Fouque, P.-A., P. Kirchner, T. Pornin, and Y. Yu. “BAT: Small and Fast KEM over NTRU Lattices”. IACR Transactions on Cryptographic Hardware and Embedded Systems, vol. 2022, no. 2, Feb. 2022, pp. 240-65, doi:10.46586/tches.v2022.i2.240-265.