====== CAESAR Round 3 candidates ====== * :!: **Explanations** and **valid entries** for the overview table are given in the [[zoo_guidelines|AE Zoo guidelines]]. * :!: The rows can be sorted by clicking the column headers. * :!: To use references in the subpages, put your bibtex code at the [[refnotes:caesar|References]] page, and copy/modify an existing reference from another page. ^ Name ^ Type ^ Primitive ^ Parallel E/D ^ Online ^ Inverse-free ^ Security proof ^ Nonce-MR ^ Status ^ | [[ACORN]] | SC | LFSR | +/+ | + | + | - | NONE | | | [[AEGIS]] | BC | AES | +/- | + | + | - | NONE | | | [[AES-JAMBU]] | BC | AES | -/- | + | + | - | | | | [[AES-OTR]] | BC | AES | +/+ | + | + | + | NONE | | | [[AEZ]] | BC | AES, AES[4] | +/+ | - | + | + | OFF-MAX | | | [[Ascon]] | Sponge | SPN | -/- | + | + | + | | | | [[CLOC]] | BC | AES,TWINE | -/- | + | + | + | NONE | | | [[COLM]] | BC | AES | +/+ | + | + | + | | | | [[Deoxys]] | BC | AES | +/+ | + | - | + | | | | [[Ketje]] | Sponge | Keccak-f | -/- | + | + | + | NONE | | | [[Keyak]] | Sponge | Keccak-f | +/- | + | + | + | NONE | | | [[MORUS]] | SC | LRX | -/- | + | + | - | NONE | | | [[NORX]] | Sponge | LRX | +/+ | + | + | + | NONE | | | [[OCB]] | BC | AES | +/+ | + | - | + | NONE | | | [[SILC]] | BC | AES, PRESENT, LED | -/+ | + | + | + | NONE | | | [[Tiaoxin]] | BC | AES[1] | +/+ | + | + | - | NONE | | ====== CAESAR Round 2 candidates ====== ^ Name ^ Type ^ Primitive ^ Parallel E/D ^ Online ^ Inverse-free ^ Security proof ^ Nonce-MR ^ Status ^ | [[HS1-SIV]] | SC | ChaCha/Poly1305 | -/- | - | + | + | OFF-MAX | | | [[ICEPOLE]] | Sponge | Keccak-like | +/- | + | + | + | | | | [[Joltik]] | BC | AES | +/+ | + | - | + | | | | [[Minalpher]] | P | SPN | +/+ | + | | + | | | | [[OMD]] | CF | SHA2 | -/- | + | + | + | NONE | | | [[PAEQ]] | P | AESQ | +/+ | + | + | + | | | | [[π-Cipher]] | Sponge | ARX | +/+ | + | + | - | NONE | | | [[POET]] | BC | AES | p/p | + | + | + | | Withdrawn: POET-G | | [[PRIMATEs]] | Sponge | SPN | -/- | + | + | + | | | | [[SCREAM]] | BC | SPN | +/+ | + | + | - | NONE | | | [[SHELL]] | BC | AES, AES[4] | +/+ | + | - | + | | | | [[STRIBOB]] | Sponge | Streebog | -/- | + | + | + | NONE | | | [[TriviA-ck]] | SC | Trivium | +/+ | - | + | + | NONE | | ====== CAESAR Round 1 candidates ====== ^ Name ^ Type ^ Primitive ^ Parallel E/D ^ Online ^ Inverse-free ^ Security proof ^ Nonce-MR ^ Status ^ | [[++AE]] | BC | | +/+ | + | - | - | | | | [[AES-CMCC]] | BC | AES | -/+ | - | + | + | OFF-MAX | | | [[AES-COBRA]] | BC | AES | +/+ | + | + | + | | Withdrawn[(:ref:caesar:NandiCobraForgeryForging Attack on COBRA Mode)] | | [[AES-CPFB]] | BC | AES | +/- | + | + | + | NONE | | | [[Artemia]] | Sponge | SPN | -/- | + | + | + | | | | [[AVALANCHE]] | BC | AES | +/+ | + | + | + | NONE | [(:ref:caesar:keyrecoveryAVALANCHEv1[[http://martinlauridsen.info/pub/avalanchev1.pdf|Cryptanalysis of AVALANCHEv1]])] | | [[Calico]] | SC | ChaCha/SipHash | -/- | + | + | - | NONE | Withdrawn | | [[CBA]] | BC | AES | +/+ | + | + | - | NONE | | | [[CBEAM]] | Sponge | | | | | | | Withdrawn | | [[Enchilada]] | BC | AES, Rijndael-256 | +/+ | | | + | NONE | | | [[FASER]] | SC | FSR | | | | | | Withdrawn | | [[HKC]] | SC | | | | | | | Withdrawn | | [[iFeed[AES]]] | BC | AES | +/- | + | + | + | | | | [[Julius]] | BC | AES | +/+ | - | + | + | | | | [[KIASU]] | BC | AES | +/+ | + | - | + | | | | [[LAC]] | BC | LBlock-s | +/+ | + | - | - | NONE | | | [[Marble]] | BC | AES[4] | | | | | | Withdrawn | | [[McMambo]] | SC | LRX | | | | | | Withdrawn | | [[PAES]] | BC | AES[4/8] | | | | | | Withdrawn | | [[PANDA]] | SC | | | | | | | Withdrawn | | [[POLAWIS]] | | | | | | | | | | [[Prøst]] | P | SPN | +/+ | + | + | - | | | | [[Raviyoyla]] | SC | MAGv2 | -/- | + | + | - | NONE | | | [[Sablier]] | SC | LFSR | +/+ | + | + | - | NONE | | | [[Silver]] | BC | AES-like | +/+ | + | - | + | NONE | | | [[Wheesht]] | SC | ARX | -/- | + | + | - | NONE | | | [[YAES]] | BC | AES[6] | +/+ | + | + | - | NONE | |