{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,15]],"date-time":"2026-07-15T16:49:40Z","timestamp":1784134180182,"version":"3.55.0"},"publisher-location":"New York, NY, USA","reference-count":75,"publisher":"ACM","license":[{"start":{"date-parts":[[2019,11,6]],"date-time":"2019-11-06T00:00:00Z","timestamp":1572998400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2019,11,6]]},"DOI":"10.1145\/3319535.3354197","type":"proceedings-article","created":{"date-parts":[[2019,11,7]],"date-time":"2019-11-07T13:08:32Z","timestamp":1573132112000},"page":"181-194","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":60,"title":["Hardware-Backed Heist"],"prefix":"10.1145","author":[{"given":"Keegan","family":"Ryan","sequence":"first","affiliation":[{"name":"University of California, San Diego &amp; NCC Group, La Jolla, CA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2019,11,6]]},"reference":[{"key":"e_1_3_2_2_1_1","volume-title":"Proceedings of the 2nd ACM symposium on Information, computer and communications security. ACM, 312--320","author":"Onur Aciicc","year":"2007"},{"key":"e_1_3_2_2_2_1","volume-title":"Cetin Kaya Kocc, and Jean-Pierre Seifert","author":"Onur Aciicc","year":"2007"},{"key":"e_1_3_2_2_3_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-45611-8_14"},{"key":"e_1_3_2_2_4_1","volume-title":"Cryptographers' Track at the RSA Conference","author":"Belgarric Pierre"},{"key":"e_1_3_2_2_5_1","volume-title":"Smart, and Yuval Yarom","author":"Benger Naomi","year":"2014"},{"key":"e_1_3_2_2_6_1","volume-title":"Advances in Cryptology -- CRYPTO '96","author":"Boneh Dan"},{"key":"e_1_3_2_2_7_1","volume-title":"11th USENIX Workshop on Offensive Technologies (WOOT 17)","author":"Brasser Ferdinand","year":"2017"},{"key":"e_1_3_2_2_8_1","volume-title":"Hakala","author":"Brumley Billy Bob","year":"2009"},{"key":"e_1_3_2_2_9_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-23822-2_20"},{"key":"e_1_3_2_2_10_1","unstructured":"Haehyun Cho Penghui Zhang Donguk Kim Jinbum Park Choong-Hoon Lee Ziming Zhao Adam Doup\u00e9 and Gail-Joon Ahn. 2018. Prime  Haehyun Cho Penghui Zhang Donguk Kim Jinbum Park Choong-Hoon Lee Ziming Zhao Adam Doup\u00e9 and Gail-Joon Ahn. 2018. Prime"},{"key":"e_1_3_2_2_11_1","volume-title":"Proceedings of the 34th Annual Computer Security Applications Conference. ACM, 441--452","author":"Count"},{"key":"e_1_3_2_2_12_1","doi-asserted-by":"publisher","DOI":"10.1145\/2666620.2666627"},{"key":"e_1_3_2_2_13_1","volume-title":"ER Eric Verheul, and T Ties Pull ter Gunne","author":"Cooijmans Tim","year":"2014"},{"key":"e_1_3_2_2_14_1","volume-title":"Intel Software Guard Extensions. (June","author":"Intel Corporation","year":"2015"},{"key":"e_1_3_2_2_15_1","unstructured":"The MITRE Corporation. 2014. CVE-2014--3100. Available from MITRE CVE-2014--3100. http:\/\/cve.mitre.org\/cgi-bin\/cvename.cgi?name=CVE-2014--3100 Accessed: 2019-04--21.  The MITRE Corporation. 2014. CVE-2014--3100. Available from MITRE CVE-2014--3100. http:\/\/cve.mitre.org\/cgi-bin\/cvename.cgi?name=CVE-2014--3100 Accessed: 2019-04--21."