asset · quantum risk
Is Wormhole (W) Quantum Proof?
Verdict
Wormhole is not quantum-proof. Cross-chain messages validated by guardian-class classical crypto; wrapped assets inherit multi-chain user keys.
Overview
Wormhole is major cross-chain messaging/bridging infrastructure. Quantum risk is guardian keys plus every connected chain’s user signatures.
Historical exploits show guardian/ops importance (classical). CRQC adds algorithm pressure on the same classes.
Exposure summary: Guardian committees are high-value classical surfaces; users hold multi-chain assets. Signature surfaces: Guardian set signatures for messages (verify); Host-chain signatures for W token and wrapped assets. Inventory holders, operators, and any bridge/issuer paths before treating W as quantum-ready. Educational only.
Cryptographic profile
- Signatures: Guardian set signatures for messages (verify), Host-chain signatures for W token and wrapped assets
- Hash: VAAs / message hashing
- Public-key exposure: Guardian committees are high-value classical surfaces; users hold multi-chain assets.
- Verify guardian cryptography from Wormhole docs.
What breaks
- Classical signatures authorizing W value under Shor-class adversaries once public keys are known
- Custodial hot wallets and exchange operational keys
- Bridges, issuers, or operator sets outside ordinary user wallets
- Protocol admin, oracle, or guardian keys
Mitigations
- Inventory every key that can move W (self-custody, exchange, multisig, protocol roles)
- Name the host chain and bridge path for every balance
- Document operator/admin sets for L2s and apps
- Track ecosystem PQC research; branding is not deployment
- Use /assessment and claims methodology pages for program framing
FAQ
Guardians quantum-safe?
Committee designs are ops; signature algorithms are typically classical—verify current set crypto.
Related?
Bridges hub, LayerZero, Axelar, Portal wrapped assets.
Key concepts (technical dictionary)
Terms used on this page — open a definition: