{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,14]],"date-time":"2026-07-14T03:43:43Z","timestamp":1784000623349,"version":"3.55.0"},"reference-count":80,"publisher":"Association for Computing Machinery (ACM)","issue":"12","content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["Proc. VLDB Endow."],"published-print":{"date-parts":[[2024,8]]},"abstract":"<jats:p>With the escalation in the demand for privacy-preserving and tamper-resistant data management and processing on the public cloud, an increasing number of mainstream databases start to provide always-encrypted and blockchain-like features, including Microsoft SQL Server, MongoDB, and Alibaba PolarDB. The recent progress in Trusted Execution Environment (TEE) technology has enabled the deployment of the complete database engine within TEE. This implementation ensures that data stored in memory, cache, and registers is encrypted, thereby maintaining the confidentiality of information. In this paper, we present SecuDB, a multi-granularity privacy-preserving and tamper-resistant relational database by placing the entire RDBMS in Intel TDX. We propose a novel visibility control mechanism incorporating column masking, log masking, and statistics masking to realize fine-grained privacy preservation and devise an isolated TEE-endorsed temporal table method to support efficient data and query verifiability, without affecting insertion and selection performance. We evaluate SecuDB using Sysbench, TPC-C and TikTok copyright workloads. The results show that compared with a system without an enclave, SecuDB hits 84.7% and 94.7% of the performance when providing coarse-grained and fine-grained privacy preservation, respectively. While the overhead for tamper-resistance is less than 22.6%.<\/jats:p>","DOI":"10.14778\/3685800.3685815","type":"journal-article","created":{"date-parts":[[2024,11,8]],"date-time":"2024-11-08T17:25:21Z","timestamp":1731086721000},"page":"3906-3919","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":33,"title":["SecuDB: An In-Enclave Privacy-Preserving and Tamper-Resistant Relational Database"],"prefix":"10.14778","volume":"17","author":[{"given":"Xinying","family":"Yang","sequence":"first","affiliation":[{"name":"ByteDance Inc"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Cong","family":"Yue","sequence":"additional","affiliation":[{"name":"National University of Singapore"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Wenhui","family":"Zhang","sequence":"additional","affiliation":[{"name":"ByteDance Inc"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Yang","family":"Liu","sequence":"additional","affiliation":[{"name":"ByteDance Inc"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Beng Chin","family":"Ooi","sequence":"additional","affiliation":[{"name":"National University of Singapore"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jianjun","family":"Chen","sequence":"additional","affiliation":[{"name":"ByteDance Inc"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2024,11,8]]},"reference":[{"key":"e_1_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1145\/3190508.3190538"},{"key":"e_1_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1145\/3318464.3386141"},{"key":"e_1_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1145\/3448016.3457558"},{"key":"e_1_2_1_4_1","unstructured":"Arvind Arasu Spyros Blanas Ken Eguro Raghav Kaushik Donald Kossmann Ravishankar Ramamurthy and Ramarathnam Venkatesan. 2013. Orthogonal Security with Cipherbase. In CIDR."},{"key":"e_1_2_1_5_1","volume-title":"Concerto: A High Concurrency Key-Value Store with Integrity. In SIGMOD. 251--266.","author":"Arasu Arvind","year":"2017","unstructured":"Arvind Arasu, Ken Eguro, Raghav Kaushik, Donald Kossmann, Pingfan Meng, Vineet Pandey, and Ravi Ramamurthy. 