惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

N
News and Events Feed by Topic
T
The Exploit Database - CXSecurity.com
P
Palo Alto Networks Blog
T
Threat Research - Cisco Blogs
Cloudbric
Cloudbric
Recent Commits to openclaw:main
Recent Commits to openclaw:main
I
Intezer
Attack and Defense Labs
Attack and Defense Labs
P
Privacy International News Feed
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
L
Lohrmann on Cybersecurity
C
Cybersecurity and Infrastructure Security Agency CISA
V2EX - 技术
V2EX - 技术
AWS News Blog
AWS News Blog
O
OpenAI News
L
LINUX DO - 最新话题
N
News | PayPal Newsroom
PCI Perspectives
PCI Perspectives
www.infosecurity-magazine.com
www.infosecurity-magazine.com
T
Troy Hunt's Blog
Latest news
Latest news
D
Darknet – Hacking Tools, Hacker News & Cyber Security
A
Arctic Wolf
Spread Privacy
Spread Privacy
G
GRAHAM CLULEY
T
Tor Project blog
博客园_首页
Know Your Adversary
Know Your Adversary
有赞技术团队
有赞技术团队
S
Secure Thoughts
美团技术团队
Apple Machine Learning Research
Apple Machine Learning Research
爱范儿
爱范儿
T
Tailwind CSS Blog
Application and Cybersecurity Blog
Application and Cybersecurity Blog
V
Visual Studio Blog
J
Java Code Geeks
Cisco Talos Blog
Cisco Talos Blog
Schneier on Security
Schneier on Security
Exploit-DB.com RSS Feed
Exploit-DB.com RSS Feed
S
Security Affairs
Jina AI
Jina AI
人人都是产品经理
人人都是产品经理
雷峰网
雷峰网
宝玉的分享
宝玉的分享
量子位
Last Week in AI
Last Week in AI
月光博客
月光博客
罗磊的独立博客
S
SegmentFault 最新的问题

