NIST-PQC Choices Out
Today, NIST put out its preliminary choice of PQC algorithms to standardize. I wrote an introduction to lattice-based KEMs (for non-cryptographers) this last weekend in preparation for the report, where one implements an (aggressively unoptimized) variant of FrodoKEM. FrodoKEM ended up not being standardized, but the “broad picture” of the construction should still be useful to understand Kyber.