2017. Concerto: A High Concurrency Key-Value Store with Integrity. In SIGMOD. 251--266."},{"key":"e_1_2_1_6_1","volume-title":"Sha-3 proposal blake. Submission to NIST 92","author":"Aumasson Jean-Philippe","year":"2008","unstructured":"Jean-Philippe Aumasson, Luca Henzen, Willi Meier, and Raphael C-W Phan. 2008. Sha-3 proposal blake. Submission to NIST 92 (2008), 1--79."},{"key":"e_1_2_1_7_1","unstructured":"AWS. 2018. Amazon quantum ledger database (qldb). https:\/\/aws.amazon.com\/qldb"},{"key":"e_1_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/1989323.1989346"},{"key":"e_1_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1109\/TKDE.2013.38"},{"key":"e_1_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.5555\/2033036.2033080"},{"key":"e_1_2_1_11_1","unstructured":"ByteDance. 2022. Volcano Engine. https:\/\/www.volcengine.com"},{"key":"e_1_2_1_12_1","unstructured":"ByteDance. 2023. Make everything a breeze. https:\/\/www.larksuite.com\/"},{"key":"e_1_2_1_13_1","unstructured":"ByteDance. 2023. Make Your Day - TikTok. https:\/\/www.tiktok.com\/"},{"key":"e_1_2_1_14_1","unstructured":"ByteDance. 2023. Volcengine. https:\/\/github.com\/volcengine"},{"key":"e_1_2_1_15_1","volume-title":"Intel TDX Demystified: A Top-Down Approach. arXiv preprint arXiv:2303.15540","author":"Cheng Pau-Chen","year":"2023","unstructured":"Pau-Chen Cheng, Wojciech Ozga, Enriquillo Valdez, Salman Ahmed, Zhongshu Gu, Hani Jamjoom, Hubertus Franke, and James Bottomley. 2023. Intel TDX Demystified: A Top-Down Approach. arXiv preprint arXiv:2303.15540 (2023)."},{"key":"e_1_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-70694-8_15"},{"key":"e_1_2_1_17_1","unstructured":"Alibaba Cloud. 2023. Enable PolarDB Always Encrypted. https:\/\/www.alibabacloud.com\/help\/polardb\/polardb-for-mysql\/user-guide\/enable-confidential-engine"},{"key":"e_1_2_1_18_1","unstructured":"Alibaba Cloud. 2023. Operator supported in always encrypted database. https:\/\/help.aliyun.com\/rds\/apsaradb-rds-for-postgresql\/supported-features"},{"key":"e_1_2_1_19_1","unstructured":"Intel Corp. 2020. Software guard extensions sdk developer reference for linux* os. https:\/\/www.intel.com\/content\/www\/us\/en\/developer\/tools\/software-guard-extensions\/linux-overview.html"},{"key":"e_1_2_1_20_1","unstructured":"Intel Corp. 2024. Intel\u00ae Trust Domain Extensions (Intel\u00ae TDX). https:\/\/www.intel.com\/content\/www\/us\/en\/developer\/tools\/trust-domain-extensions\/overview.html"},{"key":"e_1_2_1_21_1","unstructured":"Intel Corp and Bytedance Inc. 2024. Full disk encryption solution in the confidential computing environment. https:\/\/github.com\/cc-api\/full-disk-encryption"},{"key":"e_1_2_1_22_1","unstructured":"Joan Daemen and Vincent Rijmen. 1999. AES proposal: Rijndael. (1999)."},{"key":"e_1_2_1_23_1","unstructured":"Christopher John Date Hugh Darwen and Nikos Lorentzos. 2014. Time and relational theory: temporal databases in the relational model and SQL. Morgan Kaufmann."},{"key":"e_1_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1145\/2508859.2516758"},{"key":"e_1_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.14778\/3342263.3342636"},{"key":"e_1_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1145\/3533737.3535098"},{"key":"e_1_2_1_27_1","unstructured":"Intel Trust Domain Extension. 2023. Intel TDX Connect Architecture Specification. https:\/\/www.intel.com\/content\/www\/us\/en\/content-details\/773614\/intel-tdx-connect-architecture-specification.html"},{"key":"e_1_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1145\/1536414.1536440"},{"key":"e_1_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1145\/564691.564717"},{"key":"e_1_2_1_30_1","volume-title":"Corda: A distributed ledger. Corda Technical White Paper 2016","author":"Hearn Mike","year":"2016","unstructured":"Mike Hearn and Richard Gendal Brown. 