NTRU Prime

Script to compute various security estimates

See the general warnings regarding lattice-based cryptography. See also the warnings in the script regarding overestimates, potential overestimates, underestimates, and potential underestimates. See also the "NTRU Prime: round 2" document for more detailed warnings.

Latest version of script: estimate-20190329.sage


Version: This is version 2019.03.29 of the "Security" web page.