Fetching the paper…
Reading the bibliography…
Hardware-assisted trusted execution environments (TEEs) are critical building blocks of many modern applications.
A lattice model of secure information flow
Dorothy E Denning · 1976
Earlier work this paper cites.
The keykos nanokernel architecture
Allen C Bomberger, William S Frantz, Ann C Hardy, Norman Hardy, Charles R Landau, and Jonathan S Shapiro · 1992
Earlier work this paper cites.
The use of name spaces in plan 9
Rob Pike, Dave Presotto, Ken Thompson, Howard Trickey, and Phil Winterbottom · 1992
Earlier work this paper cites.
lmbench: Portable tools for performance analysis
Larry W McVoy, Carl Staelin, et al · 1996
Earlier work this paper cites.
Protecting privacy using the decentralized label model
Andrew C Myers and Barbara Liskov · 2000
Earlier work this paper cites.
Integrating flexible support for security policies into the linux operating system
Peter Loscocco and Stephen Smalley · 2001
Earlier work this paper cites.
Jif: Java information flow
Andrew C Myers, Lantian Zheng, Steve Zdancewic, Stephen Chong, and Nathaniel Nystrom · 2001
Earlier work this paper cites.
Eros: A principle-driven operating system from the ground up
Jonathan S Shapiro and Norman Hardy · 2002
Earlier work this paper cites.
Privtrans: Automatically partitioning programs for privilege separation
David Brumley and Dawn Song · 2004
Earlier work this paper cites.
Tocttou vulnerabilities in unix-style file systems: An anatomical study
Jinpeng Wei and Calton Pu · 2005
Earlier work this paper cites.
Making information flow explicit in histar
Nickolai Zeldovich, Silas Boyd-Wickizer, Eddie Kohler, and David Mazières · 2006
Earlier work this paper cites.
Information flow control for standard os abstractions
Maxwell Krohn, Alexander Yip, Micah Brodsky, Natan Cliffer, M Frans Kaashoek, Eddie Kohler, and Robert Morris · 2007
Earlier work this paper cites.
Wedge: Splitting applications into reduced-privilege compartments
Andrea Bittau, Petr Marchenko, Mark Handley, and Brad Karp · 2008
Earlier work this paper cites.
Laminar: Practical fine-grained decentralized information flow control
Indrajit Roy, Donald E Porter, Michael D Bond, Kathryn S McKinley, and Emmett Witchel · 2009
Earlier work this paper cites.
Dune: Safe user-level access to privileged cpu features
Adam Belay, Andrea Bittau, Ali Mashtizadeh, David Terei, David Mazières, and Christos Kozyrakis · 2012
Earlier work this paper cites.
Abstractions for usable information flow control in aeolus
Winnie Cheng, Dan RK Ports, David Schultz, Victoria Popic, Aaron Blankstein, James Cowling, Dorothy Curtis, Liuba Shrira, and Barbara Liskov · 2012
Earlier work this paper cites.
A taste of capsicum: practical capabilities for unix
Robert NM Watson, Jonathan Anderson, Ben Laurie, and Kris Kennaway · 2012
Earlier work this paper cites.
White paper: An overview of samsung knox™
Enterprise Mobility Solutions · 2013
Earlier work this paper cites.
Trusted execution environment (tee) specifications
GlobalPlatform · 2014
Earlier work this paper cites.
Using arm trustzone to build a trusted language runtime for mobile applications
Nuno Santos, Himanshu Raj, Stefan Saroiu, and Alec Wolman · 2014
Earlier work this paper cites.
Shielding applications from an untrusted cloud with Haven
Andrew Baumann, Marcus Peinado, and Galen Hunt · 2015
Earlier work this paper cites.
Vc3: Trustworthy data analytics in the cloud using sgx
Felix Schuster, Manuel Costa, Cédric Fournet, Christos Gkantsidis, Marcus Peinado, Gloria Mainar-Ruiz, and Mark Russinovich · 2015
Earlier work this paper cites.
Between mutual trust and mutual distrust: practical fine-grained privilege separation in multithreaded applications
Jun Wang, Xi Xiong, and Peng Liu · 2015
Earlier work this paper cites.
Cheri: A hybrid capability-system architecture for scalable software compartmentalization
Robert NM Watson, Ben Laurie, Steven J Murdoch, Robert Norton, Michael Roe, Stacey Son, Munraj Vadera, Jonathan Woodruff, Peter G Neumann, Simon W Moore, et al · 2015
Earlier work this paper cites.
Controlled-channel attacks: Deterministic side channels for untrusted operating systems
Yuanzhong Xu, Weidong Cui, and Marcus Peinado · 2015
Earlier work this paper cites.
