{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,13]],"date-time":"2026-06-13T18:33:43Z","timestamp":1781375623637,"version":"3.54.1"},"reference-count":47,"publisher":"Springer Science and Business Media LLC","issue":"9","license":[{"start":{"date-parts":[[2021,8,19]],"date-time":"2021-08-19T00:00:00Z","timestamp":1629331200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2021,8,19]],"date-time":"2021-08-19T00:00:00Z","timestamp":1629331200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Sci. China Inf. Sci."],"published-print":{"date-parts":[[2021,9]]},"DOI":"10.1007\/s11432-019-2707-6","type":"journal-article","created":{"date-parts":[[2021,8,24]],"date-time":"2021-08-24T09:04:20Z","timestamp":1629795860000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":23,"title":["TZ-Container: protecting container from untrusted OS with ARM TrustZone"],"prefix":"10.1007","volume":"64","author":[{"given":"Zhichao","family":"Hua","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Yang","family":"Yu","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jinyu","family":"Gu","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Yubin","family":"Xia","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Haibo","family":"Chen","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Binyu","family":"Zang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2021,8,19]]},"reference":[{"key":"2707_CR1","first-page":"12","volume":"2","author":"D Merkel","year":"2014","unstructured":"Merkel D. Docker: lightweight Linux containers for consistent development and deployment. Linux J, 2014, 2: 12","journal-title":"Linux J"},{"key":"2707_CR2","unstructured":"Moammer K. Amd launching \u201chierofalcon\u201d 64bit arm embedded chips in 1h 2015-zen and k12 next year. 2015. http:\/\/wccftech.com\/amd-launching-arm-serves-year-wip\/#ixzz3Yef58mtq"},{"key":"2707_CR3","unstructured":"Morgan T P. Arm servers: cavium is a contender with thunderx. 2015. https:\/\/www.nextplatform.com\/2015\/12\/09\/arm-servers-cavium-is-a-contender-with-thunderx\/"},{"key":"2707_CR4","unstructured":"Amd opteron a1100. AMD. 2016. http:\/\/www.amd.com\/en-gb\/products\/server\/opteron-a-series"},{"key":"2707_CR5","unstructured":"Sverdlik Y. Paypal deploys arm servers in data centers. 2015. http:\/\/www.datacenterknowledge.com\/archives\/2015\/04\/29\/paypal-deploys-arm-servers-in-data-centers"},{"key":"2707_CR6","unstructured":"Rath J. Baidu deploys marvell arm-based cloud server. 2013. http:\/\/www.datacenterknowledge.com\/archives\/2013\/02\/28\/baidu-deploys-marvell-arm-based-server\/"},{"key":"2707_CR7","unstructured":"Introduction of Rancher-labs. Rancher-labs. 2017. http:\/\/rancher.com\/rancher-labs-2017-predictions-rapid-adoption-and-innovation-to-come\/"},{"key":"2707_CR8","unstructured":"Martin J. Kubernetes on arm. 2016. http:\/\/kubecloud.io\/kubernetes-on-arm-cluster\/"},{"key":"2707_CR9","unstructured":"Docker on arm. Uli Middelberg. 2015. https:\/\/github.com\/umiddelb\/armhf\/wiki\/Installing,-running,-using-docker-on-armhf-(ARMv7)-devices"},{"key":"2707_CR10","unstructured":"Linux CVE. CVE Details. 