Industry leading commentary on markets, macro, and emerging tech. Email us: contact@msbintel.com

Pinned Tweet
EXCLUSIVE: NVIDIA's Senior Director of AI Software, Ali Golshan, sits down with MSB Intel. "AI is not conscious, and keeping it safe is an engineering problem." 20 years in cybersecurity, and his verdict on the AI agent incidents. Full podcast below. @nvidia @NVIDIAAI
6
1
21
4,156
BREAKING: Orca and Loopscale merge to form Formation, combining Solana's liquidity layer with over $500 billion traded since 2021 and a lending platform that has facilitated more than $2 billion in loans since April 2025. @solana
1
345
Avalanche now holds $1.70 billion in tokenized real world assets, the fifth most of any blockchain behind Ethereum, BNB Chain, Solana and Stellar. That is up 1.6% in 30 days. @avax
3
2
10
770
If you've ever sent crypto from your wallet, read this. That wallet's public key is now on-chain, and an Ethereum Foundation researcher thinks AI may one day be able to use it. Justin Drake posted yesterday asking the industry to start planning for what he calls "bunker mode." Bitcoin and Ethereum wallets are secured by ECDSA, which works because you can easily get a public key from a private key, but nobody knows how to go the other way. Almost everything in crypto depends on that staying true. Most people assume quantum computers will be what eventually breaks it. Drake's point is that AI might find a mathematical shortcut first. AI models have started solving problems mathematicians were stuck on for decades. In May, an OpenAI model disproved an Erdős conjecture from 1946, and more results like it have come out since. Nothing has broken ECDSA, and Drake isn't predicting that it will. He just doesn't think the risk is small enough to ignore anymore. What he suggests is moving your funds to a brand new address that has never sent a transaction, and then not touching it. An address that has never signed anything keeps its public key hidden, so even a future attack would have nothing to start from. For exchanges, custodians, ETFs and treasuries, he wants planning to begin now for a move to post-quantum cryptography. It costs almost nothing to do, and a lot if he turns out to be right.
Today I call upon the blockchain industry to calmly begin planning for "bunker mode". My personal recommendation is to set in motion a controlled mass migration of assets to fresh addresses, i.e. addresses whose pubkeys remain hidden behind a hash. Holders, starting with large and sophisticated ones, should consider moving the bulk of their funds to addresses that have never signed a transaction. And when they do sign one, they should also move remaining funds to a new address (possibly generated from the same seed phrase). Don't rush. While I believe there is cause for action a rushed migration would do more harm than good. Don't panic either. Moving assets to protected addresses is a simple, preventative step which does not require new cryptography or new wallets. IMO it is now reasonable to brace for the possibility that ECDSA breaks before qday, in the worst case in months not years. By "break" I mean fast private key recovery (e.g. in one week) on available hardware (e.g. a large GPU cluster). Recent days have been humbling for human mathematical intuition. Long-held, unquestioned hypotheses have fallen. This includes the n log(n) bound for integer multiplication and the 3SUM conjecture. In hindsight, May's unexpected disproof of the Erdős unit distance conjecture was our warning shot. Yesterday's OpenAI drop made it clear that mathematical superintelligence is upon us. They say there are weeks where decades happen. We are about to live through weeks where centuries of mathematical progress happen. Could our magic 64-byte ECDSA signatures be too good to be true? Was it just security through obscurity all this time? Elliptic curves feel especially vulnerable to superintelligence. Curves carry rich structure, with room for fancy tricks like Schoof, Frobenius, pairings. (By contrast, hashes are designed to minimise algebraic structure.) Separately, as Ewin Tang can attest, an efficient quantum algorithm sometimes foreshadows an efficient classical one. We should be open to the possibility of a classical counterpart to Shor that breaks elliptic curves and RSA at once. Also noteworthy is the striking under-representation of cryptographic breakthroughs among the 722 mathematical results OpenAI published. I've witnessed first-hand the US government censoring academic quantum cryptanalysis results. Backroom interventionism is my base case. I urge large, sophisticated actors to lead by example. Project11's "risq list" (bitcoin-risq-list.projecteleven[.]com) is a great tracker of exposed BTC pubkeys. Binance, Bitbank, Robinhood, Bitfinex, and Tether have an opportunity to harden their cold storage. Next month I'll address institutions in London in a live Q&A (forum.ethereuminstitutional[.]org/london-2026). Again, please do not rush. Wallets holding under 50 BTC enjoy partial cover from "Satoshi's shield", i.e. his 20K exposed addresses that hold 50 BTC each. Load-bearing signers like oracles and L2 security councils should consider rotating ECDSA pubkeys with every signed message and/or multi-signing with a hash-based schemes like SPHINCS. Exiting bunker mode safely will require post-AI cryptography. My inclination is to go all-in on hash-based cryptography and avoid structured mathematical assumptions entirely, whether from curves, lattices, or isogenies. A single battle-tested hash (e.g. from the SHA or BLAKE families) yields plausible post-AI security. The Ethereum roadmap on strawmap[.]org fully embraces hash-based cryptography with end-to-end formal verification as a response to the quantum threat. Those timelines must now be revisited and accelerated in light of mathematical superintelligence. I'll be pushing for maximum defensive acceleration.
