The dawning era of quantum computing has initiated various initiatives for the standardization of post-quantum cryptosystems with the goal of (eventually) replacing RSA and ECC. NTRU Prime is a variant of the classical NTRU cryptosystem that comes with a couple of tweaks to minimize the attack surface; most notably, it avoids rings with “worrisome” structure. This paper presents, to our knowledge, the first assembler-optimized implementation of Streamlined NTRU Prime for an 8-bit AVR microcontroller and shows that high-security latticebased cryptography is feasible for small IoT devices. An encapsulation operation using parameters for 128-bit post-quantum security requires 8.2 million clock cycles when executed on an 8-bit ATmega1284 microc...
Introduced in 1996, NTRUEncrypt is not only one of the earliest but also one of the most scrutinized...
International audienceThe fast development of quantum computers represents a risk for secure communi...
Recent progress in quantum computing has increased interest in the question of how well the existing...
peer reviewedThe dawning era of quantum computing has initiated various initiatives for the standard...
Introduced in 1996, NTRUEncrypt is not only one of the earliest but also one of the most scrutinized...
peer reviewedIntroduced in 1996, NTRUEncrypt is not only one of the earliest but also one of the mos...
Several ideal-lattice-based cryptosystems have been broken by recent attacks that exploit special st...
Several ideal-lattice-based cryptosystems have been broken by recent attacks that exploit special st...
Several ideal-lattice-based cryptosystems have been broken by recent attacks that exploit special st...
Introduced in 1996, NTRUEncrypt is not only one of the earliest but also one of the most scrutinized...
Introduced in 1996, NTRUEncrypt is not only one of the earliest but also one of the most scrutinized...
Introduced in 1996, NTRUEncrypt is not only one of the earliest but also one of the most scrutinized...
Introduced in 1996, NTRUEncrypt is not only one of the earliest but also one of the most scrutinized...
\u3cbr/\u3eSeveral ideal-lattice-based cryptosystems have been broken by recent attacks that exploit...
The NTRU cryptosystem is one of the main alternatives for practical implementations of post-quantum,...
Introduced in 1996, NTRUEncrypt is not only one of the earliest but also one of the most scrutinized...
International audienceThe fast development of quantum computers represents a risk for secure communi...
Recent progress in quantum computing has increased interest in the question of how well the existing...
peer reviewedThe dawning era of quantum computing has initiated various initiatives for the standard...
Introduced in 1996, NTRUEncrypt is not only one of the earliest but also one of the most scrutinized...
peer reviewedIntroduced in 1996, NTRUEncrypt is not only one of the earliest but also one of the mos...
Several ideal-lattice-based cryptosystems have been broken by recent attacks that exploit special st...
Several ideal-lattice-based cryptosystems have been broken by recent attacks that exploit special st...
Several ideal-lattice-based cryptosystems have been broken by recent attacks that exploit special st...
Introduced in 1996, NTRUEncrypt is not only one of the earliest but also one of the most scrutinized...
Introduced in 1996, NTRUEncrypt is not only one of the earliest but also one of the most scrutinized...
Introduced in 1996, NTRUEncrypt is not only one of the earliest but also one of the most scrutinized...
Introduced in 1996, NTRUEncrypt is not only one of the earliest but also one of the most scrutinized...
\u3cbr/\u3eSeveral ideal-lattice-based cryptosystems have been broken by recent attacks that exploit...
The NTRU cryptosystem is one of the main alternatives for practical implementations of post-quantum,...
Introduced in 1996, NTRUEncrypt is not only one of the earliest but also one of the most scrutinized...
International audienceThe fast development of quantum computers represents a risk for secure communi...
Recent progress in quantum computing has increased interest in the question of how well the existing...