{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,9,10]],"date-time":"2025-09-10T22:27:51Z","timestamp":1757543271730},"reference-count":67,"publisher":"Springer Science and Business Media LLC","issue":"2","license":[{"start":{"date-parts":[[2022,3,31]],"date-time":"2022-03-31T00:00:00Z","timestamp":1648684800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2022,3,31]],"date-time":"2022-03-31T00:00:00Z","timestamp":1648684800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["J. Comput. Sci. Technol."],"published-print":{"date-parts":[[2022,4]]},"DOI":"10.1007\/s11390-021-1083-8","type":"journal-article","created":{"date-parts":[[2022,4,25]],"date-time":"2022-04-25T08:04:12Z","timestamp":1650873852000},"page":"468-486","update-policy":"http:\/\/dx.doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":9,"title":["Unified Enclave Abstraction and Secure Enclave Migration on Heterogeneous Security Architectures"],"prefix":"10.1007","volume":"37","author":[{"given":"Jin-Yu","family":"Gu","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hao","family":"Li","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yu-Bin","family":"Xia","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hai-Bo","family":"Chen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Cheng-Gang","family":"Qin","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zheng-Yu","family":"He","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2022,3,31]]},"reference":[{"key":"1083_CR1","unstructured":"Park H, Zhai S, Lu L, Lin F X. StreamBox-TZ: Secure stream analytics at the edge with TrustZone. In Proc. the 2019 USENIX Annual Technical Conference, July 2019, pp.537-554."},{"issue":"5","key":"1083_CR2","doi-asserted-by":"publisher","first-page":"637","DOI":"10.1109\/JIOT.2016.2579198","volume":"3","author":"W Shi","year":"2016","unstructured":"Shi W, Cao J, Zhang Q, Li Y, Xu L. Edge computing: Vision and challenges. IEEE Internet of Things Journal, 2016, 3(5): 637-646. DOI: https:\/\/doi.org\/10.1109\/JIOT.2016.2579198.","journal-title":"IEEE Internet of Things Journal"},{"key":"1083_CR3","unstructured":"Hu Y C, Patel M, Sabella D, Sprecher N, Young V. Mobile edge computing-A key technology towards 5G. Technical Report, European Telecommunications Standards Institute, 2015. https:\/\/infotech.report\/Resources\/Whitepaper-s\/f205849d-0109-4de3-8c47-be52f4e4fb27_etsi_wp11_mec_a_key_technology_towards_5g.pdf, Dec. 2021."},{"issue":"1","key":"1083_CR4","doi-asserted-by":"publisher","first-page":"30","DOI":"10.1109\/MC.2017.9","volume":"50","author":"M Satyanarayanan","year":"2017","unstructured":"Satyanarayanan M. The emergence of edge computing. Computer, 2017, 50(1): 30-39. DOI: https:\/\/doi.org\/10.1109\/MC.2017.9.","journal-title":"Computer"},{"issue":"5","key":"1083_CR5","doi-asserted-by":"publisher","first-page":"78","DOI":"10.1109\/MC.2016.145","volume":"49","author":"W Shi","year":"2016","unstructured":"Shi W, Dustdar S. The promise of edge computing. Computer, 2016, 49(5): 78-81. DOI: https:\/\/doi.org\/10.1109\/MC.2016.145.","journal-title":"Computer"},{"key":"1083_CR6","doi-asserted-by":"publisher","first-page":"1454","DOI":"10.1016\/j.jclepro.2016.10.006","volume":"140","author":"BLR Stojkoska","year":"2017","unstructured":"Stojkoska B L R, Trivodaliev K V. A review of Internet of Things for smart home: Challenges and solutions. Journal of Cleaner Production, 2017, 140: 1454-1464. DOI: https:\/\/doi.org\/10.1016\/j.jclepro.2016.10.006.","journal-title":"Journal of Cleaner