Scone: Secure linux containers with intel sgx
Sergei Arnautov, Bohdan Trach, Franz Gregor, Thomas Knauth, Andre Martin, Christian Priebe, Joshua Lind, Divya Muthukumaran, Dan O’keeffe, Mark Stillwell, et al · 2016
Earlier work this paper cites.
Flowfence: Practical data protection for emerging iot application frameworks
Earlence Fernandes, Justin Paupore, Amir Rahmati, Daniel Simionato, Mauro Conti, and Atul Prakash · 2016
Earlier work this paper cites.
Enforcing least privilege memory views for multithreaded applications
Terry Ching-Hsiang Hsu, Kevin Hoffman, Patrick Eugster, and Mathias Payer · 2016
Earlier work this paper cites.
Ryoan: A distributed sandbox for untrusted computation on secret data
Tyler Hunt, Zhiting Zhu, Yuanzhong Xu, Simon Peter, and Emmett Witchel · 2016
Earlier work this paper cites.
Practical DIFC enforcement on android
Adwait Nadkarni, Benjamin Andow, William Enck, and Somesh Jha · 2016
Earlier work this paper cites.
Oblivious multi-party machine learning on trusted processors
Olga Ohrimenko, Felix Schuster, Cédric Fournet, Aastha Mehta, Sebastian Nowozin, Kapil Vaswani, and Manuel Costa · 2016
Earlier work this paper cites.
Asyncshock: Exploiting synchronisation bugs in intel sgx enclaves
Nico Weichbrodt, Anil Kurmus, Peter Pietzuch, and Rüdiger Kapitza · 2016
Cited alongside, same era.
Truspy: Cache side-channel information leakage from the secure world on arm devices
Ning Zhang, Kun Sun, Deborah Shands, Wenjing Lou, and Y Thomas Hou · 2016
Cited alongside, same era.
Talos: Secure and transparent tls termination inside sgx enclaves
Pierre-Louis Aublin, Florian Kelbert, Dan O’keeffe, Divya Muthukumaran, Christian Priebe, Joshua Lind, Robert Krahn, Christof Fetzer, David Eyers, and Peter Pietzuch · 2017
Cited alongside, same era.
Komodo: Using verification to disentangle secure-enclave hardware from software
Andrew Ferraiuolo, Andrew Baumann, Chris Hawblitzel, and Bryan Parno · 2017
Cited alongside, same era.
Hacking in darkness: Return-oriented programming against secure enclaves
Jaehyuk Lee, Jinsoo Jang, Yeongjin Jang, Nohyun Kwak, Yeseul Choi, Changho Choi, Taesoo Kim, Marcus Peinado, and Brent Byunghoon Kang · 2017
Cited alongside, same era.
https://github.com/google/nsjail
Google nsjail · 2019
Later among the works it cites.
https://www.kernel.org/doc/Documentation/prctl/seccomp_filter.txt
Secure computing with filters · 2019
Later among the works it cites.
https://github.com/SELinuxProject/selinux/wiki/Tools
Selinux tools · 2019
Later among the works it cites.
A fork () in the road
Andrew Baumann, Jonathan Appavoo, Orran Krieger, and Timothy Roscoe · 2019
Later among the works it cites.
Sgxpectre: Stealing intel secrets from sgx enclaves via speculative execution
Guoxing Chen, Sanchuan Chen, Yuan Xiao, Yinqian Zhang, Zhiqiang Lin, and Ten H Lai · 2019
Later among the works it cites.
Intel(r) software guard extensions for linux os
Intel Corporation · 2019
Later among the works it cites.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
Glamdring: Automatic application partitioning for intel sgx
Joshua Lind, Christian Priebe, Divya Muthukumaran, Dan O’Keeffe, P Aublin, Florian Kelbert, Tobias Reiher, David Goltzsche, David Eyers, Rüdiger Kapitza, et al · 2017
Cited alongside, same era.
Boomerang: Exploiting the semantic gap in trusted execution environments
Aravind Machiry, Eric Gustafson, Chad Spensky, Christopher Salls, Nick Stephens, Ruoyu Wang, Antonio Bianchi, Yung Ryn Choe, Christopher Kruegel, and Giovanni Vigna · 2017
Cited alongside, same era.
Malware guard extension: Using sgx to conceal cache attacks
Michael Schwarz, Samuel Weiser, Daniel Gruss, Clémentine Maurice, and Stefan Mangard · 2017
Cited alongside, same era.
Sgx-shield: Enabling address space layout randomization for sgx programs
Jaebaek Seo, Byoungyoung Lee, Seong Min Kim, Ming-Wei Shih, Insik Shin, Dongsu Han, and Taesoo Kim · 2017
Cited alongside, same era.
