2024.01.19 21:03:54 (Mastodon 111784639527871277, Twitter 1748451248544653486) from Daniel J. Bernstein:
Recent claims of exponents for supposedly well-studied lattice attacks considering memory-access costs: 2023.11, https://web.archive.org/web/20231125213807/https://finiterealities.net/kyber512/: 0.396! Oops, wait, 0.349! 2023.12, https://web.archive.org/web/20231219201240/https://csrc.nist.gov/csrc/media/Projects/post-quantum-cryptography/documents/faq/Kyber-512-FAQ.pdf: 0.349, or 0.329 in 3D! 2024.01, https://web.archive.org/web/20240119081025/https://eprint.iacr.org/2024/080.pdf: 0.311, or 0.292 in 3D!