Production"},{"issue":"4","key":"1083_CR7","doi-asserted-by":"publisher","first-page":"64","DOI":"10.1109\/MIC.2017.2911430","volume":"21","author":"S Nastic","year":"2017","unstructured":"Nastic S, Rausch T, Scekic O, Dustdar S, Gusev M, Koteska B, Kostoska M, Jakimovski B, Ristov S, Prodan R. A server- less real-time data analytics platform for edge computing. IEEE Internet Computing, 2017, 21(4): 64-71. DOI: https:\/\/doi.org\/10.1109\/MIC.2017.2911430.","journal-title":"IEEE Internet Computing"},{"issue":"1","key":"1083_CR8","doi-asserted-by":"publisher","first-page":"140","DOI":"10.1109\/MWC.2017.1700011","volume":"25","author":"A Machen","year":"2017","unstructured":"Machen A, Wang S, Leung K K, Ko B J, Salonidis T. Live service migration in mobile edge clouds. IEEE Wireless Communications, 2017, 25(1): 140-147. DOI: https:\/\/doi.org\/10.1109\/MWC.2017.1700011.","journal-title":"IEEE Wireless Communications"},{"key":"1083_CR9","doi-asserted-by":"publisher","first-page":"23511","DOI":"10.1109\/ACCESS.2018.2828102","volume":"6","author":"S Wang","year":"2018","unstructured":"Wang S, Xu J, Zhang N, Liu Y. A survey on service migration in mobile edge computing. IEEE Access, 2018, 6: 23511-23528. DOI: https:\/\/doi.org\/10.1109\/ACCESS.2018.2828102.","journal-title":"IEEE Access"},{"key":"1083_CR10","doi-asserted-by":"publisher","unstructured":"Islam M, Razzaque A, Islam J. A genetic algorithm for virtual machine migration in heterogeneous mobile cloud computing. In Proc. the 2016 International Conference on Net- working Systems and Security, Jan. 2016. DOI: https:\/\/doi.org\/10.1109\/N-SysS.2016.7400696.","DOI":"10.1109\/N-SysS.2016.7400696"},{"key":"1083_CR11","doi-asserted-by":"publisher","unstructured":"Barbalace A, Karaoui M L, Wang W, Xing T, Olivier P, Ravindran B. Edge computing: The case for heterogeneous-ISA container migration. In Proc. the 16th ACM SIGPLAN\/SIGOPS International Conference on Virtual Execution Environments, Mar. 2020, pp.73-87. DOI: https:\/\/doi.org\/10.1145\/3381052.3381321.","DOI":"10.1145\/3381052.3381321"},{"issue":"9","key":"1083_CR12","doi-asserted-by":"publisher","first-page":"1287","DOI":"10.1109\/TC.2018.2818144","volume":"67","author":"TG Rodrigues","year":"2018","unstructured":"Rodrigues T G, Suto K, Nishiyama H, Kato N, Temma K. Cloudlets activation scheme for scalable mobile edge computing with transmission power control and virtual machine migration. IEEE Transactions on Computers, 2018, 67(9): 1287-1300. DOI: https:\/\/doi.org\/10.1109\/TC.2018.2818144.","journal-title":"IEEE Transactions on Computers"},{"key":"1083_CR13","doi-asserted-by":"publisher","first-page":"680","DOI":"10.1016\/j.future.2016.11.009","volume":"78","author":"R Roman","year":"2018","unstructured":"Roman R, Lopez J, Mambo M. Mobile edge computing, fog et al.: A survey and analysis of security threats and challenges. Future Generation Computer Systems, 2018, 78: 680-698. DOI: https:\/\/doi.org\/10.1016\/j.future.2016.11.009.","journal-title":"Future Generation Computer Systems"},{"key":"1083_CR14","doi-asserted-by":"publisher","unstructured":"Ning Z, Liao J, Zhang F, Shi W. Preliminary study of trusted execution environments on heterogeneous edge platforms. In Proc. the 2018 IEEE\/ACM Symposium on Edge Computing, Dec. 2018, pp.421-426. DOI: https:\/\/doi.org\/10.1109\/SEC.2018.00057.","DOI":"10.1109\/SEC.2018.00057"},{"key":"1083_CR15","unstructured":"Costan V, Devadas S. Intel SGX explained. IACR Cryptol. ePrint Arch., 2016, 2016: Article No. 86."},{"key":"1083_CR16","unstructured":"Kaplan D, Powell J, Woller T. AMD memory encryption. https:\/\/developer.amd.com\/wordpress\/media\/2013\/12\/A-MD_Memory_Encryption_Whitepaper_v7-Public.pdf, Dec. 2021."