The 10th International Conference on Next Generation Computing 2024 (2024.11)바로가기
페이지
pp.200-203
저자
Omar Bin Kasim Bhuian, Ki-Woong Park
언어
영어(ENG)
URL
https://www.earticle.net/Article/A468843
원문정보
초록
영어
Trusted Execution Environments (TEEs) are the most vital security features of contemporary computing, especially in a virtualized environment. Two popular hardware-based TEEs include Intel Software Guard Extensions (SGX) and AMD Secure Encrypted Virtualization (SEV), which respectively help protect sensitive computation from several forms of attacks. This paper investigates SGX and SEV very deeply, including their architecture, memory encryption mechanisms, and the security vulnerabilities they encounter. SGX adopts an enclave-based approach to application-level isolation, whereas SEV affords VM systemwide memory encryption. We discuss the implications of such designs in cloud computing environments and proffer recommendations that will help secure attacks emanating from side-channel and rollback.
목차
Abstract I. Introduction II. Architectural Comparison A. Intel Software Guard Extensions (SGX) B. AMD Secure Encrypted Virtualization (SEV) III. Memory Encryption and Isolation A. SGX Memory Encryption and Isolation B. SEV Memory Encryption and Isolation IV. Threat Models and Security Vulnerabilities A. Intel SGX Threat Model B. AMD SEV Threat Model V. Performance Considerations A. Intel SGX Performance B. AMD SEV Performance VI. Future Directions in TEE Development VII. Conclusion ACKNOWLEDGEMENT REFERENCES
키워드
trusted execution environmentsIntel SGXAMD SEVsecure program executionmemory encryption.
저자
Omar Bin Kasim Bhuian [ Computer Science Department, Huaiyin Institute of Technology, Huai’an, Jiangsu, China ]
Ki-Woong Park [ Department of Information Security and Convergence Engineering for Intelligent Drone, Sejong University ]