Hi Dr Seongkwang Kim, and hi all,
we first thank you for your interest in HAETAE.
We agree that the length of mu should be longer, which we made a mistake in hasing the message, not using M directly.
It can be fixed using 512-bit mu, which was originally 256 bits copied from 1088-bit shake256 output, with no performance drop.
This will be included in the next HAETAE update.
Thank you again for your interest.
Hyeongmin Choe,
on behalf of team HAETAE.
2024년 2월 29일 목요일 오후 4시 33분 45초 UTC+9에 Seongkwang Kim님이 작성: