{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,3,14]],"date-time":"2024-03-14T16:42:08Z","timestamp":1710434528217},"reference-count":48,"publisher":"Springer Science and Business Media LLC","issue":"1","license":[{"start":{"date-parts":[[2018,6,5]],"date-time":"2018-06-05T00:00:00Z","timestamp":1528156800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Cybersecur"],"published-print":{"date-parts":[[2018,12]]},"DOI":"10.1186\/s42400-018-0001-z","type":"journal-article","created":{"date-parts":[[2018,5,24]],"date-time":"2018-05-24T06:36:20Z","timestamp":1527143780000},"update-policy":"http:\/\/dx.doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":7,"title":["Security-first architecture: deploying physically isolated active security processors for safeguarding the future of computing"],"prefix":"10.1186","volume":"1","author":[{"given":"Dan","family":"Meng","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Rui","family":"Hou","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Gang","family":"Shi","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bibo","family":"Tu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Aimin","family":"Yu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ziyuan","family":"Zhu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xiaoqi","family":"Jia","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Peng","family":"Liu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2018,6,5]]},"reference":[{"key":"1_CR1","doi-asserted-by":"crossref","first-page":"340","DOI":"10.1145\/1102120.1102165","volume-title":"Proceedings of the 12th ACM Conference on Computer and Communications Security","author":"M Abadi","year":"2005","unstructured":"Abadi, M, Budiu M, Erlingsson U, Ligatti J (2005) Control-flow integrity In: Proceedings of the 12th ACM Conference on Computer and Communications Security, 340\u2013353.. ACM, Alexandria."},{"key":"1_CR2","unstructured":"Advanced Micro Devices, Inc (2018) An update on AMD processor security. https:\/\/www.amd.com\/en\/corporate\/speculative-execution ."},{"key":"1_CR3","unstructured":"Advanced Micro Devices, Inc (2018) Full security solutions that locks you down, not in. https:\/\/www.amd.com\/en\/technologies\/security ."},{"key":"1_CR4","unstructured":"ARM Limited (2009) Building a secure system using TrustZone technology. http:\/\/infocenter.arm.com\/help\/topic\/com.arm.doc.prd29-genc-009492c\/PRD29-GENC-009492C_trustzone_security_whitepaper.pdf ."},{"key":"1_CR5","doi-asserted-by":"crossref","first-page":"4","DOI":"10.46586\/tosc.v2017.i1.4-44","volume":"1","author":"R Avanzi","year":"2017","unstructured":"Avanzi, R (2017) The QARMA block cipher family. IACR Transactions on Symmetric Cryptology 1:4\u201344.","journal-title":"IACR Transactions on Symmetric Cryptology"},{"key":"1_CR6","doi-asserted-by":"crossref","first-page":"30","DOI":"10.1145\/1966913.1966919","volume-title":"Proceedings of the 6th ACM Symposium on Information, Computer and Communications Security","author":"T Bletsch","year":"2011","unstructured":"Bletsch, T, Jiang X, Freeh VW, Liang Z (2011) Jump-oriented programming: a new class of code-reuse attack In: Proceedings of the 6th ACM Symposium on Information, Computer and Communications Security, 30\u201340.. ACM, Hong Kong."},{"key":"1_CR7","unstructured":"Bogowitz, B, Swinford T (2004) Intel\u00ae; active management technology reduces it costs with improved PC manageability. Technol@ Intel Mag. https:\/\/www.intel.com\/content\/dam\/www\/public\/us\/en\/documents\/solution-briefs\/optimize-management-and-security-of-client-devices-solution-brief.pdf ."},{"key":"1_CR8","doi-asserted-by":"crossref","unstructured":"Burow, N, Carr SA, Nash J, Larsen P, Franz M, Brunthaler S, Payer M (2017) Control-flow integrity: Precision, security, and performance. ACM Comput Surv 50(1).","DOI":"10.1145\/3054924"},{"key":"1_CR9","first-page":"385","volume-title":"Proceedings of the 23rd USENIX Conference on Security Symposium","author":"N Carlini","year":"2014","unstructured":"Carlini, N, Wagner D (2014) ROP is still dangerous: Breaking modern defenses In: Proceedings of the 23rd USENIX Conference on Security Symposium, 385\u2013399.. ACM, San Diego."},{"key":"1_CR10","doi-asserted-by":"crossref","first-page":"559","DOI":"10.1145\/1866307.1866370","volume-title":"Proceedings of the 17th ACM conference on Computer and communications security","author":"S Checkoway","year":"2010","unstructured":"Checkoway, S, Davi L, Dmitrienko A, Sadeghi A-R, Shacham H, Winandy M (2010) Return-oriented programming without returns In: Proceedings of the 17th ACM conference on Computer and communications security, 559\u2013572.. ACM, Chicago."},{"key":"1_CR11","unstructured":"Common Vulnerabilities and Exposures (2018) Linux kernel: Vulnerability statistics. https:\/\/www.cvedetails.com\/product\/47\/Linux-Linux-Kernel.html?vendor_id=33 ."},{"key":"1_CR12","unstructured":"Datenschutz, HT, Pataky D (2017) Intel management engine. https:\/\/bitkeks.eu\/docs\/intelme-report.pdf\/ ."},{"key":"1_CR13","volume-title":"A practical guide to trusted computing","author":"C David","year":"2008","unstructured":"David, C, Kent Y, Ryan C, David S, Leendert D (2008) A practical guide to trusted computing. IBM Press, first ed., Boston."},{"key":"1_CR14","volume-title":"Code-Reuse Attacks and Defenses. PhD thesis","author":"LV Davi","year":"2015","unstructured":"Davi, LV (2015) Code-Reuse Attacks and Defenses. PhD thesis. Technische Universit\u00e4t, Darmstadt."},{"issue":"7","key":"1_CR15","doi-asserted-by":"publisher","first-page":"101","DOI":"10.1007\/s10916-017-0752-1","volume":"41","author":"JM Ehrenfeld","year":"2017","unstructured":"Ehrenfeld, JM (2017) Wannacry, cybersecurity and health information technology: A time to act. J Med Syst 41(7):101.","journal-title":"J Med Syst"},{"key":"1_CR16","doi-asserted-by":"crossref","first-page":"901","DOI":"10.1145\/2810103.2813646","volume-title":"Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security","author":"I Evans","year":"2015","unstructured":"Evans, I, Long F, Otgonbaatar U, Shrobe H, Rinard M, Okhravi H, Sidiroglou-Douskos S (2015) Control jujutsu: On the weaknesses of fine-grained control flow integrity In: Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security, 901\u2013913.. ACM, Denver."},{"key":"1_CR17","first-page":"5","volume-title":"Proceedings of the 10th Conference on USENIX Security Symposium","author":"M Frantzen","year":"2001","unstructured":"Frantzen, M, Shuey M (2001) Stackghost: Hardware facilitated stack protection In: Proceedings of the 10th Conference on USENIX Security Symposium, 5\u20135.. ACM, Washington."},{"key":"1_CR18","unstructured":"Gellman, B, Poitras L (2013) US intelligence mining data from nine U.S. internet companies in broad secret program. The Washington Post. https:\/\/www.sanders.senate.gov\/newsroom\/must-read\/us-intelligence-mining-data-from-nine-us-internet-companies-in-broad-secret-program ."},{"key":"1_CR19","first-page":"13","volume-title":"Proceedings of the IEEE International Symposium on Secure Software Engineering, vol 1","author":"WG Halfond","year":"2006","unstructured":"Halfond, WG, Viegas J, Orso A (2006) A classification of SQL-injection attacks and countermeasures In: Proceedings of the IEEE International Symposium on Secure Software Engineering, vol 1, 13\u201315.. IEEE, Washington."},{"key":"1_CR20","unstructured":"Intel Corporation (2006) LaGrande technology preliminary architecture specification. http:\/\/kib.kiev.ua\/x86docs\/SDMs\/315168-002.pdf ."},{"key":"1_CR21","unstructured":"Intel Corporation (2016) Control-flow enforcement technology preview. https:\/\/software.intel.com\/sites\/default\/files\/managed\/4d\/2a\/control-flow-enforcement-technology-preview.pdf ."},{"key":"1_CR22","unstructured":"Intel Security, Center (2017) Intel active management technology, intel small business technology, and intel standard manageability escalation of privilege. https:\/\/security-center.intel.com\/advisory.aspx?intelid=INTEL-SA-00075&languageid=en-fr ."},{"issue":"3","key":"1_CR23","doi-asserted-by":"publisher","first-page":"361","DOI":"10.1145\/2678373.2665726","volume":"42","author":"Y Kim","year":"2014","unstructured":"Kim, Y, Daly R, Kim J, Fallin C, Lee JH, Lee D, Wilkerson C, Lai K, Mutlu O (2014) Flipping bits in memory without accessing them: An experimental study of DRAM disturbance errors. ACM SIGARCH Computer Architecture News 42(3):361\u2013372.","journal-title":"ACM SIGARCH Computer Architecture News"},{"key":"1_CR24","doi-asserted-by":"crossref","unstructured":"Kocher, P, Genkin D, Gruss D, Haas W, Hamburg M, Lipp M, Mangard S, Prescher T, Schwarz M, Yarom Y (2018) Spectre attacks: Exploiting speculative execution. ArXiv e-prints. https:\/\/spectreattack.com\/spectre.pdf .","DOI":"10.1109\/SP.2019.00002"},{"key":"1_CR25","first-page":"486","volume-title":"International Conference on Computational Science and Engineering","author":"X Lin","year":"2009","unstructured":"Lin, X, Zavarsky P, Ruhl R, Lindskog D (2009) Threat modeling for CSRF attacks In: International Conference on Computational Science and Engineering, 486\u2013491.. IEEE, Vancouver."},{"key":"1_CR26","unstructured":"Lipp, M, Schwarz M, Gruss D, Prescher T, Haas W, Mangard S, Kocher P, Genkin D, Yarom Y, Hamburg M (2018) Meltdown. ArXiv e-prints. https:\/\/meltdownattack.com\/meltdown.pdf ."},{"key":"1_CR27","first-page":"605","volume-title":"Proceedings of the IEEE Symposium on Security and Privacy","author":"F Liu","year":"2015","unstructured":"Liu, F, Yarom Y, Ge Q, Heiser G, Lee RB (2015) Last-level cache side-channel attacks are practical In: Proceedings of the IEEE Symposium on Security and Privacy, 605\u2013622.. IEEE, San Jose."},{"key":"1_CR28","first-page":"10:1","volume-title":"Proceedings of the 2nd International Workshop on Hardware and Architectural Support for Security and Privacy","author":"F McKeen","year":"2013","unstructured":"McKeen, F, Alexandrovich I, Berenzon A, Rozas CV, Shafi H, Shanbhogue V, Savagaonkar UR (2013) Innovative instructions and software model for isolated execution In: Proceedings of the 2nd International Workshop on Hardware and Architectural Support for Security and Privacy, 10:1\u201310:1.. ACM, Tel-Aviv."},{"key":"1_CR29","unstructured":"Mozilla Firefox (2018) Project summary. https:\/\/www.openhub.net\/p\/firefox ."},{"key":"1_CR30","doi-asserted-by":"crossref","unstructured":"Oleksenko, O, Kuvaiskii D, Bhatotia P, Felber P, Fetzer C (2017) Intel MPX explained: An empirical study of intel MPX and software-based bounds checking approaches. arXiv preprint arXiv:1702.00719. https:\/\/arxiv.org\/pdf\/1702.00719.pdf .","DOI":"10.1145\/3219617.3219662"},{"key":"1_CR31","unstructured":"Qualcomm Technologies, Inc (2017) Whitepaper: Pointer Authentication on ARMv8.3. https:\/\/www.qualcomm.com\/documents\/whitepaper-pointer-authentication-armv83 ."},{"key":"1_CR32","first-page":"745","volume-title":"Proceedings of the IEEE Symposium on Security and Privacy","author":"F Schuster","year":"2015","unstructured":"Schuster, F, Tendyck T, Liebchen C, Davi L, Sadeghi AR, Holz T (2015) Counterfeit object-oriented programming: On the difficulty of preventing code reuse attacks in C++ applications In: Proceedings of the IEEE Symposium on Security and Privacy, 745\u2013762.. IEEE, San Jose."},{"key":"1_CR33","first-page":"7","volume-title":"Black Hat","author":"M Seaborn","year":"2015","unstructured":"Seaborn, M, Dullien T (2015) Exploiting the DRAM rowhammer bug to gain kernel privileges In: Black Hat, 7\u20139.. UBM, Las Vegas."},{"key":"1_CR34","doi-asserted-by":"crossref","first-page":"552","DOI":"10.1145\/1315245.1315313","volume-title":"Proceedings of the 14th ACM Conference on Computer and Communications Security","author":"H Shacham","year":"2007","unstructured":"Shacham, H (2007) The geometry of innocent flesh on the bone: Return-into-libc without function calls (on the x86) In: Proceedings of the 14th ACM Conference on Computer and Communications Security, 552\u2013561.. ACM, Alexandria."},{"issue":"6","key":"1_CR35","doi-asserted-by":"publisher","first-page":"772","DOI":"10.1109\/TSE.2010.81","volume":"37","author":"Y Shin","year":"2011","unstructured":"Shin, Y, Meneely A, Williams L, Osborne J (2011) Evaluating complexity, code churn, and developer activity metrics as indicators of software vulnerabilities. IEEE Trans Softw Eng 37(6):772\u2013787.","journal-title":"IEEE Trans Softw Eng"},{"issue":"1","key":"1_CR36","first-page":"1","volume":"59","author":"B Sinharoy","year":"2015","unstructured":"Sinharoy, B, Swanberg R, Nayar N, Mealey B, Stuecheli J, Schiefer B, Leenstra J, Jann J, Oehler P, Levitan D, Eisen S, Sanner D, Pflueger T, Lichtenau C, Hall W, Block T (2015) Advanced features in IBM POWER8 systems. IBM J Res Dev 59(1):1\u20131.","journal-title":"IBM J Res Dev"},{"key":"1_CR37","doi-asserted-by":"crossref","unstructured":"Szekeres, L, Payer M, Wei T, Song D (2013) Sok: Eternal war in memory In: Proceedings of the IEEE Symposium on Security and Privacy, 48\u201362.","DOI":"10.1109\/SP.2013.13"},{"key":"1_CR38","unstructured":"Trusted Computing, GroupAdministration (2008) Trusted Platform Module (TPM) summary. https:\/\/trustedcomputinggroup.org\/trusted-platform-module-tpm-summary\/ ."},{"key":"1_CR39","unstructured":"Trusted Computing Group, Incorporated (2003) TCG specification architecture overview. https:\/\/www.trustedcomputinggroup.org\/wp-content\/uploads\/TCG_1_4_Architecture_Overview.pdf ."},{"key":"1_CR40","doi-asserted-by":"publisher","first-page":"86","DOI":"10.1007\/978-3-642-33338-5_5","volume-title":"Proceedings of the 15th ACM International Conference on Research in Attacks, Intrusions, and Defenses","author":"V van der Veen","year":"2012","unstructured":"van der Veen, V, dutt Sharma N, Cavallaro L, Bos H (2012) Memory errors: the past, the present, and the future In: Proceedings of the 15th ACM International Conference on Research in Attacks, Intrusions, and Defenses, 86\u2013106.. Springer, Amsterdam."