$ADA Cardano vs Ethereum: Hoskinson Questions Vitalik's Cryptographic Reasoning "10x Key Expansion Has No Formula Basis"
Charles Hoskinson just questioned Vitalik Buterin's cryptographic objections. He argues Vitalik relies too much on intuition and analogy specifically the comparison to the General Number Field Sieve (GNFS) rather than rigorous mathematical formulas.
Hoskinson's key points:
Vitalik's GNFS complexity notation is incorrect
The "10x key expansion" claim has no complexity formula backing it
LLL, BKZ, and sieving algorithms are already factored into ML-KEM and ML-DSA security parameter evaluations
Quantum attacks on ideal lattices haven't reached these module lattice schemes
Hash functions also have mathematical structure worth studying, e.g., Poseidon uses low-degree polynomial mappings
Hoskinson's warning:
Excessive skepticism toward already-deployed hybrid ML-KEM solutions could slow the transition to post-quantum cryptography, increasing "harvest now, decrypt later" risk.
He also acknowledges hash-based signatures have merit, but are unlikely to fully replace elliptic curve cryptography.
This isn't just a technical debate it's a battle over security philosophy.
Vitalik leans cautious: if in doubt, wait for more evidence. Hoskinson leans action-oriented: if a solution is standardized and deployed, start migrating now.
Both have valid points. But one thing Hoskinson emphasizes matters: "harvest now, decrypt later" risk. Attackers can collect encrypted data today and decrypt it when quantum computers are powerful enough. If we wait too long to migrate, it may be too late.
The real question isn't "who's right" it's how cautious should we be against a threat that hasn't happened yet but has irreversible consequences?
What do you think should we move early with ML-KEM, or wait for stronger mathematical evidence?
News is for reference, not investment advice. Please read carefully before making a decision.
Charles Hoskinson just questioned Vitalik Buterin's cryptographic objections. He argues Vitalik relies too much on intuition and analogy specifically the comparison to the General Number Field Sieve (GNFS) rather than rigorous mathematical formulas.
Hoskinson's key points:
Vitalik's GNFS complexity notation is incorrect
The "10x key expansion" claim has no complexity formula backing it
LLL, BKZ, and sieving algorithms are already factored into ML-KEM and ML-DSA security parameter evaluations
Quantum attacks on ideal lattices haven't reached these module lattice schemes
Hash functions also have mathematical structure worth studying, e.g., Poseidon uses low-degree polynomial mappings
Hoskinson's warning:
Excessive skepticism toward already-deployed hybrid ML-KEM solutions could slow the transition to post-quantum cryptography, increasing "harvest now, decrypt later" risk.
He also acknowledges hash-based signatures have merit, but are unlikely to fully replace elliptic curve cryptography.
This isn't just a technical debate it's a battle over security philosophy.
Vitalik leans cautious: if in doubt, wait for more evidence. Hoskinson leans action-oriented: if a solution is standardized and deployed, start migrating now.
Both have valid points. But one thing Hoskinson emphasizes matters: "harvest now, decrypt later" risk. Attackers can collect encrypted data today and decrypt it when quantum computers are powerful enough. If we wait too long to migrate, it may be too late.
The real question isn't "who's right" it's how cautious should we be against a threat that hasn't happened yet but has irreversible consequences?
What do you think should we move early with ML-KEM, or wait for stronger mathematical evidence?
News is for reference, not investment advice. Please read carefully before making a decision.