VAMPIRE

eBACS: ECRYPT Benchmarking of Cryptographic Systems


ECRYPT II
General information:IntroductioneBASHeBASCeBAEADeBATSSUPERCOPXBXComputersArch
How to submit new software:Tipshashstreamaeaddhkemencryptsign
List of primitives measured:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
Measurements:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
List of subroutines:verifydecodeencodesortcorehashblocksxofscalarmult

Measurements of NISTLWC hash candidates on one machine: amd64; Goldmont (506c9); 2016 Intel Celeron J3455; 4 x 1500MHz; wooden, supercop-20240909

[Page version: 20241021 10:28:05]

eBASH (ECRYPT Benchmarking of All Submitted Hashes) is a project to measure the performance of hash functions. This page presents an excerpt of the full eBASH benchmark results. The excerpt is for NISTLWC, specifically (starting with supercop-20221005) finalists.

Each table row lists the first quartile of many speed measurements, the median of many speed measurements, the third quartile of many speed measurements, and the name of the primitive. Measurements with large variance are indicated in red with question marks. The symbol T: (starting with supercop-20200816) means that the SUPERCOP database at the time of benchmarking did not list constant time as a goal for this implementation. The symbol T!!! means that constant time was listed as a goal for this implementation, but that the implementation failed TIMECOP. (TIMECOP failures are not necessarily security issues; they can sometimes be resolved by, e.g., declaring that a rejection-sampling condition is safe to declassify.)

There is a separate page with more information about each hash function (and each implementation).


Test results

Graphs: (bytes,cycles)
Cycles/byte for long messages
25%50%75%hash
4.024.024.02sha256
11.8411.8511.85sha512
12.7912.7912.80shake128
15.6615.7015.96T:xoodyakv1
21.5121.5221.52asconhashav12
21.5121.5221.56asconxofav12
32.0232.0232.24asconhashv12
32.1532.1532.21asconxofv12
43.9043.9143.91asconhashabi32v12
52.9453.3653.82T:romulush
63.7463.7564.42T:esch256v2
66.7166.7667.52asconhashbi32v12
79.3679.4680.88T:esch384v2
409.03410.11411.35T:photonbeetlehash256rate32v1
Cycles/byte for 4096 bytes
25%50%75%hash
4.104.114.11sha256
12.3112.3212.32sha512
13.0613.0613.08shake128
15.8115.8116.00T:xoodyakv1
21.7221.7221.72asconhashav12
21.7221.7221.73asconxofav12
32.2932.2932.29asconhashv12
32.4132.4132.42asconxofv12
44.4644.4644.46asconhashabi32v12
53.3853.3853.75T:romulush
64.1364.1364.14T:esch256v2
67.3967.3967.39asconhashbi32v12
80.0880.0880.21T:esch384v2
406.35406.44412.32T:photonbeetlehash256rate32v1
Cycles/byte for 1536 bytes
25%50%75%hash
4.234.234.24sha256
13.0913.1113.12sha512
13.9413.9613.97shake128
16.0016.0116.30T:xoodyakv1
22.0522.0722.07asconhashav12
22.0622.0722.07asconxofav12
32.7332.7332.75asconhashv12
32.8532.8632.88asconxofv12
45.3745.3845.40asconhashabi32v12
54.1454.1854.50T:romulush
64.7964.8064.81T:esch256v2
68.5168.5168.52asconhashbi32v12
81.3781.3981.51T:esch384v2
405.03405.06405.13T:photonbeetlehash256rate32v1
Cycles/byte for 576 bytes
25%50%75%hash
4.584.584.59sha256
13.9213.9313.94sha512
14.9314.9514.97shake128
16.5016.5316.81T:xoodyakv1
22.9522.9823.01asconxofav12
22.9522.9923.01asconhashav12
33.8933.9333.95asconhashv12
34.0134.0634.08asconxofv12
47.6947.8447.89asconhashabi32v12
56.1956.2556.50T:romulush
66.5666.5766.59T:esch256v2
71.5071.5171.52asconhashbi32v12
84.8184.8384.93T:esch384v2
401.53401.61401.69T:photonbeetlehash256rate32v1
Cycles/byte for 64 bytes
25%50%75%hash
9.099.129.12sha256
22.3122.3822.44T:xoodyakv1
30.1630.1630.19sha512
34.1234.1934.25shake128
34.2534.3134.38asconhashav12
34.2834.3134.34asconxofav12
48.69?48.78?66.31?asconhashv12
48.7848.8448.88asconxofv12
79.0379.1679.28asconhashabi32v12
82.0382.1282.38T:romulush
89.1689.2889.41T:esch256v2
109.44109.56109.81asconhashbi32v12
128.66128.88128.97T:esch384v2
356.62357.19357.38T:photonbeetlehash256rate32v1
Cycles/byte for 8 bytes
25%50%75%hash
44.7544.7544.75sha256
79.7580.7581.00T:xoodyakv1
123.25123.25123.50asconhashav12
123.25123.50123.50asconxofav12
164.50164.75165.00asconxofv12
164.75?165.00?224.25?asconhashv12
234.25234.50234.75T:romulush
238.00238.25238.50sha512
271.25272.25272.75shake128
326.50327.00327.25asconhashabi32v12
330.25330.50330.75T:esch256v2
409.25409.75410.50asconhashbi32v12
411.25412.00412.50T:photonbeetlehash256rate32v1
554.75555.50556.25T:esch384v2