Bitcoin's quantum plan assumes some algorithms break. AI just weakened one in 60 hours
AI heavyweight Anthropic said earlier this week that its Claude Mythos Preview model had discovered an attack that halves the effective key strength of HAWK, a proposed replacement for the digital signatures that protect online banking and web payments.
The work took about 60 hours and roughly $100,000 in computing costs, against an algorithm that had survived two years and two rounds of expert human review.
Digital signature schemes such as HAWK prove that a message or data set came from whoever holds a particular digital key that points to that exact message. Bitcoin uses one every time a coin moves, and so does every website showing a padlock in the browser.
The versions in use today are expected to fail to quantum computers, and HAWK is one of the candidates under review to replace them. It has not been publicly deployed anywhere.
Nothing in the research affects bitcoin or ether currently, as both secure transactions with elliptic curve signatures, which neither attack had targeted. HAWK is not one of the schemes bitcoin would migrate to.
BIP-360, the proposal to give bitcoin quantum-resistant addresses, specifies three algorithms NIST has already standardized, and includes several deliberately so users have fallbacks if one is later broken by quantum or classical advances.
What changed is the speed of the classical side. BIP-361, the companion proposal that would freeze more than a third of bitcoin’s supply, argues that the migration window is closing because cryptographic attacks are improving by up to 20-fold. Anthropic’s results align with that trend, with a model behind it.
Against HAWK’s smallest parameter set, Anthropic said the expected cost of recovering a key fell from about 2^64 operations to 2^38. Larger keys remain impractical to attack, but doubling key sizes to compensate removes most of what made HAWK attractive.
The company disclosed the attack to HAWK’s authors in June and coordinated publication with NIST’s public mailing list.
A second result improved attacks on a deliberately weakened version of AES, the cipher used across the industry to encrypt wallet files, by factors of 200 to 800.
Importantly for crypto developers, Anthropic said the model produced smaller improvements, under tenfold, against Poseidon, the hash function that underpins many zero-knowledge proof systems, including those securing rollups and privacy protocols.
You may also like
Archives
- August 2026
- July 2026
- June 2026
- May 2026
- April 2026
- March 2026
- February 2026
- January 2026
- December 2025
- November 2025
- October 2025
- September 2025
- August 2025
- July 2025
- June 2025
- May 2025
- April 2025
- March 2025
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- January 2024
- December 2023
- January 2023
- December 2022
- January 2022
- December 2021
- January 2021
- December 2020
- December 2019