Guo, Q., C. Hlauschek, T. Johansson, N. Lahr, A. Nilsson, and R. L. Schröder. “Don’t Reject This: Key-Recovery Timing Attacks Due to Rejection-Sampling in HQC and BIKE”. IACR Transactions on Cryptographic Hardware and Embedded Systems, vol. 2022, no. 3, June 2022, pp. 223-6, doi:10.46586/tches.v2022.i3.223-263.