Fetching the paper…
Reading the bibliography…
Trusted execution environments (TEEs) are being used in all the devices from embedded sensors to cloud servers and encompass a range of cost, power constraints, and security threat model choices.
Computer security technology planning study
James P Anderson · 1972
Earlier work this paper cites.
Protection: Principles and practice
G. Scott Graham and Peter J. Denning · 1972
Earlier work this paper cites.
A digital signature based on a conventional encryption function
Ralph C Merkle · 1987
Earlier work this paper cites.
Architectural Support for Copy and Tamper Resistant Software
David Lie Chandramohan Thekkath, Mark Mitchell, Patrick Lincoln, Dan Boneh, John Mitchell, and Mark Horowitz · 2000
Earlier work this paper cites.
Internet x.509 public key infrastructure certificate and certificate revocation list (crl) profile, 2002
R. Housley, W. Polk, W. Ford, and D. Solo · 2002
Earlier work this paper cites.
Implementing an Untrusted Operating System on Trusted Hardware
Mark Horowitz David Lie, Chandramohan A. Thekkath · 2003
Earlier work this paper cites.
Terra: A Virtual Machine-based Platform for Trusted Computing
Tal Garfinkel, Ben Pfaff, Jim Chow, Mendel Rosenblum, and Dan Boneh · 2003
Earlier work this paper cites.
Ostia: A Delegating Architecture for Secure System Call Interposition
Tal Garfinkel, Ben Pfaff, and Mendel Rosenblum · 2003
Earlier work this paper cites.
Flexible os support and applications for trusted computing
Tal Garfinkel, Mendel Rosenblum, and Dan Boneh · 2003
Earlier work this paper cites.
Direct anonymous attestation
Ernie Brickell, Jan Camenisch, and Liqun Chen · 2004
Earlier work this paper cites.
Architecture for Protecting Critical Secrets in Microprocessors
Ruby B. Lee, Peter C. S. Kwan, John P. McGregor, Jeffrey Dwoskin, and Zhenghong Wang · 2005
Earlier work this paper cites.
Design and Implementation of the AEGIS Single-Chip Secure Processor Using Physical Random Functions
G. Edward Suh, Charles W. O’Donnell, Ishan Sachdev, and Srinivas Devadas · 2005
Earlier work this paper cites.
Tamper-Resistant Execution in an Untrusted Operating System Using A Virtual Machine Monitor, 2007
Haibo Chen, Fengzhe Zhang, Cheng Chen, Ziye Yang, Rong Chen, Binyu Zang, and Wenbo Mao · 2007
Earlier work this paper cites.
Using address independent seed encryption and bonsai merkle trees to make secure processors os- and performance-friendly
B. Rogers, S. Chhabra, M. Prvulovic, and Y. Solihin · 2007
Earlier work this paper cites.
Using Address Independent Seed Encryption and Bonsai Merkle Trees to Make Secure Processors OS- and Performance-Friendly
Brian Rogers, Siddhartha Chhabra, Milos Prvulovic, and Yan Solihin · 2007
Earlier work this paper cites.
Operating system controlled processor-memory bus encryption
Xi Chen, Robert P Dick, and Alok Choudhary · 2008
Earlier work this paper cites.
Overshadow: A Virtualization-Based Approach to Retrofitting Protection in Commodity Operating Systems
Xiaoxin Chen, Tal Garfinkel, E. Christopher Lewis, Pratap Subrahmanyam, Carl A. Waldspurger, Dan Boneh, Jeffrey Dwoskin, and Dan R.K. Ports · 2008
Earlier work this paper cites.
Flicker: An Execution Infrastructure for TCB Minimization
Jonathan M. McCune, Bryan J. Parno, Adrian Perrig, Michael K. Reiter, and Hiroshi Isozaki · 2008
Earlier work this paper cites.
Towards Application Security on Untrusted Operating Systems
Dan R. K. Ports and Tal Garfinkel · 2008
Earlier work this paper cites.
Using Hypervisor to Provide Data Secrecy for User Applications on a Per-page Basis
Jisoo Yang and Kang G. Shin · 2008
Earlier work this paper cites.
