<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.jhpark-cfrg-ntruplus-security-considerations" target="https://datatracker.ietf.org/doc/html/draft-jhpark-cfrg-ntruplus-security-considerations-00">
   <front>
      <title>NTRU+ Security Considerations</title>
      <author initials="J. H." surname="Park" fullname="Jong Hwan Park">
         <organization>Sangmyung University</organization>
      </author>
      <author initials="J." surname="Kim" fullname="Jonghyun Kim">
         <organization>Korea University</organization>
      </author>
      <author initials="M." surname="Shin" fullname="MinKyu Shin">
         <organization>ITCEN PNS</organization>
      </author>
      <date month="June" day="21" year="2026" />
      <abstract>
	 <t>   This document describes security considerations for the use of NTRU+
   in Internet protocols.  NTRU+ is a lattice-based key encapsulation
   mechanism (KEM) based on the NTRU framework and designed to provide
   IND-CCA2 security.  The document summarizes the scheme structure and
   parameter sets, and discusses implementation and protocol
   considerations including key-generation rejection sampling, input
   validation, pairwise consistency testing, explicit rejection
   behavior, randomness requirements, and side-channel leakage during
   decapsulation.  It is intended to help protocol designers and
   implementers use NTRU+ safely in settings such as authenticated key
   exchange, public key encryption, and KEM-based authentication.

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-jhpark-cfrg-ntruplus-security-considerations-00" />
   
</reference>
