{"id":"https://openalex.org/W2076409494","doi":"https://doi.org/10.1145/1743546.1743574","title":"seL4","display_name":"seL4","publication_year":2010,"publication_date":"2010-06-01","ids":{"openalex":"https://openalex.org/W2076409494","doi":"https://doi.org/10.1145/1743546.1743574","mag":"2076409494"},"language":"en","primary_location":{"id":"doi:10.1145/1743546.1743574","is_oa":false,"landing_page_url":"https://doi.org/10.1145/1743546.1743574","pdf_url":null,"source":{"id":"https://openalex.org/S103482838","display_name":"Communications of the ACM","issn_l":"0001-0782","issn":["0001-0782","1557-7317"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Communications of the ACM","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5056561099","display_name":"Gerwin Klein","orcid":"https://orcid.org/0000-0001-8883-0559"},"institutions":[{"id":"https://openalex.org/I31746571","display_name":"UNSW Sydney","ror":"https://ror.org/03r8z3t63","country_code":"AU","type":"education","lineage":["https://openalex.org/I31746571"]},{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]}],"countries":["AU"],"is_corresponding":true,"raw_author_name":"Gerwin Klein","raw_affiliation_strings":["National ICT Australia (NICTA), University of South Wales (UNSW), Sydney"],"affiliations":[{"raw_affiliation_string":"National ICT Australia (NICTA), University of South Wales (UNSW), Sydney","institution_ids":["https://openalex.org/I42894916","https://openalex.org/I31746571"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5069964343","display_name":"June Andronick","orcid":null},"institutions":[{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"June Andronick","raw_affiliation_strings":["NICTA, UNSW"],"affiliations":[{"raw_affiliation_string":"NICTA, UNSW","institution_ids":["https://openalex.org/I42894916"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5073718932","display_name":"Kevin Elphinstone","orcid":null},"institutions":[{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Kevin Elphinstone","raw_affiliation_strings":["NICTA, UNSW"],"affiliations":[{"raw_affiliation_string":"NICTA, UNSW","institution_ids":["https://openalex.org/I42894916"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5025750562","display_name":"Gernot Heiser","orcid":"https://orcid.org/0000-0002-7069-0831"},"institutions":[{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Gernot Heiser","raw_affiliation_strings":["NICTA, UNSW, Open Kernel Labs"],"affiliations":[{"raw_affiliation_string":"NICTA, UNSW, Open Kernel Labs","institution_ids":["https://openalex.org/I42894916"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5070060979","display_name":"David Cock","orcid":"https://orcid.org/0000-0003-2997-6560"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"David Cock","raw_affiliation_strings":["NICTA"],"affiliations":[{"raw_affiliation_string":"NICTA","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5020803298","display_name":"Philip Derrin","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Philip Derrin","raw_affiliation_strings":["NICTA, now at Open Kernel Labs"],"affiliations":[{"raw_affiliation_string":"NICTA, now at Open Kernel Labs","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5081797820","display_name":"Dhammika Elkaduwe","orcid":null},"institutions":[{"id":"https://openalex.org/I111199411","display_name":"University of Peradeniya","ror":"https://ror.org/025h79t26","country_code":"LK","type":"education","lineage":["https://openalex.org/I111199411"]}],"countries":["LK"],"is_corresponding":false,"raw_author_name":"Dhammika Elkaduwe","raw_affiliation_strings":["NICTA, UNSW, now at University of Peradeniya, Sri Lanka"],"affiliations":[{"raw_affiliation_string":"NICTA, UNSW, now at University of Peradeniya, Sri Lanka","institution_ids":["https://openalex.org/I111199411"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5112018592","display_name":"Kai Engelhardt","orcid":null},"institutions":[{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Kai Engelhardt","raw_affiliation_strings":["NICTA, UNSW"],"affiliations":[{"raw_affiliation_string":"NICTA, UNSW","institution_ids":["https://openalex.org/I42894916"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5034161278","display_name":"Rafal