Debunking NIST’s calculation of the Kyber-512 security level

In this blog post, the author discusses the miscalculations made by NIST in their standardization of the Kyber-512 cryptosystem. The author highlights how NIST multiplied costs that should have been added, resulting in a severe and indefensible miscalculation of the security level. The author questions the review process followed by NIST and raises concerns about the involvement of the NSA in the standardization project. The post provides insights into the secret workings of NISTPQC and suggests that something is fundamentally broken in the procedures followed by NIST. The author also explains the importance of tracking units and semantics to catch errors in calculations.

https://blog.cr.yp.to/20231003-countcorrectly.html

To top