caesar-nonce-misuse Implementation of the nonce-misuse attacks for the CAESAR competition candidates AEGIS, Tiaoxin and MORUS See the enclosed caesar-nonce-misuse.pdf for a theoretical description of the attacks.