activity
20182022
most citedSEVurity: No Security Without Integrity -- Breaking Integrity-Free Memory Encryption with Minimal Assumptions

47 citations · 77 across the 5 of their papers we have counts for

collaborators
Showing cs.CRShow all

8 papers · 1 filter

cs.CR2022

GuaranTEE: Introducing Control-Flow Attestation for Trusted Execution Environments

Mathias Morbitzer, Benedikt Kopf, Philipp Zieris

The majority of cloud providers offers users the possibility to deploy Trusted Execution Environments (TEEs) to protect their data and processes from high privileged adversaries. T…

cs.CR2021

VIA: Analyzing Device Interfaces of Protected Virtual Machines

Felicitas Hetzelt, Martin Radev, Robert Buhren +2

Both AMD and Intel have presented technologies for confidential computing in cloud environments. The proposed solutions - AMD SEV (-ES, -SNP) and Intel TDX - protect Virtual Machin…

cs.CR2021

SEVerity: Code Injection Attacks against Encrypted Virtual Machines

Mathias Morbitzer, Sergej Proskurin, Martin Radev +2

Modern enterprises increasingly take advantage of cloud infrastructures. Yet, outsourcing code and data into the cloud requires enterprises to trust cloud providers not to meddle w…

cs.CR2020

Exploiting Interfaces of Secure Encrypted Virtual Machines

Martin Radev, Mathias Morbitzer

Cloud computing is a convenient model for processing data remotely. However, users must trust their cloud provider with the confidentiality and integrity of the stored and processe…

cs.CR202047 cited

SEVurity: No Security Without Integrity -- Breaking Integrity-Free Memory Encryption with Minimal Assumptions

Luca Wilke, Jan Wichelmann, Mathias Morbitzer +1

One reason for not adopting cloud services is the required trust in the cloud provider: As they control the hypervisor, any data processed in the system is accessible to them. Full…

cs.CR2019

Scanclave: Verifying Application Runtime Integrity in Untrusted Environments

Mathias Morbitzer

Data hosted in a cloud environment can be subject to attacks from a higher privileged adversary, such as a malicious or compromised cloud provider. To provide confidentiality and i…