惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

AI
AI
博客园 - 叶小钗
Blog — PlanetScale
Blog — PlanetScale
Microsoft Azure Blog
Microsoft Azure Blog
Vercel News
Vercel News
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
MyScale Blog
MyScale Blog
大猫的无限游戏
大猫的无限游戏
A
About on SuperTechFans
量子位
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
博客园 - 【当耐特】
Martin Fowler
Martin Fowler
阮一峰的网络日志
阮一峰的网络日志
D
Docker
Jina AI
Jina AI
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
The Register - Security
The Register - Security
J
Java Code Geeks
S
SegmentFault 最新的问题
月光博客
月光博客
G
Google Developers Blog
美团技术团队
Last Week in AI
Last Week in AI
L
LangChain Blog
Apple Machine Learning Research
Apple Machine Learning Research
T
The Blog of Author Tim Ferriss
腾讯CDC
Recent Announcements
Recent Announcements
Recorded Future
Recorded Future
The Cloudflare Blog
有赞技术团队
有赞技术团队
博客园_首页
博客园 - 聂微东
人人都是产品经理
人人都是产品经理
B
Blog
I
InfoQ
CTFtime.org: upcoming CTF events
CTFtime.org: upcoming CTF events
F
Fortinet All Blogs
B
Blog RSS Feed
Engineering at Meta
Engineering at Meta
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
Microsoft Security Blog
Microsoft Security Blog
MongoDB | Blog
MongoDB | Blog
爱范儿
爱范儿
D
DataBreaches.Net
F
Full Disclosure
M
MIT News - Artificial intelligence
博客园 - 司徒正美
H
Help Net Security

