| 步骤 | 模乘 | 模加减 |
|
| 1 | T1 = X1Z2 | -- | -- |
| 2 | T2 = X2Z1 | -- | -- |
| 3 | T3 = Z1Z2 | -- | X1Z2 |
| 4 | T4 = X1X2 | T1 = T1 − T2 | X2Z1 |
| 5 | T5 = aT3 | T2 = T1 + T2 | Z1Z2, X1Z2 − X2Z1 |
| 6 | T6 = T0T3 | T2 = T1 + T2 | X1X2, X1Z2 + X2Z1 |
| 7 |
| T4 = T4 − T5 | aZ1Z2 |
| 8 | T2 = T6T2 | -- | 4bZ1Z2, X1X2 − aZ1Z2 |
| 9 |
| -- |
|
| 10 | T1 = GxT1 | -- |
|
| 11 | -- | T4 = T4 − T2 |
|
| 12 | T1 = Z1Z1② | -- |
|