VAMPIRE

eBACS: ECRYPT Benchmarking of Cryptographic Systems


ECRYPT II
General information:IntroductioneBASHeBASCeBAEADeBATSSUPERCOPXBXComputersArch
How to submit new software:Tipshashstreamaeaddhkemencryptsign
List of primitives measured:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
Measurements:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
List of subroutines:verifydecodeencodesortcorehashblocksxofscalarmult

Measurements of NISTLWC hash candidates on one machine: amd64; K10 32nm (300f10); 2011 AMD A6-3650; 4 x 2600MHz; hydra4, supercop-20240808

[Page version: 20240828 00:45:50]

eBASH (ECRYPT Benchmarking of All Submitted Hashes) is a project to measure the performance of hash functions. This page presents an excerpt of the full eBASH benchmark results. The excerpt is for NISTLWC, specifically (starting with supercop-20221005) finalists.

Each table row lists the first quartile of many speed measurements, the median of many speed measurements, the third quartile of many speed measurements, and the name of the primitive. Measurements with large variance are indicated in red with question marks. The symbol T: (starting with supercop-20200816) means that the SUPERCOP database at the time of benchmarking did not list constant time as a goal for this implementation. The symbol T!!! means that constant time was listed as a goal for this implementation, but that the implementation failed TIMECOP. (TIMECOP failures are not necessarily security issues; they can sometimes be resolved by, e.g., declaring that a rejection-sampling condition is safe to declassify.)

There is a separate page with more information about each hash function (and each implementation).


Implementation notes

Graphs: (bytes,cycles)
Cycles/byte for long messages
25%50%75%hash
9.299.299.29sha512
10.4210.4210.42shake128
14.6214.6314.63sha256
17.8817.8817.88asconhashav12
17.8717.8817.88asconxofav12
26.6226.6226.63asconxofv12
26.6226.6326.63asconhashv12
28.9028.9028.90T:xoodyakv1
35.8735.8835.88asconhashabi32v12
53.8753.8853.91asconhashbi32v12
65.6565.7065.83T:esch256v2
94.0494.2495.30T:esch384v2
128.02128.04128.07T:romulush
398.81399.38399.44T:photonbeetlehash256rate32v1
Cycles/byte for 4096 bytes
25%50%75%hash
9.669.669.67sha512
10.6510.6610.66shake128
14.9214.9214.92sha256
18.0518.0518.05asconhashav12
18.0518.0518.05asconxofav12
26.8626.8626.86asconxofv12
26.8626.8626.86asconhashv12
29.0429.0429.04T:xoodyakv1
36.3436.3436.34asconhashabi32v12
54.4354.4354.43asconhashbi32v12
66.0466.0966.22T:esch256v2
94.5395.1095.99T:esch384v2
128.95128.97129.09T:romulush
398.16398.63398.75T:photonbeetlehash256rate32v1
Cycles/byte for 1536 bytes
25%50%75%hash
10.2810.2910.30sha512
11.4011.4111.42shake128
15.4115.4215.42sha256
18.3518.3518.35asconhashav12
18.3518.3518.35asconxofav12
27.2427.2427.24asconxofv12
27.2527.2527.25asconhashv12
29.2829.2829.29T:xoodyakv1
37.1237.1237.12asconhashabi32v12
55.3555.3655.36asconhashbi32v12
66.7166.7166.89T:esch256v2
96.0496.6297.53T:esch384v2
130.49130.53130.54T:romulush
396.79397.42397.64T:photonbeetlehash256rate32v1
Cycles/byte for 576 bytes
25%50%75%hash
10.9510.9710.97sha512
12.2712.2712.28shake128
16.7316.7416.75sha256
19.1519.1519.15asconhashav12
19.1519.1519.15asconxofav12
28.2628.2628.26asconxofv12
28.2828.2828.28asconhashv12
29.9329.9329.93T:xoodyakv1
39.1939.1939.19asconhashabi32v12
57.8257.8257.83asconhashbi32v12
68.5168.5268.68T:esch256v2
100.03100.60101.69T:esch384v2
134.76134.77134.80T:romulush
393.48393.96394.10T:photonbeetlehash256rate32v1
Cycles/byte for 64 bytes
25%50%75%hash
23.6223.6723.86sha512
28.6128.6128.61shake128
29.4729.4729.47asconhashav12
29.4729.4729.48asconxofav12
33.5833.6633.67sha256
38.0038.0238.03T:xoodyakv1
41.0541.0541.06asconhashv12
41.0041.5041.50asconxofv12
65.3865.3865.38asconhashabi32v12
89.1689.1789.23asconhashbi32v12
91.6191.6191.66T:esch256v2
151.28152.44154.14T:esch384v2
188.58188.88189.28T:romulush
349.98350.33350.80T:photonbeetlehash256rate32v1
Cycles/byte for 8 bytes
25%50%75%hash
106.62106.62110.62asconhashav12
106.62106.75110.62asconxofav12
127.50127.62127.62T:xoodyakv1
141.62141.62145.62asconxofv12
141.62141.75144.12asconhashv12
147.25147.25147.25sha256
189.00189.38190.88sha512
227.75227.75229.50shake128
271.88271.88273.62asconhashabi32v12
334.50335.38336.12T:esch256v2
336.12336.75337.00asconhashbi32v12
398.25399.62401.25T:photonbeetlehash256rate32v1
488.25488.25488.75T:romulush
647.25653.25661.25T:esch384v2