{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,8]],"date-time":"2026-04-08T08:54:03Z","timestamp":1775638443494,"version":"3.50.1"},"publisher-location":"New York, NY, USA","reference-count":102,"publisher":"ACM","license":[{"start":{"date-parts":[[2024,4,22]],"date-time":"2024-04-22T00:00:00Z","timestamp":1713744000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"DOI":"10.13039\/https:\/\/doi.org\/10.13039\/100018693","name":"HORIZON EUROPE Framework Programme","doi-asserted-by":"publisher","award":["101086248"],"award-info":[{"award-number":["101086248"]}],"id":[{"id":"10.13039\/https:\/\/doi.org\/10.13039\/100018693","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2024,4,22]]},"DOI":"10.1145\/3642977.3652097","type":"proceedings-article","created":{"date-parts":[[2024,3,26]],"date-time":"2024-03-26T15:03:10Z","timestamp":1711465390000},"page":"32-40","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":10,"title":["Serverless Confidential Containers: Challenges and Opportunities"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-3455-7563","authenticated-orcid":false,"given":"Carlos","family":"Segarra","sequence":"first","affiliation":[{"name":"Imperial College London, London, United Kingdom"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0006-3655-2378","authenticated-orcid":false,"given":"Tobin","family":"Feldman-Fitzthum","sequence":"additional","affiliation":[{"name":"IBM Research, Yorktown Heights, United States of America"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0002-1433-9104","authenticated-orcid":false,"given":"Daniele","family":"Buono","sequence":"additional","affiliation":[{"name":"IBM Research, Yorktown Heights, United Kingdom"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6963-5640","authenticated-orcid":false,"given":"Peter","family":"Pietzuch","sequence":"additional","affiliation":[{"name":"Imperial College London, London, United Kingdom"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2024,4,22]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"2021. Regulation (EU) 2016\/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data and repealing Directive 95\/46\/EC."},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1145\/3552326.3567496"},{"key":"e_1_3_2_1_3_1","volume-title":"Firecracker: Lightweight Virtualization for Serverless Applications. In 17th USENIX Symposium on Networked Systems Design and Implementation (NSDI 20)","author":"Agache Alexandru","year":"2020","unstructured":"Alexandru Agache, Marc Brooker, Alexandra Iordache, Anthony Liguori, Rolf Neugebauer, Phil Piwonka, and Diana-Maria Popa. 2020. Firecracker: Lightweight Virtualization for Serverless Applications. In 17th USENIX Symposium on Networked Systems Design and Implementation (NSDI 20). USENIX Association, Santa Clara, CA, 419--434. https:\/\/www.usenix.org\/conference\/nsdi20\/presentation\/agache"},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","unstructured":"Ayaz Akram Anna Giannakou Venkatesh Akella Jason Lowe-Power and Sean Peisert. 2021. Performance Analysis of Scientific Computing Workloads on General Purpose TEEs. 1066--1076. 10.1109\/IPDPS49936.2021.00115","DOI":"10.1109\/IPDPS49936.2021.00115"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1145\/3338466.3358916"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1145\/3552326.3567503"},{"key":"e_1_3_2_1_7_1","unstructured":"AMD. 2022. AMD Secure Encrypted Virtualization. https:\/\/developer.amd.com\/sev\/."},{"key":"e_1_3_2_1_8_1","unstructured":"AMD. 2023. Confidential Computing Performance - Google Cloud C2D VM Instances. https:\/\/www.amd.com\/system\/files\/documents\/3rd-gen-epyc-gcp-c2d-conf-compute-perf-brief.pdf."},{"key":"e_1_3_2_1_9_1","volume-title":"Microsoft Azure Confidential Computing Powered by 3rd Gen EPYC CPUs. https:\/\/community.amd.com\/t5\/epyc-processors\/microsoft-azure-confidential-computing-powered-by-3rd-gen-epyc\/ba-p\/497796","author":"AMD.","unstructured":"AMD. 2023. Microsoft Azure Confidential Computing Powered by 3rd Gen EPYC CPUs. https:\/\/community.amd.com\/t5\/epyc-processors\/microsoft-azure-confidential-computing-powered-by-3rd-gen-epyc\/ba-p\/497796."},{"key":"e_1_3_2_1_10_1","unstructured":"AntStack. 2024. Serverless For Unstructured Data Problems in Life Sciences. https:\/\/www.antstack.com\/blog\/how-serverless-is-solving-unstructured-data-problem-for-life-sciences\/."},{"key":"e_1_3_2_1_11_1","unstructured":"archlinux Wiki. 2024. init. https:\/\/wiki.archlinux.org\/title\/init."},{"key":"e_1_3_2_1_12_1","unstructured":"Arm. 2022. Arm TrustZone. https:\/\/www.arm.com\/technologies\/trustzone-for-cortex-a."},{"key":"e_1_3_2_1_13_1","unstructured":"Aws. 2024. Real-time fraud detection using AWS serverless and machine learning services. https:\/\/aws.amazon.com\/blogs\/machine-learning\/real-time-fraud-detection-using-aws-serverless-and-machine-learning-services\/."},{"key":"e_1_3_2_1_14_1","unstructured":"Microsoft Azure. 2024. Confidential Containers on Azure Container Instances. https:\/\/learn.microsoft.com\/en-us\/azure\/container-instances\/container-instances-confidential-overview."},{"key":"e_1_3_2_1_15_1","volume-title":"Avocado: A Secure In-Memory Distributed Storage System. In 2021 USENIX Annual Technical Conference (USENIX ATC 21)","author":"Bailleu Maurice","year":"2021","unstructured":"Maurice Bailleu, Dimitra Giantsidi, Vasilis Gavrielatos, Do Le Quoc, Vijay Nagarajan, and Pramod Bhatotia. 2021. Avocado: A Secure In-Memory Distributed Storage System. In 2021 USENIX Annual Technical Conference (USENIX ATC 21). USENIX Association, 65--79. https:\/\/www.usenix.org\/conference\/atc21\/presentation\/bailleu"},{"key":"e_1_3_2_1_16_1","unstructured":"James Bottomley. 2024. QEMU Mailing List - sev: enable secret injection to a self described area in OVMF. https:\/\/lore.kernel.org\/qemu-devel\/20201214154429.11023-1-jejb@linux.ibm.com\/."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1145\/3319647.3325825"},{"key":"e_1_3_2_1_18_1","volume-title":"On-demand Container Loading in AWS Lambda. In 2023 USENIX Annual Technical Conference (USENIX ATC 23)","author":"Brooker Marc","year":"2023","unstructured":"Marc Brooker, Mike Danilov, Chris Greenwood, and Phil Piwonka. 2023. On-demand Container Loading in AWS Lambda. In 2023 USENIX Annual Technical Conference (USENIX ATC 23). USENIX Association, Boston, MA, 315--328. https:\/\/www.usenix.org\/conference\/atc23\/presentation\/brooker"},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1145\/3342195.3392698"},{"key":"e_1_3_2_1_20_1","unstructured":"Google Cloud. 2022. Confidential Computing. https:\/\/cloud.google.com\/confidential-computing."},{"key":"e_1_3_2_1_21_1","unstructured":"Google Cloud. 2022. Ubiquitous Data Encryption. https:\/\/cloud.google.com\/compute\/confidential-vm\/docs\/ubiquitous-data-encryption."},{"key":"e_1_3_2_1_22_1","unstructured":"Google Cloud. 2024. What is a Virtual Machine? https:\/\/cloud.google.com\/learn\/what-is-a-virtual-machine."},{"key":"e_1_3_2_1_23_1","unstructured":"Confidential Computing Consortium. 2022. Confidential Computing - Open Source Community. https:\/\/confidentialcomputing.io\/."