Another Round of Breaking and Making Quantum Money: - How to Not Build It from Lattices, and More
Jiahui Liu, Hart Montgomery, Mark Zhandry
Abstract
Public verification of quantum money has been one of the central objects in quantum cryptography ever since Wiesner's pioneering idea of using quantum mechanics to construct banknotes against counterfeiting. So far, we do not know any publicly-verifiable quantum money scheme that is provably secure from standard assumptions.
In this work, we provide both negative and positive results for publicly verifiable quantum money.
• In the first part, we give a general theorem, showing that a certain natural class of quantum money schemes from lattices cannot be secure. We use this theorem to break the recent quantum money scheme of Khesin, Lu, and Shor.
• In the second part, we propose a framework for building quantum money and quantum lightning we call invariant money which abstracts some of the ideas of quantum money from knots by Farhi et al.(ITCS'12). In addition to formalizing this framework, we provide concrete hard computational problems loosely inspired by classical knowledge-of-exponent assumptions, whose hardness would imply the security of quantum lightning, a strengthening of quantum money where not even the bank can duplicate banknotes.
• We discuss potential instantiations of our framework, including an oracle construction using cryptographic group actions and instantiations from rerandomizable functional encryption, isogenies over elliptic curves, and knots.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 8a445459-5a40-4c8c-8062-77fe59b772feCited by top-tier papers7
- Evaluating the Security of CRYSTALS-Dilithium in the Quantum Random Oracle ModelKelsey A. Jackson, Carl A. Miller, Daochen WangEUROCRYPT 2024 · 14 citations
- Quantum Oblivious LWE Sampling and Insecurity of Standard Model Lattice-Based SNARKsThomas Debris-Alazard, Pouria Fallahpour, Damien StehléSTOC 2024 · 8 citations
- On One-Shot Signatures, Quantum vs. Classical Binding, and Obfuscating PermutationsOmri Shmueli, Mark ZhandryCRYPTO 2025 · 6 citations
- A Modular Approach to Unclonable CryptographyPrabhanjan Ananth, Amit BeheraCRYPTO 2024 · 6 citations
- LWE with Quantum Amplitudes: Algorithm, Hardness, and Oblivious SamplingYilei Chen, Zihan Hu, Qipeng Liu, Han Luo et al.CRYPTO 2025 · 3 citations
Builds on7
- Breaking SIDH in Polynomial TimeDamien RobertEUROCRYPT 2023 · 158 citations
- Hidden Cosets and Applications to Unclonable CryptographyAndrea Coladangelo, Jiahui Liu, Qipeng Liu, Mark ZhandryCRYPTO 2021 · 64 citations
- New Approaches for Quantum Copy-ProtectionScott Aaronson, Jiahui Liu, Qipeng Liu, Mark Zhandry et al.CRYPTO 2021 · 47 citations
- Public-key Quantum money with a classical bankOmri ShmueliSTOC 2022 · 20 citations
- Security Analysis of Quantum LightningBhaskar RobertsEUROCRYPT 2021 · 19 citations
Related papers
- On Quantum Money and Evasive ObfuscationMark ZhandryEUROCRYPT 2025 · 2 citations
- Anonymous Public-Key Quantum Money and Universally Verifiable Quantum VotingAlper Çakan, Vipul Goyal, Takashi YamakawaCRYPTO 2026
- A General Quantum Duality for Representations of Groups with Applications to Quantum Money, Lightning, and FireJohn Bostanci, Barak Nehoran, Mark ZhandrySTOC 2025 · 2 citations
- Quantum State Group ActionsSaachi Mutreja, Mark ZhandryCRYPTO 2025 · 2 citations
- Multi-copy Security in Quantum Cryptography and MoreAlper Çakan, Vipul Goyal, Fuyuki Kitagawa, Ryo Nishimaki et al.CRYPTO 2026