PostQuantum – Quantum Computing, Quantum Security, PQC

Lightning Network's Quantum Problem Ethereum's Five Quantum Vulnerabilities Bitcoin's Quantum Vulnerability — Anatomy How Close Is the Quantum Threat? Resource Estimates The Quantum Threat to Cryptocurrencies: What's Real Lattice-Based PQC "Limitations" Paper — A Reality Check China's Hanyuan-2 Dual-Core Quantum Computer Pick One Layer First for Your Post-Quantum Migration Cisco Quantum Switch: Room-Temperature Qubit Routing IonQ Claims Q-Day by 2029 — Here's What They Actually Said Project Eleven's 110-Page Quantum Blockchains Report QuantWare Raises $178M Series B Q-CTRL Claims Practical Quantum Advantage Quantum Computing Simulates 12,635-Atom Protein How Quantum Snake Oil Vendors Respond to Hard Questions Simulated Quantum Entanglement | PostQuantum.com Quantum Snake Oil: Guide to Misleading Quantum Terms Quantum AI Trading — Quantum Snake Oil Dictionary Quantum-Proof — Quantum Snake Oil Dictionary Quantum-Grade Encryption — Quantum Snake Oil Dictionary Quantum-Safe Certified — Quantum Snake Oil Dictionary Military-Grade Quantum Encryption | PostQuantum.com What Is a QBOM? Quantum Bill of Materials vs CBOM Explained Quantum-Inspired Encryption — Quantum Snake Oil Dictionary What Is Trust Now, Forge Later (TNFL)? Quantum Blockchain — Quantum Snake Oil Dictionary What Is PQC Migration? The Largest Cryptographic Overhaul Quantum Financial System (QFS) | PostQuantum.com What Is QKD (Quantum Key Distribution)? What Is Quantum Error Correction (QEC)? Unhackable Quantum Encryption | PostQuantum.com Unconditionally Secure — Quantum Snake Oil Dictionary Perfect Secrecy — Quantum Snake Oil Dictionary Information-Theoretic Security | PostQuantum.com Quantum Encryption / Quantum Cryptography Quantum-Enhanced — Quantum Snake Oil Dictionary Quantum-Safe vs Quantum-Resistant vs Post-Quantum Anatomy of Quantum Denial: Bitcoin's Example What Is a Logical Qubit? The Metric That Actually Matters What Is a CRQC? Quantum Computer That Breaks Encryption What Is Q-Day? When Quantum Computers Break Encryption What Is Harvest Now, Decrypt Later (HNDL)? What Is Grover's Algorithm? What Is Shor's Algorithm? The Quantum Threat Explained What Is Quantum Safe? What the Label Means for CISOs What Is Quantum Computing Security? What Is Quantum Cyber Security? What Is Quantum Cryptography? QKD, PQC, and related? Quantum Security: A Complete Guide for Security Leaders What Is Post-Quantum Cryptography (PQC)? Crypto-Agility Is an Architecture Problem, Not a Library Swap IBM Quantum Advantage 2026: Heron + Fugaku Analyzed Aaronson Warns: CRQC by 2029 Is Plausible U.S. Quantum Policy: NQI Reauthorization and PQC Bills The Narrow Advantage: Why Quantum Computing Will Transform Five Industries and Disappoint Twenty The Error Correction Revolution Rewriting Quantum Timelines The Signature Supply Chain: How Deep Does Digital Trust Go? Quantum Chemistry's Honest Ledger: What the Resource Estimates Actually Say About Drug Discovery, Catalysis, and Materials Design Why Quantum Won't Save Wall Street (Yet): An Honest Assessment of Quantum Computing in Finance PQC Standards Fragmentation Quantum Sovereignty and the Utility Trap The Decoder Bottleneck: The CRQC Challenge Nobody Is Talking About IonQ Publishes Complete Fault-Tolerant Blueprint for Trapped Ions — The Walking Cat Architecture Quantum Computing by 2033: Which Industries Win, Which Wait, and Why Nature Reviews Publishes the Definitive CMOS–Spin Qubit Compatibility Assessment IonQ Photonic Interconnect: First Networked Commercial Quantum Computers QuEra Achieves 2:1 Physical-to-Logical Qubit Ratio With Ultra-High-Rate qLDPC Codes Grover's Algorithm vs AES - Why "Ignore It" Is Almost Right McKinsey Quantum Monitor 2026: Tipping Point? Meta PQC Migration Playbook: Lessons for CISOs NVIDIA Ising: Open AI Models for Quantum Calibration and Error Correction PQC Signature Migration Before Encryption Architecture Matters as Much as the Algorithm: Q-CTRL's Heterogeneous Quantum Computer Design Cuts RSA-2048 to 190k-381k Qubits China's Quantum Sensing Ecosystem: From Deep-Sea Diamonds to Drone-Mounted Submarine Hunters China's Quantum Sensing Ecosystem: From Deep-Sea Diamonds to Drone-Mounted Submarine Hunters China's Quantum Networking and QKD — World's Most Ambitious Quantum Communication Program Anthropic's Mythos Preview and the End of a Twenty-Year Cybersecurity Equilibrium China's Quantum Networking and QKD — World's Most Ambitious Quantum Communication Program Cloudflare Joins Google: Two Internet Giants Now Say 2029 for Post-Quantum Migration China's Quantum Computing Hardware: The Core Capability the West Keeps Misjudging China's Quantum Computing Hardware: The Core Capability the West Keeps Misjudging QuiX Quantum Achieves First Below-Threshold Error Mitigation in Photonic Quantum Computing China's Quantum Talent Ecosystem: Building a Superpower's Workforce Quantum Threat Timeline Report 2025: Record Predictions, But Can the Survey Keep Up? China's Quantum Talent Ecosystem: Building a Superpower's Workforce China's Hefei National Laboratory: The Nerve Center of a Quantum Superpower China's Hefei National Laboratory: The Nerve Center of a Quantum Superpower Gauge Theory Meets Quantum Computing China's 15th Five-Year Plan Makes Quantum an Industrial Imperative — Not Just a Research Priority China's 15th Five-Year Plan Makes Quantum an Industrial Imperative — Not Just a Research Priority QuantumShield360 AI Achieves World's First Complete Post-Quantum Cryptography Migration — Full Quantum Resilience Across All Enterprise Systems 10,000 Qubits to Run Shor's Algorithm Google Quantum AI Achieves 10x Reduction in Resources to Break Bitcoin's Cryptography The U.S. Intelligence Community Just Put Quantum on Equal Footing with AI. And Expanded the Threat Definition Google Just Drew a Line in the Sand: PQC Migration by 2029 Silicon Crosses the Logical Threshold: First Universal Logical Operations Demonstrated in a Silicon Quantum Processor The 1,000-Qubit Ceiling That Probably Isn't Science Confirms What Large Corporate Survivors Already Knew - Organizational Bullshit Makes You Worse at Your Job A New Algorithm Shrinks the Quantum Attack Surface for ECC Quantinuum Squeezes 94 Logical Qubits from 98 Physical — But What Does It Actually Mean?
Harvard's Cascade Neural Decoder
Marin Ivezic · 2026-04-11 · via PostQuantum – Quantum Computing, Quantum Security, PQC

April 9, 2026 — A team at Harvard University published a paper introducing Cascade, a convolutional neural network decoder for quantum error correction that achieves logical error rates up to 17× lower than the best existing practical decoders on quantum LDPC codes, with throughput 3-5 orders of magnitude higher. The paper, by Andi Gu, J. Pablo Bonilla Ataides, Mikhail D. Lukin, and Susanne F. Yelin, appeared on arXiv (2604.08358).