},{"key":"e_1_3_2_1_24_1","unstructured":"containerd. 2024. An industry-standard container runtime with an emphasis on simplicity robustness and portability. https:\/\/containerd.io\/."},{"key":"e_1_3_2_1_25_1","unstructured":"containerd. 2024. Runtime v2. https:\/\/github.com\/containerd\/containerd\/tree\/main\/runtime\/v2."},{"key":"e_1_3_2_1_26_1","unstructured":"Containers. 2024. OCIcrypt - Encryption libraries for OCI container images. https:\/\/github.com\/containers\/ocicrypt."},{"key":"e_1_3_2_1_27_1","unstructured":"Containers. 2024. Skopeo - Work with remote image registries. https:\/\/github.com\/containers\/skopeo."},{"key":"e_1_3_2_1_28_1","unstructured":"Confidential Containers. 2024. Attestation Agent. https:\/\/github.com\/confidential-containers\/guest-components\/tree\/main\/attestation-agent."},{"key":"e_1_3_2_1_29_1","unstructured":"Confidential Containers. 2024. Confidential Containers - Overview. https:\/\/github.com\/confidential-containers\/confidential-containers\/blob\/main\/overview.md."},{"key":"e_1_3_2_1_30_1","unstructured":"Confidential Containers. 2024. Generic Key Broker Service. https:\/\/github.com\/confidential-containers\/kbs."},{"key":"e_1_3_2_1_31_1","unstructured":"Confidential Containers. 2024. image-rs - Container Images Rust Crate. https:\/\/github.com\/confidential-containers\/guest-components\/tree\/main\/image-rs."},{"key":"e_1_3_2_1_32_1","unstructured":"Confidential Containers. 2024. Key Broker Client. https:\/\/github.com\/confidential-containers\/guest-components\/tree\/main\/attestation-agent\/kbc."},{"key":"e_1_3_2_1_33_1","unstructured":"Confidential Containers. 2024. Welcome to Confidential Containers! https:\/\/confidentialcontainers.org\/."},{"key":"e_1_3_2_1_34_1","unstructured":"Kata Containers. 2023. The speed of containers the security of VMs. https:\/\/katacontainers.io\/."},{"key":"e_1_3_2_1_35_1","unstructured":"Kata Containers. 2024. Kata Agent. https:\/\/github.com\/kata-containers\/kata-containers\/blob\/main\/src\/agent\/README.md."},{"key":"e_1_3_2_1_36_1","unstructured":"Kata Containers. 2024. Kata Agent API - Github. https:\/\/github.com\/kata-containers\/kata-containers\/blob\/CCv0\/src\/runtime\/virtcontainers\/kata_agent.go_L2518-L2531."},{"key":"e_1_3_2_1_37_1","unstructured":"Kata Containers. 2024. Kata Containers Architecture. https:\/\/github.com\/kata-containers\/kata-containers\/tree\/main\/docs\/design\/architecture."},{"key":"e_1_3_2_1_38_1","unstructured":"Kata Containers. 2024. Kata Open Policy Agent. https:\/\/github.com\/kata-containers\/kata-containers\/tree\/main\/src\/kata-opa."},{"key":"e_1_3_2_1_39_1","unstructured":"Open Containers. 2023. runc - CLI tool for spawning and running containers according to the OCI specification. https:\/\/github.com\/opencontainers\/runc."},{"key":"e_1_3_2_1_40_1","unstructured":"Open Containers. 2024. OCI Image Format Specification. https:\/\/github.com\/opencontainers\/image-spec."},{"key":"e_1_3_2_1_41_1","unstructured":"DockerHub. 2024. registry - Distribution implementation for storing and distributing container images and artifacts. https:\/\/hub.docker.com\/_\/registry."},{"key":"e_1_3_2_1_42_1","unstructured":"Knative Serving Docs. 2023. Hello World - Python. https:\/\/github.com\/knative\/docs\/tree\/main\/code-samples\/serving\/hello-world\/helloworld-python."},{"key":"e_1_3_2_1_43_1","unstructured":"enclave cc. 2024. Process-based Confidential Container Runtime. https:\/\/github.com\/confidential-containers\/enclave-cc."