{"id":"https://openalex.org/W4238851087","doi":"https://doi.org/10.1109/isca.2014.6853201","title":"The CHERI capability model: Revisiting RISC in an age of risk","display_name":"The CHERI capability model: Revisiting RISC in an age of risk","publication_year":2014,"publication_date":"2014-06-01","ids":{"openalex":"https://openalex.org/W4238851087","doi":"https://doi.org/10.1109/isca.2014.6853201"},"language":"en","primary_location":{"id":"doi:10.1109/isca.2014.6853201","is_oa":false,"landing_page_url":"https://doi.org/10.1109/isca.2014.6853201","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2014 ACM/IEEE 41st International Symposium on Computer Architecture (ISCA)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5001050773","display_name":"Jonathan Woodruff","orcid":"https://orcid.org/0000-0003-3971-2681"},"institutions":[{"id":"https://openalex.org/I241749","display_name":"University of Cambridge","ror":"https://ror.org/013meh722","country_code":"GB","type":"education","lineage":["https://openalex.org/I241749"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Jonathan Woodruff","raw_affiliation_strings":["University of Cambridge"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Cambridge","institution_ids":["https://openalex.org/I241749"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5013006563","display_name":"Robert N. M. Watson","orcid":"https://orcid.org/0000-0001-8139-8783"},"institutions":[{"id":"https://openalex.org/I241749","display_name":"University of Cambridge","ror":"https://ror.org/013meh722","country_code":"GB","type":"education","lineage":["https://openalex.org/I241749"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Robert N. M. Watson","raw_affiliation_strings":["University of Cambridge"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Cambridge","institution_ids":["https://openalex.org/I241749"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5003350033","display_name":"David Chisnall","orcid":"https://orcid.org/0000-0001-6060-0153"},"institutions":[{"id":"https://openalex.org/I241749","display_name":"University of Cambridge","ror":"https://ror.org/013meh722","country_code":"GB","type":"education","lineage":["https://openalex.org/I241749"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"David Chisnall","raw_affiliation_strings":["University of Cambridge"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Cambridge","institution_ids":["https://openalex.org/I241749"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5041439799","display_name":"Simon W. Moore","orcid":"https://orcid.org/0000-0002-2806-495X"},"institutions":[{"id":"https://openalex.org/I241749","display_name":"University of Cambridge","ror":"https://ror.org/013meh722","country_code":"GB","type":"education","lineage":["https://openalex.org/I241749"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Simon W. Moore","raw_affiliation_strings":["University of Cambridge"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Cambridge","institution_ids":["https://openalex.org/I241749"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5069893243","display_name":"Jonathan Anderson","orcid":"https://orcid.org/0000-0002-7352-6463"},"institutions":[{"id":"https://openalex.org/I241749","display_name":"University of Cambridge","ror":"https://ror.org/013meh722","country_code":"GB","type":"education","lineage":["https://openalex.org/I241749"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Jonathan Anderson","raw_affiliation_strings":["University of Cambridge"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Cambridge","institution_ids":["https://openalex.org/I241749"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5048690334","display_name":"Brooks Davis","orcid":"https://orcid.org/0009-0006-6256-0419"},"institutions":[{"id":"https://openalex.org/I1298353152","display_name":"SRI International","ror":"https://ror.org/05s570m15","country_code":"US","type":"nonprofit","lineage":["https://openalex.org/I1298353152"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Brooks Davis","raw_affiliation_strings":["SRI International"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"SRI International","institution_ids":["https://openalex.org/I1298353152"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5069096861","display_name":"Ben Laurie","orcid":"https://orcid.org/0000-0002-3490-3473"},"institutions":[{"id":"https://openalex.org/I4210113297","display_name":"Google (United Kingdom)","ror":"https://ror.org/024bc3e07","country_code":"GB","type":"company","lineage":["https://openalex.org/I1291425158","https://openalex.org/I4210113297","https://openalex.org/I4210128969"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Ben Laurie","raw_affiliation_strings":["Google UK Ltd"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Google UK Ltd","institution_ids":["https://openalex.org/I4210113297"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5015261693","display_name":"Peter