2016. Corda: A distributed ledger. Corda Technical White Paper 2016 (2016). https:\/\/www.corda.net\/content\/corda-technical-whitepaper.pdf"},{"key":"e_1_2_1_31_1","unstructured":"IBM. 2021. CODEPAGE option syntax. https:\/\/www.ibm.com\/docs\/en\/cobol-zos\/6.3?topic=options-codepage"},{"key":"e_1_2_1_32_1","unstructured":"IBM. 2023. Column-level privileges. https:\/\/www.ibm.com\/docs\/en\/informix-servers\/14.10?topic=privileges-column-level"},{"key":"e_1_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSEC.2019.2947124"},{"key":"e_1_2_1_34_1","unstructured":"David Kaplan Jeremy Powell and Tom Woller. 2016. AMD memory encryption. https:\/\/www.amd.com\/content\/dam\/amd\/en\/documents\/epyc-business-docs\/white-papers\/memory-encryption-white-paper.pdf"},{"key":"e_1_2_1_35_1","volume-title":"Integrating remote attestation with transport layer security. arXiv preprint arXiv:1801.05863","author":"Knauth Thomas","year":"2018","unstructured":"Thomas Knauth, Michael Steiner, Somnath Chakrabarti, Li Lei, Cedric Xing, and Mona Vij. 2018. Integrating remote attestation with transport layer security. arXiv preprint arXiv:1801.05863 (2018)."},{"key":"e_1_2_1_36_1","unstructured":"Kevin Kollenda. 2023. General overview of AMD SEV-SNP and Intel TDX. (2023). https:\/\/sys.cs.fau.de\/extern\/lehre\/ws22\/akss\/material\/amd-sev-intel-tdx.pdf"},{"key":"e_1_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1145\/3342195.3387532"},{"key":"e_1_2_1_38_1","unstructured":"Xupeng Li Xuheng Li Christoffer Dall Ronghui Gu Jason Nieh Yousuf Sait and Gareth Stockwell. 2022. Design and Verification of the Arm Confidential Compute Architecture. In OSDI. 465--484."},{"key":"e_1_2_1_39_1","volume-title":"Troy McConaghy, Greg McMullen, Ryan Henderson, Sylvain Bellemare, and Alberto Granzotto.","author":"McConaghy Trent","year":"2016","unstructured":"Trent McConaghy, Rodolphe Marques, Andreas M\u00fcller, Dimitri De Jonghe, Troy McConaghy, Greg McMullen, Ryan Henderson, Sylvain Bellemare, and Alberto Granzotto. 2016. Bigchaindb: a scalable blockchain database. white paper, BigChainDB (2016)."},{"key":"e_1_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.1145\/2948618.2954331"},{"key":"e_1_2_1_41_1","unstructured":"Microsoft. 2023. Temporal tables. https:\/\/learn.microsoft.com\/en-us\/sql\/relational-databases\/tables\/temporal-tables"},{"key":"e_1_2_1_42_1","unstructured":"Microsoft. 2024. GRANT (Transact-SQL). https:\/\/learn.microsoft.com\/en-us\/sql\/tsql\/statements\/grant-transact-sql"},{"key":"e_1_2_1_43_1","volume-title":"Queryable Encryption: Protect your confidential workloads. https:\/\/www.mongodb.com\/products\/queryable-encryption","author":"DB.","year":"2022","unstructured":"MongoDB. 2022. Queryable Encryption: Protect your confidential workloads. https:\/\/www.mongodb.com\/products\/queryable-encryption"},{"key":"e_1_2_1_44_1","unstructured":"MySQL. 2023. Prepared Statements. https:\/\/dev.mysql.com\/doc\/refman\/8.4\/en\/sql-prepared-statements.html#prepared-statements-in-applications"},{"key":"e_1_2_1_45_1","unstructured":"The Horizon 2020 Framework Programme of the European Union. 2020. Everything you need to know about the Right to be forgotten. https:\/\/gdpr.eu\/right-to-be-forgotten"},{"key":"e_1_2_1_46_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.procs.2013.09.310"},{"key":"e_1_2_1_47_1","unstructured":"Oracle. 2022. Blockchain Tables in Oracle Database 21c. https:\/\/oracle-base.com\/articles\/21c\/blockchain-tables-21c"},{"key":"e_1_2_1_48_1","unstructured":"Oracle. 2023. Encryption and Compression Functions. https:\/\/dev.mysql.com\/doc\/refman\/8.0\/en\/encryption-functions.html"},{"key":"e_1_2_1_49_1","unstructured":"Oracle. 2023. Implementing Temporal Validity. https:\/\/www.oracle.com\/webfolder\/technetwork\/tutorials\/obe\/db\/12c\/r1\/ilm\/temporal\/temporal.html"},{"key":"e_1_2_1_50_1","unstructured":"Oracle. 2024. Column-level privileges. https:\/\/dev.mysql.com\/doc\/refman\/en\/grant.html"},{"key":"e_1_2_1_51_1","first-page":"68","article-title":"The California consumer privacy act: Towards a European-style privacy regime in the United States","volume":"23","author":"Pardau Stuart L","year":"2018","unstructured":"Stuart L Pardau. 2018. The California consumer privacy act: Towards a European-style privacy regime in the United States. J. Tech. L. & Pol'y 23 (2018), 68.","journal-title":"J. Tech. L. & Pol'y"},{"key":"e_1_2_1_52_1","doi-asserted-by":"publisher","DOI":"10.1145\/3291047"},{"key":"e_1_2_1_53_1","volume-title":"Arx: an encrypted database using semantically secure encryption. Cryptology ePrint Archive","author":"Poddar Rishabh","year":"2016","unstructured":"Rishabh Poddar, Tobias Boelter, and Raluca Ada Popa. 2016. Arx: an encrypted database using semantically secure encryption. Cryptology ePrint Archive (2016)."},{"key":"e_1_2_1_54_1","doi-asserted-by":"publisher","DOI":"10.14778\/3342263.3342641"},{"key":"e_1_2_1_55_1","unstructured":"Microsoft SQL Sever 2022 Preview. 2022. Always Encrypted with secure enclaves. https:\/\/learn.microsoft.com\/en-us\/sql\/relational-databases\/security\/encryption\/always-encrypted-enclaves"},{"key":"e_1_2_1_56_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2018.00025"},{"key":"e_1_2_1_57_1","doi-asserted-by":"publisher","DOI":"10.1109\/SEED51797.2021.00024"},{"key":"e_1_2_1_58_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2021.3087421"},{"key":"e_1_2_1_59_1","volume-title":"Md Iqbal Hossain, and Chao Gao","author":"Sebastian Shiny","year":"2023","unstructured":"Shiny Sebastian, Simon P. Johnson, Md Iqbal Hossain, and Chao Gao. 2023. Performance Considerations of Intel\u00ae Trust Domain Extensions on 4th Generation Intel\u00ae Xeon\u00ae Scalable Processors. https:\/\/www.intel.com\/content\/www\/us\/en\/developer\/articles\/technical\/trust-domain-extensions-on-4th-gen-xeon-processors.html"},{"key":"e_1_2_1_60_1","unstructured":"Oracle Cloud Security. 2023. Column-level security with Oracle Database's data redaction. https:\/\/blogs.oracle.com\/cloudsecurity\/post\/columnlevel-security-oracle-databases-data-redaction"},{"key":"e_1_2_1_61_1","doi-asserted-by":"publisher","DOI":"10.14778\/3342263.3342632"},{"key":"e_1_2_1_62_1","unstructured":"Amazon Web Services. 2022. Encrypting Amazon Aurora resources. https:\/\/docs.aws.amazon.com\/AmazonRDS\/latest\/AuroraUserGuide\/Overview.Encryption.html"},{"key":"e_1_2_1_63_1","first-page":"1450","article-title":"Strengthening VM isolation with integrity protection and more","volume":"53","author":"Sev-Snp AMD","year":"2020","unstructured":"AMD Sev-Snp. 2020. Strengthening VM isolation with integrity protection and more. White Paper, January 53 (2020), 1450--1465.","journal-title":"White Paper"},{"key":"e_1_2_1_64_1","doi-asserted-by":"publisher","DOI":"10.1145\/3373376.3378469"},{"key":"e_1_2_1_65_1","volume-title":"VeritasDB: High Throughput Key-Value Store with Integrity. IACR 2018","author":"Sinha Rohit","year":"2018","unstructured":"Rohit Sinha and Mihai Christodorescu. 2018. VeritasDB: High Throughput Key-Value Store with Integrity. IACR 2018 (2018), 251."},{"key":"e_1_2_1_66_1","unstructured":"Intel Developer Site. 2023. Intel Trust Domain Extensions (Intel TDX)."},{"key":"e_1_2_1_67_1","unstructured":"Sysbench. 