ImageNet: A Large-Scale Hierarchical Image Database
J. Deng, W. Dong, R. Socher, L.-J. Li, K. Li, and L. Fei-Fei · 2009
Earlier work this paper cites.
sel4: Formal verification of an os kernel
Gerwin Klein, Kevin Elphinstone, Gernot Heiser, June Andronick, David Cock, Philip Derrin, Dhammika Elkaduwe, Kai Engelhardt, Rafal Kolanski, Michael Norrish, Thomas Sewell, Harvey Tuch, and Simon Winwood · 2009
Earlier work this paper cites.
Hypersentry: Enabling stealthy in-context measurement of hypervisor integrity
Ahmed M. Azab, Peng Ning, Zhi Wang, Xuxian Jiang, Xiaolan Zhang, and Nathan C. Skalsky · 2010
Earlier work this paper cites.
Scalable architectural support for trusted software
D. Champagne and R. B. Lee · 2010
Earlier work this paper cites.
NoHype: Virtualized Cloud Infrastructure without the Virtualization
Eric Keller, Jakub Szefer, Jennifer Rexford, and Ruby B. Lee · 2010
Earlier work this paper cites.
TrustVisor: Efficient TCB Reduction and Attestation
Jonathan M. McCune, Yanlin Li, Ning Qu, Zongwei Zhou, Anupam Datta, Virgil Gligor, and Adrian Perrig · 2010
Earlier work this paper cites.
Bootstrapping trust in commodity computers
Bryan Parno, Jonathan M. McCune, and Adrian Perrig · 2010
Earlier work this paper cites.
Safe to the last instruction: Automated verification of a type-safe operating system
Jean Yang and Chris Hawblitzel · 2010
Earlier work this paper cites.
SecureME: A Hardware-software Approach to Full System Security
Siddhartha Chhabra, Brian Rogers, Yan Solihin, and Milos Prvulovic · 2011
Earlier work this paper cites.
Breaking up is hard to do: Security and functionality in a commodity hypervisor
Patrick Colp, Mihir Nanavati, Jun Zhu, William Aiello, George Coker, Tim Deegan, Peter Loscocco, and Andrew Warfield · 2011
Earlier work this paper cites.
Rethinking the Library OS from the Top Down
Donald E. Porter, Silas Boyd-Wickizer, Jon Howell, Reuben Olinsky, and Galen C. Hunt · 2011
Earlier work this paper cites.
CloudVisor: Retrofitting Protection of Virtual Machines in Multi-Tenant Cloud with Nested Virtualization
Fengzhe Zhang, Jin Chen, Haibo Chen, and Binyu Zang · 2011
Earlier work this paper cites.
SecureBlue++: CPU Support for Secure Execution
Rick Boivie · 2012
Earlier work this paper cites.
Architectural Support for Hypervisor-secure Virtualization
Jakub Szefer and Ruby B. Lee · 2012
Earlier work this paper cites.
Innovative Technology for CPU Based Attestation and Sealing
Ittai Anati, Shay Gueron, Simon P Johnson, and Vincent R Scarlata · 2013
Earlier work this paper cites.
ARM Security Technology - Building a Secure System using TrustZone Technology. ARM Technical White Paper
ARM · 2013
Earlier work this paper cites.
Iago attacks: Why the System Call API is a Bad Untrusted RPC Interface
Stephen Checkoway and Hovav Shacham · 2013
Earlier work this paper cites.
InkTag: Secure Applications on an Untrusted Operating System
Owen S. Hofmann, Sangman Kim, Alan M. Dunn, Michael Z. Lee, and Emmett Witchel · 2013
Earlier work this paper cites.
Innovative Instructions and Software Model for Isolated Execution
Frank McKeen, Ilya Alexandrovich, Alex Berenzon, Carlos V. Rozas, Hisham Shafi, Vedvyas Shanbhogue, and Uday R. Savagaonkar · 2013
Earlier work this paper cites.