G. Neumann","orcid":"https://orcid.org/0009-0008-1197-8000"},"institutions":[{"id":"https://openalex.org/I1298353152","display_name":"SRI International","ror":"https://ror.org/05s570m15","country_code":"US","type":"nonprofit","lineage":["https://openalex.org/I1298353152"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Peter G. Neumann","raw_affiliation_strings":["SRI International"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"SRI International","institution_ids":["https://openalex.org/I1298353152"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5041416647","display_name":"Robert M. Norton","orcid":"https://orcid.org/0000-0002-6095-6405"},"institutions":[{"id":"https://openalex.org/I241749","display_name":"University of Cambridge","ror":"https://ror.org/013meh722","country_code":"GB","type":"education","lineage":["https://openalex.org/I241749"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Robert Norton","raw_affiliation_strings":["University of Cambridge"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Cambridge","institution_ids":["https://openalex.org/I241749"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5108547932","display_name":"Michael Roe","orcid":null},"institutions":[{"id":"https://openalex.org/I241749","display_name":"University of Cambridge","ror":"https://ror.org/013meh722","country_code":"GB","type":"education","lineage":["https://openalex.org/I241749"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Michael Roe","raw_affiliation_strings":["University of Cambridge"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Cambridge","institution_ids":["https://openalex.org/I241749"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":10,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":10.1498,"has_fulltext":false,"cited_by_count":159,"citation_normalized_percentile":{"value":0.98243182,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"457","last_page":"468"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9952999949455261,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10772","display_name":"Distributed systems and fault tolerance","score":0.991100013256073,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.870810866355896},{"id":"https://openalex.org/keywords/memory-protection","display_name":"Memory protection","score":0.7821507453918457},{"id":"https://openalex.org/keywords/memory-safety","display_name":"Memory safety","score":0.5688654184341431},{"id":"https://openalex.org/keywords/memory-address","display_name":"Memory address","score":0.552794337272644},{"id":"https://openalex.org/keywords/compiler","display_name":"Compiler","score":0.4931137263774872},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.4918990135192871},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.49157389998435974},{"id":"https://openalex.org/keywords/memory-management","display_name":"Memory management","score":0.39544376730918884},{"id":"https://openalex.org/keywords/virtual-memory","display_name":"Virtual memory","score":0.32220035791397095},{"id":"https://openalex.org/keywords/overlay","display_name":"Overlay","score":0.1429288387298584},{"id":"https://openalex.org/keywords/semiconductor-memory","display_name":"Semiconductor memory","score":0.10646998882293701}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.870810866355896},{"id":"https://openalex.org/C18131444","wikidata":"https://www.wikidata.org/wiki/Q163585","display_name":"Memory protection","level":5,"score":0.7821507453918457},{"id":"https://openalex.org/C28180684","wikidata":"https://www.wikidata.org/wiki/Q4080983","display_name":"Memory safety","level":3,"score":0.5688654184341431},{"id":"https://openalex.org/C153247305","wikidata":"https://www.wikidata.org/wiki/Q835713","display_name":"Memory address","level":3,"score":0.552794337272644},{"id":"https://openalex.org/C169590947","wikidata":"https://www.wikidata.org/wiki/Q47506","display_name":"Compiler","level":2,"score":0.4931137263774872},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.4918990135192871},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.49157389998435974},{"id":"https://openalex.org/C176649486","wikidata":"https://www.wikidata.org/wiki/Q2308807","display_name":"Memory management","level":3,"score":0.39544376730918884},{"id":"https://openalex.org/C76399640","wikidata":"https://www.wikidata.org/wiki/Q189401","display_name":"Virtual memory","level":4,"score":0.32220035791397095},{"id":"https://openalex.org/C136085584","wikidata":"https://www.wikidata.org/wiki/Q910289","display_name":"Overlay","level":2,"score":0.1429288387298584},{"id":"https://openalex.org/C98986596","wikidata":"https://www.wikidata.org/wiki/Q1143031","display_name":"Semiconductor memory","level":2,"score":0.10646998882293701}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/isca.2014.6853201","is_oa":false,"landing_page_url":"https://doi.org/10.1109/isca.2014.6853201","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2014 