1
4
703
The 10 biggest stories of the day:
1
4
839
7. GSR commits $100 million to Hare, a new onchain credit vault business built with Turtle for institutional…. 8. Google launches Playground, an AI platform to create video games from text prompts, partnering with Unity.
1
1
171
9. Russia registers its first four crypto exchanges and five custodians under its new law, including Sberbank,…. 10. Injective releases its first full whitepaper rewrite since December 2018, detailing native RWA tokenization,…. All covered live on the desk today.
1
162
Aptos processed $16.79B in stablecoin transfers over the past 30 days, with $925.0M in stablecoins now on the chain.
1
13
862
LATEST: NEAR points to ML-DSA keys live on mainnet since July 20 as Justin Drake urges "bunker mode" planning
Today I call upon the blockchain industry to calmly begin planning for "bunker mode". My personal recommendation is to set in motion a controlled mass migration of assets to fresh addresses, i.e. addresses whose pubkeys remain hidden behind a hash. Holders, starting with large and sophisticated ones, should consider moving the bulk of their funds to addresses that have never signed a transaction. And when they do sign one, they should also move remaining funds to a new address (possibly generated from the same seed phrase). Don't rush. While I believe there is cause for action a rushed migration would do more harm than good. Don't panic either. Moving assets to protected addresses is a simple, preventative step which does not require new cryptography or new wallets. IMO it is now reasonable to brace for the possibility that ECDSA breaks before qday, in the worst case in months not years. By "break" I mean fast private key recovery (e.g. in one week) on available hardware (e.g. a large GPU cluster). Recent days have been humbling for human mathematical intuition. Long-held, unquestioned hypotheses have fallen. This includes the n log(n) bound for integer multiplication and the 3SUM conjecture. In hindsight, May's unexpected disproof of the Erdős unit distance conjecture was our warning shot. Yesterday's OpenAI drop made it clear that mathematical superintelligence is upon us. They say there are weeks where decades happen. We are about to live through weeks where centuries of mathematical progress happen. Could our magic 64-byte ECDSA signatures be too good to be true? Was it just security through obscurity all this time? Elliptic curves feel especially vulnerable to superintelligence. Curves carry rich structure, with room for fancy tricks like Schoof, Frobenius, pairings. (By contrast, hashes are designed to minimise algebraic structure.) Separately, as Ewin Tang can attest, an efficient quantum algorithm sometimes foreshadows an efficient classical one. We should be open to the possibility of a classical counterpart to Shor that breaks elliptic curves and RSA at once. Also noteworthy is the striking under-representation of cryptographic breakthroughs among the 722 mathematical results OpenAI published. I've witnessed first-hand the US government censoring academic quantum cryptanalysis results. Backroom interventionism is my base case. I urge large, sophisticated actors to lead by example. Project11's "risq list" (bitcoin-risq-list.projecteleven[.]com) is a great tracker of exposed BTC pubkeys. Binance, Bitbank, Robinhood, Bitfinex, and Tether have an opportunity to harden their cold storage. Next month I'll address institutions in London in a live Q&A (forum.ethereuminstitutional[.]org/london-2026). Again, please do not rush. Wallets holding under 50 BTC enjoy partial cover from "Satoshi's shield", i.e. his 20K exposed addresses that hold 50 BTC each. Load-bearing signers like oracles and L2 security councils should consider rotating ECDSA pubkeys with every signed message and/or multi-signing with a hash-based schemes like SPHINCS. Exiting bunker mode safely will require post-AI cryptography. My inclination is to go all-in on hash-based cryptography and avoid structured mathematical assumptions entirely, whether from curves, lattices, or isogenies. A single battle-tested hash (e.g. from the SHA or BLAKE families) yields plausible post-AI security. The Ethereum roadmap on strawmap[.]org fully embraces hash-based cryptography with end-to-end formal verification as a response to the quantum threat. Those timelines must now be revisited and accelerated in light of mathematical superintelligence. I'll be pushing for maximum defensive acceleration.
1
1
17
1,389
BlackRock, Fidelity, State Street, abrdn and LGIM all have money market funds tokenized on Hedera through Archax. So does Canary's $HBAR ETF, with $29.85M of it tokenized onchain.
4
27
111
2,643
Injective now has three US ETF applications pending, from 21Shares, Canary and REX-Osprey.
2
10
132
3,607
BREAKING: Ripple Custody adds support for Canton Network, letting institutions hold and transfer Canton assets within the same custody platform. Allowing the same policy engine and audit trail used for their other digital assets. @Ripple
5
6
66
1,941
PayPal's market cap now exceeds Coinbase's, $49.1 billion versus $47.0 billion. @coinbase
2
8
1,014
Ethena's USDe supply is back at $4.98B, its highest since April.
2
6
96
4,086
Bitwise's $NEAR ETF took in $539,640 on October 5, the only crypto ETF with net inflows that day as Bitcoin ETFs lost $89.90M.
6
12
158
3,937
Arbitrum joins Paxos' Global Dollar Network, alongside Robinhood, Mastercard, Kraken and OKX. USDG went live on Arbitrum One with Morpho, GMX, Uniswap and LayerZero integrated on day one.
5
1,065