Finance And Defence Navigate New Risks In AI And Cryptography
AIThis post was created with the assistance of artificial intelligence (AI).

🔍 Read the full analysis: Finance And Defence Navigate New Risks In AI And Cryptography on ThorstenMeyerAI.com

Before you orderOffer from Amazon

Get the latest gadgets delivered free with Prime

  • Fast, free delivery on millions of items
  • Prime Video, Amazon Music and more included
  • Member-only deals all year
Start your free Prime trial Free trial for eligible customers · Cancel anytime
As an affiliate, we earn on qualifying purchases.

TL;DR

A source report says OpenAI published 722 mathematical manuscripts on Oct. 6, including results that challenge some longstanding expectations about computational speed. The work has not established that cryptography is broken, but warnings from cryptocurrency figures have brought attention to the possibility that AI-assisted mathematics could expose weaknesses in both current and post-quantum systems.

OpenAI published 722 mathematical manuscripts on Oct. 6, according to the source report, prompting renewed concern that advances in AI-assisted mathematics could eventually affect the assumptions underpinning cryptography. No cryptographic protocol has been shown to be broken, but Ethereum Foundation researcher Justin Drake and co-founder Vitalik Buterin have publicly discussed risks to both existing systems and post-quantum replacements.

The manuscripts reportedly came from an unreleased internal model, which worked on roughly 4,000 problems and produced results across 372 families. The source says the work included claims concerning the Unique Games Conjecture, Hilbert’s tenth problem over the rationals and a zero-free region for the Riemann zeta function. Those are mathematical claims, not independently established cryptographic breaks.

Some of the attention has focused on computational results. The source cites computer scientist Scott Aaronson’s account of claims involving faster-than-expected integer multiplication and Fourier transforms. It also describes a result for 3SUM, a computational problem, attributed to a paper by Virginia Vassilevska Williams and Josh Alman. The source says an Anthropic model contributed the key idea to that work. These results may challenge expectations about algorithmic limits, but they do not by themselves demonstrate that encryption can be defeated.

The source also reports that OpenAI withdrew a claimed proof related to the Hodge conjecture for products of K3 surfaces after a sign error was identified. That correction illustrates why the manuscripts require checking. The source says AI companies are discreetly testing whether internal models can break important protocols, citing Scott Aaronson’s account of what his sources told him; it provides no public result showing that such a test has succeeded.

At a glance
reportWhen: Reported Oct. 6-7; claims and implicati…
The developmentThe reported release of AI-generated mathematical manuscripts, alongside public warnings from cryptocurrency researchers, has prompted fresh scrutiny of the assumptions behind cryptography.
The Old Map Is Gone — ISR Briefing
AI Dispatch · ISR Briefing · 9 October 2026

The old map is gone: AI mathematics, quantum computers and the cryptography holding up finance and defence

For a decade the plan was simple: elliptic curves doomed by quantum; lattices safe; hashes safe. Nothing has been broken. But a second threat has arrived that doesn’t respect those borders — AI producing new mathematics faster than any human community, against assumptions that are believed, not proven.

The map — then and now
Elliptic curves
Then: doomed by quantum

Now: on borrowed time — possibly shorter than the quantum countdown suggests.

Lattices (ML-KEM, ML-DSA)
Then: safe

Now: unproven against AI — and the destination most of the world is migrating to.

Codes (Classic McEliece)
Then: the conservative fallback

Now: reminded estimates move — BSI advised against new deployments on 1 Oct 2026.

Hashes (SLH-DSA, LMS, XMSS)
Then: safe

Now: safest ground available — not a guarantee.

Nothing has been broken. The map changed because the threat model did.
Two threats, one migration
Quantum threat
AI-mathematics threat
Attacks
RSA & elliptic curves
Anything with exploitable structure — possibly the new lattice standards
Needs
Large error-corrected quantum computer
A better algorithm on ordinary computers
Warning signs
Visible: qubits, error rates, roadmaps
Possibly none — an algorithm can be found and kept secret
First to get there
Whoever builds the machine
Whoever has the best model — incl. states that never announce
What survives
Lattices, codes, hashes
Probably hashes; lattices need bigger keys
The quantum threat comes with a countdown you can watch. The AI threat may not.
The trigger — records broken, by slivers
Integer multiplication
< n log n

~n log0.9999999999999 n — a barrier many thought fundamental (OpenAI, claimed)

3SUM
n1.9992

Overturns a half-century conjecture. Williams & Alman; key idea from an Anthropic model

Cryptography
absent

“Conspicuous by its absence” (Aaronson) — labs reportedly testing crypto “gingerly and discreetly”

This week: shaved exponentssliver
A break: 2¹²⁸ → one GPU-weekcollapse
Remarkable mathematics — not a break. The open question: can AI compress the decades the number field sieve took into years? (conceptual, not to scale)
The crypto canary — four voices
Justin Drake · Ethereum Foundation
“Bunker mode”

ECDSA could break before Q-day, “in the worst case in months not years.” Move funds to never-signed addresses. ~6M BTC sit behind exposed keys.

