VAMPIRE

eBACS: ECRYPT Benchmarking of Cryptographic Systems


ECRYPT II
General information:IntroductioneBASHeBASCeBAEADeBATSSUPERCOPXBXComputersArch
How to submit new software:Tipshashstreamaeaddhkemencryptsign
List of primitives measured:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
Measurements:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
List of subroutines:verifydecodeencodesortcorehashblocksxofscalarmult

Measurements of SHA-3 finalists on one machine: aarch64; Cortex-A53 (410fd034); 2018 Broadcom BCM2837B0; 4 x 1400MHz; pi3aplus, supercop-20240808

[Page version: 20241120 00:41:20]

eBASH (ECRYPT Benchmarking of All Submitted Hashes) is a project to measure the performance of hash functions. This page presents an excerpt of the full eBASH benchmark results. The excerpt contains SHA-2 and the SHA-3 finalists, including post-SHA-3 updates such as BLAKE2 and KangarooTwelve.

Each table row lists the first quartile of many speed measurements, the median of many speed measurements, the third quartile of many speed measurements, and the name of the primitive. Measurements with large variance are indicated in red with question marks. The symbol T: (starting with supercop-20200816) means that the SUPERCOP database at the time of benchmarking did not list constant time as a goal for this implementation. The symbol T!!! means that constant time was listed as a goal for this implementation, but that the implementation failed TIMECOP. (TIMECOP failures are not necessarily security issues; they can sometimes be resolved by, e.g., declaring that a rejection-sampling condition is safe to declassify.)

There is a separate page with more information about each hash function (and each implementation).


