{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,14]],"date-time":"2026-04-14T22:25:54Z","timestamp":1776205554564,"version":"3.50.1"},"reference-count":64,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"name":"National Key Research and Development Program of China","award":["2022YFB4501300"],"award-info":[{"award-number":["2022YFB4501300"]}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62202194"],"award-info":[{"award-number":["62202194"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62202188"],"award-info":[{"award-number":["62202188"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2025]]},"DOI":"10.1109\/tifs.2025.3634981","type":"journal-article","created":{"date-parts":[[2025,11,19]],"date-time":"2025-11-19T18:44:38Z","timestamp":1763577878000},"page":"12507-12522","source":"Crossref","is-referenced-by-count":1,"title":["More Granular, Less Trust: Enforcing Intra-Process Isolation With Arm CCA in an Untrusted Management Environment"],"prefix":"10.1109","volume":"20","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-9164-8069","authenticated-orcid":false,"given":"Shiqi","family":"Liu","sequence":"first","affiliation":[{"name":"Hubei Key Laboratory of Distributed System Security, Hubei Engineering Research Center on Big Data Security, School of Cyber Science and Engineering, Huazhong University of Science and Technology, Wuhan, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0002-3245-3154","authenticated-orcid":false,"given":"Zhouqi","family":"Jiang","sequence":"additional","affiliation":[{"name":"Hubei Key Laboratory of Distributed System Security, Hubei Engineering Research Center on Big Data Security, School of Cyber Science and Engineering, Huazhong University of Science and Technology, Wuhan, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0841-1045","authenticated-orcid":false,"given":"Jie","family":"Wang","sequence":"additional","affiliation":[{"name":"Hubei Key Laboratory of Distributed System Security, Hubei Engineering Research Center on Big Data Security, School of Cyber Science and Engineering, Huazhong University of Science and Technology, Wuhan, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Wei","family":"Zhou","sequence":"additional","affiliation":[{"name":"Hubei Key Laboratory of Distributed System Security, Hubei Engineering Research Center on Big Data Security, School of Cyber Science and Engineering, Huazhong University of Science and Technology, Wuhan, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-4152-2107","authenticated-orcid":false,"given":"Kun","family":"Sun","sequence":"additional","affiliation":[{"name":"Center for Secure Information Systems, George Mason University, Fairfax, VA, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6468-7575","authenticated-orcid":false,"given":"Zhaohui","family":"Chen","sequence":"additional","affiliation":[{"name":"School of Integrated Circuits, Peking University, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5757-4396","authenticated-orcid":false,"given":"Yulai","family":"Xie","sequence":"additional","affiliation":[{"name":"Key Laboratory of Information Storage Systems, Ministry of Education, School of Cyber Science and Engineering, Huazhong University of Science and Technology, Wuhan, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","volume-title":"AMD Secure Encrypted Virtualization (SEV)","year":"2023"},{"key":"ref2","volume-title":"Intel Trust Domain Extensions (Intel TDX)","year":"2023"},{"key":"ref3","volume-title":"Confidential Compute Architecture","year":"2023"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3560585"},{"key":"ref5","first-page":"18","article-title":"Trustzone: Integrated hardware and software security","volume":"3","author":"Alves","year":"2004","journal-title":"Inf. Quart."},{"key":"ref6","volume-title":"Learn the Architecture-Realm Management Extension","year":"2021"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2025.240328"},{"key":"ref8","first-page":"6257","article-title":"Shelter: Extending arm cca with isolation in user space","volume-title":"Proc. 32nd USENIX Secur. Symp. (USENIX Secur.)","author":"Zhang"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1145\/2663716.2663755"},{"key":"ref10","first-page":"241","article-title":"Libmpk: Software abstraction for Intel memory protection keys (Intel MPK)","volume-title":"Proc. USENIX Annu. Tech. Conf. (USENIX ATC)","author":"Park"},{"key":"ref11","first-page":"1221","article-title":"ERIM: Secure, efficient in-process isolation with protection keys (MPK)","volume-title":"Proc. 28th USENIX Secur. Symp. (USENIX Secur.)","author":"Vahldiek-Oberwagner"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.12"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1145\/2660267.2660344"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/ISCA45697.2020.00069"},{"key":"ref15","first-page":"3129","article-title":"A hardware\u2013software co-design for efficient intra-enclave isolation","volume-title":"Proc. 31st USENIX Secur. Symp. (USENIX Secur.)","author":"Gu"},{"key":"ref16","volume-title":"Intel Software Guard Extensions (Intel SGX)","year":"2023"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1145\/2694344.2694386"},{"key":"ref18","first-page":"285","article-title":"Glamdring: Automatic application partitioning for Intel SGX","volume-title":"Proc. USENIX Annu. Tech. Conf. (USENIX ATC)","author":"Lind"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813690"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1145\/3342195.3387532"},{"key":"ref21","first-page":"1073","article-title":"CURE: A