇᴉʍ ʎuunɟ ʞool no⅄
nc50lc
Legendary
*
Offline Offline

Activity: 3108
Merit: 8624


Self-proclaimed Genius


View Profile
April 15, 2026, 12:59:19 PM
 #3

I was surprised when I saw that Taproot addresses introduced risks that Segwit fixed. But those 5 years, in some scenarios, may even be too late.
Which risks specifically?

Several bitcoin developers and Jameson Lopp are supporting this proposal that would freeze quantum vulnerable wallets, including dormant coins for Satoshi Nakamoto and everyone else.
It is estimated that around 6.7 million BTC is currently held in legacy wallet addresses, that is almost 32% of bitcoin supply!
Not just legacy, SegWit v0 uses ECDSA signature as well,
So every bitcoin users will be affected by this if they wont move their bitcoins to the new quantum resistant address during 'Phase A'.

███████████████████████████
███████▄████████████▄██████
████████▄████████▄████████
███▀█████▀▄███▄▀█████▀███
█████▀█▀▄██▀▀▀██▄▀█▀█████
███████▄███████████▄███████
███████████████████████████
███████▀███████████▀███████
████▄██▄▀██▄▄▄██▀▄██▄████
████▄████▄▀███▀▄████▄████
██▄███▀▀█▀██████▀█▀███▄███
██▀█▀████████████████▀█▀███
███████████████████████████
.
.Duelbits PREDICT..
█████████████████████████
█████████████████████████
███████████▀▀░░░░▀▀██████
██████████░░▄████▄░░████
█████████░░████████░░████
█████████░░████████░░████
█████████▄▀██████▀▄████
████████▀▀░░░▀▀▀▀░░▄█████
██████▀░░░░██▄▄▄▄████████
████▀░░░░▄███████████████
█████▄▄█████████████████
█████████████████████████
█████████████████████████
.
.WHERE EVERYTHING IS A MARKET..
█████
██
██







██
██
██████
Will Bitcoin hit $200,000
before January 1st 2027?

    No @1.15         Yes @6.00    
█████
██
██







██
██
██████

  CHECK MORE > 
satscraper
Legendary
*
Offline Offline

Activity: 1428
Merit: 2640



View Profile
April 15, 2026, 01:31:32 PM
Merited by LoyceV (4)
 #4


I was surprised when I saw that Taproot addresses introduced risks

Just for the sake of prove that it is true for Taproot :


Yeah, those keys are tweaked, but the tweak is nothing more than mapping secp256k1 points using the same secp256k1 arithmetic, which is believed to be easily reversed by quantum computers with the help of Shor’s algorithm. So the tweak adds nothing toward security.


▄▄███████████████████▄▄
▄███████████████████████▄
████████████████████████
█████████████████████████
████████████████████████
████████████▀██████▀████
████████████████████████
█████████▄▄▄▄███████████
██████████▄▄▄████████████
████████████████████████
████████████████▀▀███████
▀███████████████████████▀
▀▀███████████████████▀▀
 
 EARNBET 
██
██
██
██
██
██
██
██
██
██
██
██
██
███████▄▄███████████
████▄██████████████████
██▀▀███████████████▀▀███
▄████████████████████████
▄▄████████▀▀▀▀▀████████▄▄██
███████████████████████████
█████████▌██▀████████████
███████████████████████████
▀▀███████▄▄▄▄▄█████████▀▀██
▀█████████████████████▀██
██▄▄███████████████▄▄███
████▀██████████████████
███████▀▀███████████
██
██
██
██
██
██
██
██
██
██
██
██
██


▄▄▄
▄▄▄███████▐███▌███████▄▄▄
█████████████████████████
▀████▄▄▄███████▄▄▄████▀
█████████████████████
▐███████████████████▌
███████████████████
███████████████████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀

 King of The Castle 
 $200,000 in prizes
██
██
██
██
██
██
██
██
██
██
██
██
██

 62.5% 

 
RAKEBACK
BONUS
flapduck
Full Member
***
Offline Offline

Activity: 133
Merit: 100


View Profile
April 15, 2026, 01:46:12 PM
Merited by LoyceV (25)
 #5

The specific risk is simple enough: Taproot leaves the pubkey sitting on-chain from day one, while P2WPKH and old P2PKH hide it behind HASH160 until you spend. That is the part SegWit improved, and Taproot gave back in exchange for other benefits. So no, the exposure profile is not identical across all script types, and saying that every user is equally at risk right now, this muddies the picture. They are all living under the same eventual PQ cloud, sure, but some are standing in the rain already and some only get wet when they spend.

flapduck reporting for duty
LoyceV
Legendary
*
Offline Offline

Activity: 4004
Merit: 21611


Thick-Skinned Gang Leader and Golden Feather 2021


View Profile WWW
April 15, 2026, 02:29:25 PM
 #6

Which risks specifically?
I was told (by listening to the Dutch Cryptocast) that Taproot introduced a vulnerability for quantum decryption comparable to legacy addresses with exposed public key.

@flapduck: have an avatar Smiley

¡uʍop ǝpᴉsdn pɐǝɥ ɹnoʎ ɥʇᴉʍ ʎuunɟ ʞool no⅄
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!