QorTrace
QORTRACE THREAT RADAR · LIVE

The clock is
already ticking.

A live map of post-quantum and Web3 threats. Every signature you commit today is harvest-now-decrypt-later candy when fault-tolerant quantum arrives. Watch the threat surface — and the countdown — in real time.

Schedule Consult
ESTIMATED Q-DAY · 2028-10-03
838
DAYS
11
HRS
41
MIN
34
SEC
STATE OF THE ART
1,180
physical qubits
Atom Computing · Phoenix
Best logical: 24 q (Microsoft + Quantinuum)
WEEKLY THREAT BRIEFING · FREE
Tweet this view · CA
FILTERS · TAP TO TOGGLE LAYERS
NEWS_INFOSECURITYServerless Phishing Kit on GitHub Targets Mexican BanksNEWS_COINDESKKevin Warsh's first Fed meeting could be more about communication than ratesGHSAGHSA · npm/n8n · GHSA-664h-gpgq-h6xxGHSAGHSA · npm/@earendil-works/pi-coding-agent · CVE-2026-54325GHSAGHSA · npm/@earendil-works/pi-coding-agent · CVE-2026-54328GHSAGHSA · npm/@mariozechner/pi-coding-agent · CVE-2026-54327GHSAGHSA · composer/laravel/framework · GHSA-crmm-hgp2-wgrpGHSAGHSA · composer/laravel/framework · GHSA-5vg9-5847-vvmqNEWS_COINTELEGRAPHCoinMENA, Standard Chartered partner on UAE payment railsNEWS_COINTELEGRAPHOnchain, in court: What happened in crypto legal news this weekNEWS_PROTOSSteam workshop wallpapers found spreading crypto malwareNEWS_BITCOINMAGCrypto Industry Slams Illinois’ New Digital Asset Tax as ‘Most Punitive’ in U.S.NEWS_COINDESKCoinDesk 20 performance update: Bitcoin Cash (BCH) drops 3.1%, leading index lowerNEWS_COINTELEGRAPHHere’s what happened in crypto todayNEWS_INFOSECURITYSensitive Enterprise Data Uploads to AI Models Double in a YearNEWS_DECRYPTSenators Introduce Bipartisan Resolution Opposing SBF Pardon
FREE PQC SCAN · 1 PER DAY

Paste a wallet or contract address and we'll score its cryptographic exposure on a 0-100 scale. Free, no card, instant.

