VAMPIRE

eBACS: ECRYPT Benchmarking of Cryptographic Systems


ECRYPT II
General information:IntroductioneBASHeBASCeBAEADeBATSSUPERCOPXBXComputersArch
How to submit new software:Tipshashstreamaeaddhkemencryptsign
List of primitives measured:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
Measurements:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
List of subroutines:verifydecodeencodesortcorehashblocksxofscalarmult

Measurements of SHA-3 finalists on one machine: amd64; Golden Cove (906a4-40); 2022 Intel Core i3-1215U, P cores; 2 x 1600MHz; alder2,big, supercop-20250922

[Page version: 20251015 23:19:38]

eBASH (ECRYPT Benchmarking of All Submitted Hashes) is a project to measure the performance of hash functions. This page presents an excerpt of the full eBASH benchmark results. The excerpt contains SHA-2 and the SHA-3 finalists, including post-SHA-3 updates such as BLAKE2 and KangarooTwelve.

Each table row lists the first quartile of many speed measurements, the median of many speed measurements, the third quartile of many speed measurements, and the name of the primitive. Measurements with large variance are indicated in red with question marks. The symbol T: (starting with supercop-20200816) means that the SUPERCOP database at the time of benchmarking did not list constant time as a goal for this implementation. The symbol T!!! means that constant time was listed as a goal for this implementation, but that the implementation failed TIMECOP. (TIMECOP failures are not necessarily security issues; they can sometimes be resolved by, e.g., declaring that a rejection-sampling condition is safe to declassify.)

There is a separate page with more information about each hash function (and each implementation).


