|q⟩ Bad Qubits

← Question Bank

Multiple choice
Once Shor's algorithm has found an even order r of a modulo N (with a^(r/2) not congruent to -1 mod N), the identity a^r - 1 = (a^(r/2) - 1)(a^(r/2) + 1) = 0 (mod N) is used. How is a non-trivial factor of N then extracted?