},{"key":"1083_CR17","doi-asserted-by":"publisher","unstructured":"Ngabonziza B, Martin D, Bailey A, Cho H, Martin S. Trust- Zone explained: Architectural features and use cases. In Proc. the 2nd IEEE International Conference on Collab- oration and Internet Computing, Nov. 2016, pp.445-451. DOI: https:\/\/doi.org\/10.1109\/CIC.2016.065.","DOI":"10.1109\/CIC.2016.065"},{"key":"1083_CR18","doi-asserted-by":"publisher","unstructured":"Kim T, Park J, Woo J, Jeon S, Huh J. ShieldStore: Shielded in-memory key-value storage with SGX. In Proc. the 14th EuroSys Conference 2019, Mar. 2019, Article No. 14. DOI: https:\/\/doi.org\/10.1145\/3302424.3303951.","DOI":"10.1145\/3302424.3303951"},{"key":"1083_CR19","unstructured":"Arnautov S, Trach B, Gregor F et al. SCONE: Secure Linux containers with intel SGX. In Proc. the 12th USENIX Symposium on Operating Systems Design and Implementation, Nov. 2016, pp.689-703."},{"key":"1083_CR20","doi-asserted-by":"publisher","unstructured":"Priebe C, Vaswani K, Costa M. EnclaveDB: A secure database using SGX. In Proc. the 2018 IEEE Symposium on Security and Privacy, May 2018, pp.264-278. DOI: https:\/\/doi.org\/10.1109\/SP.2018.00025.","DOI":"10.1109\/SP.2018.00025"},{"key":"1083_CR21","unstructured":"Tsai C C, Porter D E, Vij M. Graphene-SGX: A practical library OS for unmodified applications on SGX. In Proc. the 2017 USENIX Annual Technical Conference, July 2017, pp.645-658."},{"issue":"1","key":"1083_CR22","doi-asserted-by":"publisher","first-page":"645","DOI":"10.1145\/3093337.3037738","volume":"45","author":"A Barbalace","year":"2017","unstructured":"Barbalace A, Lyerly R, Jelesnianski C, Carno A, Chuang H R, Legout V, Ravindran B. Breaking the boundaries in heterogeneous-ISA datacenters. ACM SIGARCH Computer Architecture News, 2017, 45(1): 645-659. DOI: https:\/\/doi.org\/10.1145\/3093337.3037738.","journal-title":"ACM SIGARCH Computer Architecture News"},{"key":"1083_CR23","doi-asserted-by":"publisher","unstructured":"Barbalace A, Sadini M, Ansary S, Jelesnianski C, Ravichandran A, Kendir C, Murray A, Ravindran B. Popcorn: Bridging the programmability gap in heterogeneous-ISA platforms. In Proc. the 10th European Conference on Computer Systems, Apr. 2015, Article No. 29. DOI: https:\/\/doi.org\/10.1145\/2741948.2741962.","DOI":"10.1145\/2741948.2741962"},{"key":"1083_CR24","doi-asserted-by":"publisher","unstructured":"Gu J, Hua Z, Xia Y, Chen H, Zang B, Guan H, Li J. Secure live migration of SGX enclaves on untrusted cloud. In Proc. the 47th Annual IEEE\/IFIP International Conference on Dependable Systems and Networks, June 2017, pp.225-236. DOI: https:\/\/doi.org\/10.1109\/DSN.2017.37.","DOI":"10.1109\/DSN.2017.37"},{"key":"1083_CR25","doi-asserted-by":"publisher","unstructured":"Choy S, Wong B, Simon G, Rosenberg C. The brewing storm in cloud gaming: A measurement study on cloud to end-user latency. In Proc. the 11th Annual Workshop on Network and Systems Support for Games, Nov. 2012. DOI: https:\/\/doi.org\/10.1109\/NetGames.2012.6404024.","DOI":"10.1109\/NetGames.2012.6404024"},{"key":"1083_CR26","unstructured":"Furlong M, Quinn A, Flinn J. The case for determinism on the edge. In Proc. the 2nd USENIX Workshop on Hot Topics in Edge Computing, July 2019."