>_ Skip to main content
Menu
Search
Quantum Security

Should Bitcoin Freeze Satoshi’s Coins? CZ Thinks So


Binance founder Changpeng Zhao has reopened one of crypto’s touchiest debates with a proposal to freeze the 1 million dormant Bitcoin attributed to Satoshi Nakamoto once a quantum-resistant upgrade arrives. He says those untouched legacy coins could become an easy target for thieves the moment quantum computers grow powerful enough to crack today’s encryption. One famous wallet is just the flashpoint. The real question is whether Bitcoin can rewrite its own rules to protect the people still holding it.

What CZ said and why

In a recent interview with TBPN, CZ warned that quantum machines could eventually break the public-key cryptography that secures most blockchains. Those systems lean on math problems that normal computers can’t solve quickly. A strong enough quantum computer could chew through them and expose private keys.

He was careful to add a caveat. Machines capable of breaking modern encryption don’t exist yet, and the shift to a real threat would happen in stages. Developers, he argued, have years to roll out post-quantum cryptography before the old systems fail.

CZ’s freeze idea, which he shared in the Galaxy Brains podcast hosted by Galaxy Research President Alex Thorn, goes further than a warning. He suggested locking Satoshi-era coins after a future upgrade, since nobody expects them to move anyway. As he said:

“Doing nothing would be a poor outcome.”

Critics say that crosses a line. Once the network agrees coins can be made unspendable for safety, someone has to decide who defines “safety” the next time around.

Binance founder sharing his views.
Binance founder sharing his views. Source: CZ/X

The numbers behind the concern

The exposure is larger than one wallet. A Coinbase advisory published in June 2026 flagged the risk as real and growing. Estimates suggest as many as 7 million BTC, close to a third of total supply, sit in quantum-vulnerable addresses.

The concern got harder to dismiss earlier this year. In a March 30, 2026 paper, Google’s Quantum AI researchers estimated that breaking the 256-bit elliptic curve discrete logarithm problem might need fewer than 1,500 logical qubits. The Wall Street Journal, reporting from that paper, said about 6.9 million Bitcoin, worth around $468 billion at the time, sat in addresses open to quantum attack.

A separate June 2026 paper called Quantum Horizon put the odds at around one-in-six for a cryptographically relevant quantum computer by 2035, near 30% by 2040, and about 60% by 2050.

Technical fixes are already underway. BIP-360, assigned on December 18, 2024 and still in draft, proposes a new output type that strips out Taproot’s quantum-vulnerable key path. It doesn’t solve every problem, and its authors note stronger protection may need post-quantum signatures later. The cryptography seems manageable. The harder question is whether a community built on distrust of central authority can agree to freeze anyone’s coins before an attacker forces the issue.