Kolanski","orcid":null},"institutions":[{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Rafal Kolanski","raw_affiliation_strings":["NICTA, UNSW"],"affiliations":[{"raw_affiliation_string":"NICTA, UNSW","institution_ids":["https://openalex.org/I42894916"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5056365707","display_name":"Michael Norrish","orcid":"https://orcid.org/0000-0003-1163-8467"},"institutions":[{"id":"https://openalex.org/I118347636","display_name":"Australian National University","ror":"https://ror.org/019wvm592","country_code":"AU","type":"education","lineage":["https://openalex.org/I118347636"]},{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Michael Norrish","raw_affiliation_strings":["NICTA, Australian National University, Canberra"],"affiliations":[{"raw_affiliation_string":"NICTA, Australian National University, Canberra","institution_ids":["https://openalex.org/I42894916","https://openalex.org/I118347636"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5036639723","display_name":"Thomas Sewell","orcid":"https://orcid.org/0000-0002-4891-0797"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Thomas Sewell","raw_affiliation_strings":["NICTA"],"affiliations":[{"raw_affiliation_string":"NICTA","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5008383684","display_name":"Harvey Tuch","orcid":null},"institutions":[{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Harvey Tuch","raw_affiliation_strings":["NICTA, UNSW, now at VMWare"],"affiliations":[{"raw_affiliation_string":"NICTA, UNSW, now at VMWare","institution_ids":["https://openalex.org/I42894916"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5012139430","display_name":"Simon Winwood","orcid":"https://orcid.org/0009-0005-6133-0147"},"institutions":[{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Simon Winwood","raw_affiliation_strings":["NICTA, UNSW"],"affiliations":[{"raw_affiliation_string":"NICTA, UNSW","institution_ids":["https://openalex.org/I42894916"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":13,"corresponding_author_ids":["https://openalex.org/A5056561099"],"corresponding_institution_ids":["https://openalex.org/I31746571","https://openalex.org/I42894916"],"apc_list":null,"apc_paid":null,"fwci":32.0384,"has_fulltext":false,"cited_by_count":296,"citation_normalized_percentile":{"value":0.99825173,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":96,"max":100},"biblio":{"volume":"53","issue":"6","first_page":"107","last_page":"115"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10772","display_name":"Distributed systems and fault tolerance","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10772","display_name":"Distributed systems and fault tolerance","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11181","display_name":"Advanced Data Storage Technologies","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10054","display_name":"Parallel Computing and Optimization Techniques","score":0.9990000128746033,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/open-university","display_name":"Open university","score":0.5257281064987183},{"id":"https://openalex.org/keywords/citation","display_name":"Citation","score":0.45984968543052673},{"id":"https://openalex.org/keywords/library-science","display_name":"Library science","score":0.4328599274158478},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.32502371072769165},{"id":"https://openalex.org/keywords/psychology","display_name":"Psychology","score":0.15608856081962585},{"id":"https://openalex.org/keywords/mathematics-education","display_name":"Mathematics education","score":0.11437219381332397}],"concepts":[{"id":"https://openalex.org/C2780745866","wikidata":"https://www.wikidata.org/wiki/Q6755402","display_name":"Open university","level":3,"score":0.5257281064987183},{"id":"https://openalex.org/C2778805511","wikidata":"https://www.wikidata.org/wiki/Q1713","display_name":"Citation","level":2,"score":0.45984968543052673},{"id":"https://openalex.org/C161191863","wikidata":"https://www.wikidata.org/wiki/Q199655","display_name":"Library