Can anyone explain the final bit about transitioning to a new algorithm not being too difficult?
If ECDSA will be broken (and only that), then we can just create a new address type, and move all coins there.
There are millions active addresses. The process of moving coins from them would be very long and very expensive.