Vitalik Buterin · Ethereum
“ML-DSA / FHE / lattices”

The new risk is the destination of the migration. Hash-only where possible; “much more paranoid” lattice params; ×10 key sizes long-term. Doesn’t recommend anyone scramble.

Yehuda Lindell · Coinbase
“The very definition of FUD”

“No evidence whatsoever” that elliptic-curve assumptions are close to failing.

Isabel Foxen Duke · BIP-360
Don’t treat it as a deadline

Classical breaks could reach “quantum-safe” schemes — but don’t treat a two-year scenario as a date.

Author’s view — what I think is happening
1974 → 1990 → 1994
Differential cryptanalysis

Known to IBM and the NSA designing DES (~1974); public via Biham & Shamir (~1990); confirmed by Coppersmith (1994).

early 1970s → 1997
Public-key cryptography

Invented at GCHQ — RSA- and Diffie–Hellman-equivalents — and kept secret for over two decades.

October 2026
An empty folder

No crypto in 722 manuscripts. Found and withheld? Not posed? Posed and failed? Indistinguishable from outside.

Opinion, not reporting: withholding is plausible, has precedent — and would be the responsible choice. Either way: “nothing published” cannot be read as “nothing found.” There is no evidence of any AI-driven break.
Defence & intelligence — the secrets that must last
Harvest now, decrypt later

Traffic recorded today is decrypted when a break arrives. For secrets that must last 25+ years, a break in 2035 is a break today. A state that finds one won’t announce it — it will mine its archives.

Key exchange can’t be hash-only

Signatures can be built from hashes. Encryption and key exchange need a trapdoor with structure — lattices, codes or group theory. Defence can only choose which structure, how much margin, how many combined.

Hedge
US · NSA CNSA 2.0
Germany · BSI TR-02102-1
Key exchange
ML-KEM-1024 only (highest params)
ML-KEM + FrodoKEM (less structured, tighter reduction)
Signatures
ML-DSA-87; LMS/XMSS for firmware
ML-DSA, SLH-DSA, LMS, XMSS
Hybrid with classical
Not required
Required — classical-only key agreement ends from 2031
Key dates
1 Jan 2027 procurement gate · 2030 firmware & networks · 2033 most systems · 2035 all
2031 onward: end dates for classical-only use
The NSA already does much of what Buterin advises — top parameters, hashes for firmware — but its key exchange rests on one lattice family. Europe’s more diverse, hybrid posture is a sovereignty argument worth making loudly. For 15-year ISR platforms and sensors: crypto-agility is a procurement requirement.
Finance — timelines built on the wrong countdown
G7 CEG roadmap publishedJan 2026
Critical systems migrated2030–32
Whole sector migrated2035
Deadlines are ceilings

Every date was set against quantum hardware forecasts with visible warning. The AI threat offers none.

Agility over destination

“ML-KEM everywhere” means starting over if lattices weaken. “We can swap algorithms” doesn’t.

Watch the canary

Blockchains show a classical break first — exposed keys and balances are public. Monitor dormant exposed addresses.

G7 Cyber Expert Group, co-chaired by the US Treasury and the Bank of England — six phases, non-binding, 2030–32 “challenging but prudent”.
What to do now — the same whether the threat is quantum, AI or both
Inventory

Every algorithm, key, certificate, protocol.

Hybrid

PQ + classical, as BSI requires.

Hash-based signing

Firmware, updates, long-term keys.

Conservative params

Highest sets; evaluate FrodoKEM.

Diversify key exchange

More than one mathematical family; HQC coming.

Build for agility

Swap algorithms without rebuilding.

Shrink exposure

Forward secrecy, rotation, hidden keys.

Don’t panic-migrate

Buterin: lost more in botched migrations than in all hacks.

The take

Nothing has been broken, and the sceptics are right that there’s no evidence elliptic curves or lattices are about to fall. But the map has changed: elliptic curves on borrowed time, lattices unproven against AI, codes reminded that estimates move, hashes the safest ground available. For finance, intelligence and defence the answer is the same whichever threat arrives first.The quantum threat comes with a countdown. The AI threat may arrive as a silence — an empty folder where a paper should have been. The winners will be those who can change their algorithms fastest.

Sources: OpenAI maths release (6 Oct 2026); Aaronson, “The Mathocalypse” (7 Oct 2026); Drake & Buterin posts on X (7–8 Oct 2026); Lindell, Foxen Duke via Decrypt, cryptonews.net, Yellow; ~6M BTC via Cryptopolitan; NIST FIPS 203/204/205; NSA CNSA 2.0; BSI TR-02102-1 (2025/2026) & 1 Oct 2026 Classic McEliece advice; G7 CEG roadmap (13 Jan 2026); DES/GCHQ history. Author’s-view section is opinion. No AI-driven cryptographic break has been published. Not security or investment advice.
thorstenmeyerai.comin cooperation with vigilsar.com

Pressure on Security Migration Plans

Financial institutions, intelligence agencies and defence organisations rely on cryptographic systems to protect communications, transactions and stored information. Their current migration planning has largely treated quantum computing as the principal future challenge: a sufficiently capable quantum computer could use Shor’s algorithm against RSA and elliptic-curve cryptography. AI-assisted discovery raises a different concern: an improved algorithm could run on conventional hardware and might not be visible before it is used.

