Hi all,
For those not subscribed to NIST announcements: The third-round report
is now out at
https://csrc.nist.gov/publications/detail/nistir/8454/final. Although
the download page seems to be down for maintenance, the report is
available at
https://web.archive.org/web/20230616164328/https://nvlpubs.nist.gov/nistpubs/ir/2023/NIST.IR.8454.pdf
Note that there seems to be an error on page 53, which states that
Romulus contains a tweak increasing the number of rounds: "TinyJAMBU and
Romulus had the smallest implementations and strong performance when
optimized for low area, however, with both finalists containing a tweak
that increases the number of rounds, throughput would decrease, area
would remain relatively constant, and energy use would increase." The
round 2 comments of the Romulus team state that "due to the huge
security margin offered by Skinny-128/384, the number of rounds has been
decreased from 56 to 40 (now named Skinny-128/384+)".
Regards,
Arne