activity
20202026
most citedUnderstanding TEE Containers, Easy to Use? Hard to Trust

4 citations · 6 across the 6 of their papers we have counts for

collaborators
Showing cs.CRShow all

6 papers · 1 filter

cs.CR2026

NACRE: Rethinking Confidential Containers through Native Architectural Support

Linke Song, Wenhao Wang, Weijie Liu +1

Linux containers achieve high density and fast lifecycle operations by sharing the host kernel, but this design also lets a compromised host inspect or modify container state. Exis…

cs.CR2026

KubeCap: A Framework for Capability Minimization in Kubernetes via Static Analysis and LLM-Assisted Rule Inference

Yuhao Liu, Yingnan Zhou, Weijie Liu +2

As the most widely used container orchestration platform, Kubernetes provides flexible privilege configuration by allowing developers to manage Linux capabilities via manifest file…

cs.CR2025

Characterizing Trust Boundary Vulnerabilities in TEE Containers: An Empirical Study

Weijie Liu, Hongbo Chen, Shuo Huai +7

Trusted Execution Environments (TEEs) have become a cornerstone of confidential computing, attracting significant attention from academia and industry. To support secure and scalab…

cs.CR2021★ 4 cited

Understanding TEE Containers, Easy to Use? Hard to Trust

Weijie Liu, Hongbo Chen, XiaoFeng Wang +4

As an emerging technique for confidential computing, trusted execution environment (TEE) receives a lot of attention. To better develop, deploy, and run secure applications on a TE…

cs.CR2021

HySec-Flow: Privacy-Preserving Genomic Computing with SGX-based Big-Data Analytics Framework

Chathura Widanage, Weijie Liu, Jiayu Li +4

Trusted execution environments (TEE) such as Intel's Software Guard Extension (SGX) have been widely studied to boost security and privacy protection for the computation of sensiti…

cs.CR2020★ 2 cited

Confidential Attestation: Efficient in-Enclave Verification of Privacy Policy Compliance

Weijie Liu, Wenhao Wang, Xiaofeng Wang +9

A trusted execution environment (TEE) such as Intel Software Guard Extension (SGX) runs a remote attestation to prove to a data owner the integrity of the initial state of an encla…