Speeding up SSL: ECC 279% faster than RSA
citeseerx.ist.psu.edu
citeseerx.ist.psu.edu
The problem with ECC is (has been, rather) that it's covered by patents, and OpenSSL didn't have ECC APIs until very recently. I believe the implementation in the latest versions of OpenSSL are based on the work of the same authors. Unfortunately, with so much deployed code using RSA-based handshakes, it seems tough for ECC to gain traction all that soon.
Also, the lawsuit that certicom made against Sony for ECC infringement was thrown out.
Here is a GPL implementation that claims to be patent free: