KiviPQC-DSA is an IP core implementing the ML-DSA (Module-Lattice-based Digital Signature Algorithm), standardized by NIST FIPS 204. Resistant to both classical and quantum attacks, ML-DSA secures data authenticity and integrity for long-term protection.
Functions include:
- Key pair generation for signing and verification
- Digital signature generation and verification for data integrity
- Non-repudiation to ensure signer authenticity
The KiviPQC-DSA IP core is fully protected against time-based side-channel attacks (SCA). Implemented as a hardware/software co-design, it integrates all ML-DSA operations and is deployment-ready. The core provides an AMBA® interface for system integration and a generic software API for flexible host control.
Features
- Optimized for low logic utilization
- Self-contained engine with a minimal attack surface
- Protection against timing-based side channel attacks
- Seamlessly integrate into target system
- NIST FIPS 204 compliant
- Supports ML-DSA 44/65/87 parameter sets
- Supports ML-DSA.KeyGen, ML-DSA.Sign, ML-DSA.Verify functions
- Supports pre-hash ML-DSA functions HashML-DSA.Sign and HashML-DSA.Verify
- Supports hedged and deterministic signing
- Supports context string
- Hardware offloading and acceleration for ML-DSA operations
- AMBA® AXI4-Lite Interface








