Commit Graph

900 Commits

Author SHA1 Message Date
John M. Schanck
268b62f3ce NTRU: Move crypto_sort_int32.h include to top of sample.c 2020-08-25 07:57:26 -04:00
John M. Schanck
146a3195e9 NTRU: more explicit casts for MS compiler 2020-08-24 10:56:18 -04:00
John M. Schanck
f49d18a75b NTRU: add explicit cast for MS compiler 2020-08-24 10:43:44 -04:00
John M. Schanck
f1287684e3 NTRU: duplicate consistency 2020-08-24 09:47:34 -04:00
John M. Schanck
1d26f6a582 Update NTRU and add AVX2 NTRU implementations 2020-08-24 09:47:30 -04:00
John Schanck
4ea4b478ba
Update NTRU (#311)
* Update NTRU

version: https://github.com/jschanck/ntru/tree/485dde03

* Fixed ntruhrss701/clean/Makefile.Microsoft_nmake
2020-08-15 14:26:25 -04:00
Thom Wiggers
d38002f5c4
Merge pull request #310 from claucece/master
Fix overflow in multiplication in Saber
2020-08-11 22:28:13 +02:00
Sofía Celi
534e7a1277
Fix overflow in multiplication in Saber 2020-08-11 10:47:55 -05:00
Thom Wiggers
dc69ab19db
Update README for Round 3 (#306)
See also #305
2020-07-25 12:46:58 +08:00
mergify[bot]
ed3104030f
Merge pull request #305 from PQClean/round3
Remove Non-Round3 Schemes
2020-07-23 12:52:47 +00:00
Matthias J. Kannwischer
9fbfb230a9 remove threebears, ledakem, newhope, mqdss, qtesla
NIST announced the Round 3 finalists and alternate candidates today:
https://groups.google.com/a/list.nist.gov/d/msg/pqc-forum/0ieuPB-b8eg/Cl7Ji8TpCwAJ

Some of the schemes in PQClean did not make it to Round 3 and this commit
removes them.
2020-07-23 14:08:09 +08:00
Thom Wiggers
90630db2eb
Add MQDSS AVX2 implementations (#288)
* Add AVX2 version of mqdss

* Fix duplicate consistency
2020-06-26 14:01:23 +08:00
mergify[bot]
ea5a83f7a8
Merge pull request #293 from PQClean/fix-sphincs-windows
Add missing obj file to Windows SPHINCS+ AVX2 builds
2020-06-22 17:52:57 +00:00
mergify[bot]
a80abd64ff
Merge branch 'master' into fix-sphincs-windows 2020-06-22 11:47:48 +00:00
Thom Wiggers
bcb68643e8
Merge pull request #303 from PQClean/frodo-timing-leak
Fix timing leak in FrodoKEM decapsulation
2020-06-22 11:36:20 +02:00
Thom Wiggers
9e4d07dba1
Speed up test collection (#298)
* don't do filesystem operations during collection

* Greatly speed up test collection

* fixup! Greatly speed up test collection

* Silence junit warning

* fixup! Greatly speed up test collection
2020-06-22 10:10:07 +08:00
Douglas Stebila
de14914a1c Mention FrodoKEM timing leak in SECURITY.md 2020-06-21 16:53:26 -04:00
Douglas Stebila
ae1530d192 Fix timing leak in decapsulation.
As identified in: Qian Guo, Thomas Johansson, Alexander Nilsson. A 
key-recovery timing attack on post-quantum primitives using the 
Fujisaki-Okamoto transformation and its application on FrodoKEM. In 
CRYPTO 2020.

Based on 
155c24c3df
2020-06-19 13:15:13 -04:00
Thom Wiggers
f7c7af5155
Merge pull request #297 from PQClean/fix-kyber-meta
Kyber768 and Kyber1024 don't need -maes (see #296)
2020-06-02 09:41:14 +02:00
Thom Wiggers
8db3ba1ee1
Merge pull request #299 from Ko-/newhope-v1.1
Add domain separation to NewHope
2020-05-29 23:18:55 +02:00
Ko-
25b15e5791 Fix whitespace to satisfy test_duplicate_consistency 2020-05-29 18:54:15 +02:00
Ko-
bca4250d1f Update KAT values 2020-05-29 18:50:37 +02:00
Ko-
4883f2ce89 Add domain separation to NewHope
NewHope announced a new version of their specification that adds
explicit domain separation. This is a port of
https://github.com/newhopecrypto/newhope/commit/607a9d3
2020-05-29 16:41:41 +02:00
Thom Wiggers
5a89c92900
Add Keccakx4 to build 2020-05-29 12:22:10 +02:00
Thom Wiggers
adab5eb39a
remove duplicate from Makefiles 2020-05-29 12:14:31 +02:00
Thom Wiggers
1e8618affa
Remove duplicate sha256x8 2020-05-29 12:13:17 +02:00
Thom Wiggers
75037b5f13
Fix makefiles 2020-05-29 12:08:57 +02:00
Thom Wiggers
2f20776d2e
Fix haraka Makefile.Microsoft_nmake 2020-05-29 10:13:20 +02:00
Thom Wiggers
75416c93f0
Kyber768 and Kyber1024 don't need -maes (see #296) 2020-05-29 10:01:44 +02:00
Thom Wiggers
5f2c322945
Add missing obj file to Windows SPHINCS+ AVX2 builds 2020-05-21 18:51:50 +02:00
Thom Wiggers
a8a263de81
Merge pull request #290 from xvzcf/yml-updates
Update required_flags for Dilithium's META.ymls
2020-04-22 09:52:41 +02:00
xvzcf
4a5dc85cb9 Update required_flags for Dilithium's META.ymls. 2020-04-21 10:33:08 -04:00
mergify[bot]
6a0362c7ba
Merge pull request #287 from PQClean/update-mdss
Update MQDSS round numbers
2020-04-15 10:03:25 +00:00
Thom Wiggers
9a2385f308
Update MQDSS round numbers
Based on this change:

