Matches in SemOpenAlex for { <https://semopenalex.org/work/W3128202471> ?p ?o ?g. }
- W3128202471 endingPage "492" @default.
- W3128202471 startingPage "479" @default.
- W3128202471 abstract "The code base of system software is growing fast, which results in a large number of vulnerabilities: for example, 296 CVEs have been found in Xen hypervisor and 2195 CVEs in Linux kernel. To reduce the reliance on the trust of system software, many researchers try to provide trusted execution environments (TEEs), which can be categorized into two types: non-privileged TEEs and privileged TEEs. Non-privileged TEEs (e.g., Intel SGX) are extensible, but cannot protect security services like virtual machine introspection (VMI) due to the lack of system-level semantics. On the contrary, privileged TEEs (e.g., the secure world of ARM TrustZone) have system-level semantics, but any additional service implemented in the privileged TEE directly increases the TCB of the entire system. In this article, we propose a new design of TEE to support system-level security services and achieve better extensibility with a small TCB. Each TEE instance of the proposed design is named a <small>Colony</small>. Specifically, we introduce a <i>secure monitor</i> for isolation and capability management. Each <small>Colony</small> is assigned capabilities to access only necessary system-level semantics. We use the new TEE to build four security services, including secure device accessing, VMI tools, a system call tracer, and a much more complex service to virtualize ARM TrustZone with multiple <small>Colonies</small>. We have implemented the system on ARMv7 and ARMv8 platforms, in Xen hypervisor and Linux kernel, and perform a detailed evaluation to show its efficiency.<xref rid=fn1 ref-type=fn><sup>1</sup></xref><fn id=fn1><label>1.</label> This paper is an extended version of the conference paper published in USENIX Security’17: vTZ: Virtualizing ARM TrustZone <xref ref-type=bibr rid=ref29>[29]</xref> . A brief summary of differences is in Section<xref ref-type=sec rid=sec8>8</xref> . </fn>" @default.
- W3128202471 created "2021-02-15" @default.
- W3128202471 creator A5022638303 @default.
- W3128202471 creator A5026023746 @default.
- W3128202471 creator A5031955160 @default.
- W3128202471 creator A5035727373 @default.
- W3128202471 creator A5049487451 @default.
- W3128202471 creator A5055261896 @default.
- W3128202471 creator A5060773798 @default.
- W3128202471 date "2022-02-01" @default.
- W3128202471 modified "2023-10-17" @default.
- W3128202471 title "Colony: A Privileged Trusted Execution Environment With Extensibility" @default.
- W3128202471 cites W1493190345 @default.
- W3128202471 cites W1978703818 @default.
- W3128202471 cites W2000375627 @default.
- W3128202471 cites W2020936921 @default.
- W3128202471 cites W2036853599 @default.
- W3128202471 cites W2043501224 @default.
- W3128202471 cites W2046036463 @default.
- W3128202471 cites W2053343312 @default.
- W3128202471 cites W2057743816 @default.
- W3128202471 cites W2061643296 @default.
- W3128202471 cites W2097723548 @default.
- W3128202471 cites W2136566423 @default.
- W3128202471 cites W2150709728 @default.
- W3128202471 cites W2168601499 @default.
- W3128202471 cites W2168872572 @default.
- W3128202471 cites W2316567509 @default.
- W3128202471 cites W2579632738 @default.
- W3128202471 cites W2914223029 @default.
- W3128202471 cites W2944308757 @default.
- W3128202471 cites W2979237716 @default.
- W3128202471 cites W3016246341 @default.
- W3128202471 cites W3195032555 @default.
- W3128202471 cites W4252794066 @default.
- W3128202471 cites W4255015421 @default.
- W3128202471 cites W4255163382 @default.
- W3128202471 doi "https://doi.org/10.1109/tc.2021.3055293" @default.
- W3128202471 hasPublicationYear "2022" @default.
- W3128202471 type Work @default.
- W3128202471 sameAs 3128202471 @default.
- W3128202471 citedByCount "2" @default.
- W3128202471 countsByYear W31282024712023 @default.
- W3128202471 crossrefType "journal-article" @default.
- W3128202471 hasAuthorship W3128202471A5022638303 @default.
- W3128202471 hasAuthorship W3128202471A5026023746 @default.
- W3128202471 hasAuthorship W3128202471A5031955160 @default.
- W3128202471 hasAuthorship W3128202471A5035727373 @default.
- W3128202471 hasAuthorship W3128202471A5049487451 @default.
- W3128202471 hasAuthorship W3128202471A5055261896 @default.
- W3128202471 hasAuthorship W3128202471A5060773798 @default.
- W3128202471 hasConcept C111919701 @default.
- W3128202471 hasConcept C112904061 @default.
- W3128202471 hasConcept C114614502 @default.
- W3128202471 hasConcept C136264566 @default.
- W3128202471 hasConcept C147346212 @default.
- W3128202471 hasConcept C149635348 @default.
- W3128202471 hasConcept C162324750 @default.
- W3128202471 hasConcept C184337299 @default.
- W3128202471 hasConcept C184842701 @default.
- W3128202471 hasConcept C199360897 @default.
- W3128202471 hasConcept C2775941552 @default.
- W3128202471 hasConcept C2777904410 @default.
- W3128202471 hasConcept C2778579508 @default.
- W3128202471 hasConcept C2780378061 @default.
- W3128202471 hasConcept C32833848 @default.
- W3128202471 hasConcept C33923547 @default.
- W3128202471 hasConcept C38652104 @default.
- W3128202471 hasConcept C41008148 @default.
- W3128202471 hasConcept C513985346 @default.
- W3128202471 hasConcept C553261973 @default.
- W3128202471 hasConcept C74193536 @default.
- W3128202471 hasConcept C79974875 @default.
- W3128202471 hasConcept C86803240 @default.
- W3128202471 hasConcept C89423630 @default.
- W3128202471 hasConceptScore W3128202471C111919701 @default.
- W3128202471 hasConceptScore W3128202471C112904061 @default.
- W3128202471 hasConceptScore W3128202471C114614502 @default.
- W3128202471 hasConceptScore W3128202471C136264566 @default.
- W3128202471 hasConceptScore W3128202471C147346212 @default.
- W3128202471 hasConceptScore W3128202471C149635348 @default.
- W3128202471 hasConceptScore W3128202471C162324750 @default.
- W3128202471 hasConceptScore W3128202471C184337299 @default.
- W3128202471 hasConceptScore W3128202471C184842701 @default.
- W3128202471 hasConceptScore W3128202471C199360897 @default.
- W3128202471 hasConceptScore W3128202471C2775941552 @default.
- W3128202471 hasConceptScore W3128202471C2777904410 @default.
- W3128202471 hasConceptScore W3128202471C2778579508 @default.
- W3128202471 hasConceptScore W3128202471C2780378061 @default.
- W3128202471 hasConceptScore W3128202471C32833848 @default.
- W3128202471 hasConceptScore W3128202471C33923547 @default.
- W3128202471 hasConceptScore W3128202471C38652104 @default.
- W3128202471 hasConceptScore W3128202471C41008148 @default.
- W3128202471 hasConceptScore W3128202471C513985346 @default.
- W3128202471 hasConceptScore W3128202471C553261973 @default.
- W3128202471 hasConceptScore W3128202471C74193536 @default.
- W3128202471 hasConceptScore W3128202471C79974875 @default.
- W3128202471 hasConceptScore W3128202471C86803240 @default.