Key points

  • Europol identifies cryptocurrency wallet keys, rather than blockchain hash functions, as the main point of exposure to future quantum attacks.
  • The agency recommends phased adoption of quantum-resistant cryptography, stronger key management and coordinated migration planning.
  • Europol says the timing of a capable quantum computer is uncertain and does not predict that cryptocurrencies will inevitably collapse.

Europol is urging cryptocurrency developers, wallet providers and policymakers to begin preparing for quantum-era security risks before machines capable of breaking current public-key systems exist. In two reports published October 7, the European Union law-enforcement agency separated the most exposed parts of crypto infrastructure from those expected to withstand quantum attacks more effectively. Its central finding is narrower than a prediction of blockchain collapse: wallet authorization keys are the primary concern, while the hash functions supporting block integrity are comparatively resistant.

Why wallet keys are the main exposure

Cryptocurrency wallets rely on a private key to authorize spending and a corresponding public key that networks use to verify signatures. Europol’s European Cybercrime Centre said a sufficiently capable quantum computer could use an exposed public key to derive its private counterpart, potentially allowing unauthorized transfers. That scenario does not mean every address is equally vulnerable at the same time. Risk depends on the signature design, whether a public key has been revealed and how quickly an attacker could complete the calculation before a transaction is confirmed.

Related reporting: Quantum researchers cut key Bitcoin attack benchmark by 86%

Blockchains face different cryptographic risks

The report draws an important distinction between digital signatures and cryptographic hashing. Quantum algorithms pose a more direct threat to widely used public-key systems such as elliptic-curve cryptography. Hash functions, by contrast, retain a much larger practical security margin under foreseeable quantum techniques, according to Europol. The agency therefore rejects the idea that quantum computing will automatically make cryptocurrencies unusable. The more immediate planning problem is how to replace vulnerable authorization methods without disrupting access to funds or network operations.

Migration would be a coordination challenge

Europol recommends a phased transition to post-quantum cryptography, supported by stronger wallet security, flexible key management and testing that allows old and new systems to coexist during migration. Decentralized networks make that process complicated because software developers, exchanges, custodians, wallet makers and users may all need to act. Some funds could sit in inactive addresses whose owners cannot be reached. Larger post-quantum signatures could also increase transaction data and fees, meaning technical choices may affect network capacity as well as security.

A second report addresses stored encrypted data

Europol separately examined “harvest now, decrypt later” attacks with University Carlos III of Madrid. In that scenario, an attacker collects encrypted files or communications now and waits for future computing capabilities to unlock them. The report says there is no clear evidence that the tactic is being used systematically at scale. Even so, long-lived government communications, intellectual property, medical records and law-enforcement data may justify earlier migration because their confidentiality must survive for years.

Preparation is not a forecast of imminent failure

The timing of a cryptographically relevant quantum computer remains uncertain, and Europol did not identify a current breach of a cryptocurrency network. Its argument is that complex migrations take long enough that waiting for certainty could leave too little time. Organizations are advised to inventory where cryptography is used, identify data and assets that need long-term protection, retire outdated protocols and test quantum-resistant alternatives. For crypto users, no universal migration deadline has been announced; any future action should follow verified instructions from the relevant network or wallet provider rather than speculative claims. This is risk-management guidance, not evidence that an attack has begun.

Sources

AI-generated editorial image; not a photograph of the reported event. Prepared with AI assistance and source verification.