4 papers
OpenCCA: An Open Framework to Enable Arm CCA Research
Andrin Bertschi, Shweta Shinde
Confidential computing has gained traction across major architectures with Intel TDX, AMD SEV-SNP, and Arm CCA. Unlike TDX and SEV-SNP, a key challenge in researching Arm CCA is th…
Devlore: Device Interrupt Protection for Confidential VMs
Andrin Bertschi, Supraja Sridhara, Mark Kuhne +6
Modern confidential computing executes sensitive computation in an abstraction called confidential VMs and protects from the hypervisor, host OS, and other co-resident VMs. It has…
Aster: Fixing the Android TEE Ecosystem with Arm CCA
Mark Kuhne, Supraja Sridhara, Andrin Bertschi +3
The Android ecosystem relies on either TrustZone (e.g., OP-TEE, QTEE, Trusty) or trusted hypervisors (pKVM, Gunyah) to isolate security-sensitive services from malicious apps and A…
SIGY: Breaking Intel SGX Enclaves with Malicious Exceptions & Signals
Supraja Sridhara, Andrin Bertschi, Benedict Schlüter +1
User programs recover from hardware exceptions and respond to signals by executing custom handlers that they register specifically for such events. We present SIGY attack, which ab…