A note on high-security general-purpose elliptic curves

Diego F. Aranha and Paulo S. L. M. Barreto and Geovandro C. C. F. Pereira and Jefferson E. Ricardini

Abstract: In this note we describe some general-purpose, high-efficiency elliptic curves targeting at security levels beyond $2^{128}$. As a bonus, we also include legacy-level curves at standard security levels. The choice of curves was made to facilitate state-of-the-art implementation techniques.

Date: received 8 Oct 2013, last revised 4 Nov 2013

Note: Added an Edwards curve over $\F_{2^521 - 1}$.