},{"key":"1083_CR27","doi-asserted-by":"publisher","unstructured":"Ha K, Abe Y, Eiszler T, Chen Z, Hu W, Amos B, Upadhyaya R, Pillai P, Satyanarayanan M. You can teach elephants to dance: Agile VM handoff for edge computing. In Proc. the 2nd ACM\/IEEE Symposium on Edge Computing, Oct. 2017, Article No. 12. DOI: https:\/\/doi.org\/10.1145\/3132211.3134453.","DOI":"10.1145\/3132211.3134453"},{"key":"1083_CR28","doi-asserted-by":"publisher","unstructured":"Nadgowda S, Suneja S, Bila N, Isci C. Voyager: Complete container state migration. In Proc. the 37th IEEE International Conference on Distributed Computing Systems, June 2017, pp.2137-2142. DOI: https:\/\/doi.org\/10.1109\/ICDCS.2017.91.","DOI":"10.1109\/ICDCS.2017.91"},{"issue":"2","key":"1083_CR29","doi-asserted-by":"publisher","first-page":"142","DOI":"10.1109\/TCC.2013.10","volume":"1","author":"P Jamshidi","year":"2013","unstructured":"Jamshidi P, Ahmad A, Pahl C. Cloud migration research: A systematic review. IEEE Transactions on Cloud Computing, 2013, 1(2): 142-157. DOI: https:\/\/doi.org\/10.1109\/TCC.2013.10.","journal-title":"IEEE Transactions on Cloud Computing"},{"key":"1083_CR30","doi-asserted-by":"publisher","unstructured":"Zhu J, Hou R, Wang X et al. Enabling rack-scale confidential computing using heterogeneous trusted execution environment. In Proc. the 2020 IEEE Symposium on Security and Privacy, May 2020, pp.1450-1465. DOI: https:\/\/doi.org\/10.1109\/SP40000.2020.00054.","DOI":"10.1109\/SP40000.2020.00054"},{"key":"1083_CR31","unstructured":"Hua Z, Gu J, Xia Y, Chen H, Zang B, Guan H. vTZ: Virtualizing ARM TrustZone. In Proc. the 26th USENIX Security Symposium, Aug. 2017, pp.541-556."},{"key":"1083_CR32","doi-asserted-by":"publisher","unstructured":"Nightingale E B, Hodson O, McIlroy R, Hawblitzel C, Hunt G. Helios: Heterogeneous multiprocessing with satellite kernels. In Proc. the 22nd ACM SIGOPS Symposium on Operating Systems Principles, Oct. 2009, pp.221-234. DOI: https:\/\/doi.org\/10.1145\/1629575.1629597.","DOI":"10.1145\/1629575.1629597"},{"key":"1083_CR33","doi-asserted-by":"publisher","unstructured":"Piraghaj S F, Dastjerdi A V, Calheiros R N, Buyya R. A framework and algorithm for energy efficient container consolidation in cloud data centers. In Proc. the 2015 IEEE International Conference on Data Science and Data Intensive Systems, Dec. 2015, pp.368-375. DOI: https:\/\/doi.org\/10.1109\/DS-DIS.2015.67.","DOI":"10.1109\/DS-DIS.2015.67"},{"key":"1083_CR34","doi-asserted-by":"publisher","unstructured":"Wang H, Shi P, Zhang Y. JointCloud: A cross-cloud cooperation architecture for integrated internet service customization. In Proc. the 37th IEEE International Conference on Distributed Computing Systems, June 2017, pp.1846-1855. DOI: https:\/\/doi.org\/10.1109\/ICDCS.2017.237.","DOI":"10.1109\/ICDCS.2017.237"},{"key":"1083_CR35","doi-asserted-by":"publisher","unstructured":"Baumann A, Peinado M, Hunt G. Shielding applications from an untrusted cloud with Haven. ACM Transactions on Computer Systems, 2015, 33(3): Article No. 8. DOI: https:\/\/doi.org\/10.1145\/2799647.","DOI":"10.1145\/2799647"},{"key":"1083_CR36","unstructured":"Hunt T, Zhu Z, Xu Y, Peter S, Witchel E. Ryoan: A distributed sandbox for untrusted computation on secret data. In Proc. the 12th USENIX Symposium on Operating Systems Design and Implementation, Nov. 2016, pp.533-549."},{"key":"1083_CR37","unstructured":"Ohrimenko O, Schuster F, Fournet C, Mehta A, Nowozin S, Vaswani K, Costa M. Oblivious multi-party machine learning on trusted processors. In Proc. the 25th USENIX Conference on Security Symposium, August 2016, pp.619-636."