The headline number is striking on its own, but the deeper result may matter more: Cascade reveals a previously unobserved “waterfall” regime of error suppression in quantum LDPC codes, where logical error rates fall far more steeply than the standard distance-based scaling predicts. On the [[144, 12, 12]] Gross code (a bivariate bicycle code), the logical error rate follows a P_L ~ p^{10.8} power law in the waterfall regime, compared to the p^{6.4} scaling predicted by the code’s distance of 12. At a physical error rate of 0.1%, Cascade achieves a logical error rate of approximately 10⁻¹⁰ per logical qubit per cycle, roughly 4,000× below BP+OSD (the standard decoder for quantum LDPC codes) and 17× below Relay, the most recent high-performance decoder from IBM.

The waterfall effect is not specific to quantum LDPC codes. On surface codes, Cascade achieves an error suppression factor Λ ≈ 8.4 at p = 0.2%, compared to Λ ≈ 5.0 for standard minimum-weight perfect matching (MWPM) and Λ ≈ 7.8 for correlated MWPM. This approaches the Λ ≈ 9.1 achieved by Tesseract, a near-optimal decoder whose computational cost (up to 1 second per shot) makes it impractical for real-time use.

On latency, Cascade’s largest models achieve single-shot inference times of approximately 40 μs per cycle on an NVIDIA H200 GPU. Batched inference reduces amortized latency by up to two orders of magnitude. These latencies fall within the decoding budgets for trapped-ion (~1 ms) and neutral-atom platforms, but remain above the ~1 μs required for superconducting qubits. The authors’ roofline analysis suggests that depthwise convolution variants on FPGA hardware could approach the superconducting budget at moderate model widths, but this has not been demonstrated.

The paper also shows that Cascade tolerates FP8 quantization (8-bit floating point) with no measurable accuracy loss, a property the authors attribute to the regularity of convolutional weight distributions and the absence of attention-based dynamic range challenges. Models trained at a single high noise level generalize reliably across seven orders of magnitude in logical error rate, with no error floor observed down to P_L ≈ 2 × 10⁻¹¹.

The authors note a conflict of interest: Lukin is a co-founder, shareholder, and Chief Scientist of QuEra Computing; Yelin is a spouse of a QuEra shareholder; and Gu and Bonilla Ataides have served as consultants for QuEra. The paper is a preprint and has not yet undergone peer review.

My Analysis

This paper matters for three reasons, each of which connects to a different dimension of the CRQC threat assessment.

The Decoder Bottleneck Gets Less Bottlenecked

I have written extensively about why decoder performance is the most underappreciated capability on the path to a cryptographically relevant quantum computer. The CRQC Quantum Capability Framework tracks it as a separate capability dimension (D.2) precisely because a quantum computer that cannot decode its error syndromes in real time cannot compute, regardless of how many qubits it has.

The decoder has historically forced an unpleasant trade-off: fast decoders (union-find, lookup tables) sacrifice accuracy, while accurate decoders (Tesseract, tensor network methods) are orders of magnitude too slow for real-time use. Cascade breaks this trade-off more convincingly than any prior result. It achieves accuracy comparable to Tesseract (the near-optimal benchmark) at throughput 3,000-100,000× higher than existing decoders.

For superconducting qubits, Cascade’s 40 μs single-shot latency is still roughly 40× too slow for the ~1 μs real-time budget. The authors’ FPGA roofline analysis is encouraging (depthwise convolution variants at moderate model widths approach the 1 μs target on an AMD Versal AI Core FPGA), but roofline estimates assume 100% hardware utilization, which is optimistic. The gap between simulation and deployed hardware is real, and closing it is an engineering project that has not yet been executed.

For trapped-ion and neutral-atom platforms, the story is different. Cascade’s latencies are already within the decoding budget for these modalities. Combined with IonQ’s December 2025 demonstration that software decoders on commodity CPUs can keep pace with trapped-ion hardware for 1,000 logical qubits, the decoder bottleneck for non-superconducting modalities is looking increasingly tractable. This has direct implications for which hardware approach might reach CRQC-scale fault tolerance first. The modality with the most qubits (superconducting) may not be the modality that solves the decoder problem first.

The Resource Estimates May Need Revision

The most consequential finding for CRQC timeline assessment is the waterfall’s impact on resource estimates.

Current projections for fault-tolerant quantum computing, including Gidney’s 2025 estimate of under 1 million physical qubits to break RSA-2048, assume error suppression factors calibrated to MWPM-class decoders (Λ ≈ 10 at p = 0.1%). The authors demonstrate concretely that Cascade reaches a target logical error rate of ~10⁻⁹ at code distance d = 15, compared to d = 19 for MWPM. That is a ~40% reduction in physical qubit count on the surface code family that underpins Google’s and other groups’ current hardware experiments.

