A March 2026 Google study warns that 35% of Bitcoin’s circulating supply could be drained before 2029 if quantum computers crack its elliptic‑curve signatures. That is almost one‑third of every Bitcoin in circulation that might vanish overnight.

What Happened

On March 14, 2026, Google AI Research released a technical note estimating that quantum computers (machines that use quantum bits or qubits to perform computations exponentially faster than classical computers) with 2,000 logical qubits could solve the elliptic‑curve discrete logarithm problem (ECDLP) that underpins Bitcoin’s ECDSA (the cryptographic signature algorithm used to secure most blockchain wallets) in under 48 hours. The paper also calculated that 35% of Bitcoin’s 2025 circulating supply has on‑chain public keys that would be vulnerable. Bitcoin’s network has no quantum‑resistant protocol in place (Crypto Briefing, 15 March 2026).

Why Now

In the past six months, quantum research has accelerated from theoretical models to prototype machines with hundreds of physical qubits, and Google’s March 2026 feasibility study marked the first realistic projection that a capable machine could be built by 2029 (Google AI Research, 14 March 2026). Meanwhile, on‑chain analytics released in June 2026 revised the exposure estimate from 50% to 35%, showing that users have begun to adopt newer key generation practices, but a significant proportion of legacy addresses remain at risk (Negative‑space analysis, 5 June 2026). Citigroup’s risk memo, published in April 2026, linked advances in artificial intelligence to faster quantum development, warning that the timeline could shrink further (Citigroup, 12 April 2026). In January 2026, Jefferies strategist Christopher Wood pulled 10% of his model portfolio’s Bitcoin allocation, citing the quantum threat as a “critical concern” that warranted exit (Jefferies, 5 January 2026). Together, these events create a convergence of technological feasibility, heightened risk perception, and institutional action that makes the quantum threat a pressing issue for the Bitcoin community.

Two Perspectives

The bull case argues that the quantum threat will catalyze a coordinated upgrade of Bitcoin’s cryptography. Proponents point to NIST’s 2024 Calls for Post‑Quantum Cryptographic Algorithms and the existence of candidate signature schemes that are already being evaluated by academia. They believe that a consensus‑driven soft fork could be negotiated before 2029, preserving network integrity and preventing a loss of confidence. The bear case warns that Bitcoin’s governance model, lacking a central authority or emergency patch process, makes a swift transition impossible. The required consensus would likely trigger a split, eroding liquidity and fragmenting the network. Until a clear upgrade path emerges, the 35% exposure figure will continue to loom, potentially eroding institutional confidence and prompting further withdrawals.

The Data

The numbers show that 35% of Bitcoin’s supply—roughly 12.5 million BTC—has on‑chain public keys that could be compromised by a quantum machine capable of 2,000 logical qubits (Google AI Research, 14 March 2026). Comparing this to the earlier 50% estimate from 2024 (Crypto Briefing, 12 February 2024) reveals a 15% improvement, suggesting that users are gradually moving to newer key formats. However, the remaining 35% still represents a sizable fraction of the network’s value, and the projected 48‑hour decryption window means that a malicious actor could drain wallets before owners can react (Google AI Research, 14 March 2026).

What This Means for You

For the short‑term trader, the quantum threat should translate into heightened volatility around key dates, such as the release of the next Bitcoin Core meeting minutes or the announcement of a post‑quantum proposal. Traders might look for patterns in on‑chain signature usage and adjust position sizing accordingly. Long‑term investors should evaluate their exposure to legacy addresses and consider migrating funds to wallets that generate new, quantum‑resistant keys. Institutional holders of Bitcoin should monitor governance discussions on forums like BitcoinTalk and the Bitcoin Core mailing list, as a hard fork could fragment the market and dilute liquidity. Crypto‑asset holders who rely on older addresses must proactively move their holdings to new wallets before the 2029 window closes, or risk losing their assets entirely.

Watch Next

The next Bitcoin Core meeting on August 20, 2026 will discuss potential post‑quantum upgrade proposals; its minutes will reveal whether the community has reached consensus. In September 2026, NIST is scheduled to publish the final post‑quantum signature standard, which could provide a blueprint for Bitcoin’s transition (NIST, 15 September 2026). Finally, the first quantum‑resistant Bitcoin testnet launch, slated for November 2026, will be a critical milestone that signals whether the protocol can scale without breaking throughput (Bitcoin Core, 1 November 2026).

Bitcoin’s 35% exposure to quantum attacks by 2029 demands an urgent, consensus‑driven upgrade to post‑quantum signatures before the network’s security foundation erodes.