2016. http:\/\/www.cvedetails.com\/vulnerability-list\/vendor_id-33\/product_id-47\/Linux-Linux-Kernel.html"},{"key":"2707_CR11","unstructured":"Chen H, Zhang F, Chen C, et al. Tamper-resistant execution in an untrusted operating system using a virtual machine monitor. Parallel Processing Institute Technical Report, 2007. FDUPPITR-2007-08001"},{"key":"2707_CR12","doi-asserted-by":"crossref","unstructured":"Chen X, Garfinkel T, Lewis E, et al. Overshadow: a virtualization-based approach to retrofitting protection in commodity operating systems. In: Proceedings of the 13th International Conference on Architectural Support for Programming Languages and Operating Systems, 2008","DOI":"10.1145\/1346281.1346284"},{"key":"2707_CR13","unstructured":"Arnautov S, Trach B, Gregor F, et al. Scone: secure Linux containers with Intel SGX. In: Proceedings of USENIX Symposium on Operating Systems Design and Implementation, 2016"},{"key":"2707_CR14","doi-asserted-by":"crossref","unstructured":"Yang J, Shin K G. Using hypervisor to provide data secrecy for user applications on a per-page basis. In: Proceedings of the 4th ACM SIGPLAN\/SIGOPS International Conference on Virtual Execution Environments, 2008. 71\u201380","DOI":"10.1145\/1346256.1346267"},{"key":"2707_CR15","unstructured":"Intel. Software guard extensions programming reference. 2015. https:\/\/software.intel.com\/site\/default\/files\/329298-001.pdf"},{"key":"2707_CR16","doi-asserted-by":"publisher","first-page":"253","DOI":"10.1145\/2490301.2451145","volume":"41","author":"S Checkoway","year":"2013","unstructured":"Checkoway S, Shacham H. Iago attacks: why the system call API is a bad untrusted RPC interface. SIGARCH Comput Archit News, 2013, 41: 253\u2013264","journal-title":"SIGARCH Comput Archit News"},{"key":"2707_CR17","doi-asserted-by":"crossref","unstructured":"Hofmann O S, Kim S, Dunn A M, et al. InkTag: secure applications on an untrusted operating system. In: Proceedings of the 18th International Conference on Architectural Support for Programming Languages and Operating Systems, New York, 2013. 265\u2013278","DOI":"10.1145\/2451116.2451146"},{"key":"2707_CR18","doi-asserted-by":"crossref","unstructured":"Kwon Y, Dunn A M, Lee M Z, et al. Sego: pervasive trusted metadata for efficiently verified untrusted system services. In: Proceedings of the 21st International Conference on Architectural Support for Programming Languages and Operating Systems, 2016. 277\u2013290","DOI":"10.1145\/2954680.2872372"},{"key":"2707_CR19","doi-asserted-by":"publisher","first-page":"81","DOI":"10.1145\/2693714.2693729","volume":"42","author":"T Mitsuishi","year":"2014","unstructured":"Mitsuishi T, Nomura S, Suzuki J, et al. Accelerating breadth first search on GPU-BOX. SIGARCH Comput Archit News, 2014. 42: 81\u201386","journal-title":"SIGARCH Comput Archit News"},{"key":"2707_CR20","doi-asserted-by":"crossref","unstructured":"Chhabra S, Rogers B, Solihin Y, et al. SecureME: a hardware-software approach to full system security. In: Proceedings of the International Conference on Supercomputing, 2011","DOI":"10.1145\/1995896.1995914"},{"key":"2707_CR21","doi-asserted-by":"crossref","unstructured":"Azab A M, Ning P, Zhang X. Sice: a hardware-level strongly isolated computing environment for x86 multi-core platforms. In: Proceedings of the 18th ACM Conference on Computer and Communications Security, 2011. 375\u2013388","DOI":"10.1145\/2046707.2046752"},{"key":"2707_CR22","doi-asserted-by":"crossref","unstructured":"Strackx R, Piessens F. Fides: selectively hardening software application components against kernel-level or process-level malware. In: Proceedings of the 2012 ACM Conference on Computer and Communications Security, 2012. 2\u201313","DOI":"10.1145\/2382196.2382200"},{"key":"2707_CR23","doi-asserted-by":"crossref","unstructured":"Sun H, Sun K, Wang Y, et al. Trustice: hardware-assisted isolated computing environments on mobile devices. In: Proceedings of the 45th Annual IEEE\/IFIP International Conference on Dependable Systems and Networks (DSN), 2015. 