{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,12]],"date-time":"2026-03-12T21:06:28Z","timestamp":1773349588533,"version":"3.50.1"},"reference-count":44,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"10","license":[{"start":{"date-parts":[[2025,10,1]],"date-time":"2025-10-01T00:00:00Z","timestamp":1759276800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2025,10,1]],"date-time":"2025-10-01T00:00:00Z","timestamp":1759276800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,10,1]],"date-time":"2025-10-01T00:00:00Z","timestamp":1759276800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62472375"],"award-info":[{"award-number":["62472375"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Major Program of National Natural Science Foundation of Zhejiang","award":["LD24F020014"],"award-info":[{"award-number":["LD24F020014"]}]},{"name":"Major Program of National Natural Science Foundation of Zhejiang","award":["LD25F020002"],"award-info":[{"award-number":["LD25F020002"]}]},{"name":"Zhejiang Pioneer (Jianbing) Project","award":["2024C01032"],"award-info":[{"award-number":["2024C01032"]}]},{"name":"Ningbo Yongjiang Talent Programme","award":["2023A-198-G"],"award-info":[{"award-number":["2023A-198-G"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Comput."],"published-print":{"date-parts":[[2025,10]]},"DOI":"10.1109\/tc.2025.3586031","type":"journal-article","created":{"date-parts":[[2025,7,4]],"date-time":"2025-07-04T13:50:21Z","timestamp":1751637021000},"page":"3305-3318","source":"Crossref","is-referenced-by-count":1,"title":["UKFaaS: Lightweight, High-Performance and Secure FaaS Communication With Unikernel"],"prefix":"10.1109","volume":"74","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-7519-2295","authenticated-orcid":false,"given":"Zhenqian","family":"Chen","sequence":"first","affiliation":[{"name":"College of Computer Science and Technology, Zhejiang University, Hangzhou, Zhejiang, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0000-3435-4550","authenticated-orcid":false,"given":"Yuchun","family":"Zhan","sequence":"additional","affiliation":[{"name":"School of Software Technology, Zhejiang University, Hangzhou, Zhejiang, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0007-5292-5864","authenticated-orcid":false,"given":"Peng","family":"Hu","sequence":"additional","affiliation":[{"name":"School of Software Technology, Zhejiang University, Hangzhou, Zhejiang, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1115-5652","authenticated-orcid":false,"given":"Xinkui","family":"Zhao","sequence":"additional","affiliation":[{"name":"School of Software Technology, Zhejiang University, Hangzhou, Zhejiang, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0005-7523-8931","authenticated-orcid":false,"given":"Muyu","family":"Yang","sequence":"additional","affiliation":[{"name":"School of Software Technology, Zhejiang University, Hangzhou, Zhejiang, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0634-8089","authenticated-orcid":false,"given":"Siwei","family":"Tan","sequence":"additional","affiliation":[{"name":"School of Software Technology, Zhejiang University, Hangzhou, Zhejiang, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0159-1482","authenticated-orcid":false,"given":"Lufei","family":"Zhang","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Mathematical Engineering and Advanced Computing, Zhengzhou, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3801-6847","authenticated-orcid":false,"given":"Liqiang","family":"Lu","sequence":"additional","affiliation":[{"name":"College of Computer Science and Technology, Zhejiang University, Hangzhou, Zhejiang, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-4703-7348","authenticated-orcid":false,"given":"Jianwei","family":"Yin","sequence":"additional","affiliation":[{"name":"College of Computer Science and Technology, Zhejiang University, Hangzhou, Zhejiang, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zuoning","family":"Chen","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Mathematical Engineering and Advanced Computing, Zhengzhou, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","first-page":"419","article-title":"FireCracker: Lightweight virtualization for serverless applications","volume":"20","author":"Agache","year":"2020","journal-title":"Proc. NSDI"},{"key":"ref2","first-page":"419","article-title":"Faasm: Lightweight isolation for efficient stateful serverless computing","volume-title":"Proc. USENIX Annu. Tech. Conf. (USENIX)","author":"Shillaker","year":"2020"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1145\/2847562"},{"key":"ref4","first-page":"6257","article-title":"SHELTER: extending arm CCA with isolation in user space","volume-title":"Proc. 32nd USENIX Secur. Symp., USENIX