Paper 2026/312

RISQrypt: Fast, Secure and Agile Hardware-Software Co-Design for Post-Quantum Cryptography

Tolun Tosun, Sabanci University
Atıl Utku Ay, Sabanci University
Quinten Norga, COSIC, KU Leuven
Suparna Kundu, COSIC, KU Leuven
Melik Yazıcı, Sabanci University
Erkay Savaş, Sabanci University
Ingrid Verbauwhede, COSIC, KU Leuven
Abstract

In this paper, we present RISQrypt, the first unified architecture in the literature that implements Kyber (ML-KEM) and Dilithium (ML-DSA), standardized lattice-based Post-Quantum Cryptography (PQC) algorithms, with masking. RISQrypt is a hardware–software co-design framework that integrates dedicated cryptographic accelerators to speed up polynomial arithmetic, hashing, and mask-conversion operations, the latter being one of the primary bottlenecks in masked implementations of lattice-based PQC. Our design achieves low latency while providing both theoretical and practical side-channel security, as validated through experimental evaluation. Specifically, the masked decapsulation of Kyber768 requires 109K clock cycles, while masked signing of Dilithium3 requires 1230K clock cycles on average. These results demonstrate 11.3x time-performance improvement over existing masked implementations. Our time performance results for unprotected functions also outperform the existing work; achieving speed-ups of 10.64x and 8.94x for Kyber's encapsulation and decapsulation algorithms, respectively, and 1.14x and 2.23x or Dilithium’s signature generation and verification algorithms, respectively, when compared to existing designs with similar resource usage. In addition, prior designs are more limited in scope, generally supporting only a single scheme and lacking either the side-channel protection or the unified, crypto-agile framework that enables support for both Kyber and Dilithium as in our architecture. Leveraging the HW/SW co-design approach, our proposed architecture can be readily extended to support other PQC standards such as Falcon and SPHINCS+, as well as algorithms sharing similar computational building blocks, through firmware reprogramming.

Note: first revision

Metadata
Available format(s)
PDF
Category
Implementation
Publication info
Preprint.
Keywords
MaskingKyberDilithiumSide-Channel AnalysisHardware AccelerationLattice-Based CryptographyRISC-V
Contact author(s)
toluntosun @ sabanciuniv edu
utku ay @ sabanciuniv edu
Quinten Norga @ esat kuleuven be
Suparna Kundu @ esat kuleuven be
melik yazici @ sabanciuniv edu
erkays @ sabanciuniv edu
Ingrid Verbauwhede @ esat kuleuven be
History
2026-05-06: revised
2026-02-18: received
See all versions
Short URL
https://ia.cr/2026/312
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2026/312,
      author = {Tolun Tosun and Atıl Utku Ay and Quinten Norga and Suparna Kundu and Melik Yazıcı and Erkay Savaş and Ingrid Verbauwhede},
      title = {{RISQrypt}: Fast, Secure and Agile Hardware-Software Co-Design for Post-Quantum Cryptography},
      howpublished = {Cryptology {ePrint} Archive, Paper 2026/312},
      year = {2026},
      url = {https://eprint.iacr.org/2026/312}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.