},{"key":"e_1_3_2_1_44_1","volume-title":"Fast and Slow: Low-Latency Video Processing Using Thousands of Tiny Threads. In 14th USENIX Symposium on Networked Systems Design and Implementation (NSDI 17)","author":"Fouladi Sadjad","year":"2017","unstructured":"Sadjad Fouladi, Riad S. Wahby, Brennan Shacklett, Karthikeyan Vasuki Balasubramaniam, William Zeng, Rahul Bhalerao, Anirudh Sivaraman, George Porter, and Keith Winstein. 2017. Encoding, Fast and Slow: Low-Latency Video Processing Using Thousands of Tiny Threads. In 14th USENIX Symposium on Networked Systems Design and Implementation (NSDI 17). USENIX Association, Boston, MA, 363--376. https:\/\/www.usenix.org\/conference\/nsdi17\/technical-sessions\/presentation\/fouladi"},{"key":"e_1_3_2_1_45_1","doi-asserted-by":"publisher","DOI":"10.1109\/TPS-ISA48467.2019.00012"},{"key":"e_1_3_2_1_46_1","unstructured":"Gramine. 2024. Gramine Project - a library OS for Unmodified Applications. https:\/\/gramineproject.io\/."},{"key":"e_1_3_2_1_47_1","unstructured":"Brendan Gregg. 2023. Flame Graphs. https:\/\/www.brendangregg.com\/flamegraphs.html."},{"key":"e_1_3_2_1_48_1","unstructured":"Red Hat. 2024. Attestation in Confidential Computing. https:\/\/www.redhat.com\/en\/blog\/attestation-confidential-computing."},{"key":"e_1_3_2_1_49_1","unstructured":"Red Hat. 2024. Confidential computing use cases. https:\/\/www.redhat.com\/en\/blog\/confidential-computing-use-cases."},{"key":"e_1_3_2_1_50_1","unstructured":"Red Hat. 2024. Understanding the Confidential Containers Attestation Flow. https:\/\/www.redhat.com\/en\/blog\/understanding-confidential-containers-attestation-flow."},{"key":"e_1_3_2_1_51_1","unstructured":"IBM. 2023. IBM Cloud. https:\/\/www.ibm.com\/cloud."},{"key":"e_1_3_2_1_52_1","unstructured":"IBM. 2023. IBM Cloud Bare Metal Servers. https:\/\/www.ibm.com\/products\/bare-metal-servers."},{"key":"e_1_3_2_1_53_1","unstructured":"Apache Incubator. 2021. Teaclave. https:\/\/github.com\/apache\/incubator-teaclave."},{"key":"e_1_3_2_1_54_1","unstructured":"Intel. 2022. Intel Software Guard Extensions. https:\/\/www.intel.co.uk\/content\/www\/uk\/en\/architecture-and-technology\/software-guard-extensions.html."},{"key":"e_1_3_2_1_55_1","unstructured":"Intel. 2024. Intel TDX - CCC Linux Guest Hardening. https:\/\/intel.github.io\/ccc-linux-guest-hardening-docs\/security-spec.html."},{"key":"e_1_3_2_1_56_1","unstructured":"Intel. 2024. Intel Trust Domain Extensions. https:\/\/www.intel.com\/content\/www\/us\/en\/developer\/tools\/trust-domain-extensions\/overview.html."},{"key":"e_1_3_2_1_57_1","volume-title":"IEEE International Conference on Cloud Engineering, (IC2E).","author":"Ishakian Vatche","year":"2018","unstructured":"Vatche Ishakian, Vinod Muthusamy, and Aleksander Slominski. 2018. Serving Deep Learning Models in a Serverless Platform. In IEEE International Conference on Cloud Engineering, (IC2E)."},{"key":"e_1_3_2_1_58_1","doi-asserted-by":"publisher","DOI":"10.1145\/3477132.3483541"},{"key":"e_1_3_2_1_59_1","doi-asserted-by":"publisher","DOI":"10.1145\/3127479.3128601"},{"key":"e_1_3_2_1_60_1","doi-asserted-by":"publisher","DOI":"10.1145\/3620678.3624783"},{"key":"e_1_3_2_1_61_1","volume-title":"AMD x86 Memory Encryption Technologies","author":"Kaplan David","unstructured":"David Kaplan. 2016. AMD x86 Memory Encryption Technologies. USENIX Association, Austin, TX."},{"key":"e_1_3_2_1_62_1","doi-asserted-by":"publisher","DOI":"10.1145\/3623392"},{"key":"e_1_3_2_1_63_1","unstructured":"Knative. 2024. Knative is an Open-Source Enterprise-level solution to build Serverless and Event Driven Applications. https:\/\/knative.dev\/docs\/."},{"key":"e_1_3_2_1_64_1","unstructured":"Knative. 