Photo by Delaney Van on Unsplash

Why Did NIST Pick Dilithium and FALCON?

When both of them are lattice-based methods and Dilithium is so much faster

Prof Bill Buchanan OBE FRSE
8 min readJun 1, 2023


And, so, NIST selected Dilithium for quantum robust digital signatures. But, they are also taking forward FALCON and SPHINCS+. While SPHINCS+ is a hash-based signature method, FALCON is a lattice method such as Dilithium. Why did NIST pick two lattice methods?



Prof Bill Buchanan OBE FRSE

Professor of Cryptography. Serial innovator. Believer in fairness, justice & freedom. Based in Edinburgh. Old World Breaker. New World Creator. Building trust.