简要
- StarkWare表示,第一笔量子安全的比特币交易已在比特币主网上被挖掘。
- 该方法使用基于哈希的安全性,而不改变比特币的共识规则。
- StarkWare仍然支持软分叉作为对抗量子计算机的长期防御。
Starkware,这家支持以太坊二层网络Starknet的区块链基础设施公司,表示第一笔量子安全的比特币交易已在比特币主网上被挖掘,测试了一种在不改变网络共识规则的情况下保护资金免受未来量子攻击的方法。
在周三的一篇博客文章中,Starkware表示该交易使用了量子安全的比特币(QSB),这是由Starkware研究员Avihu Levy开发的一种方法。Levy在四月份发表了这项研究,后来Starkware工程师Tomer Giladi帮助将该提案转化为一笔可行的主网交易。

“A quantum-safe transaction was mined on the Bitcoin mainnet today that holds up against an adversary running a working quantum computer,” Starkware wrote. “Bitcoin holders now have a way to move coins into storage a quantum computer cannot open.”
Bitcoin uses elliptic-curve cryptography to secure transactions, which a sufficiently powerful quantum computer running Shor’s algorithm could theoretically break to derive private keys and steal funds. Protecting the network could eventually require either a hard fork, which introduces rules incompatible with older software and can split the network, or a soft fork, which can introduce new rules while remaining compatible with older nodes.
Starkware said a soft fork remains the preferred long-term solution, while QSB provides a way to protect individual holdings without waiting for a network upgrade.
“I still want Bitcoin to choose to do a soft fork and I expect we will get one,” Starkware CEO Eli Ben-Sasson said. “What today’s successful transaction offers Bitcoin is a reassurance that holdings can be protected before that happens.”
The issue has drawn growing attention as researchers assess which Bitcoin holdings could be most exposed to future quantum attacks.
6月,Coinbase的量子咨询委员会估计,由于暴露的公钥和地址重用,大约有700万枚比特币可能面临风险。
Starkware表示,量子安全比特币(Quantum-Safe Bitcoin)增加了第二把基于哈希函数而非椭圆曲线的抗量子锁。它使用“签名研磨”(signature grinding),在链下执行计算工作,以找到比特币会接受为有效格式签名的交易哈希。

Starkware承认,QSB并不能使比特币实现量子安全,但可以保护特定交易,使用基于哈希的安全性。它无法保护公钥已暴露的地址,并且目前要求交易直接发送给矿工。
“这一惊人的成就不应被视为‘比特币已为量子威胁做好准备’的信号。远非如此,”Ben-Sasson在X上写道。
“我希望这项杰出工作获得的任何关注也能帮助人们清楚地听到我们的信息:休斯顿,我们遇到了问题,解决之道应该是认真对待为[比特币]进行严肃的软分叉,”他说。“这样才能避免灾难,我们还有时间。”