Membership inference attacks against machine learning models
Reza Shokri, Marco Stronati, Congzheng Song, and Vitaly Shmatikov · 2017
Cited alongside, same era.
Graphene-sgx: A practical library os for unmodified applications on sgx
Chia-Che Tsai, Donald E Porter, and Mona Vij · 2017
Cited alongside, same era.
https://source.android.com/security/trusty/
Trusty tee · 2018
Cited alongside, same era.
Open enclave sdk
Microsoft Corporation · 2019
Later among the works it cites.
Linaro : Security vulnerabilities published in 2019
CVE Details · 2019
Later among the works it cites.
Keystone: A framework for architecting tees
Dayeol Lee, David Kohlbrenner, Shweta Shinde, Dawn Song, and Krste Asanovic · 2019
Later among the works it cites.
Enclavedom: Privilege separation for large-tcb applications in trusted execution environments
Marcela S Melara, Michael J Freedman, and Mic Bowman · 2019
Later among the works it cites.
Sgx-lkl: Securing the host os interface for trusted execution
Christian Priebe, Divya Muthukumaran, Joshua Lind, Huanzhou Zhu, Shujie Cui, Vasily A Sartakov, and Peter Pietzuch · 2019
Later among the works it cites.
Zombieload: Cross-privilege-boundary data sampling
Michael Schwarz, Moritz Lipp, Daniel Moghimi, Jo Van Bulck, Julian Stecklina, Thomas Prescher, and Daniel Gruss · 2019
Later among the works it cites.
Practical enclave malware with intel sgx
Michael Schwarz, Samuel Weiser, and Daniel Gruss · 2019
Later among the works it cites.
Snape: The dark art of handling heterogeneous enclaves
Zahra Tarkhani, Anil Madhavapeddy, and Richard Mortier · 2019
Later among the works it cites.
ERIM: Secure, efficient in-process isolation with protection keys (MPK)
Anjo Vahldiek-Oberwagner, Eslam Elnikety, Nuno O Duarte, Michael Sammler, Peter Druschel, and Deepak Garg · 2019
Later among the works it cites.
A tale of two worlds: Assessing the vulnerability of enclave shielding runtimes
Jo Van Bulck, David Oswald, Eduard Marin, Abdulla Aldoseri, Flavio D Garcia, and Frank Piessens · 2019
Later among the works it cites.
Confidential deep learning: Executing proprietary models on untrusted devices
Peter M VanNostrand, Ioannis Kyriazis, Michelle Cheng, Tian Guo, and Robert J Walls · 2019
Later among the works it cites.
Sgxjail: Defeating enclave malware via confinement
Samuel Weiser, Luca Mayr, Michael Schwarz, and Daniel Gruss · 2019
Later among the works it cites.
Apparmor — Wikipedia, the free encyclopedia
Wikipedia contributors · 2019
Later among the works it cites.
https://github.com/ARM-software/libddssec.git
Arm libddssec · 2020
Closest in time.
https://github.com/OP-TEE
Op-tee · 2020
Closest in time.
https://software.intel.com/content/www/us/en/develop/articles/intel-trust-domain-extensions.html , 2020
Intel® trust domain extensions (intel® tdx) · 2020
Closest in time.
About the security content of ios
Apple · 2020
Closest in time.
Architecture reference manual; armv7-a and armv7-r edition
ARM · 2020
Closest in time.
Arm® architecture reference manual armv8, for armv8-a architecture profile documentation
ARM · 2020
Closest in time.
Coin attacks: On insecurity of enclave untrusted interfaces in sgx
Mustakimur Rahman Khandaker, Yueqiang Cheng, Zhi Wang, and Tao Wei · 2020
Closest in time.
The cifar-100 dataset
Alex Krizhevsky · 2020
Closest in time.
Darknetz: Towards model privacy at the edge using trusted execution environments
Fan Mo, Ali Shahin Shamsabadi, Kleomenis Katevas, Soteris Demetriou, Ilias Leontiadis, Andrea Cavallaro, and Hamed Haddadi · 2020
Closest in time.
Nested enclave: supporting fine-grained hierarchical isolation with sgx
Joongun Park, Naegyeong Kang, Taehoon Kim, Youngjin Kwon, and Jaehyuk Huh · 2020
Closest in time.
μ \mu tiles: Efficient intra-process privilege enforcement of memory regions
Zahra Tarkhani and Anil Madhavapeddy · 2020
Closest in time.
Mptee: bringing flexible and efficient memory protection to intel sgx
Wenjia Zhao, Kangjie Lu, Yong Qi, and Saiyu Qi · 2020
Closest in time.