Published in the version 2.2 online by German BSI (English version).
From the webpage:
“[…] Looking ahead, the conclusion of the study is that quantum computing is making steady progress towards cryptanalytic relevance according to the reliable mainstream: fault-tolerant (improved) Shor algorithm, executed either on a superconducting system with the surface code or an ion-based system with the color code. Major roadblocks in this scenario were resolved in 2024, bringing us a lot closer to this goal even without large disruptions. Our conservative estimate is that, as of the year 2025, cryptographically relevant quantum computers are likely to be available within 15 years. This is based on the necessary maturation in component quality – which is not large but tends to be slow, and the time scale to do a brute-force scaleup.
If the qLDPC-code demonstrators that are currently being developed perform well, this could even go down to about 10 years.”
Origin of text: https://www.bsi.bund.de/EN/Themen/Unternehmen-und-Organisationen/Informationen-und-Empfehlungen/Quantentechnologien-und-Post-Quanten-Kryptografie/Entwicklungsstand-Quantencomputer/entwicklungsstand-quantencomputer.html
Foto von byVlado auf Unsplash