Classical vault (RSA/ECC)
Lattice vault (ML-KEM)
Quantum attacker
Broken
This 2D companion drops the decorative attack animation of the 3D version and replaces it with the real numbers behind the "quantum threat" story: GNFS, ECDLP square-root and core-SVP lattice hardness formulas compute live classical and quantum bit-security for RSA, ECC and ML-KEM, and the classical vault only cracks once the logical-qubit slider actually crosses Shor's algorithm's qubit requirement for the selected key size — the lattice vault has no such threshold on this chart, which is the whole point of migrating to it.