},{"key":"e_1_3_2_2_16_1","first-page":"1","article-title":"Intel SGX Explained","volume":"2016","author":"Costan Victor","year":"2016","journal-title":"IACR Cryptology ePrint Archive"},{"key":"e_1_3_2_2_17_1","volume-title":"Pixel Security: Better, Faster, Stronger. https:\/\/blog.google\/products\/android-enterprise\/pixel-security-better-faster-stronger\/. Accessed: 2019-04--21.","author":"Crowley Paul","year":"2016"},{"key":"e_1_3_2_2_18_1","volume-title":"Thomas Eisenbarth, Daniel Genkin, Nadia Heninger, Ahmad Moghimi, and Yuval Yarom.","author":"Dall Fergus","year":"2018"},{"key":"e_1_3_2_2_19_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-40349-1_25"},{"key":"e_1_3_2_2_20_1","doi-asserted-by":"publisher","DOI":"10.1109\/MICRO.2016.7783743"},{"key":"e_1_3_2_2_21_1","doi-asserted-by":"publisher","DOI":"10.1145\/3173162.3173204"},{"key":"e_1_3_2_2_22_1","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978400"},{"key":"e_1_3_2_2_23_1","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978400"},{"key":"e_1_3_2_2_24_1","volume-title":"Hardware-backed Keystore Authenticators (HKA) on Android 8.0 or Later Mobile Devices. (June","author":"FIDO.","year":"2018"},{"key":"e_1_3_2_2_25_1","volume-title":"26th USENIX Security Symposium (USENIX Security 17)","author":"Garc'ia Cesar Pereida","year":"2017"},{"key":"e_1_3_2_2_26_1","doi-asserted-by":"publisher","DOI":"10.1007\/s13389-016-0141-6"},{"key":"e_1_3_2_2_27_1","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978353"},{"key":"e_1_3_2_2_28_1","unstructured":"Google. 2016. Firmware update 7.1.0 for Pixel XL. https:\/\/dl.google.com\/dl\/android\/aosp\/marlin-nde63p-factory-dcdaaa51.zip.  Google. 2016. Firmware update 7.1.0 for Pixel XL. https:\/\/dl.google.com\/dl\/android\/aosp\/marlin-nde63p-factory-dcdaaa51.zip."},{"key":"e_1_3_2_2_29_1","unstructured":"Google. 2017. Firmware update 7.1.1 for Nexus 5X. https:\/\/dl.google.com\/dl\/android\/aosp\/bullhead-n4f26t-factory-8eed1d9f.zip.  Google. 2017. Firmware update 7.1.1 for Nexus 5X. https:\/\/dl.google.com\/dl\/android\/aosp\/bullhead-n4f26t-factory-8eed1d9f.zip."},{"key":"e_1_3_2_2_30_1","unstructured":"Google. 2018a. Android keystore system. https:\/\/developer.android.com\/training\/articles\/keystore. Accessed: 2019-04--21.  Google. 2018a. Android keystore system. https:\/\/developer.android.com\/training\/articles\/keystore. Accessed: 2019-04--21."},{"key":"e_1_3_2_2_31_1","unstructured":"Google. 2018b. Firmware update 8.1.0 for Nexus 5X. https:\/\/dl.google.com\/dl\/android\/aosp\/bullhead-opm7.181205.001-factory-5f189d84.zip.  Google. 2018b. Firmware update 8.1.0 for Nexus 5X. https:\/\/dl.google.com\/dl\/android\/aosp\/bullhead-opm7.181205.001-factory-5f189d84.zip."},{"key":"e_1_3_2_2_32_1","unstructured":"Google. 2018c. Verifying hardware-backed key pairs with Key Attestation. https:\/\/developer.android.com\/training\/articles\/security-key-attestation. Accessed: 2019-04--21.  Google. 2018c. Verifying hardware-backed key pairs with Key Attestation. https:\/\/developer.android.com\/training\/articles\/security-key-attestation. Accessed: 2019-04--21."},{"key":"e_1_3_2_2_33_1","volume-title":"27th USENIX Security Symposium (USENIX Security 18)","author":"Gras Ben","year":"2018"},{"key":"e_1_3_2_2_34_1","volume-title":"Selected Areas in Cryptography, Eli Biham and Amr M","author":"Hlav\u00e1vc Martin"},{"key":"e_1_3_2_2_35_1","volume-title":"Codes and Cryptography","volume":"23","author":"Howgrave-Graham N. A.","year":"2001"},{"key":"e_1_3_2_2_36_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-02384-2_21"},{"key":"e_1_3_2_2_37_1","volume-title":"Paul C Van Oorschot, and Scott A Vanstone","author":"Katz Jonathan","year":"1996"},{"key":"e_1_3_2_2_38_1","unstructured":"Cameron F. Kerry Acting Secretary and Charles Romine Director. 