VAMPIRE

eBACS: ECRYPT Benchmarking of Cryptographic Systems


ECRYPT II
General information:IntroductioneBASHeBASCeBAEADeBATSSUPERCOPXBXComputersArch
How to submit new software:Tipshashstreamaeaddhkemencryptsign
List of primitives measured:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
Measurements:lwcsha3hashstreamlwccaesaraeaddhkemencryptsign
List of subroutines:verifydecodeencodesortcorehashblocksxofscalarmult

Measurements of SHA-3 finalists on one machine: amd64; Core 2 65nm (6fb); 2007 Intel Core 2 Quad Q6600; 4 x 2404MHz; margaux, supercop-20241022

[Page version: 20241120 00:41:20]

eBASH (ECRYPT Benchmarking of All Submitted Hashes) is a project to measure the performance of hash functions. This page presents an excerpt of the full eBASH benchmark results. The excerpt contains SHA-2 and the SHA-3 finalists, including post-SHA-3 updates such as BLAKE2 and KangarooTwelve.

Each table row lists the first quartile of many speed measurements, the median of many speed measurements, the third quartile of many speed measurements, and the name of the primitive. Measurements with large variance are indicated in red with question marks. The symbol T: (starting with supercop-20200816) means that the SUPERCOP database at the time of benchmarking did not list constant time as a goal for this implementation. The symbol T!!! means that constant time was listed as a goal for this implementation, but that the implementation failed TIMECOP. (TIMECOP failures are not necessarily security issues; they can sometimes be resolved by, e.g., declaring that a rejection-sampling condition is safe to declassify.)

There is a separate page with more information about each hash function (and each implementation).


