Researcher Breaks 15-Bit Elliptic Curve Key, Wins 1 BTC Bounty

BTC-1.68%
ETH-1.34%

Independent researcher Giancarlo Lelli derived a 15-bit elliptic curve key using a publicly accessible quantum computer, marking what Project Eleven called the “largest quantum attack” on elliptic curve cryptography to date, according to the startup. Project Eleven awarded Lelli a 1 BTC bounty, currently worth over $78,000, as part of its “Q-Day Prize” bounty program launched to break elliptic-curve keys ranging from 1 to 25 bits before April 5 this year.

Previous Quantum Cryptography Break

Lelli’s achievement builds on prior work by engineer Steve Tippeconnic, who broke a 6-bit elliptic curve key in September 2025 using IBM’s 133-qubit quantum computer. That demonstration was the first public break of this type on quantum hardware, according to Project Eleven. Lelli’s 15-bit result extends the previous achievement by a factor of 512.

Technical Details

“Lelli derived a private key from its public key across a search space of 32,767 using a variant of Shor’s algorithm,” Project Eleven said. “Shor’s targets the Elliptic Curve Discrete Logarithm Problem (ECDLP), the math underlying the digital signature schemes securing Bitcoin, Ethereum, and most blockchains.”

Bitcoin uses 256-bit elliptic curve cryptography to secure wallets, which is far larger than the 15-bit key broken in this demonstration. “The distance from 15 bits to 256 bits is large, but the gap is increasingly viewed as an engineering problem and not a fundamental physics problem,” Project Eleven said, though experts remain divided on how quickly such systems could scale to real-world cryptographic levels.

Resource Requirements for Quantum Attacks

A Google Research paper estimated that breaking 256-bit elliptic curve cryptography could require fewer than 500,000 physical qubits. A subsequent paper from the California Institute of Technology and quantum startup Oratomic suggested that the number could be as low as 10,000 qubits. Current quantum systems remain far below these thresholds.

“The resource requirements for this type of attack keep dropping, and the barrier to running it in practice is dropping with them,” said Alex Pruden, CEO of Project Eleven. He added that Lelli’s demonstration highlights the urgency to migrate to post-quantum cryptography sooner rather than later.

Quantum Risk to Bitcoin Holdings

Project Eleven said roughly 6.9 million bitcoin are held in wallets where public keys are visible onchain, exposing them to quantum attacks if sufficiently powerful systems are developed.

Industry Response to Quantum Threats

Blockchain projects have started to prepare for quantum risks. Bitcoin developers have proposed migration paths, while other networks and companies, including Ethereum, Tron, StarkWare, and Ripple, have outlined plans related to post-quantum cryptography.

At the same time, some analysts have cautioned against overreacting. Research firm Bernstein recently said quantum computing should be seen as a medium to long-term upgrade cycle rather than an immediate risk.

Project Eleven Background

Project Eleven is backed by investors including Castle Island Ventures, Coinbase Ventures, and Variant. Earlier this year, the company raised $20 million in a Series A round at a $120 million post-money valuation to support its work on post-quantum security.

Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to Disclaimer.
Comment
0/400
SpiralCandlestickCollectingvip
· 04-26 13:39
The issue is: 15-bit is astronomically far from the actual 256-bit, don't be fooled by clickbait headlines.
View OriginalReply0
EchoesOfRollupvip
· 04-25 02:06
1 BTC bounty is quite good marketing, but it also encourages researchers to make their experiments open and transparent.
View OriginalReply0
Hamsyah99vip
· 04-24 15:33
Soo coook i hope think so we can enjoy
Reply0
Dqmuhammadvip
· 04-24 14:46
This food stall serves delicious and affordable meals. The taste is rich and flavorful, especially the fried rice and noodles which are cooked perfectly. The portion is generous and the price is very cheap. The place is simple but clean, and the service is friendly. Overall, it is a great place to enjoy tasty food.
Reply0
There'sABullMarketInTheGlass.vip
· 04-24 14:12
This is more like a milestone PoC: running an ECC private key on a public quantum computer. Although the key size is small, the proof of concept is feasible, and the industry should pay more attention to the migration pace.
View OriginalReply0
View More
OrigamiMountainsvip
· 04-24 13:49
Does the project team mention the maximum quantum attack? Are there peer reviews and reproducible experiments? It’s best to release all data, code, and parameters.
View OriginalReply0
ZETSKYYYvip
· 04-24 13:43
yess
Reply0
SandwichMevvip
· 04-24 13:42
Can 15-bit also be called the maximum attack😂
View OriginalReply0
Mint-ColoredCalmnessvip
· 04-24 13:41
If we really talk about significance, "public cloud quantum" can also be used for cryptographic attack experiments, and the barrier is lowering.
View OriginalReply0
L2ArbitrageYoungstervip
· 04-24 13:37
Compared to panic, I am more concerned about: when will the on-chain ecosystem start native support for PQ algorithm migration, and how to handle the security window for old addresses.
View OriginalReply0
View More