%% You should probably cite rfc9496 instead of this I-D. @techreport{irtf-cfrg-ristretto255-decaf448-08, number = {draft-irtf-cfrg-ristretto255-decaf448-08}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-irtf-cfrg-ristretto255-decaf448/08/}, author = {Henry de Valence and Jack Grigg and Mike Hamburg and Isis Lovecruft and George Tankersley and Filippo Valsorda}, title = {{The ristretto255 and decaf448 Groups}}, pagetotal = 27, year = 2023, month = sep, day = 5, abstract = {This memo specifies two prime-order groups, ristretto255 and decaf448, suitable for safely implementing higher-level and complex cryptographic protocols. The ristretto255 group can be implemented using Curve25519, allowing existing Curve25519 implementations to be reused and extended to provide a prime-order group. Likewise, the decaf448 group can be implemented using edwards448. This document is a product of the Crypto Forum Research Group (CFRG) in the IRTF.}, }