Welcome to the entropics: Boot-time entropy in embedded devices
Keaton Mowery, Michael Wei, David Kohlbrenner, Hovav Shacham, and Steven Swanson · 2013
Cited alongside, same era.
Sancus: Low-cost trustworthy extensible networked devices with a zero-software trusted computing base
Job Noorman, Pieter Agten, Wilfried Daniels, Raoul Strackx, Anthony Van Herrewege, Christophe Huygens, Bart Preneel, Ingrid Verbauwhede, and Frank Piessens · 2013
Cited alongside, same era.
Oasis: On achieving a sanctuary for integrity and secrecy on untrusted platforms
Emmanuel Owusu, Jorge Guajardo, Jonathan McCune, Jim Newsome, Adrian Perrig, and Amit Vasudevan · 2013
Cited alongside, same era.
Design, Implementation and Verification of an eXtensible and Modular Hypervisor Framework
Amit Vasudevan, Sagar Chaki, Limin Jia, Jonathan McCune, James Newsome, and Anupam Datta · 2013
Cited alongside, same era.
Hypervision across worlds: Real-time kernel protection from the arm trustzone secure world
Ahmed M. Azab, Peng Ning, Jitesh Shah, Quan Chen, Rohan Bhutkar, Guruprasad Ganesh, Jia Ma, and Wenbo Shen · 2014
Cited alongside, same era.
The seven properties of highly secure devices
Galen Hunt, George Letey, and Ed Nightingale · 2017
Later among the works it cites.
Protecting VM Register State with SEV-ES
David Kaplan · 2017
Later among the works it cites.
Teechain: Scalable Blockchain Payments using Trusted Execution Environments
Joshua Lind, Ittay Eyal, Florian Kelbert, Oded Naor, Peter R. Pietzuch, and Emin Gün Sirer · 2017
Later among the works it cites.
Proof of luck: an efficient blockchain consensus protocol
Mitar Milutinovic, Warren He, Howard Wu, and Maxinder Kanwal · 2017
Later among the works it cites.
Eleos: Exitless os services for sgx enclaves
Meni Orenbach, Pavel Lifshits, Marina Minkin, and Mark Silberstein · 2017
Later among the works it cites.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
Shielding Applications from an Untrusted Cloud with Haven
Andrew Baumann, Marcus Peinado, and Galen Hunt · 2014
Cited alongside, same era.
Virtual ghost: Protecting applications from hostile operating systems
John Criswell, Nathan Dautenhahn, and Vikram Adve · 2014
Cited alongside, same era.
Iso-x: A flexible architecture for hardware-managed isolated execution
D. Evtyushkin, J. Elwell, M. Ozsoy, D. Ponomarev, N. A. Ghazaleh, and R. Riley · 2014
Cited alongside, same era.
Ironclad apps: End-to-end security via automated full-system verification
Chris Hawblitzel, Jon Howell, Jacob R. Lorch, Arjun Narayan, Bryan Parno, Danfeng Zhang, and Brian Zill · 2014
Cited alongside, same era.
Trustlite: A security architecture for tiny embedded devices
Patrick Koeberl, Steffen Schulz, Ahmad-Reza Sadeghi, and Vijay Varadharajan · 2014
Cited alongside, same era.
Droidvault: A trusted data vault for android devices
X. Li, H. Hu, G. Bai, Y. Jia, Z. Liang, and P. Saxena · 2014
Cited alongside, same era.
The berkeley out-of-order machine (boom): An industry-competitive, synthesizable, parameterized risc-v processor
Christopher Celio, David A. Patterson, and Krste Asanović · 2015
Cited alongside, same era.
Shweta Shinde, Dat Le Tien, Shruti Tople, and Prateek Saxena · 2017
Later among the works it cites.
Libseal: Revealing service integrity violations using trusted execution
Pierre-Louis Aublin, Florian Kelbert, Dan O’Keeffe, Divya Muthukumaran, Christian Priebe, Joshua Lind, Robert Krahn, Christof Fetzer, David Eyers, and Peter Pietzuch · 2018
Later among the works it cites.