REGIONAL HOTSPOTS · 14d
NIST PQC STANDARDS
ML-KEM (Kyber)
FIPS 203 · Key Encapsulation
STANDARDISED
2024
ML-DSA (Dilithium)
FIPS 204 · Digital Signature
STANDARDISED
2024
SLH-DSA (SPHINCS+)
FIPS 205 · Hash-based Signature
STANDARDISED
2024
FN-DSA (Falcon)
FIPS 206 · Digital Signature
DRAFT (DIS)
2025
HQC
— · Backup KEM
SELECTED (2025)
2025
THREAT FEED · LAST 14 DAYS
328
cve
1258
news
459
vendor
12
kev
Sources: CISA Known Exploited Vulnerabilities catalog, NIST NVD CVE feed, GitHub Advisory Database, and curated cybersecurity + Web3 RSS feeds. Refreshed hourly.
MOST-TARGETED VENDORS · 30d
github
CVE 7 · GHSA 128
135
wordpress
CVE 70 · GHSA 0
70
microsoft
KEV 7 · CVE 17 · GHSA 8
32
ibm
CVE 26 · GHSA 0
26
python
CVE 9 · GHSA 11
20
google
CVE 19 · GHSA 1
20
java
CVE 7 · GHSA 9
16
linux
KEV 2 · CVE 5 · GHSA 5
12
QUANTUM RACE · LEADERBOARD
IBM
Condor
1,121q
Atom Computing◉ SOTA
Phoenix
1,180q
USTC
Zuchongzhi 3.0
504q
Quantinuum
H2
56q
Google
Willow
105q
Microsoft + Quantinuum
Topological + ion-trap
56q
IonQ
Forte
64q
Rigetti
Ankaa-3
84q
PQC COMPLIANCE COUNTDOWN
DORA · Digital Operational Resilience Act
516d ago
2025-01-17 · EU
EU financial-sector firms must demonstrate operational resilience (incl. ICT third-party risk) — including cryptographic posture.
CNSA 2.0 · Software/Firmware
168d ago
2025-12-31 · US-NSA
NSA target for new National Security Systems software & firmware to start adopting CNSA 2.0 (Kyber, Dilithium, SHA-2) algorithms.
BSI TR-02102-1 · Crypto Recommendation Refresh
13d
2026-06-30 · DE-BSI
Annual BSI cryptographic-recommendation refresh — flagged deadline for hybrid (classical + PQC) roll-out in regulated DE.
CNSA 2.0 · Networking & VPN
562d
2027-12-31 · US-NSA
Networking, VPN, and key-management products on NSS networks should fully support CNSA 2.0 algorithms.
NIST SP 800-131A · Disallow RSA-2048 / ECDSA P-256
1658d
2030-12-31 · US-NIST
NIST recommended sunset for classical public-key crypto in federal systems — full PQC migration target.
CNSA 2.0 · Full PQC Adoption
2754d
2033-12-31 · US-NSA
All NSS systems must be using CNSA 2.0 PQC algorithms exclusively.
COMMUNITY PULSE · CURATED
@CISAgov
Reminder: NSA's CNSA 2.0 timeline is in effect. New software for NSS should now be adopting Kyber, Dilithium, and SHA-2.
@NIST
FIPS 203 (ML-KEM), 204 (ML-DSA) and 205 (SLH-DSA) are now the standards. Migration windows are short for high-value targets.
@matthew_d_green
Harvest-now-decrypt-later isn't a scenario, it's an active intelligence program. The ECDSA signatures you commit today are tomorrow's plaintext.
@hashedout
Bitcoin's quantum exposure isn't a 2040 problem. ~25% of circulating supply sits in P2PKH addresses with exposed pubkeys. Q-Day day-one targets.
@SchneierBlog
If your security architecture cannot survive the public release of CRYSTALS-Kyber breaks, you needed PQC yesterday.
@a16zcrypto
Wallet providers shipping PQC migration paths in 2026 will own the institutional custody narrative for the next decade.
LATEST ADVISORIES
NEWS_INFOSECURITY · INFO
Serverless Phishing Kit on GitHub Targets Mexican Banks
GitBait phishing kit abuses GitHub Pages and the SheetBest API to steal Mexican banking credentials
NEWS_COINDESK · INFO
Kevin Warsh's first Fed meeting could be more about communication than rates
While monetary policy is expected to remain unchanged, markets are focused on whether the new chair begins reshaping how the U.S. central bank communicates.
GHSA · MEDIUM
GHSA · npm/n8n · GHSA-664h-gpgq-h6xx
n8n: Wrong OAuth Scope on Evaluation Test Runs Endpoints
GHSA · MEDIUM
GHSA · npm/@earendil-works/pi-coding-agent · CVE-2026-54325
Pi Agent: Pi loads project-local extensions without approval
GHSA · HIGH
GHSA · npm/@earendil-works/pi-coding-agent · CVE-2026-54328
Pi Agent: Predictable temporary extension install paths allow local privilege escalation on shared Linux hosts
GHSA · LOW
GHSA · npm/@mariozechner/pi-coding-agent · CVE-2026-54327
Pi Agent: Race condition in Pi auth.json writes could expose stored credentials
GHSA · MEDIUM
GHSA · composer/laravel/framework · GHSA-crmm-hgp2-wgrp
Laravel Framework: Temporary Signed URL Path Confusion
GHSA · HIGH
GHSA · composer/laravel/framework · GHSA-5vg9-5847-vvmq
Laravel Framework: CRLF injection in default email rule
NEWS_COINTELEGRAPH · INFO
CoinMENA, Standard Chartered partner on UAE payment rails
CoinMENA will use Standard Chartered to strengthen fiat payment rails in the UAE, while Revolut reportedly secured central bank licenses ahead of a planned local launch.
NEWS_COINTELEGRAPH · INFO
Onchain, in court: What happened in crypto legal news this week
The Polymarket insider trading case and a retrial of Tornado Cash co-founder Roman Storm are expected to move forward in late 2026 while former Celsius CEO Alex Mashinsky awaits a response to his motion to vacate his sentence.
NEWS_PROTOS · INFO
Steam workshop wallpapers found spreading crypto malware
Bad actors are using Steam Workshop's wallpaper application to sneak malware into users' computers and steal crypto wallet information. The post Steam workshop wallpapers found spreading crypto malware appeared first on Protos .
NEWS_BITCOINMAG · INFO
