VAMPIRE

eBACS: ECRYPT Benchmarking of Cryptographic Systems


ECRYPT II
General information:IntroductioneBASHeBASCeBAEADeBATSSUPERCOPXBXComputersArch
How to submit new software:Tipshashstreamaeaddhkemencryptsign
List of primitives measured:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
Measurements:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
List of subroutines:verifydecodeencodesortcorehashblocksxofscalarmult

Measurements of NISTLWC hash candidates on one machine: amd64; Comet Lake (806ec); 2019 Intel Core i3-10110U; 2 x 2100MHz; cubi10, supercop-20250415

[Page version: 20250425 10:21:29]

eBASH (ECRYPT Benchmarking of All Submitted Hashes) is a project to measure the performance of hash functions. This page presents an excerpt of the full eBASH benchmark results. The excerpt is for NISTLWC, specifically (starting with supercop-20221005) finalists.

Each table row lists the first quartile of many speed measurements, the median of many speed measurements, the third quartile of many speed measurements, and the name of the primitive. Measurements with large variance are indicated in red with question marks. The symbol T: (starting with supercop-20200816) means that the SUPERCOP database at the time of benchmarking did not list constant time as a goal for this implementation. The symbol T!!! means that constant time was listed as a goal for this implementation, but that the implementation failed TIMECOP. (TIMECOP failures are not necessarily security issues; they can sometimes be resolved by, e.g., declaring that a rejection-sampling condition is safe to declassify.)

There is a separate page with more information about each hash function (and each implementation).


Test results

Graphs: (bytes,cycles)
Cycles/byte for long messages
25%50%75%hash
5.255.255.25sha512
6.256.266.26shake128
7.667.687.69sha256
13.1913.2013.21T:xoodyakv1
14.4214.4314.44asconxofav12
14.5214.5314.55asconhashav12
21.8921.9121.92asconxofv12
21.8921.9121.92asconhashv12
28.5828.6228.63asconhashabi32v12
37.5537.5737.59T:esch256v2
41.9242.0742.08T:esch384v2
42.2142.2342.24T:romulush
42.6442.6742.71asconhashbi32v12
231.63231.68231.90T:photonbeetlehash256rate32v1
Cycles/byte for 4096 bytes
25%50%75%hash
5.465.465.47sha512
6.426.436.44shake128
7.857.877.89sha256
13.3013.3213.35T:xoodyakv1
14.5714.5914.60asconxofav12
14.6814.6914.71asconhashav12
22.0822.1022.13asconhashv12
22.0922.1022.12asconxofv12
28.9929.0229.03asconhashabi32v12
37.8537.9037.92T:esch256v2
42.5242.5342.56T:esch384v2
42.6142.6342.65T:romulush
43.0943.1443.17asconhashbi32v12
231.19231.26231.33T:photonbeetlehash256rate32v1
Cycles/byte for 1536 bytes
25%50%75%hash
5.815.825.82sha512
6.916.926.94shake128
8.198.218.23sha256
13.4213.4713.50T:xoodyakv1
14.8214.8514.88asconxofav12
14.9314.9614.99asconhashav12
22.3822.4322.47asconhashv12
22.4022.4322.46asconxofv12
29.6529.6829.71asconhashabi32v12
38.2938.3738.45T:esch256v2
43.2643.2743.31T:esch384v2
43.3043.3243.35T:romulush
43.8843.9243.98asconhashbi32v12
230.50230.59230.67T:photonbeetlehash256rate32v1
Cycles/byte for 576 bytes
25%50%75%hash
6.286.306.31sha512
7.537.567.59shake128
9.169.199.22sha256
13.9013.9414.00T:xoodyakv1
15.4615.5215.55asconxofav12
15.6015.6415.68asconhashav12
23.2023.2723.31asconxofv12
23.2123.2923.34asconhashv12
31.2631.2931.34asconhashabi32v12
39.5339.6639.76T:esch256v2
44.9645.0145.09T:romulush
45.0945.1645.21T:esch384v2
45.9045.9946.04asconhashbi32v12
228.60228.76228.90T:photonbeetlehash256rate32v1
Cycles/byte for 64 bytes
25%50%75%hash
13.7313.9714.20sha512
18.0218.2318.47T:xoodyakv1
18.6118.7718.89shake128
19.9420.0920.41sha256
23.6923.9224.53asconxofav12
24.2524.3824.52asconhashav12
33.8434.0034.39asconhashv12
33.9134.1634.66asconxofv12
50.9751.1251.25asconhashabi32v12
53.4254.0054.42T:esch256v2
65.5265.6765.97T:romulush
69.4769.6769.91T:esch384v2
70.0970.2870.42asconhashbi32v12
202.73203.33203.92T:photonbeetlehash256rate32v1
Cycles/byte for 8 bytes
25%50%75%hash
64.5065.1265.88T:xoodyakv1
90.6291.3892.25asconxofav12
90.6291.8895.12sha256
93.6294.5095.38asconhashav12
100.25100.50101.12sha512
120.00120.88122.75asconhashv12
119.88121.25123.12asconxofv12
146.25147.00148.25shake128
186.38187.38188.62T:romulush
199.25200.88202.75T:esch256v2
207.38208.88209.75asconhashabi32v12
233.62234.25235.00T:photonbeetlehash256rate32v1
263.38265.12266.50asconhashbi32v12
301.38302.00303.12T:esch384v2