Skip to content
QuantumScanPublic scan report

Repository

ethereum/go-ethereum

Scanned on Jun 5, 2026

78

Risk score/ 100

High risk

Summary

The ethereum/go-ethereum repository has critical quantum vulnerability exposure across 35 instances of ECDSA and secp256k1 implementations used for transaction signing and key management. All cryptographic signing operations rely on elliptic curve cryptography, which will be completely broken by quantum computers using Shor's algorithm. This poses an existential threat to blockchain integrity and asset security once sufficiently powerful quantum computers emerge.

Critical

0

High

35

Medium

2

Low

1

Top findings

  • HighECDSA

    accounts/abi/bind/old.go:146

    ML-DSA (CRYSTALS-Dilithium) or SLH-DSA (SPHINCS+)

  • HighECDSA

    accounts/abi/bind/v2/auth.go:61

    ML-DSA (CRYSTALS-Dilithium) or SLH-DSA (SPHINCS+)

  • HighECDSA

    accounts/keystore/key.go:21

    ML-DSA (CRYSTALS-Dilithium) or SLH-DSA (SPHINCS+)

  • HighECDSA

    accounts/keystore/key.go:47

    ML-DSA (CRYSTALS-Dilithium) or SLH-DSA (SPHINCS+)

  • HighECDSA

    accounts/keystore/key.go:132

    ML-DSA (CRYSTALS-Dilithium) or SLH-DSA (SPHINCS+)

+ 33 more findings in the full report

Scan your own repository

Free. Results in ~90 seconds. CBOM + DORA/NIS2 PDF included.

Start a free scan