Crypto Industry Slams Illinois’ New Digital Asset Tax as ‘Most Punitive’ in U.S.
Bitcoin Magazine Crypto Industry Slams Illinois’ New Digital Asset Tax as ‘Most Punitive’ in U.S. Illinois became the first U.S. state to impose a transaction-based crypto tax after Gov. JB Pritzker signed SB 3019 into law. This post Crypto Industry Slams Illinois’ New Digita
NEWS_COINDESK · INFO
CoinDesk 20 performance update: Bitcoin Cash (BCH) drops 3.1%, leading index lower
Cardano (ADA), down 2.8%, was also among the underperformers.
NEWS_COINTELEGRAPH · INFO
Here’s what happened in crypto today
Need to know what happened in crypto today? Here is the latest news on daily trends and events impacting Bitcoin price, blockchain, DeFi, Web3 and crypto regulation.
NEWS_INFOSECURITY · INFO
Sensitive Enterprise Data Uploads to AI Models Double in a Year
The rise of AI-assistants and applications in the enterprise has seen a 93% increase in employees attempting to upload sensitive data, bringing security challenges
NEWS_DECRYPT · INFO
Senators Introduce Bipartisan Resolution Opposing SBF Pardon
Senators Gallego and Lummis want the chamber on record that the FTX fraudster should get no clemency under any circumstances.
NEWS_COINTELEGRAPH · INFO
Inveniam to acquire Mantra after turbulent year marked by OM crash
Inveniam announced plans to acquire Mantra, a blockchain project that spent the past year recovering from the collapse of its OM token and prolonged market pressure.
NEWS_COINDESK · INFO
A new Bittensor proposal would turn validators into something like fund managers
Root Reborn would have TAO validators pick which subnets to back and reinvest yield into, rather than constantly selling subnet tokens to pay stakers. It is a code proposal in review, not a live change.
NEWS_SECURITYWEEK · INFO
1Password Acquires Apono in Reported $250M-$300M Deal
Apono specializes in just-in-time access governance technology for humans, machines, and AI agents. The post 1Password Acquires Apono in Reported $250M-$300M Deal appeared first on SecurityWeek .
NEWS_INFOSECURITY · INFO
AI Threats and Alert Fatigue Challenge Cybersecurity Teams
Filigran survey at Infosecurity Europe 2026 reveals AI-powered attacks as the top concern, with false positives, alert fatigue and manual processes draining security teams
NEWS_DECRYPT · INFO
Morning Minute: Coinbase Pushes to Become 'Everything Exchange' With Stocks, Perps, and AI
The wall between crypto and TradFi continues to break down as Coinbase ushers in non-crypto products.
NEWS_PROTOS · INFO
Strategy’s ‘stable’ STRC spends a lot of time below its $100 target
Between its dividend snapshot dates, holding Strategy’s STRC is risky and full of historical examples of downside volatility. The post Strategy’s ‘stable’ STRC spends a lot of time below its $100 target appeared first on Protos .
NEWS_COINDESK · INFO
SpaceX's $2.6 trillion market cap nearly double that of bitcoin
Eight days after its IPO, SpaceX has surged past $2.5 trillion to become the world's sixth-largest company. And market watchers say it is pulling the risk capital crypto wants.
NEWS_SECURITYWEEK · INFO
Tenet Security Emerges From Stealth With $6 Million Seed Funding
Tenet aims to detect and stop dangerous AI agentic behavior in real time. The post Tenet Security Emerges From Stealth With $6 Million Seed Funding appeared first on SecurityWeek .
NEWS_THEHACKERNEWS · INFO
Adversarial Exposure Validation Turns Security Visibility into Confident Prioritization
For security teams, the findings never stop, but confidence in knowing which ones matter is becoming harder to maintain. The problem is no longer visibility. It's validation. Security teams must decide which findings warrant action while operating under constant pressure and incomplete information.
NEWS_COINDESK · INFO
Bitcoin's June downturn leaves $8.6 billion in options out of the money
Only 20% of June 26 options open interest is currently in the money, while bitcoin's 12% monthly decline leaves most bullish positions underwater.
NEWS_SECURITYWEEK · INFO
Rockwell Automation Patches Vulnerabilities in ICS Controllers and Software
The industrial automation giant has fixed security holes in Logix, CompactLogix, Flex, RSLinx, and FactoryTalk products. The post Rockwell Automation Patches Vulnerabilities in ICS Controllers and Software appeared first on SecurityWeek .
NEWS_COINDESK · INFO
Heir to 135-year Gulf dynasty is moving a $6 trillion trade market onto blockchain rails
Abdulla Kanoo says his ARP Digital firm is building settlement infrastructure for the growing flow of trade between emerging economies, a market that could reach $32 trillion by 2030.
NEWS_DARKREADING · INFO
Sweeping Credential-Harvesting Heist Compromises +30K Fortinet Devices
Attackers actively are targeting various sectors across nearly 200 countries and have already compiled a list of working credentials for tens of thousands of compromised devices
NEWS_COINDESK · INFO
Three Fed signals that could make bitcoin pop
Your day-ahead look for June 17, 2026

Don't wait for Q-Day.

QorTrace audits smart contracts, scans wallets for cryptographic exposure, and certifies post-quantum readiness. The strongest hands move first.

Get auditedSee pricing