MI6: secure enclaves in a speculative out-of-order processor
Thomas Bourgeat, Ilia A. Lebedev, Andrew Wright, Sizhuo Zhang, Arvind, and Srinivas Devadas · 2018
Later among the works it cites.
Foreshadow: Extracting the keys to the intel SGX kingdom with transient out-of-order execution
Jo Van Bulck, Marina Minkin, Ofir Weisse, Daniel Genkin, Baris Kasikci, Frank Piessens, Mark Silberstein, Thomas F. Wenisch, Yuval Yarom, and Raoul Strackx · 2018
Later among the works it cites.
Ekiden: A Platform for Confidentiality-Preserving, Trustworthy, and Performant Smart Contract Execution
R. Cheng, F. Zhang, J. Kos, W. He, N. Hynes, N. Johnson, A. Juels, A. Miller, and D. Song · 2018
Later among the works it cites.
A survey of microarchitectural timing attacks and countermeasures on contemporary hardware
Qian Ge, Yuval Yarom, David Cock, and Gernot Heiser · 2018
Later among the works it cites.
Endbox: Scalable middlebox functions using client-side trusted execution
David Goltzsche, Signe Rüsch, Manuel Nieke, Sébastien Vaucher, Nico Weichbrodt, Valerio Schiavoni, Pierre-Louis Aublin, Paolo Costa, Christof Fetzer, Pascal Felber, Peter R. Pietzuch, and Rüdiger Kapitza · 2018
Later among the works it cites.
Firesim: Fpga-accelerated cycle-exact scale-out system simulation in the public cloud
Sagar Karandikar, Howard Mao, Donggyu Kim, David Biancolin, Alon Amid, Dayeol Lee, Nathan Pemberton, Emmanuel Amaro, Colin Schmidt, Aditya Chopra, Qijing Huang, Kyle Kovacs, Borivoje Nikolic, Randy Katz, Jonathan Bachrach, and Krste Asanović · 2018
Later among the works it cites.
Revolutionizing the computing landscape and beyond
Pierre Selwan Ken Irving · 2018
Later among the works it cites.
Dawg: A defense against cache timing attacks in speculative execution processors
Vladimir Kiriansky, Ilia Lebedev, Saman Amarasinghe, Srinivas Devadas, and Joel Emer · 2018
Later among the works it cites.
Spectre attacks: Exploiting speculative execution
Paul Kocher, Daniel Genkin, Daniel Gruss, Werner Haas, Mike Hamburg, Moritz Lipp, Stefan Mangard, Thomas Prescher, Michael Schwarz, and Yuval Yarom · 2018
Later among the works it cites.
Secure Boot and Remote Attestation in the Sanctum Processor
Ilia Lebedev, Kyle Hogan, and Srinivas Devadas · 2018
Later among the works it cites.
Varys: Protecting SGX enclaves from practical side-channel attacks
Oleksii Oleksenko, Bohdan Trach, Robert Krahn, Mark Silberstein, and Christof Fetzer · 2018
Later among the works it cites.
SiFive’s Trusted Execution Reference Platform
Nate Graff Palmer Dabbelt · 2018
Later among the works it cites.
Enclavedb - a secure database using sgx
Christian Priebe, Kapil Vaswani, and Manuel Costa · 2018
Later among the works it cites.
BesFS: Mechanized Proof of an Iago-Safe Filesystem for Enclaves
Shweta Shinde, Shengi Wang, Pinghai Yuan, Aquinas Hobor, Abhik Roychoudhury, and Prateek Saxena · 2018
Later among the works it cites.
Nickel: A framework for design and verification of information flow control systems
Helgi Sigurbjarnarson, Luke Nelson, Bruno Castro-Karney, James Bornholt, Emina Torlak, and Xi Wang · 2018
Later among the works it cites.
Privado: Practical and Secure DNN Inference
Shruti Tople, Karan Grover, Shweta Shinde, Ranjita Bhagwan, and Ramachandran Ramjee · 2018
Later among the works it cites.
Invisispec: Making speculative execution invisible in the cache hierarchy
M. Yan, J. Choi, D. Skarlatos, A. Morrison, C. Fletcher, and J. Torrellas · 2018
Later among the works it cites.
