VAMPIRE

eBACS: ECRYPT Benchmarking of Cryptographic Systems


ECRYPT II
General information:IntroductioneBASHeBASCeBAEADeBATSSUPERCOPXBXComputersArch
How to submit new software:Tipshashstreamaeaddhkemencryptsign
List of primitives measured:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
Measurements:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
List of subroutines:verifydecodeencodesortcorehashblocksxofscalarmult

Measurements of NISTLWC hash candidates on one machine: amd64; Comet Lake (806ec); 2019 Intel Core i3-10110U; 2 x 2100MHz; cubi10, supercop-20250307

[Page version: 20250326 01:56:40]

eBASH (ECRYPT Benchmarking of All Submitted Hashes) is a project to measure the performance of hash functions. This page presents an excerpt of the full eBASH benchmark results. The excerpt is for NISTLWC, specifically (starting with supercop-20221005) finalists.

Each table row lists the first quartile of many speed measurements, the median of many speed measurements, the third quartile of many speed measurements, and the name of the primitive. Measurements with large variance are indicated in red with question marks. The symbol T: (starting with supercop-20200816) means that the SUPERCOP database at the time of benchmarking did not list constant time as a goal for this implementation. The symbol T!!! means that constant time was listed as a goal for this implementation, but that the implementation failed TIMECOP. (TIMECOP failures are not necessarily security issues; they can sometimes be resolved by, e.g., declaring that a rejection-sampling condition is safe to declassify.)

There is a separate page with more information about each hash function (and each implementation).


Test results

Graphs: (bytes,cycles)
Cycles/byte for long messages
25%50%75%hash
5.295.295.29sha512
7.257.267.27shake128
7.667.687.69sha256
13.1913.2013.21T:xoodyakv1
14.4214.4314.43asconxofav12
14.4214.4314.44asconhashav12
21.9221.9321.94asconhashv12
21.9221.9321.94asconxofv12
28.5828.6228.63asconhashabi32v12
37.5537.5737.59T:esch256v2
41.9242.0742.08T:esch384v2
42.2142.2342.24T:romulush
42.6442.6742.71asconhashbi32v12
231.63231.68231.90T:photonbeetlehash256rate32v1
Cycles/byte for 4096 bytes
25%50%75%hash
5.505.515.52sha512
7.437.447.45shake128
7.857.877.89sha256
13.3013.3213.35T:xoodyakv1
14.5714.5814.60asconhashav12
14.5714.5914.61asconxofav12
22.1222.1422.15asconhashv12
22.1222.1422.15asconxofv12
28.9929.0229.03asconhashabi32v12
37.8537.9037.92T:esch256v2
42.5242.5342.56T:esch384v2
42.6142.6342.65T:romulush
43.0943.1443.17asconhashbi32v12
231.19231.26231.33T:photonbeetlehash256rate32v1
Cycles/byte for 1536 bytes
25%50%75%hash
5.845.855.86sha512
7.967.988.00shake128
8.198.218.23sha256
13.4213.4713.50T:xoodyakv1
14.8014.8314.85asconhashav12
14.8214.8414.86asconxofav12
22.4522.4722.50asconhashv12
22.4422.4822.51asconxofv12
29.6529.6829.71asconhashabi32v12
38.2938.3738.45T:esch256v2
43.2643.2743.31T:esch384v2
43.3043.3243.35T:romulush
43.8843.9243.98asconhashbi32v12
230.50230.59230.67T:photonbeetlehash256rate32v1
Cycles/byte for 576 bytes
25%50%75%hash
6.356.376.38sha512
8.558.578.61shake128
9.169.199.22sha256
13.9013.9414.00T:xoodyakv1
15.4615.5015.56asconxofav12
15.4715.5215.57asconhashav12
23.3223.3723.40asconhashv12
23.3323.3923.43asconxofv12
31.2631.2931.34asconhashabi32v12
39.5339.6639.76T:esch256v2
44.9645.0145.09T:romulush
45.0945.1645.21T:esch384v2
45.9045.9946.04asconhashbi32v12
228.60228.76228.90T:photonbeetlehash256rate32v1
Cycles/byte for 64 bytes
25%50%75%hash
14.2014.3114.50sha512
18.0218.2318.47T:xoodyakv1
19.9420.0920.41sha256
20.0620.1720.47shake128
23.8024.0224.42asconhashav12
23.6724.0524.67asconxofav12
34.3934.6935.05asconxofv12
34.3834.7235.45asconhashv12
50.9751.1251.25asconhashabi32v12
53.4254.0054.42T:esch256v2
65.5265.6765.97T:romulush
69.4769.6769.91T:esch384v2
70.0970.2870.42asconhashbi32v12
202.73203.33203.92T:photonbeetlehash256rate32v1
Cycles/byte for 8 bytes
25%50%75%hash
64.5065.1265.88T:xoodyakv1
90.5091.2592.00asconhashav12
90.6291.8895.12sha256
91.1291.8893.50asconxofav12
101.88102.50103.12sha512
123.00124.75125.88asconhashv12
123.75?126.00?209.25?asconxofv12
159.75160.75162.00shake128
186.38187.38188.62T:romulush
199.25200.88202.75T:esch256v2
207.38208.88209.75asconhashabi32v12
233.62234.25235.00T:photonbeetlehash256rate32v1
263.38265.12266.50asconhashbi32v12
301.38302.00303.12T:esch384v2