We conclude that elliptic curve discrete logarithms on an elliptic curve defined over an n-bit prime field can be computed on a quantum computer with at most 9n + 2 [log2 (n)] + 10 qubits using a quantum circuit of at most 448n^3 log2 (n) + 4090n^3 Toffoli gates.
Nel caso di Bitcoin e della sua curva ellittica secp256k1, n = 256 quindi il numero di qubit necessari sarebbe: 9*256 + 2*8 + 10 = 2330