* We currently have Fp12::mul optimized * Solver also uses inversion & squaring - these default to slow generic tower arithmetic in crypto3 * Ensure these operations are the bottleneck in AADP decryption, ofc * Also x86 optimized version of scalar multiplication Fp * Fp12 for compression phase