Fast Parallelizable Misuse-Resistant Authenticated Encryption : Low Latency (Decryption-Fast) SIV
In this paper, we present two new provable nonce-misuseresistantAEAD modes based on tweakable block ciphers and universalhash functions. These new modes target equipping high-speed applicationswith nonce-misuse-resistant AEAD (MRAE). The first mode, LowLatency Synthetic IV (LLSIV), targets similar performance on single-coreplatforms to SCT-2, while eliminating the bottlenecks that make SCT-2not fu