Jameson Lopp, a renowned Bitcoin developer and co-founder of Casa, has dismissed rising concerns that artificial intelligence could soon breach blockchain encryption. Lopp contends that the crypto industry is overly fixated on theoretical threats, while the real danger lurks in existing software vulnerabilities. Casa is widely recognized for its Bitcoin custody and security solutions.
Escalating ECDSA Concerns
The debate gained momentum following comments by Ethereum Foundation researcher Justin Drake and Dragonfly partner Haseeb Qureshi. The duo suggested that new models from Anthropic and OpenAI might be close to cracking the core ECDSA signature algorithm within months, rather than years.
Drake illustrated the threat by noting that the Claude Mythos Preview model discovered a vulnerability in the post-quantum HAWK algorithm in just 60 hours, prompting calls for more urgent precautions. This has reignited fears that the impact of AI on cryptography might escalate faster than anticipated.
Jameson Lopp emphasizes that focusing on cryptographic breaches is premature, urging the sector to address current and more pressing security issues first.
Everyday Vulnerabilities Pose Greater Risks
Lopp, who has been examining the effects of AI-driven attacks on Bitcoin infrastructure, remains skeptical about the immediate threat to fundamental mathematical encryption. According to him, attackers favor simpler methods such as automatically scanning for human errors in wallets and application codes, rather than targeting complex cryptographic structures.
Data from Google Threat Intelligence supports Lopp’s views, showing that the monthly number of disclosed software vulnerabilities has nearly doubled over the past year. Neural networks have proven particularly adept at rapidly identifying flaws at the application level. For instance, weaknesses in seed phrase generation for Coldcard wallets, which humans might discover in weeks, can be detected by AI models in mere minutes.
Mini glossary: ECDSA is a digital signature method used to authenticate transactions in Bitcoin and many other blockchains. A seed phrase is a sequence of words enabling backup and recovery of a wallet.
Buterin Advocates Cautious Approach
Ethereum co-founder Vitalik Buterin also joined the discussion, acknowledging that AI could pose a long-term risk to cryptography. However, he warned that premature or excessive measures might result in consequences more damaging than the threat itself.
Vitalik Buterin humorously noted that his personal losses due to flawed wallet updates exceeded the total damage from all hacker attacks.
Lopp suggests focusing on basic security practices. He advocates for off-chain consolidation of multi-signature approvals and advises against directly transacting from savings addresses, as these measures could reduce the visibility of public keys and enhance security.
To date, there has been no confirmed case of active ECDSA keys being successfully cracked. This situation underscores that current views regarding AI’s cryptanalytic threat to Bitcoin are based on limited evidence.
Lopp believes that those who seal existing software vulnerabilities today, rather than those erecting defenses against a hypothetical super AI, will lead the charge.