Sanctuary: Arming trustzone with user-space enclaves
Ferdinand Brasser, David Gens, Patrick Jauernig, Ahmad-Reza Sadeghi, and Emmanuel Stapf · 2019
Closest in time.
Cheriabi: Enforcing valid pointer provenance and minimizing pointer privilege in the posix c run-time environment
Brooks Davis, Robert N. M. Watson, Alexander Richardson, Peter G. Neumann, Simon W. Moore, John Baldwin, David Chisnall, James Clarke, Nathaniel Wesley Filardo, Khilan Gudka, Alexandre Joannou, Ben Laurie, A. Theodore Markettos, J. Edward Maste, Alfredo Mazzinghi, Edward Tomasz Napierala, Robert M. Norton, Michael Roe, Peter Sewell, Stacey Son, and Jonathan Woodruff · 2019
Closest in time.
A verified, efficient embedding of a verifiable assembly language
Aymeric Fromherz, Nick Giannarakis, Chris Hawblitzel, Bryan Parno, Aseem Rastogi, and Nikhil Swamy · 2019
Closest in time.
Practical Verifiable In-network Filtering for DDoS defense
Deli Gong, Muoi Tran, Shweta Shinde, Hao Jin, Vyas Sekar, Prateek Saxena, and Min Suk Kang · 2019
Closest in time.
Replicating and Mitigating Spectre Attacks on a Open Source RISC-V Microarchitecture
Abraham Gonzalez, Ben Korpan, Jerry Zhao, Ed Younis, and Krste Asanović · 2019
Closest in time.
Sanctorum: A lightweight security monitor for secure enclaves
Ilia A. Lebedev, Kyle Hogan, Jules Drean, David Kohlbrenner, Dayeol Lee, Krste Asanovic, Dawn Song, and Srinivas Devadas · 2019
Closest in time.
Fallout: Reading kernel writes from user space
Marina Minkin, Daniel Moghimi, Moritz Lipp, Michael Schwarz, Jo Van Bulck, Daniel Genkin, Daniel Gruss, Berk Sunar, Frank Piessens, and Yuval Yarom · 2019
Closest in time.
Advancing confidential computing with asylo and the confidential computing challenge
Jason Garms Nelly Porter · 2019
Closest in time.
Serval: Scaling Symbolic Evaluation for Automated Verification of Systems Code
Luke Nelson, James Bornholt, Ronghui Gu, Andrew Baumann, Emina Torlak, and Xi Wang · 2019
Closest in time.
Cosmix: A compiler-based system for secure memory instrumentation and execution in enclaves
Meni Orenbach, Yan Michalevsky, Christof Fetzer, and Mark Silberstein · 2019
Closest in time.
Evercrypt: A fast, verified, cross-platform cryptographic provider
Jonathan Protzenko, Bryan Parno, Aymeric Fromherz, Chris Hawblitzel, Marina Polubelova, Karthikeyan Bhargavan, Benjamin Beurdouche, Joonwon Choi, Antoine Delignat-Lavaud, Cedric Fournet, Tahina Ramananandro, Aseem Rastogi, Nikhil Swamy, Christoph Wintersteiger, and Santiago Zanella-Beguelin · 2019
Closest in time.
TIMBER-V: Tag-Isolated Memory Bringing Fine-grained Enclaves to RISC-V
Samuel Weiser and Mario Werner and Ferdinand Brasser and Maja Malenko and Stefan Mangard and Ahmad-Reza Sadeghi · 2019
Closest in time.
ZombieLoad: Cross-privilege-boundary data sampling
Michael Schwarz, Moritz Lipp, Daniel Moghimi, Jo Van Bulck, Julian Stecklina, Thomas Prescher, and Daniel Gruss · 2019
Closest in time.
RIDL: Rogue in-flight data load
Stephan van Schaik, Alyssa Milburn, Sebastian Österlund, Pietro Frigo, Giorgi Maisuradze, Kaveh Razavi, Herbert Bos, and Cristiano Giuffrida · 2019
Closest in time.