VAMPIRE

eBACS: ECRYPT Benchmarking of Cryptographic Systems


ECRYPT II
General information:IntroductioneBASHeBASCeBAEADeBATSSUPERCOPXBXComputersArch
How to submit new software:Tipshashstreamaeaddhkemencryptsign
List of primitives measured:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
Measurements:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
List of subroutines:verifydecodeencodesortcorehashblocksxofscalarmult

Measurements of SHA-3 finalists on one machine: amd64; Silvermont (406c4); 2016 Intel Atom x5-Z8350; 4 x 1440MHz; cherry, supercop-20250415

[Page version: 20250506 12:42:51]

eBASH (ECRYPT Benchmarking of All Submitted Hashes) is a project to measure the performance of hash functions. This page presents an excerpt of the full eBASH benchmark results. The excerpt contains SHA-2 and the SHA-3 finalists, including post-SHA-3 updates such as BLAKE2 and KangarooTwelve.

Each table row lists the first quartile of many speed measurements, the median of many speed measurements, the third quartile of many speed measurements, and the name of the primitive. Measurements with large variance are indicated in red with question marks. The symbol T: (starting with supercop-20200816) means that the SUPERCOP database at the time of benchmarking did not list constant time as a goal for this implementation. The symbol T!!! means that constant time was listed as a goal for this implementation, but that the implementation failed TIMECOP. (TIMECOP failures are not necessarily security issues; they can sometimes be resolved by, e.g., declaring that a rejection-sampling condition is safe to declassify.)

There is a separate page with more information about each hash function (and each implementation).