},{"key":"1_CR41","first-page":"2421","volume-title":"Proceedings of the ACM SIGSAC Conference on Computer and Communications Security","author":"W Wang","year":"2017","unstructured":"Wang, W, Chen G, Pan X, Zhang Y, Wang X, Bindschaedler V, Tang H, Gunter CA (2017) Leaky cauldron on the dark land: Understanding memory side-channel hazards in SGX In: Proceedings of the ACM SIGSAC Conference on Computer and Communications Security, 2421\u20132434.. ACM, Dallas."},{"key":"1_CR42","unstructured":"Whalen, S (2001) An introduction to ARP spoofing. Node99 [Online Document]. http:\/\/www.madchat.fr\/reseau\/arp\/intro_to_arp_spoofing.pdf ."},{"key":"1_CR43","unstructured":"Wikimedia Foundation, Inc (2018) AMD Platform Security Processor. https:\/\/en.wikipedia.org\/wiki\/AMD_Platform_Security_Processor ."},{"key":"1_CR44","unstructured":"Wojtczuk, R, Rutkowska J (2017) SoC and CPU system-wide approach to security. https:\/\/www.arm.com\/products\/security-on-arm\/trustzone ."},{"key":"1_CR45","first-page":"640","volume-title":"Proceedings of the IEEE Symposium on Security and Privacy","author":"Y Xu","year":"2015","unstructured":"Xu, Y, Cui W, Peinado M (2015) Controlled-channel attacks: Deterministic side channels for untrusted operating systems In: Proceedings of the IEEE Symposium on Security and Privacy, 640\u2013656.. IEEE, San Jose."},{"key":"1_CR46","first-page":"18","volume-title":"Proceedings of the IEEE Symposium on Security and Privacy","author":"K Yang","year":"2016","unstructured":"Yang, K, Hicks M, Dong Q, Austin T, Sylvester D (2016) A2: Analog malicious hardware In: Proceedings of the IEEE Symposium on Security and Privacy, 18\u201337.. IEEE, San Jose."},{"key":"1_CR47","unstructured":"Zhang, N, Sun K, Shands D, Lou W, Hou YT (2016) Truspy: Cache side-channel information leakage from the secure world on ARM devices. IACR Cryptol ePrint Arch:980."},{"key":"1_CR48","first-page":"337","volume-title":"Proceedings of the IEEE European Symposium on Security and Privacy","author":"N Zhang","year":"2016","unstructured":"Zhang, N, Sun H, Sun K, Lou W, Hou YT (2016) Cachekit: Evading memory introspection using cache incoherence In: Proceedings of the IEEE European Symposium on Security and Privacy, 337\u2013352.. IEEE, Saarbr\u00fccken."}],"container-title":["Cybersecurity"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/article\/10.1186\/s42400-018-0001-z\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1186\/s42400-018-0001-z.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1186\/s42400-018-0001-z.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,8,24]],"date-time":"2022-08-24T02:39:14Z","timestamp":1661308754000},"score":1,"resource":{"primary":{"URL":"https:\/\/cybersecurity.springeropen.com\/articles\/10.1186\/s42400-018-0001-z"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,6,5]]},"references-count":48,"journal-issue":{"issue":"1","published-print":{"date-parts":[[2018,12]]}},"alternative-id":["1"],"URL":"https:\/\/doi.org\/10.1186\/s42400-018-0001-z","relation":{},"ISSN":["2523-3246"],"issn-type":[{"value":"2523-3246","type":"electronic"}],"subject":[],"published":{"date-parts":[[2018,6,5]]},"assertion":[{"value":"4 January 2018","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"17 April 2018","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"5 June 2018","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"The authors declare that they have no competing interests.","order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Competing interests"}},{"value":"Springer Nature remains neutral with regard to jurisdictional claims in published maps and institutional affiliations.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Publisher\u2019s Note"}}],"article-number":"2"}}