5 papers
Sound Enforcement of Dynamic Release Information Flow Policy-Full Version
Jeffrey C. Ching, Danfeng Zhang
Information flow analysis is the de facto method of assessing confidentiality and integrity issues. However, the widespread adoption of information flow analysis in real-world syst…
Characterizing Trust Boundary Vulnerabilities in TEE Containers: An Empirical Study
Weijie Liu, Hongbo Chen, Shuo Huai +7
Trusted Execution Environments (TEEs) have become a cornerstone of confidential computing, attracting significant attention from academia and industry. To support secure and scalab…
Filament: Denning-Style Information Flow Control for Rust
Jeffrey C. Ching, Quan Zhou, Danfeng Zhang
Existing language-based information-flow control (IFC) tools face a fundamental tension: Denning-style systems that track explicit and implicit flows at the variable level typicall…
AlphaEval: Evaluating Agents in Production
Pengrui Lu, Bingyu Xu, Wenjun Zhang +24
The rapid deployment of AI agents in commercial settings has outpaced the development of evaluation methodologies that reflect production realities. Existing benchmarks measure age…
Agora: Trust Less and Open More in Verification for Confidential Computing
Hongbo Chen, Quan Zhou, Sen Yang +4
Binary verification plays a pivotal role in software security, yet building a verification service that is both open and trustworthy poses a formidable challenge. In this paper, we…