science","level":1,"score":0.4328599274158478},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.32502371072769165},{"id":"https://openalex.org/C15744967","wikidata":"https://www.wikidata.org/wiki/Q9418","display_name":"Psychology","level":0,"score":0.15608856081962585},{"id":"https://openalex.org/C145420912","wikidata":"https://www.wikidata.org/wiki/Q853077","display_name":"Mathematics education","level":1,"score":0.11437219381332397},{"id":"https://openalex.org/C503872463","wikidata":"https://www.wikidata.org/wiki/Q159595","display_name":"Distance education","level":2,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1145/1743546.1743574","is_oa":false,"landing_page_url":"https://doi.org/10.1145/1743546.1743574","pdf_url":null,"source":{"id":"https://openalex.org/S103482838","display_name":"Communications of the ACM","issn_l":"0001-0782","issn":["0001-0782","1557-7317"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Communications of the ACM","raw_type":"journal-article"},{"id":"pmh:oai:openresearch-repository.anu.edu.au:1885/52945","is_oa":false,"landing_page_url":"http://hdl.handle.net/1885/52945","pdf_url":null,"source":{"id":"https://openalex.org/S4306402539","display_name":"ANU Open Research (Australian National University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I118347636","host_organization_name":"Australian National University","host_organization_lineage":["https://openalex.org/I118347636"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Communications of the Association for Computing Machinery","raw_type":"Journal article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":13,"referenced_works":["https://openalex.org/W1523275077","https://openalex.org/W1888392380","https://openalex.org/W1937179622","https://openalex.org/W1980491540","https://openalex.org/W2065076704","https://openalex.org/W2095881341","https://openalex.org/W2106192381","https://openalex.org/W2113350481","https://openalex.org/W2129695855","https://openalex.org/W2167800525","https://openalex.org/W2987803397","https://openalex.org/W4249212548","https://openalex.org/W4250846042"],"related_works":["https://openalex.org/W2748952813","https://openalex.org/W2390279801","https://openalex.org/W2358668433","https://openalex.org/W2376932109","https://openalex.org/W2001405890","https://openalex.org/W2382290278","https://openalex.org/W2350741829","https://openalex.org/W2530322880","https://openalex.org/W1596801655","https://openalex.org/W2359140296"],"abstract_inverted_index":{"We":[0,20,58],"report":[1],"on":[2],"the":[3,8,61,84,107],"formal,":[4],"machine-checked":[5],"verification":[6],"of":[7,23,36,42,47,70],"seL4":[9,31],"microkernel":[10,35],"from":[11],"an":[12,94],"abstract":[13,68],"specification":[14,69],"down":[15],"to":[16,53],"its":[17],"C":[18,43],"implementation.":[19],"assume":[21],"correctness":[22],"compiler,":[24],"assembly":[25],"code,":[26],"hardware,":[27],"and":[28,44,77,89],"boot":[29],"code.":[30],"is":[32,51],"a":[33],"third-generation":[34],"L4":[37,56],"provenance,":[38],"comprising":[39],"8700":[40],"lines":[41,46],"600":[45],"assembler.":[48],"Its":[49],"performance":[50],"comparable":[52],"other":[54],"high-performance":[55],"kernels.":[57],"prove":[59],"that":[60,83],"implementation":[62,78],"always":[63],"strictly":[64],"follows":[65],"our":[66],"high-level":[67],"kernel":[71,85,108],"behavior.":[72],"This":[73],"encompasses":[74],"traditional":[75],"design":[76],"safety":[79],"properties":[80],"such":[81],"as":[82],"will":[86,91,109],"never":[87,92],"crash,":[88],"it":[90],"perform":[93],"unsafe":[95],"operation.":[96],"It":[97],"also":[98],"implies":[99],"much":[100],"more:":[101],"we":[102],"can":[103],"predict":[104],"precisely":[105],"how":[106],"behave":[110],"in":[111],"every":[112],"possible":[113],"situation.":[114]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":14},{"year":2024,"cited_by_count":13},{"year":2023,"cited_by_count":12},{"year":2022,"cited_by_count":11},{"year":2021,"cited_by_count":23},{"year":2020,"cited_by_count":11},{"year":2019,"cited_by_count":17},{"year":2018,"cited_by_count":18},{"year":2017,"cited_by_count":17},{"year":2016,"cited_by_count":24},{"year":2015,"cited_by_count":20},{"year":2014,"cited_by_count":29},{"year":2013,"cited_by_count":31},{"year":2012,"cited_by_count":26}],"updated_date":"2026-04-11T08:14:18.477133","created_date":"2016-06-24T00:00:00"}
