Viewing a single comment thread. View all comments

KAMSPioneer t1_j1noanj wrote

Totally. Just to be clear for the thread, a useful quantum computer will break ECC way, way before AES or SHA2.

2

pm_me_wet_kittehs t1_j1qg1oa wrote

for symmetric algorithms, a quantum computer would turn 256 bits of security into the equivalent of "Only" 128 bits. Double the key length amd any advantage just goes up in smoke. quantum won't help in a practical manner for AES

1

maqp2 t1_j1tmb9l wrote

Also, SHA256 does lossy compression, and obtaining preimages larger than 256 bits can not be done at all, QC or not.

1