Test results

Graphs: (bytes,cycles)
Cycles/byte for long messages
25%50%75%hash
2.032.052.06sha224
2.042.052.05sha256
2.552.582.64T:k12
3.273.293.31T:blake2b
4.074.144.17T:blake64
4.344.394.44blake512
4.464.534.57T:skein512256
4.534.564.58T:keccakc256treed2
4.524.564.61T:skein512512
4.534.584.62T:skein10241024
4.634.674.73sha384
4.794.824.84T:bblake256
4.644.865.08shake128
5.005.035.05sha512
5.225.245.25T:blake2s
5.07?5.42?5.78?T:keccakc448
5.605.625.63T:blake32
5.565.795.91sha3224
5.786.026.23shake256
5.64?6.03?6.31?T:keccakc512
6.026.046.07T:keccakc512treed2
5.796.106.25sha3256
5.98?6.24?6.76?T:keccak
6.196.246.29T:skein256256
7.317.337.36blake256
7.908.018.29sha3384
8.158.198.20T:groestl256
7.67?8.24?8.62?T:keccakc768
10.3710.3910.44T:groestl512
10.2910.7011.27T:keccakc1024
10.6411.0011.68sha3512
12.6012.6512.71T:jh512
12.6212.6712.72T:jh256
12.6112.6712.73T:jh384
12.6312.7012.74T:jh224
14.8314.8914.94T:round3jh512
14.8414.8914.94T:round3jh256
Cycles/byte for 4096 bytes
25%50%75%hash
2.092.092.09sha256
2.352.362.36sha224
2.702.712.73T:k12
3.283.293.29T:blake2b
4.254.264.27T:blake64
4.574.574.59blake512
4.604.624.63T:skein512256
4.644.654.66T:skein512512
4.744.744.75T:skein10241024
5.015.065.15shake128
5.115.125.14sha384
5.195.205.21sha512
5.235.235.24T:blake2s
5.325.335.34T:keccakc256treed2
5.335.345.35T:bblake256
5.715.725.73T:blake32
5.625.745.85T:keccakc448
5.845.915.96sha3224
6.096.256.34T:keccakc512
6.186.266.32shake256
6.226.306.33sha3256
6.296.316.32T:skein256256
6.446.456.46T:keccakc512treed2
6.446.486.71T:keccak
7.457.467.47blake256
8.038.078.15sha3384
8.008.188.28T:keccakc768
8.438.448.45T:groestl256
11.1111.1211.13T:groestl512
11.0211.1311.35T:keccakc1024
11.2011.2411.55sha3512
12.8512.8612.88T:jh512
12.8512.8712.88T:jh256
12.8612.8812.89T:jh384
12.8712.8912.90T:jh224
15.1115.1315.14T:round3jh512
15.1115.1315.15T:round3jh256
Cycles/byte for 1536 bytes
25%50%75%hash
2.152.152.15sha256
2.852.862.87sha224
2.922.942.98T:k12
3.273.283.29T:blake2b
4.484.504.55T:blake64
4.744.764.79T:skein512256
4.774.784.80T:skein512512
4.814.844.87blake512
5.005.015.04T:skein10241024
5.215.225.23T:blake2s
5.345.375.42shake128
5.485.505.52sha512
5.785.816.06T:keccakc448
5.865.885.90sha384
5.895.895.91T:blake32
5.875.956.13sha3224
6.126.146.17T:keccakc256treed2
6.216.226.24T:bblake256
6.366.396.46T:keccakc512
6.396.416.45T:skein256256
6.376.476.54shake256
6.516.556.58sha3256
6.796.857.00T:keccak
7.127.137.14T:keccakc512treed2
7.657.667.67blake256
7.908.068.15T:keccakc768
7.998.148.25sha3384
8.878.888.90T:groestl256
11.4211.5311.76T:keccakc1024
11.6111.7512.11sha3512
12.2912.3112.33T:groestl512
13.1813.2013.22T:jh256
13.1813.2113.22T:jh512
13.1913.2113.24T:jh384
13.2013.2213.25T:jh224
15.5015.5215.55T:round3jh512
15.5015.5315.57T:round3jh256
Cycles/byte for 576 bytes
25%50%75%hash
2.322.322.33sha256
3.203.223.39T:k12
3.613.623.65T:blake2b
4.224.234.24sha224
4.674.694.75T:blake64
4.995.005.10blake512
5.125.155.20T:skein512256
5.165.195.22T:skein512512
5.185.205.21T:blake2s
5.645.685.88shake128
5.715.735.77sha512
6.226.246.32T:skein10241024
6.356.366.38T:blake32
6.676.726.77T:skein256256
7.047.117.28T:keccak
7.107.167.36T:keccakc512
7.127.207.28sha3256
7.157.287.37shake256
7.187.317.44T:keccakc448
7.227.317.41sha3224
7.467.537.55sha384
8.188.208.21blake256
8.248.278.29T:keccakc256treed2
8.508.628.73sha3384
8.598.698.86T:keccakc768
8.868.908.92T:bblake256
10.1110.1510.18T:groestl256
10.9310.9410.98T:keccakc512treed2
12.6212.7212.88T:keccakc1024
12.6612.7912.92sha3512
14.0814.1214.16T:jh384
14.1014.1314.18T:jh224
14.0914.1514.20T:jh512
14.1114.1514.19T:jh256
14.5414.6014.64T:groestl512
16.5416.5816.63T:round3jh256
16.5716.6116.64T:round3jh512
Cycles/byte for 64 bytes
25%50%75%hash
4.674.754.83sha256
4.814.864.92T:blake2s
6.276.316.42T:blake2b
8.618.819.20T:k12
9.419.629.92T:blake64
9.779.8910.08T:skein512256
9.849.9710.09T:skein512512
10.3610.4710.61T:skein256256
10.0810.7011.12blake512
11.1611.2511.39sha512
12.3812.4812.64T:blake32
12.9813.1213.47sha3384
13.0613.2213.56sha3224
13.1213.2513.58sha3512
12.9513.3413.69sha3256
13.1213.3413.73shake128
13.2213.4514.22shake256
13.7213.8614.47T:keccak
13.6413.8914.27T:keccakc1024
13.9514.1614.58T:keccakc448
13.9114.2214.53T:keccakc512
13.9814.3014.69T:keccakc768
14.9715.0815.19blake256
19.6219.7519.94T:skein10241024
21.7321.8621.97sha224
25.5625.8126.02T:jh384
25.5925.8125.97T:jh512
25.7225.8926.12T:jh224
25.7226.0526.47T:jh256
26.1426.2226.47T:groestl256
29.8430.0330.34sha384
29.9530.1930.50T:round3jh512
30.1230.4230.78T:round3jh256
42.2842.4542.66T:bblake256
47.7348.0048.55T:groestl512
49.8049.9150.02T:keccakc512treed2
50.3050.4550.67T:keccakc256treed2
Cycles/byte for 8 bytes
25%50%75%hash
24.0024.6224.75sha256
45.5046.0046.50T:blake2s
56.1256.6257.00T:blake32
56.2557.1257.50T:blake2b
63.0063.7565.12T:skein256256
66.2566.8867.50blake256
68.1269.8872.00T:k12
76.6279.0083.00T:blake64
79.5080.2582.62T:skein512256
80.1281.2582.25T:skein512512
80.5084.7588.50blake512
88.7589.3890.50sha512
103.25105.25108.75sha3224
103.62105.50107.62sha3256
104.12105.50107.75sha3384
104.50105.88108.88shake256
104.88106.00108.88sha3512
104.25106.50111.38shake128
109.50111.88115.38T:keccakc1024
110.38113.38115.88T:keccak
111.88114.12117.00T:keccakc448
111.75114.75117.50T:keccakc512
112.75116.38118.50T:keccakc768
148.75149.62150.50T:groestl256
158.62159.88161.12T:skein10241024
163.62164.75165.75sha224
209.75211.62213.12T:jh384
210.88212.62214.38T:jh512
211.12212.88215.75T:jh256
212.00213.12215.50T:jh224
242.88244.12246.00sha384
244.38245.50247.12T:round3jh512
245.50246.50248.38T:round3jh256
277.38278.62280.00T:bblake256
367.50369.62371.38T:groestl512
399.12399.75400.50T:keccakc512treed2
400.75402.50405.25T:keccakc256treed2