According to zooko, one of the authors, in new-ish cpus blake3 beats sha256 even with hardware acceleration: https://twitter.com/zooko/status/1419403567320821760
As a result of that, I asked for rustls to default to AES instead of the previous ChaCha20 default [1]