That possibility matters to post-quantum planning. The US National Institute of Standards and Technology issued its first major post-quantum standards in August 2024, including ML-KEM and ML-DSA, which are lattice-based, and SLH-DSA, based on hash functions. The reported research does not show those standards are vulnerable. It does, however, underline that mathematical confidence is not the same as proof that no more efficient attack exists.

For organisations responsible for long-lived or high-value information, the practical issue is not that they should abandon current standards on the basis of unverified claims. It is that security plans may need to account for more than a hardware countdown. A software-based discovery could be difficult to detect, and a useful algorithm might be kept private by whoever found it.

Amazon

post-quantum cryptography security tools

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

From Quantum Risk to Algorithm Risk

The established quantum concern is relatively specific: a large, error-corrected quantum computer could threaten public-key systems such as RSA and elliptic-curve cryptography. That prospect has led governments and companies to plan migrations to post-quantum cryptography. NIST’s 2024 standards provided widely available replacement algorithms, including lattice-based schemes and a hash-based signature option.

The AI concern described in the source is less established and broader. AI systems may help researchers find mathematical techniques that change the estimated cost of solving problems used in cryptography. The source frames this as a possible challenge to assumptions behind lattice cryptography as well as older systems, not as evidence that any standard has failed. It also notes that results from AI-generated research need human verification; a withdrawn proof claim is a reminder that a plausible manuscript is not necessarily correct.

Public concern has surfaced in cryptocurrency because many blockchain transactions expose public keys, making potential key theft easier to discuss in concrete terms. On Oct. 7, Drake urged the industry to plan calmly for a possible move to what he called “bunker mode,” including using addresses whose public keys have not been exposed. The source estimates that roughly 6 million bitcoin are held in addresses with exposed public keys. That figure is an estimate in the source, not evidence that those funds have been stolen or can currently be recovered by attackers.

“Calmly begin planning for ‘bunker mode’.”

— Justin Drake, Ethereum Foundation researcher

Amazon

AI cryptography analysis software

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

No Cryptographic Break Is Established

The central uncertainty is whether the reported mathematical results are correct, reproducible and relevant to practical attacks. The source reports no successful compromise of RSA, elliptic-curve cryptography, ML-KEM, ML-DSA or another deployed protocol. It also does not provide technical details or independent verification of the alleged private testing by AI companies.

It is also unknown whether any newly discovered algorithm could be made practical with available computing resources, whether an organisation has found such a method and kept it secret, or how much security margin existing standards retain. Drake’s suggested window of “months not years” is a warning, not a confirmed forecast. Buterin’s comments likewise identify a concern rather than a demonstrated weakness.

Amazon

cryptography testing kits

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

Verification and Migration Reviews

The immediate next step is technical scrutiny: researchers need to verify the reported manuscripts, reproduce relevant results and determine whether any advance changes the cost of attacking real cryptographic systems. The reported withdrawal of one proof claim shows why that checking must precede conclusions about security.

Financial firms, government agencies and defence organisations will continue their post-quantum migrations while monitoring new analysis of the standards. Cryptocurrency users may also review key exposure and wallet practices, but the source does not establish that an urgent mass movement of funds is warranted. Further public evidence of a reproducible cryptographic attack—or formal assessments from standards bodies—would materially change the current picture.

Amazon

quantum-resistant encryption devices

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

Key Questions

Has AI broken a cryptographic system?

No break is established in the source material. It reports mathematical manuscripts and warnings about possible future risks, not a successful attack on a deployed protocol.

What did OpenAI publish?

The source says OpenAI published 722 mathematical manuscripts on Oct. 6, grouped into 372 families and produced from work on roughly 4,000 problems. The claims are subject to verification.

Are NIST’s post-quantum standards confirmed to be vulnerable?

No. Buterin raised concern about lattice-based systems including ML-DSA, but the source presents no demonstrated attack against ML-DSA, ML-KEM or other NIST standards.

Should cryptocurrency users move their funds now?

Drake called for calm planning, while Buterin said he did not recommend that people scramble to move funds immediately. The source does not establish that an urgent transfer is necessary.

What evidence would clarify the risk?

Independent verification and reproduction of the mathematical results, followed by analysis showing whether they can be applied to real cryptographic protocols, would help establish whether the concern changes practical security assessments.

Source: ThorstenMeyerAI.com

HALLOWEEN

Halloween Picks

As an affiliate, we earn on qualifying purchases.

You May Also Like

Finnish Game Studio MiTale Explores Quantum Computing For Game Development

Finnish game developer MiTale is exploring quantum computing applications to revolutionize game development and enhance game complexity.

We’re Making It Easier To Identify AI-generated Content Globally.

Google says anyone can use SynthID Detector globally in English to check media for watermarks from Google and participating partners.

Why Grok 4.6 Is The Most Cost-Effective AI Model Today — SpaceXAI Vs. OpenAI

A report suggests Grok 4.6 offers comparable performance to OpenAI’s top models at a lower price, but key details remain unverified.