3 ms·
https://www.fredericjacobs.com/blog/2016/04/07/qc-axolotl/ https://www.fredericjacobs.com/blog/2016/04/07/qc-axolotl/ might be a good place to start answering t
by CiPHPerCoder 9y ago
https://www.fredericjacobs.com/blog/2016/04/07/qc-axolotl/ https://www.fredericjacobs.com/blog/2016/04/07/qc-axolotl/ might be a good place to start answering this question.
If you can break the ECDH, you can figure out the key that was calculated. However, if other unknown data (e.g. past ECDH outputs) is hashed together to generate the key (like Signal does, as a very rough description), it's only post-quantum secure if the adversary ever misses a single message.
Other than weird saved-by-the-bell corner cases, the answer is "No".