3 papers
cs.CR2026
Devlore: Device Interrupt Protection for Confidential VMs
Andrin Bertschi, Supraja Sridhara, Mark Kuhne +8
Modern confidential computing executes sensitive computation in an abstraction called confidential VMs and protects from the hypervisor, host OS, and other co-resident VMs. It has…
cs.CR2024
Dorami: Privilege Separating Security Monitor on RISC-V TEEs
Mark Kuhne, Stavros Volos, Shweta Shinde
TEE implementations on RISC-V offer an enclave abstraction by introducing a trusted component called the security monitor (SM). The SM performs critical tasks such as isolating enc…
cs.CR2024
Aster: Fixing the Android TEE Ecosystem with Arm CCA
Mark Kuhne, Supraja Sridhara, Andrin Bertschi +3
The Android ecosystem relies on either TrustZone (e.g., OP-TEE, QTEE, Trusty) or trusted hypervisors (pKVM, Gunyah) to isolate security-sensitive services from malicious apps and A…