<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.longa-cfrg-frodokem" target="https://datatracker.ietf.org/doc/html/draft-longa-cfrg-frodokem-01">
   <front>
      <title>FrodoKEM: key encapsulation from learning with errors</title>
      <author initials="P." surname="Longa" fullname="Patrick Longa">
         <organization>Microsoft</organization>
      </author>
      <author initials="J. W." surname="Bos" fullname="Joppe W. Bos">
         <organization>NXP Semiconductors</organization>
      </author>
      <author initials="S." surname="Ehlen" fullname="Stephan Ehlen">
         <organization>Federal Office for Information Security</organization>
      </author>
      <author initials="D." surname="Stebila" fullname="Douglas Stebila">
         <organization>University of Waterloo</organization>
      </author>
      <date month="September" day="16" year="2025" />
      <abstract>
	 <t>   This internet draft specifies FrodoKEM, an IND-CCA2 secure Key
   Encapsulation Mechanism (KEM).

About This Document

   This note is to be removed before publishing as an RFC.

   Status information for this document may be found at
   https://datatracker.ietf.org/doc/draft-longa-cfrg-frodokem/.

   Source for this draft and an issue tracker can be found at
   github.com/dstebila/frodokem-internet-draft.

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-longa-cfrg-frodokem-01" />
   
</reference>
