Grand Cayman, Cayman Islands, August sixth, 2026, Chainwire
Sui is including two NIST-approved post-quantum signature schemes, so accounts can transfer to quantum-safe keys derived from the restoration phrase customers already maintain.
Sui, the place cash strikes as freely as messages, introduced as we speak that it’s adopting two post-quantum signature schemes in its transfer towards quantum readiness.
The quantum timeline is completely different for blockchains, as a result of a public key onchain is completely different from a public key anyplace else. In most techniques, an attacker wants a breach earlier than they will begin engaged on a key. Onchain, the hot button is already revealed, uncovered completely the second an account transacts.
Shor’s algorithm breaks the elliptic-curve cryptography behind most onchain accounts as we speak, the identical math securing banking techniques and a lot of the web. Harvest-now-forge-later assortment doesn’t require quantum {hardware}; it requires a visual key and persistence. The publicity is already accruing. In March 2026, Google Quantum AI estimated that precisely this assault, recovering a personal key from an uncovered public key, would run in minutes on a fault-tolerant machine of underneath half 1,000,000 bodily qubits.
That’s why Sui is adopting two signature schemes matched to completely different sorts of threat, reasonably than betting on one algorithm.
ML-DSA-65 (FIPS 204) for native accounts. For on a regular basis transactions, ML-DSA-65 turns into a local protocol signature scheme. Sui is integrating Stage 3 reasonably than the cheaper Stage 1, following a July 2026 incident the place an AI mannequin halved the efficient key energy of HAWK, a post-quantum signature candidate, in about 60 hours, after two years of professional human assessment had cleared it. The remainder of the web stack is converging on the identical selection too: AWS KMS now presents ML-DSA signing in its hardware-backed key service, and Android 17’s Keystore generates quantum-safe signatures contained in the gadget’s safe {hardware} beginning at ML-DSA-65, skipping the 44 parameter set completely.
SLH-DSA-SHA2-128s (FIPS 205) for good contract vaults. For top-value property, hash-based signatures are dealt with inside Transfer contracts reasonably than the protocol core. Hash-based safety is the better-understood of the 2 households, and holding it in-contract means Sui can keep appropriate with whichever post-quantum requirements the broader trade settles on, and not using a core protocol improve. Given Sui’s bridges to different networks, that adaptability issues.
The 2 relaxation on completely different arithmetic, so a weak point present in one doesn’t undermine the opposite. Each observe NIST’s standardized post-quantum algorithms and the joint CISA/NSA/NIST quantum-readiness roadmap.
Customers Maintain Their Restoration Phrase and Their Deal with
Sui was constructed for cryptographic agility, which implies signature schemes might be added with out disturbing the basics of the community. That property is the distinction between a migration and a rebuild, and it’s why the work described here’s a routine protocol-feature replace reasonably than a change to consensus or current state.
The toughest a part of any cryptographic migration is just not the brand new algorithm. The issue is that everyone seems to be already utilizing the previous one.
On Sui, an ML-DSA-65 non-public key’s a 32-byte seed, the identical dimension wallets retailer as we speak, derived from the identical restoration phrase via a brand new normal derivation path. Wallets again up and restore precisely as they do now.
Present accounts have a path that doesn’t contain shifting funds. Deal with aliases, already deployed on Sui, let an account replace its authorization key to a post-quantum key whereas holding its tackle and its property in place. No compelled migration, no costly switch of every part an account holds.
The sincere value is dimension. A post-quantum signature and public key are considerably bigger than an Ed25519 pair, which will increase transaction dimension. That’s the worth the entire trade is paying for quantum resistance. Verification is the half that might have harm and doesn’t: ML-DSA-65 verification on Sui is shut sufficient to Ed25519 that per-signature community value doesn’t rise. Sui’s transaction dimension restrict and assist for programmable transaction blocks take in the remainder, and additional optimization work is underway.
Submit Quantum Rollout Timeline
The core implementation is constructed and benchmarked. Quantum-safe vaults are focused for Mainnet this 12 months, with native ML-DSA-65 accounts reaching Testnet by finish of 12 months and native account authentication on Mainnet focused for Q1 2027. Pockets, SDK, and CLI assist will arrive alongside. Impartial audits are underway, and timelines keep open whereas that assessment and Testnet suggestions proceed. This displays present course, not a completed, absolutely audited launch.
Submit-quantum accounts arrive as an additive, opt-in functionality, via the identical rollout path zkLogin and passkeys used. Nothing current modifications, and no software must do something as we speak.
For background on how every Sui primitive transitions to post-quantum cryptography, customers can see Securing Sui within the Quantum Computing Period.
About Sui
Sui, the place cash strikes as freely as messages, is a next-generation Layer 1 blockchain constructed for scalable finance and world funds. Based by the core workforce behind Meta’s stablecoin initiative and powered by an object-centric mannequin, Sui makes property, permissions, and person information programmable and ownable. Sui’s primitives provide builders every part they should create high-performance funds and monetary purposes, together with on the spot agentic funds. Customers can study extra at sui.io.
Contact: [email protected]
Contact
Sui Basis[email protected]





