
nadim@infosec.exchange ("Nadim Kobeissi") wrote:
ML-KEM’s reliance on a hefty secure hash function (SHA-3) is a real bummer. I wonder why this couldn’t be avoided/why a primitive without such a dependency wasn’t chosen.
nadim@infosec.exchange ("Nadim Kobeissi") wrote:
ML-KEM’s reliance on a hefty secure hash function (SHA-3) is a real bummer. I wonder why this couldn’t be avoided/why a primitive without such a dependency wasn’t chosen.