To put this in CRQC-relevant terms: if the ~40% surface code reduction applies to a Gidney-class architecture, the physical qubit count for breaking RSA-2048 drops from under 1 million to potentially under 600,000. That is still a large number, but it is meaningfully closer to what hardware roadmaps project within the next decade. The Chevignard et al. estimate of 1,193 logical qubits for breaking P-256 ECDSA would see a proportional reduction.

The advantage grows with stricter targets. Because the waterfall gives steeper-than-distance scaling, the gap between waterfall-aware and conventional resource estimates widens as the target logical error rate decreases toward the 10⁻¹⁰ to 10⁻¹² regime required for large-scale algorithms like Shor’s. The authors state this directly: the space-time costs of fault-tolerant quantum computation “may be significantly lower than previously anticipated.”

For quantum LDPC codes specifically, the implication is even sharper. qLDPC codes have long promised dramatically better encoding rates than surface codes (more logical qubits per physical qubit), which is why architectures like Pinnacle propose them for CRQC-scale computation. But qLDPC codes’ theoretical advantages have been gated by the absence of a decoder that could realize them in practice. BP+OSD, the standard qLDPC decoder for the past six years, misses the waterfall entirely (scaling as p^{5.4} on the Gross code, compared to the p^{10.8} Cascade achieves). The entire waterfall regime of error suppression was invisible because no existing decoder was accurate enough to access it. This is a striking illustration of a point the authors make explicitly: the decoder determines how much of a code’s error-correcting capability is realized in practice. A mediocre decoder sees a mediocre code.

The classical error correction parallel the authors draw is worth emphasizing. Gallager introduced LDPC codes in 1962. They achieved near-Shannon-limit performance in theory but remained largely unused for three decades, until practical iterative decoders in the 1990s transformed them into the foundation of modern communications (WiFi, 5G, satellite). Quantum LDPC codes may be at a similar inflection point: the codes have been developed, but their practical potential has been obscured by the absence of decoders powerful enough to unlock it. If Cascade represents the beginning of that unlocking, the resource estimates for fault-tolerant quantum computing will shift meaningfully downward.

What This Does Not Change

The balanced assessment requires stating clearly what Cascade does not do.

It does not demonstrate real-time decoding on quantum hardware. The results are from simulation, not from a decoder integrated into the control loop of a running quantum processor. The Riverlane/Rigetti FPGA demonstration (October 2024) and Riverlane’s Local Clustering Decoder (December 2025) remain the state of the art for real-hardware, real-time decoder integration. Cascade’s accuracy advantages must be translated into hardware implementations before they affect the practical CRQC timeline.

It does not close the superconducting decoder gap. At 40 μs single-shot latency on GPU, Cascade is roughly 40× too slow for superconducting qubits. The FPGA roofline estimates are promising but unvalidated. The path from roofline estimate to deployed FPGA decoder is a significant engineering effort.

It does not eliminate the uncertainty in CRQC timeline predictions. The waterfall effect could reduce physical qubit requirements by 40% or more, but the CRQC timeline depends on ten interdependent capabilities (per my CRQC Capability Framework), and the decoder is one among ten. Improvements in one dimension can be offset by challenges in others. And the waterfall regime has been demonstrated on specific code families under idealized (circuit-level depolarizing) noise models. Real hardware noise is structured, correlated, and device-specific in ways that may reduce the waterfall effect.

The Bottom Line

Cascade is the most significant decoder result I have seen since I began tracking this capability dimension. It does three things simultaneously that no previous decoder has achieved: near-optimal accuracy on both surface codes and qLDPC codes, throughput orders of magnitude above practical alternatives, and the revelation of a waterfall regime that could materially reduce the physical resources required for fault-tolerant quantum computation.

The classical LDPC parallel is the right frame. Gallager’s codes waited 30 years for decoders that could realize their potential. Quantum LDPC codes have waited less than five. If Cascade or its successors prove robust on real hardware with realistic noise, the resource estimates for a CRQC will need revision, and the revision will be downward. The decoder, the capability that almost nobody is talking about, may turn out to be the capability that determines whether a CRQC arrives at the early or late end of current predictions.

Quantum Upside & Quantum Risk - Handled

My company - Applied Quantum - helps governments, enterprises, and investors prepare for both the upside and the risk of quantum technologies. We deliver concise board and investor briefings; demystify quantum computing, sensing, and communications; craft national and corporate strategies to capture advantage; and turn plans into delivery. We help you mitigate the quantum risk by executing crypto‑inventory, crypto‑agility implementation, PQC migration, and broader defenses against the quantum threat. We run vendor due diligence, proof‑of‑value pilots, standards and policy alignment, workforce training, and procurement support, then oversee implementation across your organization. Contact me if you want help.

Talk to me Contact Applied Quantum