[Cryptography] Some quantum computers might need more power than supercomputers

Bill Stewart billstewart at pobox.com
Mon Jan 12 01:16:49 EST 2026


On 1/10/26 20:47, Peter Gutmann via cryptography wrote:
> Another point with SNDL, expanding on the comment from the talk that only
> epsilon of all the traffic encrypted today will be interesting in 30 years
> time, is that if your threat model is James Mickens' "Mossad doing Mossad
> things to you" then you're screwed no matter what you do and if it's not
> "Mossad doing Mossad things to you" then no-one cares enough about you to
> spend 4 million Euros with an imaginary device to recover your whatever-it-is.

I assume the SNDL attack model isn't just "future quantum computers?"
but also "future black-bag or subpoena your computer and passwords"
which isn't at the Mossad level but might be at the low-level FBI or SEC
level or the "0-Day Bug Bit You" level.


More information about the cryptography mailing list