PostQuantum – Quantum Computing, Quantum Security, PQC

Lightning Network's Quantum Problem Ethereum's Five Quantum Vulnerabilities Bitcoin's Quantum Vulnerability — Anatomy How Close Is the Quantum Threat? Resource Estimates The Quantum Threat to Cryptocurrencies: What's Real Lattice-Based PQC "Limitations" Paper — A Reality Check China's Hanyuan-2 Dual-Core Quantum Computer Pick One Layer First for Your Post-Quantum Migration Cisco Quantum Switch: Room-Temperature Qubit Routing IonQ Claims Q-Day by 2029 — Here's What They Actually Said Project Eleven's 110-Page Quantum Blockchains Report QuantWare Raises $178M Series B Q-CTRL Claims Practical Quantum Advantage Quantum Computing Simulates 12,635-Atom Protein How Quantum Snake Oil Vendors Respond to Hard Questions Simulated Quantum Entanglement | PostQuantum.com Quantum Snake Oil: Guide to Misleading Quantum Terms Quantum AI Trading — Quantum Snake Oil Dictionary Quantum-Proof — Quantum Snake Oil Dictionary Quantum-Grade Encryption — Quantum Snake Oil Dictionary Quantum-Safe Certified — Quantum Snake Oil Dictionary Military-Grade Quantum Encryption | PostQuantum.com What Is a QBOM? Quantum Bill of Materials vs CBOM Explained Quantum-Inspired Encryption — Quantum Snake Oil Dictionary What Is Trust Now, Forge Later (TNFL)? Quantum Blockchain — Quantum Snake Oil Dictionary What Is PQC Migration? The Largest Cryptographic Overhaul Quantum Financial System (QFS) | PostQuantum.com What Is QKD (Quantum Key Distribution)? What Is Quantum Error Correction (QEC)? Unhackable Quantum Encryption | PostQuantum.com Unconditionally Secure — Quantum Snake Oil Dictionary Perfect Secrecy — Quantum Snake Oil Dictionary Information-Theoretic Security | PostQuantum.com Quantum Encryption / Quantum Cryptography Quantum-Enhanced — Quantum Snake Oil Dictionary Quantum-Safe vs Quantum-Resistant vs Post-Quantum Anatomy of Quantum Denial: Bitcoin's Example What Is a Logical Qubit? The Metric That Actually Matters What Is a CRQC? Quantum Computer That Breaks Encryption What Is Q-Day? When Quantum Computers Break Encryption What Is Harvest Now, Decrypt Later (HNDL)? What Is Grover's Algorithm? What Is Shor's Algorithm? The Quantum Threat Explained What Is Quantum Safe? What the Label Means for CISOs What Is Quantum Computing Security? What Is Quantum Cyber Security? What Is Quantum Cryptography? QKD, PQC, and related? Quantum Security: A Complete Guide for Security Leaders What Is Post-Quantum Cryptography (PQC)? Crypto-Agility Is an Architecture Problem, Not a Library Swap IBM Quantum Advantage 2026: Heron + Fugaku Analyzed Aaronson Warns: CRQC by 2029 Is Plausible U.S. Quantum Policy: NQI Reauthorization and PQC Bills The Narrow Advantage: Why Quantum Computing Will Transform Five Industries and Disappoint Twenty The Error Correction Revolution Rewriting Quantum Timelines The Signature Supply Chain: How Deep Does Digital Trust Go? Quantum Chemistry's Honest Ledger: What the Resource Estimates Actually Say About Drug Discovery, Catalysis, and Materials Design Why Quantum Won't Save Wall Street (Yet): An Honest Assessment of Quantum Computing in Finance PQC Standards Fragmentation Quantum Sovereignty and the Utility Trap The Decoder Bottleneck: The CRQC Challenge Nobody Is Talking About IonQ Publishes Complete Fault-Tolerant Blueprint for Trapped Ions — The Walking Cat Architecture Quantum Computing by 2033: Which Industries Win, Which Wait, and Why Nature Reviews Publishes the Definitive CMOS–Spin Qubit Compatibility Assessment IonQ Photonic Interconnect: First Networked Commercial Quantum Computers QuEra Achieves 2:1 Physical-to-Logical Qubit Ratio With Ultra-High-Rate qLDPC Codes Grover's Algorithm vs AES - Why "Ignore It" Is Almost Right McKinsey Quantum Monitor 2026: Tipping Point? Meta PQC Migration Playbook: Lessons for CISOs NVIDIA Ising: Open AI Models for Quantum Calibration and Error Correction Harvard's Cascade Neural Decoder PQC Signature Migration Before Encryption Architecture Matters as Much as the Algorithm: Q-CTRL's Heterogeneous Quantum Computer Design Cuts RSA-2048 to 190k-381k Qubits China's Quantum Sensing Ecosystem: From Deep-Sea Diamonds to Drone-Mounted Submarine Hunters China's Quantum Sensing Ecosystem: From Deep-Sea Diamonds to Drone-Mounted Submarine Hunters China's Quantum Networking and QKD — World's Most Ambitious Quantum Communication Program Anthropic's Mythos Preview and the End of a Twenty-Year Cybersecurity Equilibrium China's Quantum Networking and QKD — World's Most Ambitious Quantum Communication Program Cloudflare Joins Google: Two Internet Giants Now Say 2029 for Post-Quantum Migration China's Quantum Computing Hardware: The Core Capability the West Keeps Misjudging China's Quantum Computing Hardware: The Core Capability the West Keeps Misjudging QuiX Quantum Achieves First Below-Threshold Error Mitigation in Photonic Quantum Computing China's Quantum Talent Ecosystem: Building a Superpower's Workforce Quantum Threat Timeline Report 2025: Record Predictions, But Can the Survey Keep Up? China's Quantum Talent Ecosystem: Building a Superpower's Workforce China's Hefei National Laboratory: The Nerve Center of a Quantum Superpower China's Hefei National Laboratory: The Nerve Center of a Quantum Superpower China's 15th Five-Year Plan Makes Quantum an Industrial Imperative — Not Just a Research Priority China's 15th Five-Year Plan Makes Quantum an Industrial Imperative — Not Just a Research Priority QuantumShield360 AI Achieves World's First Complete Post-Quantum Cryptography Migration — Full Quantum Resilience Across All Enterprise Systems 10,000 Qubits to Run Shor's Algorithm Google Quantum AI Achieves 10x Reduction in Resources to Break Bitcoin's Cryptography The U.S. Intelligence Community Just Put Quantum on Equal Footing with AI. And Expanded the Threat Definition Google Just Drew a Line in the Sand: PQC Migration by 2029 Silicon Crosses the Logical Threshold: First Universal Logical Operations Demonstrated in a Silicon Quantum Processor The 1,000-Qubit Ceiling That Probably Isn't Science Confirms What Large Corporate Survivors Already Knew - Organizational Bullshit Makes You Worse at Your Job A New Algorithm Shrinks the Quantum Attack Surface for ECC Quantinuum Squeezes 94 Logical Qubits from 98 Physical — But What Does It Actually Mean?
Gauge Theory Meets Quantum Computing
2026-04-03 · via PostQuantum – Quantum Computing, Quantum Security, PQC

