Transactions on Cryptographic Hardware and Embedded Systems 2026
A Framework for designing High-Order Side-Channel Protected Hardware Implementations of ML-KEM
Eros Camacho-Ruiz
Instituto de Microelectrónica de Sevilla (IMSE-CNM), CSIC / US, Sevilla, Spain
Pablo Navarro-Torrero
Instituto de Microelectrónica de Sevilla (IMSE-CNM), CSIC / US, Sevilla, Spain
Alejandro Cabrera Aldaya
Tampere University, Tampere, Finland
Keywords: PQC, ML-KEM, Hardware, Open-source, Countermeasures
Abstract
ML-KEM (formerly Kyber) has recently been adopted as FIPS 203 in the NIST Post-Quantum Cryptography standardization process. While existing hardware implementations primarily optimize for performance, they often lack protections against side-channel attacks. We introduce HOPE-MLKEM, a framework that includes the first configurable, open, and full-hardware implementation of ML-KEM with integrated high-order protection against timing and power side-channel attacks. Our modular architecture supports all security levels and operations, incorporating optimized building blocks for polynomial arithmetic, modular multiplication, and programmable control logic. At the same time, this methodology enables the seamless integration of masking countermeasures up to high orders. We evaluated HOPE-MLKEM on FPGA and ASIC platforms, achieving competitive results compared to state-ofthe- art unprotected designs while providing resistance against high-order side-channel attacks. Beyond its technical contributions, HOPE-MLKEM is released as an opensource framework to foster community-driven exploration of design choices, leakage evaluation, and hardware optimizations.
Publication
IACR Transactions on Cryptographic Hardware and Embedded Systems, Volume 2026, Issue 2
PaperArtifact
Artifact number
tches/2026/a21
Artifact published
June 02, 2026
Badge
✅ IACR CHES Artifacts Functional
License
This work is licensed under the MIT License.
Note that license information is supplied by the authors and has not been confirmed by the IACR.
BibTeX How to cite
Eros Camacho-Ruiz, Pablo Navarro-Torrero, Alejandro Cabrera Aldaya. (2026). A Framework for designing High-Order Side-Channel Protected Hardware Implementations of ML-KEM. IACR Transactions on Cryptographic Hardware and Embedded Systems, 2026(2), 272–295. https://doi.org/10.46586/tches.v2026.i2.272-295. Artifact at https://artifacts.iacr.org/tches/2026/a21.