2013. FIPS PUB 186--4 FEDERAL INFORMATION PROCESSING STANDARDS PUBLICATION Digital Signature Standard (DSS).  Cameron F. Kerry Acting Secretary and Charles Romine Director. 2013. FIPS PUB 186--4 FEDERAL INFORMATION PROCESSING STANDARDS PUBLICATION Digital Signature Standard (DSS)."},{"key":"e_1_3_2_2_39_1","volume-title":"Spectre attacks: Exploiting speculative execution. arXiv preprint arXiv:1801.01203","author":"Kocher Paul","year":"2018"},{"key":"e_1_3_2_2_40_1","volume-title":"12th USENIX Workshop on Offensive Technologies (WOOT 18)","author":"Koruyeh Esmaeil Mohammadian","year":"2018"},{"key":"e_1_3_2_2_41_1","unstructured":"laginimaineb. 2015a. Exploring Qualcomm's TrustZone implementation. http:\/\/bits-please.blogspot.com\/2015\/08\/exploring-qualcomms-trustzone.html. Accessed: 2019-04--21.  laginimaineb. 2015a. Exploring Qualcomm's TrustZone implementation. http:\/\/bits-please.blogspot.com\/2015\/08\/exploring-qualcomms-trustzone.html. Accessed: 2019-04--21."},{"key":"e_1_3_2_2_42_1","unstructured":"laginimaineb. 2015b. Full TrustZone exploit for MSM8974. http:\/\/bits-please.blogspot.com\/2015\/08\/full-trustzone-exploit-for-msm8974.html. Accessed: 2019-04--21.  laginimaineb. 2015b. Full TrustZone exploit for MSM8974. http:\/\/bits-please.blogspot.com\/2015\/08\/full-trustzone-exploit-for-msm8974.html. Accessed: 2019-04--21."},{"key":"e_1_3_2_2_43_1","unstructured":"laginimaineb. 2016a. Exploring Qualcomm's Secure Execution Environment. http:\/\/bits-please.blogspot.com\/2016\/04\/exploring-qualcomms-secure-execution.html. Accessed: 2019-04--21.  laginimaineb. 2016a. Exploring Qualcomm's Secure Execution Environment. http:\/\/bits-please.blogspot.com\/2016\/04\/exploring-qualcomms-secure-execution.html. Accessed: 2019-04--21."},{"key":"e_1_3_2_2_44_1","unstructured":"laginimaineb. 2016b. Extracting Qualcomm's KeyMaster Keys - Breaking Android Full Disk Encryption. https:\/\/bits-please.blogspot.com\/2016\/06\/extracting-qualcomms-keymaster-keys.html. Accessed: 2019-04--21.  laginimaineb. 2016b. Extracting Qualcomm's KeyMaster Keys - Breaking Android Full Disk Encryption. https:\/\/bits-please.blogspot.com\/2016\/06\/extracting-qualcomms-keymaster-keys.html. Accessed: 2019-04--21."},{"key":"e_1_3_2_2_45_1","volume-title":"International Conference on Selected Areas in Cryptography. Springer, 235--256","author":"Lapid Ben","year":"2018"},{"key":"e_1_3_2_2_46_1","volume-title":"Inferring Fine-grained Control Flow Inside SGX Enclaves with Branch Shadowing. In 26th USENIX Security Symposium (USENIX Security 17)","author":"Lee Sangho","year":"2017"},{"key":"e_1_3_2_2_47_1","volume-title":"25th USENIX Security Symposium (USENIX Security 16)","author":"Lipp Moritz","year":"2016"},{"key":"e_1_3_2_2_48_1","volume-title":"International Conference on Information Security and Cryptology. Springer, 343--358","author":"Liu Mingjie","year":"2013"},{"key":"e_1_3_2_2_49_1","unstructured":"Kobus Marneweck. 