April 2, 2026 – Dr. Dominic Williamson of the University of Sydney and Theodore Yoder of IBM have published a new method for performing fault-tolerant logical measurements on quantum error-correcting codes that dramatically reduces the physical qubit overhead required. The paper, titled “Low-overhead fault-tolerant quantum computation by gauging logical operators”, appears in Nature Physics (DOI: 10.1038/s41567-026-03220-8).

The technique treats logical quantum operators as symmetries and “gauges” them – borrowing a mathematical technique from lattice gauge theory — specifically, the idea of “gauging” a global symmetry by converting it into local constraints enforced by auxiliary degrees of freedom. By introducing synthetic gauge-like degrees of freedom, the method infers the logical measurement outcome from many local measurement outcomes, avoiding a single high-weight measurement circuit that would be vulnerable to correlated faults.

The key quantitative result: previous approaches to measuring logical operators in efficient quantum codes required auxiliary qubit overhead scaling as O(W × d), where W is the weight of the operator being measured and d is the code distance. The new gauging procedure reduces this to O(W × polylog W) – overhead that is essentially linear in the operator weight, up to a small polylogarithmic correction.

The work was conducted during Dr. Williamson’s sabbatical at IBM’s Quantum Information Theory and Error Correction group in California. Elements of the design have already been integrated into IBM’s long-term roadmap for building large-scale fault-tolerant quantum computers, including the Starling architecture targeted for 2029.

My Analysis

Why This Matters More Than Most QEC Papers

Let me be direct: the quantum error correction literature produces dozens of papers every month, and most of them, even good ones, represent incremental refinements rather than architectural inflection points. This paper is different. It addresses what had become a recognized open problem at the heart of the most promising path to scalable quantum computing, and it does so with a solution that is both mathematically elegant and practically consequential.

To understand why, you need to grasp the central tension in the qLDPC revolution that’s been reshaping the fault-tolerant quantum computing landscape.

For two decades, the surface code dominated quantum error correction. It is beautifully simple: qubits arranged on a two-dimensional grid, errors detected by comparing neighbors. But it is also brutally inefficient — encoding a single logical qubit requires roughly d² physical qubits, where d is the code distance. For the code distances needed to run meaningful algorithms, that means hundreds or thousands of physical qubits per logical qubit. This is why surface-code-based resource estimates for breaking RSA-2048 have historically landed in the millions of physical qubits.

qLDPC codes shatter this limitation. IBM’s [[144,12,12]] bivariate bicycle “gross” code, for instance, encodes 12 logical qubits into 144 data qubits plus 144 syndrome check qubits (288 physical qubits total) – roughly a 10× improvement over the approximately 3,000 physical qubits a surface code would need for comparable error protection. Newer constructions push this further. The qLDPC code revolution is, without exaggeration, the most important shift in fault-tolerant quantum architecture in a decade.

But there was a catch. And it was a big one.

The Storage-vs-Computation Gap

Efficient codes are only useful if you can actually do things with the information they protect. In fault-tolerant quantum computing, “doing things” fundamentally involves measuring logical operators — the quantum equivalent of reading out computational results. And for qLDPC codes, the standard approach to these measurements required stitching together an auxiliary system whose size scaled as the product of the operator’s weight and the code distance.

For small codes, this overhead is manageable. For the large-code, high-distance regimes needed for cryptographically relevant computation, it becomes a showstopper. The auxiliary measurement scaffold could require more qubits than the primary computation — negating the very efficiency gains that made qLDPC codes attractive in the first place.

