Dragonfly's Qureshi calls 'bunker mode' doomerism, pitches cryptographic recovery plan

Editorial illustration: Glass blocks connected by metal chain links, with one block inside a concrete bunker and two robotic arms working on a glowing central link.

In brief

  • Dragonfly's Haseeb Qureshi called Justin Drake's "bunker mode" warning "cryptographic doomerism."
  • Moving tokens to fresh addresses isn't a real fix if AI breaks signatures, Qureshi said.
  • "Cryptographic Recovery Mode," Qureshi's hash-based proposal, would let validators force recovery.
  • ECDSA could break in months, not years, in the worst case, Drake warned.
  • 6.26 million BTC sit in vulnerable addresses, according to Glassnode's Schultze-Kraft.

Drake's warning and Buterin's caution

On Wednesday, Drake warned that rapid AI advancements could break ECDSA (the elliptic curve digital signature algorithm that secures cryptocurrency wallets) sooner than previously expected. He cited a Tuesday OpenAI report on AI's progress in mathematics. Drake wrote that it's now reasonable to brace for ECDSA breaking before "qday," in the worst case in months rather than years, and he advised users to gradually move funds to fresh wallets where their public key isn't exposed. His argument: AI may threaten holdings before quantum computers do.

Vitalik Buterin didn't go that far. The Ethereum co-founder agreed the industry should take the risks from "AI-accelerated math seriously," but said he doesn't recommend users rush to move funds to fresh wallets, according to Cointelegraph.

Qureshi's objection

Qureshi's problem with bunker mode comes down to the wider market. In a Thursday X post, he wrote that it would only protect investors' coins as long as they weren't moved from the fresh address.

these coins would be “worthless if all of the other coins are being hacked and mass-sold.”

So what's the alternative?

Qureshi's answer is a proposed "Cryptographic Recovery Mode", a hash-based backup signature plan that users could map to their addresses. If signatures were broken, validators could force recovery. He presented it as the kind of proactive measure he wants networks to adopt.

How much BTC sits in vulnerable addresses

The numbers behind the debate are big. Glassnode co-founder Rafael Schultze-Kraft wrote in a Thursday X post that 6.26 million BTC, more than 31% of the Bitcoin supply, sit in vulnerable addresses, as cited by Cointelegraph.

About 4.33 million of those coins are exposed because of address reuse (moving them to a fresh address would end that exposure). Another 1.94 million BTC are exposed through their address format. Nearly 1.8 million of the exposed coins are held on cryptocurrency exchanges, and 57% of all exchange balances are exposed.

Drake's advice is aimed at individual wallets; Qureshi's is aimed at the protocol itself.

Frequently asked questions

What is "bunker mode" in the AI and ECDSA debate?

It's the approach linked to Ethereum researcher Justin Drake, who advised users to gradually migrate funds to fresh wallets where their public key isn't exposed. Drake argued AI may threaten holdings before quantum computers do.

Why does Haseeb Qureshi reject bunker mode?

Qureshi wrote that bunker mode only protects coins as long as they aren't moved from the fresh address. He said those coins would be worthless if all the other coins were being hacked and mass-sold.

What is Qureshi's proposed Cryptographic Recovery Mode?

It's a hash-based backup signature plan that users could map to their addresses. If cryptographic signatures were broken, validators could force recovery. Qureshi presented it as a proactive measure blockchains should adopt.

How much Bitcoin is in vulnerable addresses?

Glassnode co-founder Rafael Schultze-Kraft put the figure at 6.26 million BTC, more than 31% of supply. About 4.33 million are exposed by address reuse and 1.94 million by address format. Nearly 1.8 million sit on exchanges.