Coinbase Prepares for Quantum Threats, Designs Post-Quantum Defenses
Coinbase, one of the largest cryptocurrency exchanges, is preparing for a post-quantum world where its $250 billion in assets could be vulnerable to quantum threats. According to Yehuda Lindell, Coinbase's head of cryptography, the company is designing agnostic post-quantum defenses to support whatever signing schemes blockchains adopt.
While it's unclear what kind of post-quantum signature scheme Bitcoin will use, Lindell noted that 'it's unlikely there will be a single signing scheme that everybody will use.' This means Coinbase must prepare for different outcomes on various blockchains.
The challenge lies in safeguarding multi-party computation (MPC), which is crucial for protecting assets. However, not all post-quantum signature schemes are 'MPC-friendly,' and hash-based signatures may lack the necessary mathematical structure to enable MPC.
To mitigate this risk, Coinbase is researching a fallback architecture centered on programmable Hardware Security Modules (HSMs). This would encrypt private keys with post-quantum cryptography and only assemble them within physically secure HSMs. While this setup has its own security concerns, Lindell expressed confidence in the rigorous physical side-channel protections and strict code-upload controls.