This is the problem Williamson and Yoder solve. And they solve it by reaching into the toolbox of theoretical physics, not computer science.

Gauging: From the Standard Model to Quantum Memory

The insight is almost audacious in its cross-disciplinary reach. In lattice gauge theory, “gauging” a symmetry means replacing a global constraint with a set of locally enforceable conditions – Gauss’s-law-type checks – so that globally meaningful quantities can be inferred from purely local measurements. It’s a technique with deep roots in theoretical physics, from condensed matter to the Standard Model, but the version used here operates over discrete Z₂ degrees of freedom on a graph – not the full non-Abelian gauge-field machinery of particle physics.

Williamson and Yoder realized this same principle could be applied to quantum error-correcting codes. By treating a logical quantum operator as a symmetry and “gauging” it through a network of local measurements on a carefully chosen auxiliary graph (typically with good expansion properties), they infer the global computational result from locally checkable conditions – still a projective measurement of the logical operator, but one decomposed into small, fault-tolerant pieces rather than executed as a single dangerous high-weight circuit. The auxiliary qubit cost drops from O(W × d) to O(W × log³W) – a qualitative improvement in scaling behavior.

The practical implication is stark. For the code sizes relevant to building a cryptographically relevant quantum computer (CRQC), this transforms the overhead arithmetic entirely. It means the efficiency of qLDPC storage can finally be matched by comparably efficient computation.

IBM’s Roadmap Integration: Theory to Architecture

What elevates this from a purely theoretical contribution to something with near-term architectural significance is the IBM connection. This isn’t a case of a paper being published and then sitting in the literature waiting for someone to notice it. Williamson developed the work at IBM, co-authored it with IBM’s Theodore Yoder, and IBM has already folded elements of the gauging approach into its fault-tolerant roadmap.

The gauging paper has been available as a preprint since October 2024, and its influence on the field has been immediate. IBM’s June 2025 architecture paper (“Tour de Gross”) describes a modular fault-tolerant quantum computer built around bivariate bicycle qLDPC codes, with logical processing units (LPUs) based on generalized surgery that directly leverages the gauging technique. That architecture underpins IBM Quantum Starling — their target system for 2029, designed to run 100 million gates on 200 logical qubits.

Williamson, Yoder, and collaborators have also extended the approach in subsequent work. Their “Extractors” paper (March 2025) introduces complete qLDPC architectures for efficient Pauli-based computation, and their parallel logical measurements paper shows how to perform many measurements simultaneously — each building on the gauging foundation. The Nature Physics publication this week represents peer-reviewed confirmation of the theoretical result that has already begun reshaping fault-tolerant architecture design.

Implications for the Path to CRQC

Through the lens of my CRQC Quantum Capability Framework, this paper touches several critical capability areas:

Quantum Error Correction (B.1): The gauging procedure is a fundamentally new approach to fault-tolerant logical measurement, applicable to arbitrary quantum codes. It extends the QEC toolkit beyond surface-code-centric techniques.

High-Fidelity Logical Clifford Gates (C.1): The method directly enables efficient Clifford gate implementation on qLDPC codes through measurement-based approaches, which is essential for the Pauli-based computation model that most qLDPC architectures now adopt.

Engineering Scale & Manufacturability (E.1): By reducing the physical qubit overhead for logical computation, this result makes the total qubit budgets for useful fault-tolerant machines more achievable. It contributes directly to the recent trend of dramatically falling resource estimates.

And that trend is perhaps the most important context for this paper. Consider the trajectory: Gidney’s 2025 estimate brought RSA-2048 factoring below one million physical qubits — still using surface codes, driven by improved circuit design and distillation techniques rather than qLDPC advances. But the next wave of reductions depends squarely on qLDPC architectures: the Pinnacle Architecture (Iceberg Quantum, February 2026) pushed the estimate to approximately 100,000 physical qubits using qLDPC codes, and days ago, Oratomic’s analysis suggested Shor’s algorithm could run at cryptographically relevant scales with as few as 10,000 reconfigurable atomic qubits — also leveraging high-rate qLDPC codes.