Secur.","author":"Zhang","year":"2023"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1145\/3447786.3456248"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/IWQoS49365.2020.9213020"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1145\/3698038.3698558"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1145\/3342195.3392698"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1145\/3542929.3563473"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1145\/3492321.3524270"},{"key":"ref11","article-title":"NanoVM. deploy unikernels to any cloud in seconds with no Devops.","year":"2025"},{"key":"ref12","first-page":"445","article-title":"NETVM: High performance and flexible networking using virtualization on commodity platforms","volume-title":"Proc. 11th USENIX Symp. Netw. Syst. Des. Implementation (NSDI)","author":"Hwang","year":"2014"},{"key":"ref13","article-title":"Wrk - a http benchmarking tool","year":"2025"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1145\/3508360"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1145\/3620678.3624785"},{"key":"ref16","article-title":"Knative","year":"2025"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1145\/3544216.3544259"},{"key":"ref18","article-title":"EBPF: Dynamically program the kernel for efficient networking, observability, tracing, and security","year":"2025"},{"key":"ref19","first-page":"141","article-title":"Remote procedure call as a managed system service","volume-title":"Proc. 20th USENIX Symp. Netw.ed Syst. Des. Implementation (NSDI)","author":"Chen","year":"2023"},{"key":"ref20","first-page":"969","article-title":"ServiceRouter: Hyperscale and minimal cost service mesh at meta","volume-title":"Proc. 17th USENIX Symp. Operating Syst. Des. Implementation (OSDI)","author":"Saokar","year":"2023"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1145\/3503222.3507717"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1145\/3623278.3624755"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1145\/3620666.3651327"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1145\/3445814.3446701"},{"key":"ref25","article-title":"Online boutique","year":"2025"},{"key":"ref26","article-title":"VMFUNC \u2014 invoke VM function","year":"2025"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1145\/3302424.3303946"},{"key":"ref28","first-page":"671","article-title":"EBBRT: A framework for building per-application library operating systems","volume-title":"Proc. 12th USENIX Symp. Operat. Syst. Des. Implement. (OSDI)","author":"Schatzberg","year":"2016"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1145\/3342195.3387526"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1145\/3552326.3587458"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1145\/1400097.1400108"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1145\/3603269.3604816"},{"key":"ref33","first-page":"1489","article-title":"Following the data, not the function: Rethinking function orchestration in serverless computing","volume-title":"Proc. 20th USENIX Symp. Netw. Syst. Des. Implementation (NSDI)","author":"Yu","year":"2023"},{"key":"ref34","first-page":"1221","article-title":"ERIM: \u201cSecure, efficient in-process isolation with protection keys,\u201d (MPK)","volume-title":"Proc. 28th USENIX Security Symp. (USENIX Security)","author":"Vahldiek-Oberwagner","year":"2019"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1145\/3582016.3582054"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1145\/3503222.3507759"},{"key":"ref37","article-title":"Runu. OCI runtime to runu Unikraft like containers.","year":"2025"},{"key":"ref38","article-title":"CJSON","year":"2025"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813690"},{"key":"ref40","first-page":"255","article-title":"EPTI: Efficient defence against meltdown attack for unpatched VMS","volume-title":"Proc. USENIX Annu. Techn. Conference (USENIX ATC 18)","author":"Hua","year":"2018"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1145\/3582016.3582042"},{"key":"ref42","first-page":"69","article-title":"Help rather than recycle: Alleviating cold Startup in serverless computing through {Inter-Function} container sharing","volume-title":"Proc. USENIX Annu. Tech. Conf. (USENIX ATC)","author":"Li","year":"2022"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1145\/3445814.3446714"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1145\/3503222.3507732"}],"container-title":["IEEE Transactions on Computers"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/12\/11164542\/11071943.pdf?arnumber=11071943","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,17]],"date-time":"2025-09-17T17:30:34Z","timestamp":1758130234000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11071943\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,10]]},"references-count":44,"journal-issue":{"issue":"10"},"URL":"https:\/\/doi.org\/10.1109\/tc.2025.3586031","relation":{},"ISSN":["0018-9340","1557-9956","2326-3814"],"issn-type":[{"value":"0018-9340","type":"print"},{"value":"1557-9956","type":"electronic"},{"value":"2326-3814","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,10]]}}}