Google’s Quantum AI team said earlier this week that a future quantum computer could derive a bitcoin private key from a public key in roughly nine minutes. The number ricocheted across social media and spooked markets.
But, what does it actually mean in practice?
Let’s start with how bitcoin transactions work. When you send bitcoin, your wallet signs the transaction with a private key, a secret number that proves you own the coins.
That signature also reveals your public key, a shareable address, which gets broadcast to the network and sits in a waiting area called the mempool until a miner includes it in a block. On average, that confirmation takes about 10 minutes.
Your private key and public key are linked by a math problem called the elliptic curve discrete logarithm problem. Classical computers can’t reverse that math in any useful timeframe, while a sufficiently powerful future quantum computer running an algorithm called Shor’s could.
Here’s where the nine minutes part comes in. Google’s paper found that a quantum computer could be “primed” in advance by pre-computing the parts of the attack that don’t depend on any specific public key.
Once your public key appears in the mempool, the machine only needs about nine minutes to finish the job and derive your private key. Bitcoin’s average confirmation time is 10 minutes. That gives the attacker a roughly 41% chance of deriving your key and redirecting your funds before the original transaction confirms.
Think of it like a thief spending hours building a universal safe-cracking machine (pre-computation). The machine works for any safe, but each time a new safe appears, it only needs a few final adjustments — and that last step is what takes about nine minutes.
That’s the mempool attack. It’s alarming but requires a quantum computer that doesn’t exist yet. Google’s paper estimates such a machine would need fewer than 500,000 physical qubits. Today’s largest quantum processors have around 1,000.
The bigger and more immediate concern is the 6.9 million bitcoin, roughly one-third of total supply, that already sit in wallets where the public key has been permanently exposed.
This includes early bitcoin addresses from the network’s first years that used a format called pay-to-public-key, where the public key is visible on the blockchain by default. It also includes any wallet that has reused an address, since spending from an address reveals the public key for all remaining funds.
These coins don’t need the nine-minute race. An attacker with a sufficiently powerful quantum computer could crack them at leisure, working through exposed keys one by one without any time pressure.
Bitcoin’s 2021 Taproot upgrade made this worse, as CoinDesk reported earlier Tuesday. Taproot changed how addresses work so that public keys are visible on-chain by default, inadvertently expanding the pool of wallets that would be vulnerable to a future quantum attack.
The bitcoin network itself would keep running. Mining uses a different algorithm called SHA-256 that quantum computers can’t meaningfully speed up with current approaches. Blocks would still be produced.
The ledger would still exist. But if private keys can be derived from public keys, the ownership guarantees that make bitcoin valuable break down. Anyone with exposed keys is at risk of theft, and institutional trust in the network’s security model collapses.
The fix is post-quantum cryptography, which replaces the vulnerable math with algorithms that quantum computers can’t crack. Ethereum has spent eight years building toward that migration. Bitcoin hasn’t even started.
Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to
Disclaimer.
Related Articles
BTC edges up 0.46% in 15 minutes: institutional fund outflows and macro risk-off sentiment in sync drove the move
From 15:00 to 15:15 (UTC) on 2026-04-16, BTC logged a +0.46% return within 15 minutes. The price fluctuated in a range of 73,939.7 to 74,440.0 USDT, with an amplitude of 0.68%. During this time window, market attention increased, short-term volatility intensified, and fund-flow characteristics changed noticeably.
The main driver of this deviation is the continued outflow of large amounts of capital from exchanges. According to on-chain data, in the past 24 hours the net flow was -14,408.84 BTC, mainly concentrated in large transfer ranges of more than $1 million (especially>$10M net outflow -12,987.03 BTC). This shows that institutions and large holders actively reduced their BTC holdings on exchanges, and short-term selling pressure was significantly lowered. Against the backdrop of persistently weak liquidity, with order book depth remaining at a low level for a long time, the price has become more sensitive to medium-sized buy orders—amplifying the impact of even modest inflows on spot market price action.
In addition, macro conditions changed in parallel and produced a synchronized effect: easing geopolitical tensions in the Middle East boosted overall market sentiment. International gold prices rose, global equity markets hit new highs, and the market re-evaluated the probability of the Federal Reserve cutting rates within the year, further increasing investor attention to safe-haven assets (including BTC). At the same time, on-chain data indicates that the “whale” trading activity during this phase is at an annual low (>$1M transfers fell to 1,485 transactions). With heavy market wait-and-see sentiment and limited short-term supply, BTC’s responsiveness to sudden buy-side capital was further enhanced.
Investors should be reminded that current market liquidity is still fragile. Insufficient order book depth increases the market’s sensitivity to large capital movements, and short-term volatility may intensify. Going forward, focus on further shifts in on-chain large-fund flows, changes in price action as it breaks through support or resistance regions, and the risks and opportunities brought by related macro policies and geopolitical developments. Please continue to track key data and stay alert to any sudden shocks during the period of abnormal moves.
GateNews25m ago
Bitcoin Transactions Face 70-Page Tax Filing Burden Annually
According to Nicholas Anthony of the Cato Institute's Center for Monetary and Financial Alternatives, spending Bitcoin on everyday purchases creates an unexpected tax compliance nightmare. The IRS treats Bitcoin as property, not currency, meaning every transaction—even a $5 coffee
CryptoFrontier59m ago
Bitcoin, Ethereum and Solana ETFs Record Positive Net Inflows on April 16
Gate News message, according to the April 16 update, Bitcoin ETFs recorded a 1-day net inflow of +2,855 BTC (+$209.95M) and a 7-day net inflow of +11,849 BTC (+$871.52M). Ethereum ETFs showed a 1-day net inflow of +15,477 ETH (+$35.44M) and a 7-day net inflow of +90,366 ETH (+$206.94M). Solana ETFs
GateNews1h ago
Bitcoin Breaks Below $74K as 24-Hour Decline Reaches 0.02%
Gate News message, April 16 — Bitcoin fell below the $74,000 level, currently trading at $73,906 with a 24-hour decline of 0.02%.
GateNews1h ago
Newly Created Wallet Withdraws 1,470 BTC Worth $109M from Major CEX
Gate News message, April 16 — According to Onchain Lens, a newly created wallet withdrew 1,470 BTC, valued at approximately $109 million, from a major CEX.
GateNews1h ago
BTC falls below 74000 USDT
Gate News bot message, Gate quotes show that BTC has fallen below 74000 USDT, with the current price at 73988.8 USDT.
CryptoRadar1h ago