How soon can quantum computers break 256-bit elliptic-curve cryptography in crypto?

Google researchers estimate that an advanced quantum computer could break 256-bit elliptic-curve cryptography, the standard securing most cryptocurrencies, in just a few minutes. While these machines are still years away, a $7 billion global race is underway to develop and implement quantum-resistant security protocols before existing systems become vulnerable.
How soon can quantum computers break 256-bit elliptic-curve cryptography in crypto?

Google researchers have estimated that a sufficiently advanced quantum computer could compromise 256-bit elliptic-curve cryptography—the foundational security layer for Bitcoin, Ethereum, and modern banking—in a matter of minutes. While functional quantum computers capable of such feats are likely still years away from deployment, the theoretical threat has triggered a massive $7 billion effort to secure digital assets. The transition to post-quantum cryptography (PQC) is no longer a distant concern but an active financial and technical priority for the crypto industry.

The urgency is driven partly by the 'harvest now, decrypt later' threat, where malicious actors collect encrypted data today with the intention of unlocking it once quantum technology matures. Because the elliptic-curve methods currently used to generate public and private keys are vulnerable to specific quantum algorithms, such as Shor’s algorithm, the entire blockchain architecture must eventually migrate to new mathematical standards that quantum machines cannot easily solve.

From a regulatory and geopolitical perspective, the U.S. National Institute of Standards and Technology (NIST) has already begun finalizing standards for quantum-resistant algorithms to protect national security and financial infrastructure. For the crypto sector, this will likely require major protocol upgrades or hard forks. Developers will need to provide users with a path to migrate funds from legacy addresses to new, quantum-safe wallets, a process that is expected to be both technically challenging and expensive.

For investors and market participants, the looming quantum threat serves as a reminder of the importance of long-term protocol sustainability. While there is no immediate risk to current holdings, the market will increasingly favor blockchain projects that demonstrate a clear roadmap toward quantum resistance. Readers should watch for updates from core development teams regarding the integration of PQC standards, as these technical milestones will become critical indicators of a network's future viability.