367\u2013378","DOI":"10.1109\/DSN.2015.11"},{"key":"2707_CR24","unstructured":"Li Y, McCune J, Newsome J, et al. Minibox: a two-way sandbox for x86 native code. In: Proceedings of 2014 USENIX Annual Technical Conference (USENIX ATC 14), 2014. 409\u2013420"},{"key":"2707_CR25","first-page":"8","volume":"33","author":"A Baumann","year":"2015","unstructured":"Baumann A, Peinado M, Hunt G. Shielding applications from an untrusted cloud with haven. In: Proceedings of ACM Transactions on Computer Systems (TOCS), 2015. 33: 8","journal-title":"Proceedings of ACM Transactions on Computer Systems (TOCS)"},{"key":"2707_CR26","unstructured":"Tsai C-C, Porter D E, Vij M. Graphene-sgx: a practical library OS for unmodified applications on SGX. In: Proceedings of USENIX Annual Technical Conference (ATC), 2017. 8"},{"key":"2707_CR27","doi-asserted-by":"crossref","unstructured":"Guan L, Liu P, Xing X, et al. Trustshadow: secure execution of unmodified applications with ARM TrustZone. 2017. ArXiv: 1704.05600","DOI":"10.1145\/3081333.3081349"},{"key":"2707_CR28","unstructured":"Google. gvisor. 2018. https:\/\/github.com\/google\/gvisor"},{"key":"2707_CR29","first-page":"18","volume":"3","author":"T Alves","year":"2004","unstructured":"Alves T, Felton D. TrustZone: integrated hardware and software security. ARM White Paper, 2004, 3: 18\u201324","journal-title":"ARM White Paper"},{"key":"2707_CR30","unstructured":"Lipp M, Schwarz M, Gruss D, et al. Meltdown. 2018. ArXiv: 1801.01207"},{"key":"2707_CR31","unstructured":"Arm trusted firmware. ARM. 2017. https:\/\/github.com\/ARM-software\/arm-trusted-firmware"},{"key":"2707_CR32","doi-asserted-by":"crossref","unstructured":"Xu Y, Cui W, Peinado M. Controlled-channel attacks: deterministic side channels for untrusted operating systems. In: Proceedings of 2015 IEEE Symposium on Security and Privacy (SP), 2015. 640\u2013656","DOI":"10.1109\/SP.2015.45"},{"key":"2707_CR33","unstructured":"H\u00e4hnel M, Cui W, Peinado M. High-resolution side channels for untrusted operating systems. In: Proceedings of 2017 USENIX Annual Technical Conference (USENIX ATC 17), 2017. 299\u2013312"},{"key":"2707_CR34","doi-asserted-by":"crossref","unstructured":"Kocher P, Genkin D, Gruss D, et al. Spectre attacks: exploiting speculative execution. 2018. ArXiv: 1801.01203","DOI":"10.1109\/SP.2019.00002"},{"key":"2707_CR35","unstructured":"Weisse O, Van Bulck J, Minkin M, et al. Foreshadow-ng: Breaking the Virtual Memory Abstraction with Transient Out-of-Order Execution. Technical Report, KU Leuven. 2018"},{"key":"2707_CR36","unstructured":"Ta-Min R, Litty L, Lie D. Splitting interfaces: making trust between applications and operating systems configurable. In: Proceedings of the 7th Symposium on Operating Systems Design and Implementation, 2006. 279\u2013292"},{"key":"2707_CR37","doi-asserted-by":"crossref","unstructured":"Peinado M, Chen Y, England P, et al. Ngscb: a trusted open system. In: Proceedings of Australasian Conference on Information Security and Privacy, 2004. 86\u201397","DOI":"10.1007\/978-3-540-27800-9_8"},{"key":"2707_CR38","doi-asserted-by":"crossref","unstructured":"McCune J M, Li Y, Qu N, et al. Trustvisor: efficient TCB reduction and attestation. In: Proceedings of 2010 IEEE Symposium on Security and Privacy (SP), 2010. 143\u2013158","DOI":"10.1109\/SP.2010.17"},{"key":"2707_CR39","doi-asserted-by":"crossref","unstructured":"Dautenhahn N, Kasampalis T, Dietz W, et al. Nested kernel: an operating system architecture for intra-kernel privilege separation. In: Proceedings of the 20th International Conference on Architectural Support for Programming Languages and Operating Systems, 2015. 