2024. Knative Serving Architecture. https:\/\/knative.dev\/docs\/serving\/architecture\/."},{"key":"e_1_3_2_1_65_1","unstructured":"Knative. 2024. Tag Resolution. https:\/\/knative.dev\/docs\/serving\/tag-resolution\/."},{"key":"e_1_3_2_1_66_1","unstructured":"Kubernetes. 2024. CRI - Container Runtime Interface. https:\/\/kubernetes.io\/docs\/concepts\/architecture\/cri\/."},{"key":"e_1_3_2_1_67_1","unstructured":"Kubernetes. 2024. kubelet. https:\/\/kubernetes.io\/docs\/reference\/command-line-tools-reference\/kubelet\/."},{"key":"e_1_3_2_1_68_1","unstructured":"Linux KVM. 2024. Kernel Virtual Machine. https:\/\/linux-kvm.org\/page\/Main_Page."},{"key":"e_1_3_2_1_69_1","volume-title":"16th USENIX Symposium on Operating Systems Design and Implementation (OSDI 22)","author":"Mahgoub Ashraf","year":"2022","unstructured":"Ashraf Mahgoub, Edgardo Barsallo Yi, Karthick Shankar, Sameh Elnikety, Somali Chaterji, and Saurabh Bagchi. 2022. ORION and the Three Rights: Sizing, Bundling, and Prewarming for Serverless DAGs. In 16th USENIX Symposium on Operating Systems Design and Implementation (OSDI 22). USENIX Association, Carlsbad, CA, 303--320. https:\/\/www.usenix.org\/conference\/osdi22\/presentation\/mahgoub"},{"key":"e_1_3_2_1_70_1","unstructured":"Linux manual page. 2024. namespaces. https:\/\/man7.org\/linux\/man-pages\/man7\/namespaces.7.html."},{"key":"e_1_3_2_1_71_1","unstructured":"Microsoft. 2020. Microsoft Azure Attestation. https:\/\/docs.microsoft.com\/azure\/attestation\/overview."},{"key":"e_1_3_2_1_72_1","unstructured":"Microsoft. 2022. Microsoft Azure Confidential Computing. https:\/\/azure.microsoft.com\/en-gb\/solutions\/confidential-compute\/."},{"key":"e_1_3_2_1_73_1","unstructured":"Microsoft. 2023. Inside Look: How Azure Linux powers Confidential Containers on AKS. https:\/\/techcommunity.microsoft.com\/t5\/linux-and-open-source-blog\/inside-look-how-azure-linux-powers-confidential-containers-on\/ba-p\/3981296."},{"key":"e_1_3_2_1_74_1","unstructured":"Microsoft. 2024. Azure Functions - Execute event-driven serverless code with an end-to-end development experience. https:\/\/azure.microsoft.com\/en-us\/products\/functions\/."},{"key":"e_1_3_2_1_75_1","unstructured":"Nydus. 2024. Nydus - Acceleration Framework For Container Image. https:\/\/nydus.dev\/."},{"key":"e_1_3_2_1_76_1","unstructured":"QEMU Options. 2023. RAM. https:\/\/wiki.gentoo.org\/wiki\/QEMU\/Options_RAM."},{"key":"e_1_3_2_1_77_1","unstructured":"OVMF. 2024. AMD SEV x64 Package. https:\/\/github.com\/tianocore\/edk2\/blob\/master\/OvmfPkg\/AmdSev\/AmdSevX64.dsc."},{"key":"e_1_3_2_1_78_1","unstructured":"The Washington Post. 2024. NSA infiltrates links to Yahoo Google data centers worldwide Snowden documents say. https:\/\/www.washingtonpost.com\/world\/national-security\/nsa-infiltrates-links-to-yahoo-google-data-centers-worldwide-snowden-documents-say\/2013\/10\/30\/e51d661e-4166-11e3-8b74-d89d714ca4dd_story.html."},{"key":"e_1_3_2_1_79_1","unstructured":"Qemu. 2024. Qemu - A generic and open-source machine emulator and virtualizer. https:\/\/www.qemu.org\/."},{"key":"e_1_3_2_1_80_1","unstructured":"Qemu. 2024. QEMU Firmware Configuration Device. https:\/\/www.qemu.org\/docs\/master\/specs\/fw_cfg.html."},{"key":"e_1_3_2_1_81_1","unstructured":"Quay. 2024. Quay Container Registry. https:\/\/quay.io\/."},{"key":"e_1_3_2_1_82_1","unstructured":"Github Container Registry. 2024. Your packages at home with their code. https:\/\/github.com\/features\/packages."