Test results

Graphs: old (bytes,cycles)
Cycles/byte for long messages
25%50%75%hash
5.035.075.08T:blake2b
5.445.445.44T:k12
6.326.336.33T:skein512512
6.356.356.37T:skein512256
7.147.177.19T:blake64
7.247.337.47T:keccakc256treed2
7.517.557.58blake512
7.948.088.15T:blake2s
8.228.248.27T:skein256256
9.059.119.26T:bblake256
9.539.569.56T:blake32
9.589.639.66T:skein10241024
9.629.759.96sha512
9.749.769.77T:keccakc512treed2
9.709.779.84sha384
10.3110.3210.36shake128
11.1311.1411.14T:keccakc448
11.8811.8911.91T:keccakc512
11.8411.9412.15blake256
12.0012.0212.04sha3224
12.6312.6612.70T:keccak
12.8212.8312.84shake256
12.8912.9212.96sha3256
13.7313.7513.82sha256
13.7013.7513.82sha224
15.6915.7315.78T:keccakc768
17.0017.0217.03sha3384
17.6217.6317.65T:jh256
17.6017.6317.68T:jh384
17.6217.6517.65T:jh224
17.6217.6517.68T:jh512
20.8720.8920.91T:round3jh256
20.8320.9821.16T:round3jh512
21.8121.9622.02T:keccakc1024
23.6523.7023.74sha3512
32.0532.1132.25T:groestl256
47.9848.0148.14T:groestl512
Cycles/byte for 4096 bytes
25%50%75%hash
5.095.105.11T:blake2b
5.775.775.77T:k12
6.496.496.49T:skein512512
6.516.516.52T:skein512256
7.477.487.48T:blake64
7.857.857.87blake512
8.048.118.11T:blake2s
8.368.378.37T:skein256256
8.628.628.69T:keccakc256treed2
9.769.769.76T:blake32
9.9810.0010.07T:bblake256
10.0510.0610.07T:skein10241024
10.4510.4610.46T:keccakc512treed2
10.7610.7810.80sha384
10.7810.7810.80shake128
10.7910.8110.90sha512
11.6211.6211.62T:keccakc448
12.1812.1812.28blake256
12.3612.3612.37T:keccakc512
12.4612.4612.47sha3224
13.1413.1413.16T:keccak
13.2813.2813.29shake256
13.3613.3713.38sha3256
14.6414.6514.67sha224
14.6614.6714.70sha256
15.8115.8315.84T:keccakc768
17.0317.0417.04sha3384
17.9217.9217.93T:jh256
17.9217.9217.95T:jh384
17.9217.9317.93T:jh224
17.9317.9317.95T:jh512
21.2421.2421.25T:round3jh256
21.2821.3121.38T:round3jh512
22.3522.4122.41T:keccakc1024
24.1524.1524.17sha3512
32.9932.9933.05T:groestl256
50.3350.3350.39T:groestl512
Cycles/byte for 1536 bytes
25%50%75%hash
5.165.165.18T:blake2b
6.306.306.31T:k12
6.766.766.76T:skein512512
6.776.776.77T:skein512256
7.987.998.01T:blake64
8.108.168.16T:blake2s
8.358.358.39blake512
8.578.578.58T:skein256256
9.989.9910.04T:keccakc256treed2
10.0910.1010.11T:blake32
10.7310.7310.76T:skein10241024
11.4711.4811.54T:bblake256
11.5311.5411.55shake128
11.6311.6311.63T:keccakc512treed2
11.9011.9111.92T:keccakc448
12.4412.4612.48sha384
12.5512.5712.66blake256
12.5212.6112.66sha512
12.6512.6512.65sha3224
12.8812.8912.90T:keccakc512
13.7513.7513.76shake256
13.8313.8413.86sha3256
13.9413.9513.98T:keccak
15.9815.9916.02T:keccakc768
16.1216.1316.16sha224
16.1916.2016.22sha256
17.0717.0917.10sha3384
18.4018.4118.41T:jh224
18.4018.4118.42T:jh256
18.4118.4118.45T:jh384
18.4118.4318.44T:jh512
21.8421.8421.85T:round3jh256
21.8121.8721.89T:round3jh512
23.1123.1923.20T:keccakc1024
24.9024.9124.95sha3512
34.3834.4034.49T:groestl256
54.1254.1754.18T:groestl512
Cycles/byte for 576 bytes
25%50%75%hash
5.865.865.86T:blake2b
7.147.147.15T:k12
7.427.447.47T:skein512256
7.457.467.46T:skein512512
8.268.298.30T:blake2s
8.548.568.59T:blake64
8.848.858.87blake512
9.109.129.12T:skein256256
11.0111.0311.06T:blake32
12.4212.4512.46shake128
13.5913.6113.71blake256
13.6413.6913.71T:keccakc256treed2
13.7213.7313.76T:skein10241024
14.6314.6414.64T:keccakc512
14.6414.6514.70T:keccak
14.7414.7414.74T:keccakc448
15.3715.3915.39shake256
15.3815.4215.42sha3224
15.4515.4815.50sha3256
15.7315.7715.87T:bblake256
15.9115.9616.04sha384
16.2416.2816.33sha512
17.4417.4417.46T:keccakc768
17.9417.9417.94T:keccakc512treed2
18.3218.3218.32sha3384
19.6419.6419.73T:jh224
19.6419.6419.73T:jh256
19.6619.7519.78T:jh512
19.7619.7619.84T:jh384
20.0220.1320.15sha224
20.2320.2720.29sha256
23.3823.3823.38T:round3jh256
23.3923.4223.46T:round3jh512
25.6525.6525.67T:keccakc1024
27.2227.2927.38sha3512
38.1538.1838.20T:groestl256
59.0159.0359.05T:groestl512
Cycles/byte for 64 bytes
25%50%75%hash
9.809.809.80T:blake2s
11.4811.4811.48T:blake2b
15.3415.4115.56T:skein512256
15.8415.8415.95T:skein512512
15.8615.9815.98T:skein256256
18.6718.6718.92T:blake64
19.1119.1719.28blake512
20.4720.6220.84T:k12
22.9723.0823.67T:blake32
26.8027.0827.31blake256
28.5328.5328.84sha3512
28.8828.8829.14sha3224
28.9128.9129.17sha3384
28.9228.9529.02shake256
29.0329.0329.19shake128
29.0929.0929.55sha3256
29.3129.3329.55T:keccakc1024
29.8630.0030.61T:keccak
30.1430.1930.28T:keccakc512
30.2830.3130.39T:keccakc768
30.4230.5830.70T:keccakc448
36.6236.6236.64T:jh224
36.6236.6236.67T:jh256
36.7236.7337.12T:jh384
36.8136.8337.20T:jh512
43.1143.1243.47T:round3jh256
42.8843.1643.23T:round3jh512
43.8044.0644.17T:skein10241024
63.7564.2864.61sha384
65.6166.2067.95sha512
69.0069.1669.41T:bblake256
70.4870.5871.00sha224
71.5071.7772.06sha256
83.3983.3983.75T:keccakc256treed2
83.7583.7583.83T:keccakc512treed2
84.8385.0685.28T:groestl256
145.25145.31145.52T:groestl512
Cycles/byte for 8 bytes
25%50%75%hash
79.5079.5079.50T:blake2s
91.7591.7591.75T:blake2b
91.6292.3892.88T:skein256256
107.12107.88113.38T:blake32
119.25120.75122.25blake256
121.12121.88123.12T:skein512256
125.38125.38126.25T:skein512512
150.88152.62152.75T:blake64
153.00154.25155.00blake512
163.38163.38164.25T:k12
228.50228.50229.88sha3512
230.38230.50231.62shake256
230.75230.75231.62shake128
230.25231.75233.88sha3256
231.75231.75231.75sha3224
231.88232.00232.00sha3384
236.00237.25238.00T:keccakc1024
239.50239.75241.12T:keccakc512
239.50241.50249.75T:keccak
242.62243.12243.50T:keccakc768
243.75243.88245.12T:keccakc448
295.50297.12297.12T:jh224
295.88297.38297.38T:jh256
296.00297.88297.88T:jh384
297.62298.75300.50T:jh512
346.88347.38348.88T:round3jh256
346.75347.88348.12T:round3jh512
349.75351.50352.00T:skein10241024
416.62417.62418.75T:groestl256
449.62451.62453.62sha224
454.50457.38459.00T:bblake256
458.62459.50460.88sha256
509.25512.88516.88sha384
527.62535.50539.50sha512
664.62664.62669.62T:keccakc256treed2
668.88669.75669.75T:keccakc512treed2
1163.501164.881166.75T:groestl512