191\u2013206","DOI":"10.1145\/2775054.2694386"},{"key":"2707_CR40","unstructured":"Dan W, Martin L, Ricardo K, et al. Unikernels as processes. In: Proceedings of 2018 ACM Symposium on Cloud Computing, 2018"},{"key":"2707_CR41","doi-asserted-by":"crossref","unstructured":"Wang H, Shi P, Zhang Y. Jointcloud: a cross-cloud cooperation architecture for integrated internet service customization. In: Proceedings of 2017 IEEE 37th International Conference on Distributed Computing Systems (ICDCS), 2017. 1846\u20131855","DOI":"10.1109\/ICDCS.2017.237"},{"key":"2707_CR42","doi-asserted-by":"publisher","first-page":"211","DOI":"10.1007\/s11390-017-1715-1","volume":"32","author":"D G Cao","year":"2017","unstructured":"Cao D G, An B, Shi P C, et al. Providing virtual cloud for special purposes on demand in jointcloud computing environment. J Comput Sci Technol, 2017, 32: 211\u2013218","journal-title":"J Comput Sci Technol"},{"key":"2707_CR43","doi-asserted-by":"publisher","first-page":"1129","DOI":"10.1360\/N112017-00071","volume":"47","author":"P C Shi","year":"2017","unstructured":"Shi P C, Wang H M, Zheng Z B, et al. Collaboration environment for jointcloud computing (in Chinese). Sci Sin Inform, 2017, 47: 1129\u20131148","journal-title":"Sci Sin Inform"},{"key":"2707_CR44","doi-asserted-by":"crossref","unstructured":"Azab A M, Ning P, Shah J, et al. Hypervision across worlds: real-time kernel protection from the arm TrustZone secure world. In: Proceedings of the 2014 ACM SIGSAC Conference on Computer and Communications Security, 2014. 90\u2013102","DOI":"10.1145\/2660267.2660350"},{"key":"2707_CR45","unstructured":"Cho Y, Shin J, Kwon D, et al. Hardware-assisted on-demand hypervisor activation for efficient security critical code execution on mobile devices. In: Proceedings of 2016 USENIX Annual Technical Conference (USENIX ATC 16), 2016. 565\u2013578"},{"key":"2707_CR46","unstructured":"Hua Z, Gu J, Xia Y, et al. vTZ: virtualizing ARM TrustZone. In: Proceedings of the 26th USENIX Security Symposium (USENIX Security 17), 2017"},{"key":"2707_CR47","doi-asserted-by":"crossref","unstructured":"Brasser F, Gens D, Jauernig P, et al. Sanctuary: ARMing TrustZone with user-space enclaves. In: Proceedings of the 26th Network and Distributed System Security Symposium, 2019","DOI":"10.14722\/ndss.2019.23448"}],"container-title":["Science China Information Sciences"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11432-019-2707-6.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s11432-019-2707-6\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11432-019-2707-6.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,10,20]],"date-time":"2022-10-20T20:18:36Z","timestamp":1666297116000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s11432-019-2707-6"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,8,19]]},"references-count":47,"journal-issue":{"issue":"9","published-print":{"date-parts":[[2021,9]]}},"alternative-id":["2707"],"URL":"https:\/\/doi.org\/10.1007\/s11432-019-2707-6","relation":{},"ISSN":["1674-733X","1869-1919"],"issn-type":[{"value":"1674-733X","type":"print"},{"value":"1869-1919","type":"electronic"}],"subject":[],"published":{"date-parts":[[2021,8,19]]},"assertion":[{"value":"15 June 2019","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"17 September 2019","order":2,"name":"revised","label":"Revised","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"7 November 2019","order":3,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"19 August 2021","order":4,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}}],"article-number":"192101"}}