ACM/IEEE 41st International Symposium on Computer Architecture (ISCA)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320306078","display_name":"U.S. Department of Defense","ror":"https://ror.org/0447fe631"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":44,"referenced_works":["https://openalex.org/W183305829","https://openalex.org/W203369619","https://openalex.org/W1497762419","https://openalex.org/W1502515215","https://openalex.org/W1520961854","https://openalex.org/W1573624842","https://openalex.org/W1608091202","https://openalex.org/W1878544538","https://openalex.org/W1973326708","https://openalex.org/W2004690278","https://openalex.org/W2016779705","https://openalex.org/W2051016650","https://openalex.org/W2059073305","https://openalex.org/W2061408258","https://openalex.org/W2062340141","https://openalex.org/W2076409494","https://openalex.org/W2079029390","https://openalex.org/W2086795351","https://openalex.org/W2095881341","https://openalex.org/W2098465784","https://openalex.org/W2098683983","https://openalex.org/W2116576565","https://openalex.org/W2154554979","https://openalex.org/W2157185728","https://openalex.org/W2163866623","https://openalex.org/W2169768162","https://openalex.org/W2180474751","https://openalex.org/W2499491173","https://openalex.org/W4213361380","https://openalex.org/W4231928253","https://openalex.org/W4234033339","https://openalex.org/W4235021791","https://openalex.org/W4237211384","https://openalex.org/W4243885711","https://openalex.org/W4245736681","https://openalex.org/W4246166885","https://openalex.org/W4249212548","https://openalex.org/W4252867443","https://openalex.org/W6607473425","https://openalex.org/W6608252823","https://openalex.org/W6636340769","https://openalex.org/W6638583435","https://openalex.org/W6639560864","https://openalex.org/W6674934125"],"related_works":["https://openalex.org/W2484072889","https://openalex.org/W4243333834","https://openalex.org/W2138847","https://openalex.org/W261562921","https://openalex.org/W2501039532","https://openalex.org/W1566926962","https://openalex.org/W2047240985","https://openalex.org/W2033239416","https://openalex.org/W2059093626","https://openalex.org/W1558138435"],"abstract_inverted_index":{"Motivated":[0],"by":[1,57],"contemporary":[2],"security":[3],"challenges,":[4],"we":[5],"reevaluate":[6],"and":[7,41,49,89,106,111,120,141,169,183],"refine":[8],"capability-based":[9],"addressing":[10],"for":[11,60],"the":[12,24,51,76,116,131],"RISC":[13,99],"era.":[14],"We":[15,32,123],"present":[16],"CHERI,":[17],"a":[18,82,97,103,125,136],"hybrid":[19],"capability":[20,69],"model":[21,39],"that":[22,34,50,129,175],"extends":[23],"64-bit":[25],"MIPS":[26],"ISA":[27],"with":[28,135,147,186],"byte-granularity":[29],"memory":[30,38,63,91,154,161,170],"protection.":[31,155],"demonstrate":[33,124],"CHERI":[35,52,71,94,153,176],"enables":[36],"language":[37,118],"enforcement":[40],"fault":[42],"isolation":[43],"in":[44,164],"hardware":[45],"rather":[46,73],"than":[47,74],"software,":[48],"mechanisms":[53,163],"are":[54],"easily":[55],"adopted":[56],"existing":[58],"programs":[59],"efficient":[61],"in-program":[62],"safety.":[64],"In":[65],"contrast":[66],"to":[67,96,115,151],"past":[68],"models,":[70],"complements,":[72],"replaces,":[75],"ubiquitous":[77],"page-based":[78],"protection":[79,88,113],"mechanism,":[80],"providing":[81,181],"migration":[83],"path":[84],"towards":[85],"deconflating":[86],"data-structure":[87],"OS":[90],"management.":[92],"Furthermore.":[93],"adheres":[95],"strict":[98],"philosophy:":[100],"it":[101],"maintains":[102],"load-store":[104],"architecture":[105],"requires":[107],"only":[108],"single-cycle":[109],"instructions,":[110],"supplies":[112],"primitives":[114],"compiler,":[117],"runtime,":[119],"operating":[121,133],"system.":[122],"mature":[126],"FPGA":[127],"implementation":[128],"runs":[130],"FreeBSD":[132],"system":[134],"full":[137],"range":[138],"of":[139,166],"software":[140],"an":[142,148],"open-source":[143],"application":[144],"suite":[145],"compiled":[146],"extended":[149],"LLVM":[150],"use":[152],"A":[156],"limit":[157],"study":[158,173],"compares":[159],"published":[160],"safety":[162],"terms":[165],"instruction":[167],"count":[168],"overheads.":[171],"The":[172],"illustrates":[174],"is":[177],"performance-competitive":[178],"even":[179],"while":[180],"assurance":[182],"greater":[184],"flexibility":[185],"simpler":[187],"hardware.":[188]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":18},{"year":2024,"cited_by_count":16},{"year":2023,"cited_by_count":20},{"year":2022,"cited_by_count":23},{"year":2021,"cited_by_count":24},{"year":2020,"cited_by_count":12},{"year":2019,"cited_by_count":10},{"year":2018,"cited_by_count":10},{"year":2017,"cited_by_count":6},{"year":2016,"cited_by_count":13},{"year":2015,"cited_by_count":4},{"year":2014,"cited_by_count":1}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