Those qLDPC-based estimates depend on being able to perform efficient logical operations on the stored information. Williamson and Yoder’s gauging technique is one of several converging results — alongside extractors, universal adapters, and improved code surgery variants — that make efficient qLDPC computation plausible. It’s not the sole driver, but it’s a load-bearing piece of a rapidly maturing theoretical toolkit.

What It Doesn’t Do

To maintain the balance that I always strive for – pushing back against both quantum hype and quantum denialism – I need to flag the limitations clearly.

This is a theoretical result. There is no hardware demonstration. The authors themselves flag several open questions: the optimal number of error-correction rounds needed around the gauging procedure, the best decoding strategy for the syndrome data it produces, and whether the approach performs as expected under realistic noise models. These are described as tractable engineering challenges rather than fundamental barriers, and I’m inclined to agree – but “tractable” and “solved” are different words.

The polylogarithmic overhead factor (log³W) is not zero. For moderate-sized codes, the constant factors matter, and real-world implementations may require careful optimization to realize the asymptotic scaling advantages.

And to be precise about what “low overhead” means here: the gauging procedure still requires auxiliary qubits – it reduces the count from scaling with the code distance to scaling polylogarithmically, which is a dramatic asymptotic improvement but not the elimination of overhead entirely. At practical code sizes, the constant factors and graph construction choices will determine whether the theoretical scaling advantage translates into real hardware savings.

More fundamentally, reducing the overhead of logical measurement is necessary but not sufficient for building a CRQC. Magic state preparation, real-time decoding at scale, continuous operation over extended durations, and the manufacturing engineering to build million-qubit systems all remain formidable challenges with their own open problems.

The Bigger Picture: qLDPC’s Moment

Stepping back, this paper crystallizes something that has become increasingly clear throughout 2025 and into 2026: the qLDPC revolution is not just coming – it’s here. The theoretical foundations for efficient fault-tolerant computation on qLDPC codes are now substantially in place. The surface code, which has dominated fault-tolerant quantum computing for two decades, is being displaced as the assumed baseline for resource estimation.

This matters enormously for Q-Day timeline analysis. Every order-of-magnitude reduction in the physical qubit count required for a CRQC is an order-of-magnitude reduction in the manufacturing challenge. The gap between “theoretically possible with millions of qubits” and “theoretically possible with tens of thousands of qubits” is not just quantitative — it’s the difference between requiring entirely new manufacturing paradigms and potentially extending existing ones.

None of this changes the fundamental message I’ve emphasized for years: debating exact Q-Day timing is less important than the regulatory, insurance, and investor-driven deadlines that are already set. But for those tracking the engineering trajectory toward a CRQC, the gauging paper is a significant marker. The theoretical overhead barriers that once made qLDPC computation look impractical are falling, and falling fast.


A disclosure: the preprint of this paper has been available on arXiv since October 2024, and readers may reasonably wonder why I’m covering it now rather than then. Considering I tend to cover potentially impactful pre-prints straight away. The honest answer is that its significance has grown enormously in context. When it appeared eighteen months ago, it was an elegant theoretical result in a subfield moving fast. Since then, the entire fault-tolerant architecture landscape has shifted toward qLDPC codes – IBM’s Tour de Gross, Iceberg Quantum’s Pinnacle Architecture, Oratomic’s 10,000-qubit Shor’s estimate – and every one of those architectures depends, directly or indirectly, on efficient logical computation on qLDPC codes. The gauging technique is one of the key results that makes that possible. Its peer-reviewed publication in Nature Physics this week is a good occasion to give it the attention it deserves, but the real reason to cover it now is that the field has caught up to its implications.

Quantum Upside & Quantum Risk - Handled

My company - Applied Quantum - helps governments, enterprises, and investors prepare for both the upside and the risk of quantum technologies. We deliver concise board and investor briefings; demystify quantum computing, sensing, and communications; craft national and corporate strategies to capture advantage; and turn plans into delivery. We help you mitigate the quantum risk by executing crypto‑inventory, crypto‑agility implementation, PQC migration, and broader defenses against the quantum threat. We run vendor due diligence, proof‑of‑value pilots, standards and policy alignment, workforce training, and procurement support, then oversee implementation across your organization. Contact me if you want help.

Talk to me Contact Applied Quantum