VAMPIRE

eBACS: ECRYPT Benchmarking of Cryptographic Systems


ECRYPT II
General information:IntroductioneBASHeBASCeBAEADeBATSSUPERCOPXBXComputersArch
How to submit new software:Tipshashstreamaeaddhkemencryptsign
List of primitives measured:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
Measurements:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
List of subroutines:verifydecodeencodesortcorehashblocksxofscalarmult

Measurements of SHA-3 finalists on one machine: amd64; K10 45nm (100f63); 2010 AMD Athlon II Neo K125; 1 x 1700MHz; h3neo, supercop-20240909

[Page version: 20241013 18:38:15]

eBASH (ECRYPT Benchmarking of All Submitted Hashes) is a project to measure the performance of hash functions. This page presents an excerpt of the full eBASH benchmark results. The excerpt contains SHA-2 and the SHA-3 finalists, including post-SHA-3 updates such as BLAKE2 and KangarooTwelve.

Each table row lists the first quartile of many speed measurements, the median of many speed measurements, the third quartile of many speed measurements, and the name of the primitive. Measurements with large variance are indicated in red with question marks. The symbol T: (starting with supercop-20200816) means that the SUPERCOP database at the time of benchmarking did not list constant time as a goal for this implementation. The symbol T!!! means that constant time was listed as a goal for this implementation, but that the implementation failed TIMECOP. (TIMECOP failures are not necessarily security issues; they can sometimes be resolved by, e.g., declaring that a rejection-sampling condition is safe to declassify.)

There is a separate page with more information about each hash function (and each implementation).


