VAMPIRE

eBACS: ECRYPT Benchmarking of Cryptographic Systems


ECRYPT II
General information:IntroductioneBASHeBASCeBAEADeBATSSUPERCOPXBXComputersArch
How to submit new software:Tipshashstreamaeaddhkemencryptsign
List of primitives measured:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
Measurements:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
List of subroutines:verifydecodeencodesortcorehashblocksxofscalarmult

Measurements of NISTLWC hash candidates on one machine: amd64; K10 45nm (100f63); 2010 AMD Athlon II Neo K125; 1 x 1700MHz; h3neo, supercop-20240425

[Page version: 20240726 23:45:59]

eBASH (ECRYPT Benchmarking of All Submitted Hashes) is a project to measure the performance of hash functions. This page presents an excerpt of the full eBASH benchmark results. The excerpt is for NISTLWC, specifically (starting with supercop-20221005) finalists.

Each table row lists the first quartile of many speed measurements, the median of many speed measurements, the third quartile of many speed measurements, and the name of the primitive. Measurements with large variance are indicated in red with question marks. The symbol T: (starting with supercop-20200816) means that the SUPERCOP database at the time of benchmarking did not list constant time as a goal for this implementation. The symbol T!!! means that constant time was listed as a goal for this implementation, but that the implementation failed TIMECOP. (TIMECOP failures are not necessarily security issues; they can sometimes be resolved by, e.g., declaring that a rejection-sampling condition is safe to declassify.)

There is a separate page with more information about each hash function (and each implementation).


Implementation notes

Graphs: (bytes,cycles)
Cycles/byte for long messages
25%50%75%hash
9.329.329.33sha512
10.4510.4510.46shake128
14.6614.6614.66sha256
17.9617.9617.96asconxofav12
17.9617.9617.96asconhashav12
26.6926.6926.72asconxofv12
26.6926.6926.69asconhashv12
31.1031.1331.33T:xoodyakv1
36.8836.8836.90asconhashabi32v12
55.3955.4055.42asconhashbi32v12
70.4370.4770.59T:esch256v2
101.76101.78101.78T:esch384v2
131.41131.50131.51T:romulush
403.63404.09404.27T:photonbeetlehash256rate32v1
Cycles/byte for 4096 bytes
25%50%75%hash
10.2510.2610.27sha512
10.6910.6910.69shake128
15.5315.5315.55sha256
18.1418.1418.15asconhashav12
18.1418.1418.15asconxofav12
26.9326.9326.93asconxofv12
26.9326.9326.93asconhashv12
31.2831.4731.47T:xoodyakv1
37.3437.3437.34asconhashabi32v12
55.8455.8455.84asconhashbi32v12
70.9170.9271.04T:esch256v2
102.76102.77102.77T:esch384v2
132.37132.43132.44T:romulush
402.91403.42403.77T:photonbeetlehash256rate32v1
Cycles/byte for 1536 bytes
25%50%75%hash
11.4411.4411.45shake128
11.8011.8211.85sha512
16.9716.9816.99sha256
18.4518.4518.46asconhashav12
18.4518.4518.46asconxofav12
27.3227.3227.32asconxofv12
27.3327.3327.34asconhashv12
31.5431.7231.72T:xoodyakv1
38.1038.1038.11asconhashabi32v12
56.5956.5956.60asconhashbi32v12
71.6971.7071.82T:esch256v2
104.45104.45104.46T:esch384v2
134.03134.05134.07T:romulush
401.68401.70402.73T:photonbeetlehash256rate32v1
Cycles/byte for 576 bytes
25%50%75%hash
12.3112.3212.35shake128
14.8914.9415.14sha512
19.2719.2719.29asconhashav12
19.2719.2719.29asconxofav12
20.8220.8420.95sha256
28.3828.3828.40asconxofv12
28.4028.4028.42asconhashv12
32.3632.5332.53T:xoodyakv1
40.1640.1640.16asconhashabi32v12
58.5858.5958.61asconhashbi32v12
73.7473.7673.83T:esch256v2
108.90108.92108.93T:esch384v2
138.45138.45138.48T:romulush
398.04398.09400.07T:photonbeetlehash256rate32v1
Cycles/byte for 64 bytes
25%50%75%hash
28.7328.7329.05shake128
29.4229.4229.42asconhashav12
29.4229.4229.42asconxofav12
41.2241.2341.25T:xoodyakv1
41.5841.5941.59asconxofv12
41.5941.6141.66asconhashv12
59.0559.3959.80sha512
66.1466.1466.14asconhashabi32v12
69.8070.4270.62sha256
83.6783.6983.83asconhashbi32v12
100.05100.08100.23T:esch256v2
166.12166.25166.33T:esch384v2
194.22194.39194.58T:romulush
353.91355.34357.38T:photonbeetlehash256rate32v1
Cycles/byte for 8 bytes
25%50%75%hash
109.50109.50110.88asconxofav12
109.50109.50111.25asconhashav12
137.62138.25139.38T:xoodyakv1
145.88146.00147.50asconxofv12
146.38146.75148.12asconhashv12
228.88229.25230.75shake128
271.00271.00271.38asconhashabi32v12
281.38281.88283.12asconhashbi32v12
372.50374.00378.12T:esch256v2
402.50406.25408.25T:photonbeetlehash256rate32v1
439.00440.62442.50sha256
470.00475.25478.62sha512
503.50504.88505.38T:romulush
714.62715.50718.12T:esch384v2