},{"key":"1083_CR38","doi-asserted-by":"publisher","unstructured":"Shinde S, Le Tien D, Tople S, Saxena P. Panoply: Low-TCB Linux applications with SGX enclaves. In Proc. the 24th Annual Network and Distributed System Security Symp., Feb. 26-Mar. 1, 2017. DOI: https:\/\/doi.org\/10.14722\/ndss.2017.23500.","DOI":"10.14722\/ndss.2017.23500"},{"key":"1083_CR39","doi-asserted-by":"publisher","unstructured":"Schuster F, Costa M, Fournet C, Gkantsidis C, Peinado M, Mainar-Ruiz G, Russinovich M. VC3: Trustworthy data analytics in the cloud using SGX. In Proc. the 2015 IEEE Symposium on Security and Privacy, May 2015, pp.38-54. DOI: https:\/\/doi.org\/10.1109\/SP.2015.10.","DOI":"10.1109\/SP.2015.10"},{"key":"1083_CR40","unstructured":"Li M, Zhang Y, Lin Z, Solihin Y. Exploiting unprotected I\/O operations in AMD\u2019s secure encrypted virtualization. In Proc. the 28th USENIX Security Symposium, Aug. 2019, pp.1257-1272."},{"key":"1083_CR41","doi-asserted-by":"publisher","unstructured":"Morbitzer M, Huber M, Horsch J. Extracting secrets from encrypted virtual machines. In Proc. the 9th ACM Conference on Data and Application Security and Privacy, Mar. 2019, pp.221-230. DOI: https:\/\/doi.org\/10.1145\/3292006.3300022.","DOI":"10.1145\/3292006.3300022"},{"issue":"4","key":"1083_CR42","first-page":"18","volume":"3","author":"T Alves","year":"2004","unstructured":"Alves T, Felton D. TrustZone: Integrated hardware and software security. ARM White Paper, 2004, 3(4): 18-24.","journal-title":"ARM White Paper"},{"key":"1083_CR43","doi-asserted-by":"publisher","unstructured":"Sun H, Sun K, Wang Y, Jing J. TrustOTP: Transforming smartphones into secure one-time password tokens. In Proc. the 22nd ACM SIGSAC Conference on Computer and Communications Security, Oct. 2015, pp.976-988. DOI: https:\/\/doi.org\/10.1145\/2810103.2813692.","DOI":"10.1145\/2810103.2813692"},{"key":"1083_CR44","doi-asserted-by":"publisher","unstructured":"Santos N, Raj H, Saroiu S, Wolman A. Using ARM TrustZone to build a trusted language runtime for mobile applications. In Proc. the 19th International Conference on Architectural Support for Programming Languages and Operating Systems, Feb. 2014, pp.67-80. DOI: https:\/\/doi.org\/10.1145\/2541940.2541949.","DOI":"10.1145\/2541940.2541949"},{"key":"1083_CR45","doi-asserted-by":"publisher","unstructured":"Zhang N, Sun K, Lou W, Hou Y T. CaSE: Cache-assisted secure execution on ARM processors. In Proc. the 2016 IEEE Symposium on Security and Privacy, May 2016, pp.72-90. DOI: https:\/\/doi.org\/10.1109\/SP.2016.13.","DOI":"10.1109\/SP.2016.13"},{"key":"1083_CR46","doi-asserted-by":"publisher","unstructured":"Guan L, Liu P, Xing X, Ge X, Zhang S, Yu M, Jaeger T. TrustShadow: Secure execution of unmodified applications with ARM TrustZone. In Proc. the 15th Annual International Conference on Mobile Systems, Applications, and Services, June 2017, pp.488-501. DOI: https:\/\/doi.org\/10.1145\/3081333.3081349.","DOI":"10.1145\/3081333.3081349"},{"key":"1083_CR47","doi-asserted-by":"publisher","unstructured":"Zhao S, Zhang Q, Qin Y, Feng W, Feng D. SecTEE: A software-based approach to secure enclave architecture using TEE. In Proc. the 2019 ACM SIGSAC Conference on Computer and Communications Security, Nov. 2019, pp.1723-1740. DOI: https:\/\/doi.org\/10.1145\/3319535.3363205.","DOI":"10.1145\/3319535.3363205"},{"key":"1083_CR48","unstructured":"Lind J, Priebe C, Muthukumaran D et al. Glamdring: Automatic application partitioning for Intel SGX. In Proc. the 2017 USENIX Annual Technical Conference, July 2017, pp.285-298."},{"key":"1083_CR49","unstructured":"Soares L, Stumm M. FlexSC: Flexible system call scheduling with exception-less system calls. In Proc. the 9th USENIX Conference on Operating Systems Design and Implementation, Oct. 2010, pp.33-46."},{"key":"1083_CR50","unstructured":"Rott J. Intel\u00ae advanced encryption standard instructions (AES-NI). https:\/\/www.intel.com\/content\/www\/us\/en\/d-eveloper\/articles\/technical\/advanced-encryption-standard- instructions-aes-ni.html, Dec. 2021."},{"key":"1083_CR51","doi-asserted-by":"publisher","unstructured":"McCune J M, Li Y, Qu N, Zhou Z, Datta A, Gligor V, Perrig A. TrustVisor: Efficient TCB reduction and attestation. In Proc. the 2010 IEEE Symposium on Security and Privacy, May 2010, pp.143-158. DOI: https:\/\/doi.org\/10.1109\/SP.2010.17.","DOI":"10.1109\/SP.2010.17"},{"key":"1083_CR52","doi-asserted-by":"publisher","unstructured":"Zhang F, Chen J, Chen H, Zang B. CloudVisor: Retrofitting protection of virtual machines in multi-tenant cloud with nested virtualization. In Proc. the 23rd ACM Symposium on Operating Systems Principles, Oct. 2011, pp.203-216. DOI: https:\/\/doi.org\/10.1145\/2043556.2043576.","DOI":"10.1145\/2043556.2043576"},{"issue":"4","key":"1083_CR53","doi-asserted-by":"publisher","first-page":"191","DOI":"10.1145\/2694344.2694386","volume":"50","author":"N Dautenhahn","year":"2015","unstructured":"Dautenhahn N, Kasampalis T, Dietz W, Criswell J, Adve V. Nested kernel: An operating system architecture for intra-kernel privilege separation. ACM SIGPLAN Notices, 2015, 50(4): 191-206. DOI: https:\/\/doi.org\/10.1145\/2694344.2694386.","journal-title":"ACM SIGPLAN Notices"},{"key":"1083_CR54","doi-asserted-by":"publisher","unstructured":"Nelson L, Sigurbjarnarson H, Zhang K, Johnson D, Bornholt J, Torlak E, Wang X. Hyperkernel: Push-button verification of an OS kernel. In Proc. the 26th Symposium on Operating Systems Principles, Oct. 2017, pp.252-269. DOI: https:\/\/doi.org\/10.1145\/3132747.3132748.","DOI":"10.1145\/3132747.3132748"},{"key":"1083_CR55","doi-asserted-by":"publisher","unstructured":"Klein G, Elphinstone K, Heiser G et al. sel4: Formal verification of an OS kernel. In Proc. the 22nd ACM SIGOPS Symposium on Operating Systems Principles, Oct. 2009, pp.207-220. DOI: https:\/\/doi.org\/10.1145\/1629575.1629596.","DOI":"10.1145\/1629575.1629596"},{"key":"1083_CR56","doi-asserted-by":"publisher","unstructured":"Baumann A. Hardware is the new software. In Proc. the 16th Workshop on Hot Topics in Operating Systems, May 2017, pp.132-137. DOI: https:\/\/doi.org\/10.1145\/3102980.3103002.","DOI":"10.1145\/3102980.3103002"},{"key":"1083_CR57","doi-asserted-by":"publisher","unstructured":"Ferraiuolo A, Baumann A, Hawblitzel C, Parno B. Komodo: Using verification to disentangle secure-enclave hardware from software. In Proc. the 26th Symposium on Operating Systems Principles, Oct. 2017, pp.287-305. DOI: https:\/\/doi.org\/10.1145\/3132747.3132782.","DOI":"10.1145\/3132747.3132782"},{"key":"1083_CR58","doi-asserted-by":"publisher","unstructured":"Brasser F, Gens D, Jauernig P, Sadeghi A R, Stapf E. SANCTUARY: ARMing TrustZone with user-space enclaves. In Proc. the 26th Annual Network and Distributed System Security Symposium, Feb. 2019. DOI: https:\/\/doi.org\/10.14722\/ndss.2019.23448.","DOI":"10.14722\/ndss.2019.23448"},{"issue":"10","key":"1083_CR59","doi-asserted-by":"publisher","first-page":"1598","DOI":"10.1109\/TC.2020.3019704","volume":"70","author":"J Gu","year":"2021","unstructured":"Gu J, Wu X, Zhu B, Xia Y, Zang B, Guan H, Chen H. Enclavisor: A hardware-software co-design for enclaves on untrusted cloud. IEEE Transactions on Computers, 2021, 70(10): 1598-1611. DOI: https:\/\/doi.org\/10.1109\/TC.2020.3019704.","journal-title":"IEEE Transactions