Test results

Graphs: old (bytes,cycles)
Cycles/byte for long messages
25%50%75%hash
4.754.764.76T:blake2b
5.375.395.39T:k12
5.945.955.97T:skein512256
5.945.965.97T:skein512512
6.216.216.21T:skein256256
7.347.347.34T:blake64
7.477.557.60blake512
8.088.108.12T:blake2s
9.279.319.38sha512
9.269.339.39sha384
9.689.689.69T:skein10241024
10.2210.2410.25shake128
10.8810.8910.91T:blake32
11.6011.6111.62T:keccakc448
11.9011.9411.98sha3224
12.3712.3912.40T:keccakc512
12.7512.7612.76shake256
12.7712.7712.77sha3256
13.3113.3213.33T:keccak
13.4713.5113.58blake256
13.7513.7913.85T:bblake256
14.6114.6614.80sha256
14.6314.6814.71sha224
16.6216.6616.66T:keccakc768
16.9616.9716.99sha3384
23.2523.2723.28T:keccakc1024
23.6323.6323.65sha3512
33.6233.7233.85T:groestl256
36.5436.5536.55T:jh512
36.5436.5536.57T:jh256
36.5436.5536.56T:jh224
36.5436.5536.56T:jh384
42.3942.4242.45T:round3jh256
42.4042.4242.47T:round3jh512
53.7753.8153.89T:groestl512
Cycles/byte for 4096 bytes
25%50%75%hash
4.784.784.78T:blake2b
5.685.685.68T:k12
6.096.096.10T:skein512256
6.096.106.10T:skein512512
6.316.316.31T:skein256256
7.637.637.63T:blake64
7.847.867.88blake512
8.118.128.13T:blake2s
10.0810.0810.09T:skein10241024
10.2410.2410.27sha512
10.2310.2410.27sha384
10.6910.6910.70shake128
11.1211.1211.12T:blake32
12.1012.1012.11T:keccakc448
12.3712.3812.40sha3224
12.8812.8912.89T:keccakc512
13.2013.2113.21shake256
13.2213.2213.22sha3256
13.7813.7813.82blake256
13.8013.8113.81T:keccak
15.2715.2915.29T:bblake256
15.5315.5515.55sha224
15.5415.5515.61sha256
16.7316.7316.73T:keccakc768
16.9916.9917.00sha3384
23.7623.7623.76T:keccakc1024
24.0824.0824.09sha3512
34.9034.9234.95T:groestl256
37.1337.1437.14T:jh512
37.1437.1437.15T:jh256
37.1337.1437.14T:jh384
37.1437.1437.14T:jh224
43.0943.1043.12T:round3jh512
43.0943.1043.11T:round3jh256
56.3856.3956.41T:groestl512
Cycles/byte for 1536 bytes
25%50%75%hash
4.814.814.81T:blake2b
6.166.176.19T:k12
6.326.326.33T:skein512256
6.326.336.33T:skein512512
6.466.466.46T:skein256256
8.128.128.13T:blake64
8.158.158.16T:blake2s
8.368.388.44blake512
10.7510.7510.76T:skein10241024
11.4311.4611.47shake128
11.4911.4911.50T:blake32
11.7611.7711.81sha384
11.7711.7811.85sha512
12.3712.3712.38T:keccakc448
12.5512.5612.58sha3224
13.4413.4413.45T:keccakc512
13.6813.6813.68shake256
13.6713.6813.68sha3256
14.2314.2514.28blake256
14.6114.6114.62T:keccak
16.8616.8816.90T:keccakc768
16.9716.9917.00sha224
17.0217.0317.03sha3384
17.0117.0417.05sha256
17.7917.8017.83T:bblake256
24.5824.5824.60T:keccakc1024
24.8324.8324.83sha3512
36.8536.9236.98T:groestl256
38.1138.1238.13T:jh384
38.1138.1238.12T:jh512
38.1138.1238.12T:jh256
38.1338.1338.14T:jh224
44.2244.2244.25T:round3jh512
44.2444.2444.25T:round3jh256
60.6260.7360.73T:groestl512
Cycles/byte for 576 bytes
25%50%75%hash
5.425.425.42T:blake2b
6.856.876.87T:skein256256
6.896.906.91T:skein512256
6.916.916.91T:skein512512
6.926.936.94T:k12
8.208.208.21T:blake2s
8.588.598.59T:blake64
8.938.948.98blake512
12.3312.3512.37shake128
12.4912.5012.50T:blake32
13.6313.6813.71T:skein10241024
14.8714.8814.92sha384
14.8714.9115.00sha512
15.2515.2615.27T:keccakc512
15.2815.2815.29T:keccakc448
15.2515.2815.28sha3224
15.2815.3015.30sha3256
15.3015.3015.31shake256
15.3015.3115.31T:keccak
15.4615.4815.51blake256
18.2618.2618.28sha3384
18.3118.3318.34T:keccakc768
20.8020.9220.98sha224
20.9521.0021.01sha256
24.3424.4324.45T:bblake256
27.0727.0927.11T:keccakc1024
27.1527.1527.18sha3512
40.7240.7340.76T:jh384
40.7240.7440.75T:jh512
40.7240.7440.75T:jh256
40.7740.7740.78T:jh224
41.9742.2042.26T:groestl256
47.2447.2647.28T:round3jh512
47.2447.2647.26T:round3jh256
66.2966.3266.42T:groestl512
Cycles/byte for 64 bytes
25%50%75%hash
8.918.918.91T:blake2s
10.7010.7010.72T:blake2b
11.9711.9711.97T:skein256256
14.1214.1214.12T:skein512256
14.1914.2014.20T:skein512512
17.7217.7717.77T:blake64
18.7518.7519.08T:k12
20.0620.0620.61blake512
25.2025.3425.38T:blake32
28.2328.2328.59sha3256
28.2728.2728.59sha3384
28.3128.3128.33sha3512
28.2828.3828.59sha3224
28.6728.6928.94shake256
28.6928.7329.00shake128
30.4130.4430.45T:keccakc1024
30.4830.5030.59T:keccak
30.8330.8330.84T:keccakc768
30.6230.9131.05blake256
31.1431.3331.36T:keccakc512
31.1431.4531.47T:keccakc448
44.2044.4444.48T:skein10241024
58.1258.3359.16sha512
58.1958.5858.84sha384
69.6670.7570.84sha224
70.0571.0271.25sha256
73.9573.9774.19T:jh512
73.9773.9874.27T:jh384
73.9174.0074.06T:jh256
74.3674.4274.56T:jh224
85.6285.7085.80T:round3jh256
85.7285.7785.89T:round3jh512
107.33109.27109.41T:bblake256
109.08109.75112.80T:groestl256
164.23164.61164.62T:groestl512
Cycles/byte for 8 bytes
25%50%75%hash
69.1269.2570.38T:skein256256
69.8869.8872.75T:blake2s
83.8884.3885.88T:blake2b
111.62111.62111.75T:skein512256
112.00112.00114.12T:skein512512
110.75112.38114.00T:blake32
139.12139.12143.62blake256
143.12143.88143.88T:blake64
148.75148.88150.25T:k12
160.38165.12167.00blake512
225.00225.12227.25sha3384
225.12225.25227.12sha3256
225.38225.50227.75sha3512
225.25226.38227.12sha3224
228.88229.25230.75shake128
228.50229.50230.25shake256
244.12245.75246.62T:keccakc1024
246.25246.88248.75T:keccak
246.62249.25249.50T:keccakc768
248.12249.62249.75T:keccakc512
249.75249.75249.88T:keccakc448
355.00355.38355.38T:skein10241024
438.62443.75449.88sha256
435.00445.50446.50sha224
464.00465.62469.00sha384
465.25466.25475.12sha512
594.62595.00596.62T:jh384
594.25595.50596.50T:jh256
594.75596.50597.12T:jh512
596.75598.38599.50T:jh224
602.62615.50629.50T:groestl256
687.38688.00689.12T:round3jh256
688.38688.88689.75T:round3jh512
751.50763.50763.50T:bblake256
1316.501317.501319.12T:groestl512