Optimized AEAD cipher for short messages (≤15 bytes plaintext, no associated data). Single-block operation with 256-bit key and nonce, producing 256-bit ciphertext.
| Property | Value |
|---|---|
| Category | Authenticated Encryption |
| Sub-category | Authenticated Encryption |
| Security status | 🧪 Experimental |
| Complexity | Intermediate |
| Inventor | Anne Canteaut, Sébastien Duval, Gaëtan Leurent, María Naya-Plasencia, Léo Perrin, Thomas Pornin, André Schrottenloher |
| Year | 2019 |
| Origin | 🇫🇷 France |
| Source | algorithms/aead/saturnin.js |
| Flag | Value |
|---|---|
SupportsDetached |
No |
supportsAAD |
No |
Status: 🧪 Experimental
No vulnerabilities are recorded for this implementation.
3 vectors ship with this algorithm and run in the test suite. Byte values are hexadecimal.
Vector 1 — SATURNIN-Short KAT Count 1 (empty message)
| Field | Value |
|---|---|
key |
000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f |
nonce |
000102030405060708090a0b0c0d0e0f |
aad |
(empty) |
input |
(empty) |
expected |
ef142fc810ce92839726d600fccfd7119050da25a3ec5586c7c43ca668e3c8c0 |
Vector 2 — SATURNIN-Short KAT Count 13 (12-byte message)
| Field | Value |
|---|---|
key |
000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f |
nonce |
000102030405060708090a0b0c0d0e0f |
aad |
(empty) |
input |
000102030405060708090a0b |
expected |
20a7207939100227c9e3cab563ab1fe472a971711e12a5cad360b6757f8d8d14 |
Vector 3 — SATURNIN-Short KAT Count 16 (15-byte message, maximum length)
| Field | Value |
|---|---|
key |
000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f |
nonce |
000102030405060708090a0b0c0d0e0f |
aad |
(empty) |
input |
000102030405060708090a0b0c0d0e |
expected |
f8b7dbf80e519cf80e03a207a4798a5a0144f9392169faebf781bf4da9bdb0e4 |