http://2010.eccworkshop.org/slides/Koblitz.pdf http://nicj.net/files/performance_comparison_of_elliptic_curve_and_rsa_digital_signatures.pdf Java Card - http://airccse.org/journal/IJAIT/papers/2212ijait04.pdf http://grouper.ieee.org/groups/1363/P1363a/contributions/kcdsa1363.pdf https://eprint.iacr.org/2013/346 -> Bleich-CHES-2013.pdf Bleich-CHES-2013.pdf is ref 29 from https://eprint.iacr.org/2016/142.pdf discussed in Appendix A. original version: https://eprint.iacr.org/eprint-bin/getfile.pl?entry=2016/142&version=20160216:211135&file=142.pdf -> Hash+Bleich.pdf https://www.ipa.go.jp/security/enc/CRYPTREC/fy15/doc/1002_reportDSA.pdf -> Bleich-1002_reportDSA.pdf Related-key Cryptanalysis of the Full AES-192 and AES-256 Alex Biryukov and Dmitry Khovratovich https://eprint.iacr.org/2009/317 -> AES-2009.pdf