Test results

Graphs: (bytes,cycles)
Cycles/byte for long messages
25%50%75%hash
5.945.945.95T:blake2b
6.406.416.41T:skein512512
6.406.416.41T:skein512256
6.426.446.45T:k12
6.556.566.58T:skein256256
9.289.329.33T:skein10241024
9.619.659.68sha512
9.649.669.68sha384
9.769.779.77T:blake2s
10.6010.6110.63T:blake64
11.1811.1911.22blake512
11.1311.2411.29shake128
12.3412.3812.50T:keccakc448
12.6412.6812.79sha3256
12.6512.6912.77shake256
13.0213.0513.11sha3224
13.1313.3113.47T:keccakc512
14.1114.1414.23T:keccak
14.3514.3714.41T:blake32
14.9314.9514.98sha256
14.9414.9515.02sha224
16.7516.7816.92sha3384
17.5717.6817.80T:keccakc768
18.2318.2418.27blake256
18.6418.7418.79T:bblake256
23.2223.3624.31sha3512
24.5324.6024.76T:keccakc1024
39.5739.6241.13T:groestl256
41.6641.6944.28T:jh256
41.2241.6944.26T:jh224
41.6841.7044.26T:jh384
41.6841.7144.27T:jh512
48.3348.6151.19T:round3jh256
48.4548.6251.17T:round3jh512
57.26?73.28?105.01?T:groestl512
Cycles/byte for 4096 bytes
25%50%75%hash
5.975.975.97T:blake2b
6.566.566.56T:skein512256
6.566.566.56T:skein512512
6.686.686.69T:skein256256
6.796.796.80T:k12
9.729.739.73T:skein10241024
9.799.799.80T:blake2s
10.0610.0610.08sha512
10.0710.0710.08sha384
11.0511.0611.06T:blake64
11.5911.6011.61blake512
11.6811.7011.72shake128
12.9312.9312.99T:keccakc448
13.5013.5113.54sha3224
13.5513.5613.60shake256
13.5813.5913.63sha3256
13.8113.8513.92T:keccakc512
14.6814.6814.70T:blake32
14.6814.6914.73T:keccak
15.3115.3115.34sha224
15.3115.3115.33sha256
17.2617.2717.33sha3384
17.7717.7817.84T:keccakc768
18.5918.5918.60blake256
20.6520.6820.70T:bblake256
24.2224.2424.71sha3512
25.1325.1525.22T:keccakc1024
40.6040.6141.36T:groestl256
42.3642.3743.66T:jh256
42.3742.3743.65T:jh224
42.3742.3743.65T:jh384
42.3742.3843.65T:jh512
49.3849.3950.68T:round3jh256
49.3849.4050.67T:round3jh512
76.37?77.88?92.21?T:groestl512
Cycles/byte for 1536 bytes
25%50%75%hash
6.026.026.03T:blake2b
6.816.816.82T:skein512256
6.826.826.82T:skein512512
6.876.876.87T:skein256256
7.387.387.40T:k12
9.849.849.84T:blake2s
10.4210.4210.42T:skein10241024
10.7610.7610.78sha384
10.7610.7710.78sha512
11.7911.8011.82T:blake64
12.2712.2712.29blake512
12.4812.5012.58shake128
13.2513.2713.28T:keccakc448
13.6713.6813.70sha3224
14.4514.4914.60T:keccakc512
14.7314.7414.76shake256
14.7914.8014.82sha3256
15.2115.2115.21T:blake32
15.5915.6115.61T:keccak
15.9015.9115.92sha224
15.9115.9215.94sha256
17.9517.9617.96T:keccakc768
18.0618.0818.11sha3384
19.1719.1719.18blake256
23.8923.9123.93T:bblake256
25.7025.7125.79sha3512
26.0426.0526.08T:keccakc1024
42.2642.2742.29T:groestl256
43.4943.4943.51T:jh256
43.4943.5043.51T:jh384
43.4943.5043.51T:jh224
43.4943.5043.51T:jh512
50.6950.6950.82T:round3jh256
50.6950.7150.82T:round3jh512
81.75?85.88?98.68?T:groestl512
Cycles/byte for 576 bytes
25%50%75%hash
6.776.776.77T:blake2b
7.397.397.41T:skein256256
7.497.497.50T:skein512256
7.517.517.52T:skein512512
8.318.318.34T:k12
9.949.949.96T:blake2s
11.5711.5711.60sha512
11.5711.6111.62sha384
12.5912.6012.62T:blake64
12.8012.8012.80blake512
13.3013.3313.35T:skein10241024
13.3913.4513.63shake128
16.3816.3916.45T:keccakc448
16.4516.4816.81T:keccakc512
16.4916.5016.53sha3224
16.5516.5716.61T:keccak
16.6216.6216.64T:blake32
17.5117.5117.53sha224
17.5317.5617.58sha256
18.2418.2718.30shake256
18.4118.4418.49sha3256
19.5719.6119.70T:keccakc768
20.7020.7020.73blake256
21.2921.3221.37sha3384
28.7528.7828.82T:keccakc1024
29.9730.0030.07sha3512
32.5332.5332.56T:bblake256
46.4946.5046.53T:jh384
46.4946.5046.53T:jh224
46.4946.5046.52T:jh256
46.5046.5046.51T:jh512
46.6946.7046.71T:groestl256
54.1854.1854.29T:round3jh256
54.1954.2154.31T:round3jh512
89.34?89.51?109.47?T:groestl512
Cycles/byte for 64 bytes
25%50%75%hash
11.0511.0611.06T:blake2s
13.2813.2813.30T:blake2b
13.9113.9113.91T:skein256256
15.3615.4215.42T:skein512256
15.4815.5515.58T:skein512512
22.9122.9123.03T:k12
25.6425.6425.64blake512
25.9525.9526.17sha512
25.9825.9826.20sha384
27.1927.1927.44T:blake64
29.8429.8429.86sha3224
30.6230.6432.55shake128
34.2234.2234.33T:blake32
33.9834.3134.44T:keccakc1024
34.4534.4735.36T:keccakc768
34.6134.8937.20T:keccakc512
34.6135.1135.84T:keccakc448
34.6935.2835.36T:keccak
37.5537.5537.77sha224
37.9238.1438.36sha256
40.3040.3440.45blake256
43.9543.9844.14T:skein10241024
54.1954.3354.77shake256
55.1155.3655.98sha3512
55.5855.6955.91sha3384
55.8456.0556.41sha3256
84.7784.7784.95T:jh256
84.8384.8384.97T:jh224
84.8484.8485.09T:jh384
84.8984.8985.14T:jh512
98.4798.6198.83T:round3jh256
98.5998.6198.61T:round3jh512
103.09103.23103.36T:groestl256
142.53142.61142.91T:bblake256
222.44?222.69?296.95?T:groestl512
Cycles/byte for 8 bytes
25%50%75%hash
83.6283.6283.62T:skein256256
87.2587.3887.50T:blake2s
105.00105.00105.12T:blake2b
122.75123.00123.00T:skein512256
123.75124.00124.12T:skein512512
155.00155.62155.75T:blake32
174.38175.88177.62sha224
175.88177.38179.38sha256
179.25179.25181.25blake256
178.88180.25182.25T:k12
207.00207.12208.00blake512
208.25209.12211.12sha512
208.38210.00210.88sha384
220.75221.00222.88T:blake64
235.50235.50235.62sha3224
241.88242.25256.88shake128
273.88276.12279.50T:keccakc1024
277.00277.00297.00T:keccakc512
278.00278.38280.38T:keccakc448
276.75279.50282.12T:keccakc768
279.88280.88282.12T:keccak
351.50351.75353.00T:skein10241024
435.50437.00439.38shake256
441.25443.50448.50sha3512
445.50447.12450.12sha3384
447.25448.88450.75sha3256
504.62506.88507.75T:groestl256
679.25679.25680.12T:jh256
679.75679.75680.62T:jh224
679.88679.88680.38T:jh384
680.25680.25681.12T:jh512
790.25790.25792.25T:round3jh256
791.25791.25791.25T:round3jh512
996.25998.001000.00T:bblake256
1785.12?1791.62?2417.88?T:groestl512