on Computers"},{"key":"1083_CR60","doi-asserted-by":"publisher","unstructured":"Levin R, Cohen E, Corwin W, Pollack F, Wulf W. Policy\/mechanism separation in Hydra. In Proc. the 5th ACM Symposium on Operating Systems Principles, Nov. 1975, pp.132-140. DOI: https:\/\/doi.org\/10.1145\/800213.806531","DOI":"10.1145\/800213.806531"},{"key":"1083_CR61","doi-asserted-by":"publisher","unstructured":"Liedtke J. Improving IPC by kernel design. In Proc. the 14th ACM Symposium on Operating Systems Principles, Dec. 1993, pp.175-188. DOI: https:\/\/doi.org\/10.1145\/168619.168633.","DOI":"10.1145\/168619.168633"},{"key":"1083_CR62","unstructured":"David F M, Chan E, Carlyle J C, Campbell R H. CuriOS: Improving reliability through operating system structure. In Proc. the 8th USENIX Conference on Operating Systems Design and Implementation, Dec. 2008, pp.59-72."},{"key":"1083_CR63","unstructured":"Gu J, Wu X, Li W, Liu N, Mi Z, Xia Y, Chen H. Harmonizing performance and isolation in microkernels with efficient intra-kernel isolation and communication. In Proc. the 2020 USENIX Annual Technical Conference, July 2020, pp.401- 417."},{"key":"1083_CR64","unstructured":"Hildebrand D. An architectural overview of QNX. In Proc. the Workshop on Micro-Kernels and Other Kernel Architectures, Apr. 1992, pp.113-126."},{"key":"1083_CR65","doi-asserted-by":"publisher","unstructured":"Ji D, Zhang Q, Zhao S, Shi Z, Guan Y. MicroTEE: Designing TEE OS based on the microkernel architecture. In Proc. the 18th IEEE International Conference on Trust, Security and Privacy in Computing and Communications\/13th IEEE International Conference on Big Data Science and Engineering, Aug. 2019, pp.26-33. DOI: https:\/\/doi.org\/10.1109\/Trust-Com\/BigDataSE.2019.00014.","DOI":"10.1109\/Trust-Com\/BigDataSE.2019.00014"},{"key":"1083_CR66","doi-asserted-by":"publisher","unstructured":"DeVuyst M, Venkat A, Tullsen D M. Execution migration in a heterogeneous-ISA chip multiprocessor. In Proc. the 17th International Conference on Architectural Support for Programming Languages and Operating Systems, Mar. 2012, pp.261-272. DOI: https:\/\/doi.org\/10.1145\/2150976.2151004.","DOI":"10.1145\/2150976.2151004"},{"key":"1083_CR67","unstructured":"Gordon M S, Jamshidi D A, Mahlke S, Mao Z M, Chen X. COMET: Code offload by migrating execution transparently. In Proc. the 10th USENIX Symposium on Operating Systems Design and Implementation, Oct. 2012, pp.93-106."}],"container-title":["Journal of Computer Science and Technology"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11390-021-1083-8.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s11390-021-1083-8\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11390-021-1083-8.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,4,25]],"date-time":"2022-04-25T08:36:23Z","timestamp":1650875783000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s11390-021-1083-8"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,3,31]]},"references-count":67,"journal-issue":{"issue":"2","published-print":{"date-parts":[[2022,4]]}},"alternative-id":["1083"],"URL":"https:\/\/doi.org\/10.1007\/s11390-021-1083-8","relation":{},"ISSN":["1000-9000","1860-4749"],"issn-type":[{"value":"1000-9000","type":"print"},{"value":"1860-4749","type":"electronic"}],"subject":[],"published":{"date-parts":[[2022,3,31]]},"assertion":[{"value":"18 October 2020","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"21 February 2021","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"31 March 2022","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}}]}}