},{"key":"e_1_3_2_1_83_1","volume-title":"LPC 2021 - Attestation and Secret Injection for Confidential VMs, Containers, and Pods. https:\/\/lpc.events\/event\/11\/contributions\/994\/.","author":"Research IBM","year":"2024","unstructured":"IBM Research. 2024. LPC 2021 - Attestation and Secret Injection for Confidential VMs, Containers, and Pods. https:\/\/lpc.events\/event\/11\/contributions\/994\/."},{"key":"e_1_3_2_1_84_1","doi-asserted-by":"publisher","unstructured":"Alireza Sahraei Soteris Demetriou Amirali Sobhgol Haoran Zhang Abhigna Nagaraja Neeraj Pathak Girish Joshi Carla Souza Bo Huang Wyatt Cook Andrii Golovei Pradeep Venkat Andrew Mcfague Dimitrios Skarlatos Vipul Patel Ravinder Thind Ernesto Gonzalez Yun Jin and Chunqiang Tang. 2023. XFaaS: Hyperscale and Low Cost Serverless Functions at Meta. 231--246. 10.1145\/3600006.3613155","DOI":"10.1145\/3600006.3613155"},{"key":"e_1_3_2_1_85_1","unstructured":"SeaBIOS. 2023. SeaBIOS. https:\/\/www.seabios.org\/SeaBIOS."},{"key":"e_1_3_2_1_86_1","unstructured":"Kaspersky Security. 2024. Downgrade Attack. https:\/\/encyclopedia.kaspersky.com\/glossary\/downgrade-attack\/."},{"key":"e_1_3_2_1_87_1","unstructured":"Amazon Web Services. 2024. AWS Lambda - Run code without thinking of servers or clusters. https:\/\/aws.amazon.com\/lambda\/."},{"key":"e_1_3_2_1_88_1","unstructured":"Knative Serving. 2024. Configuring Scale to Zero. https:\/\/knative.dev\/docs\/serving\/autoscaling\/scale-to-zero\/."},{"key":"e_1_3_2_1_89_1","volume-title":"2020 USENIX Annual Technical Conference (USENIX ATC 20)","author":"Shahrad Mohammad","year":"2020","unstructured":"Mohammad Shahrad, Rodrigo Fonseca, Inigo Goiri, Gohar Chaudhry, Paul Batum, Jason Cooke, Eduardo Laureano, Colby Tresness, Mark Russinovich, and Ricardo Bianchini. 2020. Serverless in the Wild: Characterizing and Optimizing the Serverless Workload at a Large Cloud Provider. In 2020 USENIX Annual Technical Conference (USENIX ATC 20). USENIX Association, 205--218. https:\/\/www.usenix.org\/conference\/atc20\/presentation\/shahrad"},{"key":"e_1_3_2_1_90_1","volume-title":"Faasm: Lightweight Isolation for Efficient Stateful Serverless Computing. In 2020 USENIX Annual Technical Conference (USENIX ATC 20)","author":"Shillaker Simon","year":"2020","unstructured":"Simon Shillaker and Peter Pietzuch. 2020. Faasm: Lightweight Isolation for Efficient Stateful Serverless Computing. In 2020 USENIX Annual Technical Conference (USENIX ATC 20). USENIX Association, 419--433. https:\/\/www.usenix.org\/conference\/atc20\/presentation\/shillaker"},{"key":"e_1_3_2_1_91_1","unstructured":"Sigstore. 2024. Cosign - Container Signing. https:\/\/github.com\/sigstore\/cosign."},{"key":"e_1_3_2_1_92_1","unstructured":"Brijesh Singh. 2024. [PATCH v9 00\/43] Add AMD Secure Nested Paging (SEV-SNP) Guest Support. https:\/\/lore.kernel.org\/linux-mm\/20220205162249.4dkttihw6my7iha3@amd.com\/t\/."},{"key":"e_1_3_2_1_93_1","unstructured":"UEFI Platform Initialization Specification. 2023. Driver Execution Environment (DXE) Phase. https:\/\/uefi.org\/specs\/PI\/1.8\/V2_Overview.html."},{"key":"e_1_3_2_1_94_1","unstructured":"Edgless Systems. 2024. The world's most secure Kubernetes. https:\/\/www.edgeless.systems\/products\/constellation\/."},{"key":"e_1_3_2_1_95_1","unstructured":"Tianocore. 2024. OVMF - Open Virtual Machine Firmware. https:\/\/github.com\/tianocore\/tianocore.github.io\/wiki\/OVMF."},{"key":"e_1_3_2_1_96_1","volume-title":"Proceedings of the 12th ACM International Conference on Systems and Storage.","author":"Trach Bohdan","year":"2019","unstructured":"Bohdan Trach, Oleksii Oleksenko, Franz Gregor, Pramod Bhatotia, and Christof Fetzer. 