security architecture with customizable and resilient enclaves","volume-title":"Proc. 30th USENIX Secur. Symp. (USENIX Secur.)","author":"Bahmani"},{"key":"ref22","first-page":"857","article-title":"Sanctum: Minimal hardware extensions for strong software isolation","volume-title":"Proc. 25th USENIX Secur. Symp. (USENIX Secur.)","author":"Costan"},{"key":"ref23","first-page":"275","article-title":"Scalable memory protection in the PENGLAI enclave","volume-title":"Proc. 15th USENIX Symp. Operating Syst. Design Implement. (OSDI)","author":"Feng"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2019.23448"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.13"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2019.23327"},{"key":"ref27","first-page":"3423","article-title":"ACAI: Protecting accelerator execution with ARM confidential computing architecture","volume-title":"Proc. 33rd USENIX Secur. Symp. (USENIX Secur.)","author":"Sridhara"},{"key":"ref28","first-page":"1","article-title":"CAGE: Complementing ARM CCA with GPU extensions","volume-title":"Proc. 31st Annu. Netw. Distrib. Syst. Secur. Symp.","author":"Wang"},{"key":"ref29","volume-title":"Trusted Firmware\u2014A Documentation","year":"2024"},{"key":"ref30","volume-title":"Eyrie Enclave Runtime Kernel","year":"2023"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1145\/1315245.1315313"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1145\/2490301.2451145"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2021.24328"},{"key":"ref34","first-page":"49","article-title":"Dowsing for overflows: A guided fuzzer to find buffer boundary violations","volume-title":"Proc. 22nd USENIX Secur. Symp. (USENIX Secur.)","author":"Haller"},{"key":"ref35","first-page":"487","article-title":"An off-chip attack on hardware enclaves via the memory bus","volume-title":"Proc. 29th USENIX Secur. Symp. (USENIX Secur.)","author":"Lee"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/HPCA.2017.10"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1145\/2678373.2665726"},{"key":"ref38","article-title":"Meltdown","author":"Lipp","year":"2018","journal-title":"arXiv:1801.01207"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1145\/3399742"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1145\/3133926"},{"key":"ref41","first-page":"1007","article-title":"DR.CHECKER: A soundy analysis for Linux kernel drivers","volume-title":"Proc. 26th USENIX Secur. Symp. (USENIX Secur.)","author":"Machiry"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-68979-9_2"},{"key":"ref43","first-page":"199","article-title":"Page-oriented programming: Subverting control-flow integrity of commodity operating system kernels with non-writable code pages","volume-title":"Proc. 33rd USENIX Secur. Symp. (USENIX Secur.)","author":"Han"},{"key":"ref44","first-page":"523","article-title":"BesFS: A POSIX filesystem for enclaves with a mechanized safety proof","volume-title":"Proc. 29th USENIX Secur. Symp. (USENIX Secur.)","author":"Shinde"},{"key":"ref45","volume-title":"Fixed Virtual Platforms","year":"2023"},{"key":"ref46","volume-title":"Guest ARM CCA Linux Branches","year":"2024"},{"key":"ref47","volume-title":"Reference Implementation of ARM-CCA RMM Specification","year":"2023"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1109\/CGO.2011.5764696"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-53413-7_11"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1145\/186025.186041"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833650"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813611"},{"key":"ref53","first-page":"309","article-title":"Wedge: Splitting applications into reduced-privilege compartments","volume-title":"Proc. 5th USENIX Symp. Networked Syst. Design Implement.","author":"Bittau"},{"key":"ref54","first-page":"5","article-title":"Privtrans: Automatically partitioning programs for privilege separation","volume-title":"Proc. USENIX Secur. Symp.","author":"Brumley"},{"key":"ref55","doi-asserted-by":"publisher","DOI":"10.1109\/ASE.2013.6693091"},{"key":"ref56","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134066"},{"key":"ref57","doi-asserted-by":"publisher","DOI":"10.1145\/3433210.3453111"},{"key":"ref58","volume-title":"Nsjail: A Light-Weight Process Isolation Tool, Making Use of Linux Namespaces and Seccomp-BPF Syscall Filters","year":"2023"},{"key":"ref59","doi-asserted-by":"publisher","DOI":"10.1145\/3576915.3623206"},{"key":"ref60","doi-asserted-by":"publisher","DOI":"10.1145\/3576915.3623079"},{"key":"ref61","volume-title":"TF-RMM: An Implementation of ARM-CCA RMM","year":"2023"},{"key":"ref62","volume-title":"ISLET: An On-Device Confidential Computing Framework","year":"2023"},{"key":"ref63","first-page":"465","article-title":"Design and verification of the arm confidential compute architecture","volume-title":"Proc. 16th USENIX Symp. Operating Syst. Design Implement. (OSDI)","author":"Li"},{"key":"ref64","doi-asserted-by":"publisher","DOI":"10.1145\/3586040"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/10206\/10810755\/11259490.pdf?arnumber=11259490","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,11,28]],"date-time":"2025-11-28T18:42:13Z","timestamp":1764355333000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11259490\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025]]},"references-count":64,"URL":"https:\/\/doi.org\/10.1109\/tifs.2025.3634981","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"value":"1556-6013","type":"print"},{"value":"1556-6021","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025]]}}}