00608d7610
2020-04-15 10:23:08 +02:00
Thom Wiggers
3922725c6f
Merge pull request #285 from PQClean/one-more-aes-keyexp
One more aes256_keyexp renaming
2020-04-07 07:31:49 +02:00
Douglas Stebila
9944e6a81d Rename aes256_keyexp based on #279 2020-04-06 15:39:32 -04:00
Thom Wiggers
db0d5800c5
Merge pull request #279 from PQClean/ds-aes-keyexp
Split aes*_keyexp up into ecb and ctr variants
2020-04-03 10:00:50 +02:00
Sebastian
33232a0343
HQC submission (#202)
* Sebastian's HQC merge request

* Clean up changes to common infrastructure

* Fix Bitmask macro

It assumed that ``unsigned long`` was 64 bit

* Remove maxlen from nistseedexpander

It's a complicated thing to handle because the value is larger than size_t supports on 32-bit platforms

* Initialize buffers to help linter

* Add Nistseedexpander test

* Resolve UB in gf2x.c

Some of the shifts could be larger than WORD_SIZE_BITS, ie. larger than
the width of uint64_t. This apparently on Intel gets interpreted as the
shift mod 64, but on ARM something else happened.

* Fix Windows complaints

* rename log, exp which appear to be existing functions on MS

* Solve endianness problems

* remove all spaces before ';'

* Fix duplicate consistency

* Fix duplicate consistency

* Fix complaints by MSVC about narrowing int

* Add nistseedexpander.obj to COMMON_OBJECTS_NOPATH

* astyle format util.[ch]

* add util.h to makefile

* Sort includes in util.h

* Fix more Windows MSVC complaints

Co-authored-by: Sebastian Verschoor <sebastian@zeroknowledge.me>
Co-authored-by: Thom Wiggers <thom@thomwiggers.nl>
2020-04-01 13:57:21 +08:00
Thom Wiggers
cd8a6e684a
Filter out clang-tidy on alternate platforms 2020-03-31 14:05:05 +02:00
Thom Wiggers
b263cd07d7
Speed up circleci tests 2020-03-31 14:03:02 +02:00
mergify[bot]
1b163987bd
Merge pull request #278 from PQClean/fix_ub
Clean up undefined behaviour
2020-03-28 15:47:03 +00:00
mergify[bot]
da46a96aca
Merge branch 'master' into fix_ub 2020-03-27 23:13:26 +00:00
Thom Wiggers
b380047d75
Merge pull request #282 from baentsch/Wshadow
Wshadow at Dilithium/avx2
2020-03-27 12:09:27 +01:00
Michael Baentsch
56d0f2df6e Wshadow at Dilithium/avx2 2020-03-27 07:24:29 +01:00
Douglas Stebila
ce4bd09860 Use the right AES CTX 2020-03-26 21:11:07 -04:00
Douglas Stebila
dc401c40d7 Don't return void 2020-03-26 20:18:02 -04:00
Douglas Stebila
585a001fda Split aes*_keyexp up into ecb and ctr variants 2020-03-26 20:18:02 -04:00
mergify[bot]
bfbf99eb76
Merge pull request #280 from PQClean/ds-falcon-type-punning
Avoid type-punning warning in Falcon when strict-aliasing turned on
2020-03-14 20:23:46 +00:00
mergify[bot]
57265306de
Merge branch 'master' into ds-falcon-type-punning 2020-03-14 09:51:06 +00:00
mergify[bot]
36283693d2
Merge pull request #270 from PQClean/fix_newhope
Fix NewHope CCA verify function
2020-03-14 04:52:05 +00:00