2018. Enhancing embedded device security with new TrustZone-enabled microcontrollers. https:\/\/community.arm.com\/developer\/ip-products\/processors\/trustzone-for-armv8-m\/b\/blog\/posts\/enhancing-embedded-device-security-with-new-trustzone-enabled-microcontrollers. Accessed: 2019-04--21.  Kobus Marneweck. 2018. Enhancing embedded device security with new TrustZone-enabled microcontrollers. https:\/\/community.arm.com\/developer\/ip-products\/processors\/trustzone-for-armv8-m\/b\/blog\/posts\/enhancing-embedded-device-security-with-new-trustzone-enabled-microcontrollers. Accessed: 2019-04--21."},{"key":"e_1_3_2_2_50_1","volume-title":"Cryptographers' Track at the RSA Conference","author":"Moghimi Ahmad"},{"key":"e_1_3_2_2_51_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-66787-4_4"},{"key":"e_1_3_2_2_52_1","article-title":"The Insecurity of the Digital Signature Algorithm with Partially Known Nonces","volume":"15","author":"Shparlinski Nguyen","year":"2002","journal-title":"Journal of Cryptology"},{"key":"e_1_3_2_2_53_1","volume-title":"Nguyen and Jacques Stern","author":"Phong","year":"2001"},{"key":"e_1_3_2_2_55_1","volume-title":"Cryptographers' Track at the RSA Conference","author":"Okeya Katsuyuki"},{"key":"e_1_3_2_2_56_1","volume-title":"Cryptographers' track at the RSA conference","author":"Osvik Dag Arne"},{"key":"e_1_3_2_2_57_1","unstructured":"Colin Percival. 2005. Cache missing for fun and profit.  Colin Percival. 2005. Cache missing for fun and profit."},{"key":"e_1_3_2_2_58_1","unstructured":"Qualcomm. 2015. Qualcomm Snapdragon 808 Processor. https:\/\/www.qualcomm.com\/media\/documents\/files\/snapdragon-808-processor-product-brief.pdf. Accessed: 2019-04--21.  Qualcomm. 2015. Qualcomm Snapdragon 808 Processor. https:\/\/www.qualcomm.com\/media\/documents\/files\/snapdragon-808-processor-product-brief.pdf. Accessed: 2019-04--21."},{"key":"e_1_3_2_2_59_1","unstructured":"Qualcomm. 2019. April 2019 Qualcomm Technologies Inc. Security Bulletin. https:\/\/www.qualcomm.com\/company\/product-security\/bulletins#_CVE-2018--11976 Accessed: 2019-04--21.  Qualcomm. 2019. April 2019 Qualcomm Technologies Inc. Security Bulletin. https:\/\/www.qualcomm.com\/company\/product-security\/bulletins#_CVE-2018--11976 Accessed: 2019-04--21."},{"key":"e_1_3_2_2_60_1","unstructured":"Dan Rosenberg. 2014. Reflections on trusting TrustZone. BlackHat USA: https:\/\/www.blackhat.com\/docs\/us-14\/materials\/us-14-Rosenberg-Reflections-on-Trusting-TrustZone.pdf.  Dan Rosenberg. 2014. Reflections on trusting TrustZone. BlackHat USA: https:\/\/www.blackhat.com\/docs\/us-14\/materials\/us-14-Rosenberg-Reflections-on-Trusting-TrustZone.pdf."},{"key":"e_1_3_2_2_61_1","volume-title":"Return of the Hidden Number Problem. IACR Transactions on Cryptographic Hardware and Embedded Systems","author":"Ryan Keegan","year":"2019"},{"key":"e_1_3_2_2_62_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-45741-3_27"},{"key":"e_1_3_2_2_63_1","volume-title":"Device-side Security: Samsung Pay, TrustZone, and the TEE. https:\/\/developer.samsung.com\/tech-insights\/pay\/device-side-security. Accessed: 2019-04--21.","year":"2016"},{"key":"e_1_3_2_2_64_1","first-page":"396","article-title":"New Bleichenbacher Records: Practical Fault Attacks on qDSA