2023. Scriptable database and system performance benchmark. https:\/\/github.com\/akopytov\/sysbench"},{"key":"e_1_2_1_68_1","unstructured":"TPC. 2022. TPC-C Benchmark. https:\/\/www.tpc.org\/tpcc"},{"key":"e_1_2_1_69_1","volume-title":"Graphene-SGX: A Practical Library OS for Unmodified Applications on SGX. In 2017 USENIX Annual Technical Conference (USENIX ATC 17)","author":"Tsai Chia-Che","year":"2017","unstructured":"Chia-Che Tsai, Donald E Porter, and Mona Vij. 2017. Graphene-SGX: A Practical Library OS for Unmodified Applications on SGX. In 2017 USENIX Annual Technical Conference (USENIX ATC 17). 645--658."},{"key":"e_1_2_1_70_1","unstructured":"Stephen Lyle Tu M Frans Kaashoek Samuel R Madden and Nickolai Zeldovich. 2013. Processing analytical queries over encrypted data. (2013)."},{"key":"e_1_2_1_71_1","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2019-0052"},{"key":"e_1_2_1_72_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-57959-7"},{"key":"e_1_2_1_73_1","unstructured":"ByteDance Volcengine. 2022. Cloud database for veDB. https:\/\/www.volcengine.com\/product\/vedb-mysql"},{"key":"e_1_2_1_74_1","volume-title":"13th USENIX Symposium on Operating Systems Design and Implementation (OSDI 18)","author":"Volos Stavros","year":"2018","unstructured":"Stavros Volos, Kapil Vaswani, and Rodrigo Bruno. 2018. Graviton: Trusted execution environments on {GPUs}. In 13th USENIX Symposium on Operating Systems Design and Implementation (OSDI 18). 681--696."},{"key":"e_1_2_1_75_1","volume-title":"Ubiquitous Verification in Centralized Ledger Database. In 2022 IEEE 38th International Conference on Data Engineering (ICDE). IEEE","author":"Yang Xinying","year":"2022","unstructured":"Xinying Yang, Sheng Wang, Feifei Li, Yuan Zhang, Wenyuan Yan, Fangyu Gai, Benquan Yu, Likai Feng, Qun Gao, and Yize Li. 2022. Ubiquitous Verification in Centralized Ledger Database. In 2022 IEEE 38th International Conference on Data Engineering (ICDE). IEEE, 1808--1821."},{"key":"e_1_2_1_76_1","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3589774","article-title":"VeDB: A Software and Hardware Enabled Trusted Relational Database","volume":"1","author":"Yang Xinying","year":"2023","unstructured":"Xinying Yang, Ruide Zhang, Cong Yue, Yang Liu, Beng Chin Ooi, Qun Gao, Yuan Zhang, and Hao Yang. 2023. VeDB: A Software and Hardware Enabled Trusted Relational Database. Proceedings of the ACM on Management of Data 1, 2 (2023), 1--27.","journal-title":"Proceedings of the ACM on Management of Data"},{"key":"e_1_2_1_77_1","doi-asserted-by":"publisher","DOI":"10.14778\/3415478.3415540"},{"key":"e_1_2_1_78_1","doi-asserted-by":"publisher","DOI":"10.14778\/3583140.3583152"},{"key":"e_1_2_1_79_1","doi-asserted-by":"publisher","DOI":"10.14778\/3598581.3598588"},{"key":"e_1_2_1_80_1","volume-title":"SHELTER: Extending Arm CCA with Isolation in User Space. In 32nd USENIX Security Symposium (USENIX Security'23)","author":"Zhang Yiming","year":"2023","unstructured":"Yiming Zhang, Yuxin Hu, Zhenyu Ning, Fengwei Zhang, Xiapu Luo, Haoyang Huang, Shoumeng Yan, and Zhengyu He. 2023. SHELTER: Extending Arm CCA with Isolation in User Space. In 32nd USENIX Security Symposium (USENIX Security'23)."}],"container-title":["Proceedings of the VLDB Endowment"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.14778\/3685800.3685815","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,12,31]],"date-time":"2024-12-31T05:36:02Z","timestamp":1735623362000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.14778\/3685800.3685815"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,8]]},"references-count":80,"journal-issue":{"issue":"12","published-print":{"date-parts":[[2024,8]]}},"alternative-id":["10.14778\/3685800.3685815"],"URL":"https:\/\/doi.org\/10.14778\/3685800.3685815","relation":{},"ISSN":["2150-8097"],"issn-type":[{"value":"2150-8097","type":"print"}],"subject":[],"published":{"date-parts":[[2024,8]]},"assertion":[{"value":"2024-11-08","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}