{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,11]],"date-time":"2026-03-11T01:45:24Z","timestamp":1773193524620,"version":"3.50.1"},"publisher-location":"Cham","reference-count":38,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783319933863","type":"print"},{"value":"9783319933870","type":"electronic"}],"license":[{"start":{"date-parts":[[2018,1,1]],"date-time":"2018-01-01T00:00:00Z","timestamp":1514764800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2018,1,1]],"date-time":"2018-01-01T00:00:00Z","timestamp":1514764800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2018]]},"DOI":"10.1007\/978-3-319-93387-0_34","type":"book-chapter","created":{"date-parts":[[2018,6,9]],"date-time":"2018-06-09T12:33:36Z","timestamp":1528547616000},"page":"657-677","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":8,"title":["VeriCount: Verifiable Resource Accounting Using Hardware and Software Isolation"],"prefix":"10.1007","author":[{"given":"Shruti","family":"Tople","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Soyeon","family":"Park","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Min Suk","family":"Kang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Prateek","family":"Saxena","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2018,6,10]]},"reference":[{"key":"34_CR1","unstructured":"Software Guard Extensions Programming Reference, September 2013. https:\/\/software.intel.com\/sites\/default\/files\/329298-001.pdf"},{"key":"34_CR2","unstructured":"Amazon EC2 container service (2017). https:\/\/aws.amazon.com\/ecs\/"},{"key":"34_CR3","unstructured":"Docker (2017). https:\/\/www.docker.com\/"},{"key":"34_CR4","unstructured":"Google container engine (GKE) (2017). https:\/\/cloud.google.com\/"},{"key":"34_CR5","unstructured":"H2O web server (2017). https:\/\/github.com\/h2o\/h2o"},{"key":"34_CR6","unstructured":"Intel SGX linux SDK (2017). https:\/\/github.com\/01org\/linux-sgx"},{"key":"34_CR7","unstructured":"NetHogs (2017). https:\/\/github.com\/raboof\/nethogs"},{"key":"34_CR8","unstructured":"Panoply source code (2017). https:\/\/shwetasshinde24.github.io\/Panoply\/"},{"key":"34_CR9","unstructured":"SPEC CPU2006 benchmarks (2017). https:\/\/www.spec.org\/cpu2006\/"},{"key":"34_CR10","unstructured":"Arnautov, S., Trach, B., Gregor, F., Knauth, T., Martin, A., Priebe, C., Lind, J., Muthukumaran, D., OKeeffe, D., Stillwell, M.L., et al.: Scone: secure Linux containers with intel SGX. In: 12th USENIX Symposium Operating Systems Design and Implementation (2016)"},{"issue":"3","key":"34_CR11","doi-asserted-by":"publisher","first-page":"8","DOI":"10.1145\/2799647","volume":"33","author":"A Baumann","year":"2015","unstructured":"Baumann, A., Peinado, M., Hunt, G.: Shielding applications from an untrusted cloud with haven. ACM Trans. Comput. Syst. (TOCS) 33(3), 8 (2015)","journal-title":"ACM Trans. Comput. Syst. (TOCS)"},{"key":"34_CR12","doi-asserted-by":"publisher","first-page":"6","DOI":"10.1145\/2506164.2506167","volume":"47","author":"S Bouchenak","year":"2013","unstructured":"Bouchenak, S., Chockler, G., Chockler, H., Gheorghe, G., Santos, N., Shraer, A.: Verifying cloud services: present and future. ACM SIGOPS Oper. Syst. Rev. 47, 6\u201319 (2013)","journal-title":"ACM SIGOPS Oper. Syst. Rev."},{"key":"34_CR13","doi-asserted-by":"crossref","unstructured":"Chen, C., Maniatis, P., Perrig, A., Vasudevan, A., Sekar, V.: Towards verifiable resource accounting for outsourced computation. In: VEE (2013)","DOI":"10.1145\/2451512.2451546"},{"key":"34_CR14","unstructured":"Erlingsson, \u00da., Abadi, M., Vrable, M., Budiu, M., Necula, G.C.: XFI: software guards for system address spaces. In: OSDI (2006)"},{"key":"34_CR15","doi-asserted-by":"publisher","first-page":"113","DOI":"10.1007\/s10207-013-0208-7","volume":"13","author":"DA Fernandes","year":"2014","unstructured":"Fernandes, D.A., Soares, L.F., Gomes, J.V., Freire, M.M., In\u00e1cio, P.R.: Security issues in cloud environments: a survey. International J. Inf. Secur. 