2019. Clemmys: Towards secure remote execution in FaaS. In Proceedings of the 12th ACM International Conference on Systems and Storage."},{"key":"e_1_3_2_1_97_1","unstructured":"VirTEE. 2024. Calculate AMD SEV\/SEV-ES\/SEV-SNP measurement for confidential computing. https:\/\/github.com\/virtee\/sev-snp-measure."},{"key":"e_1_3_2_1_98_1","unstructured":"VMWare. 2024. Introduction to vSockets. https:\/\/vdc-repo.vmware.com\/vmwb-repository\/dcr-public\/a49be05e-fa6d-4da1-9186-922fbfef149e\/a65f3c51-aaeb-476d-80c3-827b805c2f9e\/doc\/vsockAbout.3.2.html."},{"key":"e_1_3_2_1_99_1","volume-title":"TOCTTOU Vulnerabilities in UNIX-Style File Systems: An Anatomical Study. In 4th USENIX Conference on File and Storage Technologies (FAST 05)","author":"Wei Jinpeng","year":"2005","unstructured":"Jinpeng Wei and Calton Pu. 2005. TOCTTOU Vulnerabilities in UNIX-Style File Systems: An Anatomical Study. In 4th USENIX Conference on File and Storage Technologies (FAST 05). USENIX Association, San Francisco, CA. https:\/\/www.usenix.org\/conference\/fast-05\/tocttou-vulnerabilities-unix-style-file-systems-anatomical-study"},{"key":"e_1_3_2_1_100_1","volume-title":"No Provisioned Concurrency: Fast RDMA-codesigned Remote Fork for Serverless Computing. In 17th USENIX Symposium on Operating Systems Design and Implementation (OSDI 23)","author":"Wei Xingda","year":"2023","unstructured":"Xingda Wei, Fangming Lu, Tianxia Wang, Jinyu Gu, Yuhan Yang, Rong Chen, and Haibo Chen. 2023. No Provisioned Concurrency: Fast RDMA-codesigned Remote Fork for Serverless Computing. In 17th USENIX Symposium on Operating Systems Design and Implementation (OSDI 23). USENIX Association, Boston, MA, 497--517. https:\/\/www.usenix.org\/conference\/osdi23\/presentation\/wei-rdma"},{"key":"e_1_3_2_1_101_1","unstructured":"AMD Whitepaper. 2024. AMD SEV-SNP: Strengthening VM Isolation with Integrity Protection and More. https:\/\/www.amd.com\/content\/dam\/amd\/en\/documents\/epyc-business-docs\/white-papers\/SEV-SNP-strengthening-vm-isolation-with-integrity-protection-and-more.pdf."},{"key":"e_1_3_2_1_102_1","volume-title":"Opaque: An Oblivious and Encrypted Distributed Analytics Platform. In 14th USENIX Symposium on Networked Systems Design and Implementation (NSDI 17)","author":"Zheng Wenting","year":"2017","unstructured":"Wenting Zheng, Ankur Dave, Jethro G. Beekman, Raluca Ada Popa, Joseph E. Gonzalez, and Ion Stoica. 2017. Opaque: An Oblivious and Encrypted Distributed Analytics Platform. In 14th USENIX Symposium on Networked Systems Design and Implementation (NSDI 17). USENIX Association, Boston, MA, 283--298. https:\/\/www.usenix.org\/conference\/nsdi17\/technical-sessions\/presentation\/zheng"}],"event":{"name":"SESAME '24: 2nd Workshop on SErverless Systems, Applications and MEthodologies","location":"Athens Greece","acronym":"SESAME '24","sponsor":["SIGOPS ACM Special Interest Group on Operating Systems"]},"container-title":["Proceedings of the 2nd Workshop on SErverless Systems, Applications and MEthodologies"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3642977.3652097","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T00:03:58Z","timestamp":1750291438000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3642977.3652097"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,4,22]]},"references-count":102,"alternative-id":["10.1145\/3642977.3652097","10.1145\/3642977"],"URL":"https:\/\/doi.org\/10.1145\/3642977.3652097","relation":{},"subject":[],"published":{"date-parts":[[2024,4,22]]},"assertion":[{"value":"2024-04-22","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}