Signatures","volume":"2018","author":"Takahashi Akira","year":"2018","journal-title":"IACR Cryptology ePrint Archive"},{"key":"e_1_3_2_2_65_1","volume-title":"CLKSCREW: Exposing the Perils of Security-Oblivious Energy Management. In 26th USENIX Security Symposium (USENIX Security 17)","author":"Tang Adrian","year":"2017"},{"key":"e_1_3_2_2_66_1","doi-asserted-by":"publisher","DOI":"10.1109\/ISPASS.2009.4919652"},{"key":"e_1_3_2_2_67_1","doi-asserted-by":"publisher","DOI":"10.1145\/3152701.3152706"},{"key":"e_1_3_2_2_68_1","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243822"},{"key":"e_1_3_2_2_69_1","volume-title":"Smart, and Yuval Yarom","author":"van de Pol Joop","year":"2015"},{"key":"e_1_3_2_2_70_1","unstructured":"Shawn Willden. 2017. Keystore Key Attestation. https:\/\/android-developers.googleblog.com\/2017\/09\/keystore-key-attestation.html. Accessed: 2019-04--21.  Shawn Willden. 2017. Keystore Key Attestation. https:\/\/android-developers.googleblog.com\/2017\/09\/keystore-key-attestation.html. Accessed: 2019-04--21."},{"key":"e_1_3_2_2_71_1","unstructured":"Xiaowen Xin. 2017. Lock it up! New hardware protections for your lock screen with the Google Pixel 2. https:\/\/security.googleblog.com\/2017\/11\/lock-it-up-new-hardware-protections-for.html. Accessed: 2019-04--21.  Xiaowen Xin. 2017. Lock it up! New hardware protections for your lock screen with the Google Pixel 2. https:\/\/security.googleblog.com\/2017\/11\/lock-it-up-new-hardware-protections-for.html. Accessed: 2019-04--21."},{"key":"e_1_3_2_2_72_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2015.45"},{"key":"e_1_3_2_2_73_1","volume-title":"Mastik: A micro-architectural side-channel toolkit. Retrieved from School of Computer Science Adelaide: http:\/\/cs.adelaide.edu.au\/ yval\/Mastik","author":"Yarom Yuval","year":"2016"},{"key":"e_1_3_2_2_74_1","unstructured":"Yuval Yarom and Katrina Falkner. 2014. FLUSH  Yuval Yarom and Katrina Falkner. 2014. FLUSH"},{"key":"e_1_3_2_2_75_1","volume-title":"23rd USENIX Security Symposium (USENIX Security 14)","author":"RELOAD"},{"key":"e_1_3_2_2_76_1","first-page":"980","article-title":"TruSpy: Cache Side-Channel Information Leakage from the Secure World on ARM Devices","volume":"2016","author":"Zhang Ning","year":"2016","journal-title":"IACR Cryptology ePrint Archive"}],"event":{"name":"CCS '19: 2019 ACM SIGSAC Conference on Computer and Communications Security","location":"London United Kingdom","acronym":"CCS '19","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 2019 ACM SIGSAC Conference on Computer and Communications Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3319535.3354197","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3319535.3354197","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T23:24:02Z","timestamp":1750202642000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3319535.3354197"}},"subtitle":["Extracting ECDSA Keys from Qualcomm's TrustZone"],"short-title":[],"issued":{"date-parts":[[2019,11,6]]},"references-count":75,"alternative-id":["10.1145\/3319535.3354197","10.1145\/3319535"],"URL":"https:\/\/doi.org\/10.1145\/3319535.3354197","relation":{},"subject":[],"published":{"date-parts":[[2019,11,6]]},"assertion":[{"value":"2019-11-06","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}