13, 113\u2013170 (2014)","journal-title":"International J. Inf. Secur."},{"key":"34_CR16","unstructured":"Haeberlen, A., Aditya, P., Rodrigues, R., Druschel, P.: Accountable virtual machines. In: OSDI, pp. 119\u2013134 (2010)"},{"key":"34_CR17","doi-asserted-by":"crossref","unstructured":"Hunt, T., Zhu, Z., Xu, Y., Peter, S., Witchel, E.: Ryoan: a distributed sandbox for untrusted computation on secret data. In: OSDI (2016)","DOI":"10.1145\/3231594"},{"key":"34_CR18","unstructured":"Jellinek, R., Zhai, Y., Ristenpart, T., Swift, M.: A day late and a dollar short: the case for research on cloud billing systems. In: HotCloud (2014)"},{"key":"34_CR19","doi-asserted-by":"crossref","unstructured":"Kroll, J.A., Stewart, G., Appel, A.W.: Portable software fault isolation. In: 27th 2014 IEEE Computer Security Foundations Symposium (CSF), pp. 18\u201332. IEEE (2014)","DOI":"10.1109\/CSF.2014.10"},{"key":"34_CR20","unstructured":"Lee, S., Shih, M.W., Gera, P., Kim, T., Kim, H., Peinado, M.: Inferring fine-grained control flow inside SGX enclaves with branch shadowing. arXiv preprint arXiv:1611.06952 (2016)"},{"key":"34_CR21","unstructured":"Li, Y., McCune, J.M., Newsome, J., Perrig, A., Baker, B., Drewry, W.: Minibox: A two-way sandbox for x86 native code. In: USENIX Annual Technical Conference (2014)"},{"key":"34_CR22","doi-asserted-by":"crossref","unstructured":"Liu, M., Ding, X.: On trustworthiness of CPU usage metering and accounting. In: IEEE 30th International Conference on Distributed Computing Systems Workshops (2010)","DOI":"10.1109\/ICDCSW.2010.40"},{"key":"34_CR23","unstructured":"Matetic, S., Kostiainen, K., Dhar, A., Sommer, D., Ahmed, M., Gervais, A., Juels, A., Capkun, S.: ROTE: rollback protection for trusted execution. In: Usenix Security (2017)"},{"key":"34_CR24","unstructured":"McCamant, S., Morrisett, G.: Evaluating SFI for a CISC architecture. In: Usenix Security (2006)"},{"key":"34_CR25","doi-asserted-by":"crossref","unstructured":"McKeen, F., Alexandrovich, I., Anati, I., Caspi, D., Johnson, S., Leslie-Hurd, R., Rozas, C.: Intel$${\\textregistered }$$ software guard extensions (Intel$${\\textregistered }$$ SGX) support for dynamic memory management inside an enclave. In: HASP 2016","DOI":"10.1145\/2948618.2954331"},{"key":"34_CR26","doi-asserted-by":"crossref","unstructured":"Mihoob, A., Molina-Jimenez, C., Shrivastava, S.: A case for consumer-centric resource accounting models. In: IEEE 3rd International Conference on Cloud Computing (2010)","DOI":"10.1109\/CLOUD.2010.44"},{"key":"34_CR27","doi-asserted-by":"crossref","unstructured":"Shih, M.-W., Lee, S., Kim, T., Peinado, M.: T-SGX: eradicating controlled-channel attacks against enclave programs. In: NDSS (2017)","DOI":"10.14722\/ndss.2017.23193"},{"key":"34_CR28","doi-asserted-by":"crossref","unstructured":"Sekar, V., Maniatis, P.: Verifiable resource accounting for cloud computing services. In: ACM Workshop on Cloud Computing Security Workshop (2011)","DOI":"10.1145\/2046660.2046666"},{"key":"34_CR29","doi-asserted-by":"crossref","unstructured":"Shinde, S., Chua, Z.L., Narayanan, V., Saxena, P.: Preventing page faults from telling your secrets. In: ASIACCS (2016)","DOI":"10.1145\/2897845.2897885"},{"key":"34_CR30","doi-asserted-by":"crossref","unstructured":"Shinde, S., Le Tien, D., Tople, S., Saxena, P.: Panoply: low-TCB Linux applications with SGX enclaves. In: NDSS (2017)","DOI":"10.14722\/ndss.2017.23500"},{"key":"34_CR31","unstructured":"Tsafrir, D., Etsion, Y., Feitelson, D.G.: Secretly monopolizing the CPU without superuser privileges. In: USENIX