Tightness of the mixed time–space term for one-way states
Determine whether the mixed term \(\sqrt{ST}/N\) in the timespace security bound for recovering the key from a random binary phase state is tight, and establish whether barriers analogous to those in the classical preprocessing setting obstruct identifying the correct dependence.
References
Whether the mixed term $\frac{\sqrt{ST}}{N}$ is tight remains an open problem; in particular, it would be interesting to understand whether there are barriers (like in the classical setting ) to identifying this term.
— Time-space lower bounds for breaking quantum cryptography
(2610.02101 - Dong et al., 1 Oct 2026) in Section 1, subsection “Our Results,” paragraph beginning “For our first result”