4 citations · 6 across the 6 of their papers we have counts for
6 papers · 1 filter
NACRE: Rethinking Confidential Containers through Native Architectural Support
Linke Song, Wenhao Wang, Weijie Liu +1
Linux containers achieve high density and fast lifecycle operations by sharing the host kernel, but this design also lets a compromised host inspect or modify container state. Exis…
KubeCap: A Framework for Capability Minimization in Kubernetes via Static Analysis and LLM-Assisted Rule Inference
Yuhao Liu, Yingnan Zhou, Weijie Liu +2
As the most widely used container orchestration platform, Kubernetes provides flexible privilege configuration by allowing developers to manage Linux capabilities via manifest file…
Characterizing Trust Boundary Vulnerabilities in TEE Containers: An Empirical Study
Weijie Liu, Hongbo Chen, Shuo Huai +7
Trusted Execution Environments (TEEs) have become a cornerstone of confidential computing, attracting significant attention from academia and industry. To support secure and scalab…
Understanding TEE Containers, Easy to Use? Hard to Trust
Weijie Liu, Hongbo Chen, XiaoFeng Wang +4
As an emerging technique for confidential computing, trusted execution environment (TEE) receives a lot of attention. To better develop, deploy, and run secure applications on a TE…
HySec-Flow: Privacy-Preserving Genomic Computing with SGX-based Big-Data Analytics Framework
Chathura Widanage, Weijie Liu, Jiayu Li +4
Trusted execution environments (TEE) such as Intel's Software Guard Extension (SGX) have been widely studied to boost security and privacy protection for the computation of sensiti…
Confidential Attestation: Efficient in-Enclave Verification of Privacy Policy Compliance
Weijie Liu, Wenhao Wang, Xiaofeng Wang +9
A trusted execution environment (TEE) such as Intel Software Guard Extension (SGX) runs a remote attestation to prove to a data owner the integrity of the initial state of an encla…