Security, vol. 7, pp. 1\u201318 (2007)"},{"key":"34_CR32","doi-asserted-by":"crossref","unstructured":"Varadarajan, V., Kooburat, T., Farley, B., Ristenpart, T., Swift, M.M.: Resource-freeing attacks: improve your cloud performance (at your neighbor\u2019s expense). In: CCS (2012)","DOI":"10.1145\/2382196.2382228"},{"issue":"5","key":"34_CR33","doi-asserted-by":"publisher","first-page":"203","DOI":"10.1145\/173668.168635","volume":"27","author":"Robert Wahbe","year":"1993","unstructured":"Wahbe, R., Lucco, S., Anderson, T.E., Graham, S.L.: Efficient software-based fault isolation. In: ACM SIGOPS Operating Systems Review, pp. 203\u2013216. ACM (1994)","journal-title":"ACM SIGOPS Operating Systems Review"},{"issue":"2","key":"34_CR34","doi-asserted-by":"publisher","first-page":"843","DOI":"10.1109\/SURV.2012.060912.00182","volume":"15","author":"Z Xiao","year":"2013","unstructured":"Xiao, Z., Xiao, Y.: Security and privacy in cloud computing. IEEE Commun. Surv. Tutor. 15(2), 843\u2013859 (2013)","journal-title":"IEEE Commun. Surv. Tutor."},{"key":"34_CR35","doi-asserted-by":"crossref","unstructured":"Xu, Y., Cui, W., Peinado, M.: Controlled-channel attacks: deterministic side channels for untrusted operating systems. In: IEEE Symposium on Security and Privacy (SP) (2015)","DOI":"10.1109\/SP.2015.45"},{"key":"34_CR36","doi-asserted-by":"crossref","unstructured":"Yee, B., Sehr, D., Dardyk, G., Chen, J.B., Muth, R., Ormandy, T., Okasaka, S., Narula, N., Fullagar, N.: Native client: a sandbox for portable, untrusted x86 native code. In: 2009 30th IEEE Symposium on Security and Privacy, pp. 79\u201393. IEEE (2009)","DOI":"10.1109\/SP.2009.25"},{"key":"34_CR37","doi-asserted-by":"crossref","unstructured":"Zhang, F., Zhang, H.: SoK: a study of using hardware-assisted isolated execution environments for security. In: Proceedings of the Hardware and Architectural Support for Security and Privacy 2016, HASP 2016 (2016)","DOI":"10.1145\/2948618.2948621"},{"issue":"4","key":"34_CR38","doi-asserted-by":"publisher","first-page":"533","DOI":"10.3233\/JCS-130474","volume":"21","author":"F Zhou","year":"2013","unstructured":"Zhou, F., Goel, M., Desnoyers, P., Sundaram, R.: Scheduler vulnerabilities and coordinated attacks in cloud computing. J. Comput. Secur. 21(4), 533\u2013559 (2013)","journal-title":"J. Comput. Secur."}],"container-title":["Lecture Notes in Computer Science","Applied Cryptography and Network Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-93387-0_34","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,3,13]],"date-time":"2024-03-13T16:29:25Z","timestamp":1710347365000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-319-93387-0_34"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018]]},"ISBN":["9783319933863","9783319933870"],"references-count":38,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-93387-0_34","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2018]]},"assertion":[{"value":"10 June 2018","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ACNS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Applied Cryptography and Network Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Leuven","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Belgium","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2018","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2 July 2018","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"4 July 2018","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"16","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"acns2018","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/www.cosic.esat.kuleuven.be\/events\/acns2018\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"This content has been made available to all.","name":"free","label":"Free to read"}]}}