Efficient software implementation of binary field arithmetic using vector instruction sets
LATINCRYPT'10 Proceedings of the First international conference on Progress in cryptology: cryptology and information security in Latin America
Type-II optimal polynomial bases
WAIFI'10 Proceedings of the Third international conference on Arithmetic of finite fields
CT-RSA'11 Proceedings of the 11th international conference on Topics in cryptology: CT-RSA 2011
CHES'11 Proceedings of the 13th international conference on Cryptographic hardware and embedded systems
AFRICACRYPT'10 Proceedings of the Third international conference on Cryptology in Africa
The Karatsuba integer middle product
Journal of Symbolic Computation
Improved three-way split formulas for binary polynomial multiplication
SAC'11 Proceedings of the 18th international conference on Selected Areas in Cryptography
Speeding up elliptic curve discrete logarithm computations with point halving
Designs, Codes and Cryptography
IEEE Transactions on Very Large Scale Integration (VLSI) Systems
McBits: fast constant-time code-based cryptography
CHES'13 Proceedings of the 15th international conference on Cryptographic Hardware and Embedded Systems
On the implementation of unified arithmetic on binary huff curves
CHES'13 Proceedings of the 15th international conference on Cryptographic Hardware and Embedded Systems
On the arithmetic operations over finite fields of characteristic three with low complexity
Journal of Computational and Applied Mathematics
Hi-index | 0.00 |
This paper sets new software speed records for high-security Diffie-Hellman computations, specifically 251-bit elliptic-curve variable-base-point scalar multiplication. In one second of computation on a $200 Core 2 Quad Q6600 CPU, this paper's software performs 30000 251-bit scalar multiplications on the binary Edwards curve d(x + x 2 + y + y 2) = (x + x 2)(y + y 2) over the field ${\bf F}_2[t]/(t^{251}+t^7+t^4+t^2+1)$ where d = t 57 + t 54 + t 44 + 1. The paper's field-arithmetic techniques can be applied in much more generality but have a particularly efficient interaction with the completeness of addition formulas for binary Edwards curves.