[noise] Basic QP KEM hybrid scheme ideas

Runxi Yu me at runxiyu.org
Tue Mar 17 07:29:57 PDT 2026


Dear all,

I wrote up a basic variant of noise that adds ke and kem tokens to
include PQ KEM contributions in ck. It's not as elegant as I want (CSIDH
is nice but too slow and too new), but it should work with ML-KEM (and
if you somehow fit the huge key into the protocol, potentially Classic
McEliece).

	https://runxiyu.org/comp/nkem1/

I'd appreciate any review; I'm still learning applied pi-calculus and
I'm currently unable to write ProVerif or anything.

Thank you!

Best wishes,
Runxi Yu


More information about the Noise mailing list