Test results

Graphs: (bytes,cycles)
Cycles/byte for long messages
25%50%75%hash
8.548.558.56T:blake2b
9.409.459.47T:k12
10.1610.1610.16T:blake2s
11.6011.6211.64T:skein512256
11.6211.6411.66T:skein512512
11.6911.6911.69T:blake32
11.7211.7211.73T:skein256256
12.4812.5112.54T:blake64
12.8112.8112.81T:keccakc256treed2
13.5513.5913.65blake512
13.6113.6213.63blake256
15.1615.2015.29T:bblake256
17.2317.2317.25sha384
17.2217.2317.23sha512
17.1617.2317.36T:keccakc512treed2
17.8217.8717.88T:skein10241024
18.2618.4418.47shake128
20.4520.4520.46sha256
20.4520.4520.46sha224
20.2920.7021.50T:keccakc448
21.5021.5321.57sha3224
22.6522.7322.95T:keccakc512
23.0123.0423.08sha3256
23.0323.0723.07shake256
24.1424.2424.90T:keccak
25.7125.7225.72T:jh256
25.7225.7225.72T:jh384
25.7225.7225.72T:jh512
25.7225.7225.73T:jh224
29.5229.5229.54T:round3jh512
29.5329.5429.55T:round3jh256
29.5929.7629.87T:keccakc768
30.1330.7032.01sha3384
32.6532.6932.74T:groestl256
42.2542.3342.44T:keccakc1024
42.7642.7842.80sha3512
48.9149.3750.08T:groestl512
Cycles/byte for 4096 bytes
25%50%75%hash
8.608.608.60T:blake2b
9.959.959.96T:k12
10.1610.1610.16T:blake2s
11.8611.8611.87T:skein512256
11.8711.8711.88T:skein512512
11.8811.8811.89T:skein256256
11.9511.9511.95T:blake32
12.9812.9913.00T:blake64
13.9213.9213.92blake256
14.1514.1514.18blake512
15.1015.1015.10T:keccakc256treed2
16.4416.4516.49T:bblake256
17.8917.8917.89sha384
17.8917.8917.89sha512
18.4718.4718.53T:keccakc512treed2
18.5518.5518.55T:skein10241024
19.3119.3219.32shake128
20.8920.8920.89sha256
20.8920.8920.89sha224
22.1222.1322.31T:keccakc448
22.3222.3322.34sha3224
23.6523.6723.76T:keccakc512
23.8223.8323.84sha3256
23.8423.8523.85shake256
25.1125.1425.43T:keccak
26.1426.1426.14T:jh256
26.1426.1426.14T:jh384
26.1426.1426.14T:jh512
26.1426.1426.15T:jh224
30.0230.0230.02T:round3jh256
30.0230.0230.02T:round3jh512
30.3830.4130.42T:keccakc768
30.7030.7131.37sha3384
33.6533.6533.66T:groestl256
43.1843.2143.25T:keccakc1024
43.5843.5943.59sha3512
52.1152.1452.49T:groestl512
Cycles/byte for 1536 bytes
25%50%75%hash
8.658.668.66T:blake2b
10.1710.1710.17T:blake2s
10.7810.7910.81T:k12
12.1512.1512.16T:skein256256
12.2612.2612.28T:skein512256
12.2612.2612.28T:skein512512
12.3912.3912.39T:blake32
13.7913.7913.86T:blake64
14.4214.4214.43blake256
15.0615.0715.08blake512
17.5217.5217.52T:keccakc256treed2
18.4918.5218.54T:bblake256
18.9718.9818.98sha384
19.0019.0019.00sha512
19.6819.6819.68T:skein10241024
20.5320.5320.60T:keccakc512treed2
20.6520.7520.78shake128
21.6021.6021.61sha224
21.6021.6121.61sha256
22.6222.6222.69sha3224
22.6422.6822.70T:keccakc448
24.6324.6324.67sha3256
24.6924.7124.77shake256
24.6724.7324.79T:keccakc512
26.5726.6026.67T:keccak
26.8426.8426.85T:jh256
26.8526.8526.85T:jh384
26.8526.8526.85T:jh512
26.8526.8526.85T:jh224
30.7530.7530.76sha3384
30.8230.8230.83T:round3jh256
30.8330.8330.85T:round3jh512
30.7031.0931.59T:keccakc768
35.2035.2135.25T:groestl256
44.6744.6845.56T:keccakc1024
44.9444.9445.40sha3512
56.7856.8457.15T:groestl512
Cycles/byte for 576 bytes
25%50%75%hash
9.749.749.77T:blake2b
10.1810.1810.18T:blake2s
12.0612.0912.11T:k12
12.8812.8812.88T:skein256256
13.3213.3213.35T:skein512512
13.3113.3313.34T:skein512256
13.5413.5413.55T:blake32
14.6614.7114.74T:blake64
15.7615.7815.81blake256
16.0216.0216.04blake512
20.0820.0820.09sha384
20.1220.1320.13sha512
22.2022.4622.60shake128
23.5123.5223.53sha224
23.5223.5323.53sha256
23.9623.9623.97T:keccakc256treed2
23.9824.0924.14T:bblake256
24.7724.7724.82T:skein10241024
27.4427.5628.56sha3224
27.7327.8028.33T:keccak
27.7727.8327.86T:keccakc448
27.4727.9828.06sha3256
27.7828.1928.31shake256
27.9028.2628.42T:keccakc512
28.7228.7228.73T:jh256
28.7228.7228.72T:jh384
28.7328.7328.73T:jh512
28.7328.7328.73T:jh224
31.6931.7331.79T:keccakc512treed2
32.9032.9132.98sha3384
32.9832.9832.98T:round3jh256
32.9932.9933.00T:round3jh512
33.1933.1933.45T:keccakc768
39.3839.4039.45T:groestl256
49.2349.3049.49T:keccakc1024
49.1249.8750.05sha3512
63.5563.6063.91T:groestl512
Cycles/byte for 64 bytes
25%50%75%hash
10.2510.2510.64T:blake2s
18.8418.8418.84T:blake2b
21.9121.9121.91T:skein256256
26.5026.5226.64T:skein512256
26.6126.6126.72T:skein512512
28.0528.0528.05T:blake32
30.8130.8330.98T:blake64
32.0632.2732.61T:k12
32.7232.8833.06blake256
35.1435.1735.23blake512
42.1242.1242.19sha384
42.5542.5542.55sha512
47.6747.7547.89sha224
47.8347.8347.88sha256
50.1250.5051.44sha3224
50.1650.5351.31sha3256
50.1751.0351.06sha3384
51.1651.5552.67shake128
51.8952.2352.59shake256
52.3852.3852.44T:jh256
52.4252.4252.42T:jh384
52.4452.4452.52T:jh512
52.4552.4552.48T:jh224
51.7352.8853.00sha3512
55.2855.8657.12T:keccak
55.5856.5957.27T:keccakc768
56.0356.5957.86T:keccakc1024
56.3056.8658.05T:keccakc512
56.8858.0260.11T:keccakc448
60.2360.2360.30T:round3jh256
60.3060.3060.33T:round3jh512
78.9178.9178.91T:skein10241024
92.1192.1793.25T:groestl256
93.6693.7594.12T:bblake256
146.64146.64146.64T:keccakc256treed2
147.22147.22147.69T:keccakc512treed2
175.58176.20176.95T:groestl512
Cycles/byte for 8 bytes
25%50%75%hash
83.6283.6283.62T:blake2s
127.38127.38127.38T:skein256256
138.12138.12138.88T:blake32
149.25149.25150.50T:blake2b
157.00157.38157.38blake256
210.12210.50211.25T:skein512256
211.12211.62212.38T:skein512512
214.25214.75217.12sha256
214.75215.12215.50sha224
249.62250.00251.25T:blake64
256.62256.62260.00T:k12
277.75278.12279.00blake512
334.88334.88335.38sha384
338.25338.25338.25sha512
399.25400.00409.88sha3384
399.62401.88406.75sha3224
399.75403.62407.25sha3256
406.50406.50412.25sha3512
406.62406.75407.50shake256
407.38407.38408.12shake128
420.88420.88421.50T:jh384
421.38421.38421.38T:jh256
421.38421.38422.00T:jh512
421.12421.50421.88T:jh224
443.75444.25445.62T:keccakc768
443.62447.62452.25T:keccakc1024
441.88448.25458.00T:keccak
448.50450.12465.38T:keccakc512
450.12450.62459.88T:keccakc448
471.12473.38477.62T:groestl256
485.00485.00485.00T:round3jh256
485.38485.38485.38T:round3jh512
630.75630.75630.75T:skein10241024
635.62636.50640.00T:bblake256
1171.751171.751171.75T:keccakc256treed2
1176.621176.621180.38T:keccakc512treed2
1401.001402.621408.50T:groestl512