Keccak sponge with arbitrary-length output.

FIPS 202 extendable-output function built on the Keccak sponge construction. Absorbs arbitrary-length input, pads, and squeezes arbitrary-length output. Used extensively in PQC for key derivation, sampling, and mask generation.

What the core provides.

Why it matters.

Compliance and test status.

Standards: NIST FIPS 202
Verification: Verified vs hashlib at both levels + SHAKE256("") KAT.
Note: "Verified" means RTL byte-exact against official test vectors. It does not imply FIPS 140-3 certification or foundry sign-off.

Available as verified soft IP.

Available   Verified soft IP, ready for integration and licensing.

RTL

Synthesizable SystemVerilog RTL

Foundry-portable design targeting any process node. Technology-independent by default.

Verification

Self-Checking Testbench(es)

Automated pass/fail testbenches that verify RTL output byte-exact against golden reference vectors.

Golden Model

Python Golden Reference Model

Independent software oracle for comparison and integration testing.

Regression

cocotb Regression

Full cocotb-based test infrastructure for rapid integration into customer verification flows.

Synthesis

Synthesis Scripts

Ready-to-run scripts for technology-independent synthesis with constraint templates.

Documentation

Integration / User Guide

Complete interface specification, timing diagrams, and design-in guidance for SoC assembly.

Firm/hard IP (hardened netlist for a target node) available on foundry enablement.

Companion cores.

Request a product brief.

Detailed specifications, block diagrams, and resource estimates for the SHAKE-128/256 XOF core. NDA-protected evaluation available.