{"id":"https://openalex.org/W4388672093","doi":"https://doi.org/10.1145/3632954","title":"Hardware-hardened Sandbox Enclaves for Trusted Serverless Computing","display_name":"Hardware-hardened Sandbox Enclaves for Trusted Serverless Computing","publication_year":2023,"publication_date":"2023-11-14","ids":{"openalex":"https://openalex.org/W4388672093","doi":"https://doi.org/10.1145/3632954"},"language":"en","primary_location":{"id":"doi:10.1145/3632954","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3632954","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3632954","source":{"id":"https://openalex.org/S26056741","display_name":"ACM Transactions on Architecture and Code Optimization","issn_l":"1544-3566","issn":["1544-3566","1544-3973"],"is_oa":true,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Architecture and Code Optimization","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"diamond","oa_url":"https://dl.acm.org/doi/pdf/10.1145/3632954","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5042175526","display_name":"Joongun Park","orcid":"https://orcid.org/0009-0000-8406-0817"},"institutions":[{"id":"https://openalex.org/I157485424","display_name":"Korea Advanced Institute of Science and Technology","ror":"https://ror.org/05apxxy63","country_code":"KR","type":"education","lineage":["https://openalex.org/I157485424"]}],"countries":["KR"],"is_corresponding":false,"raw_author_name":"Joongun Park","raw_affiliation_strings":["KAIST, Republic of Korea"],"raw_orcid":"https://orcid.org/0009-0000-8406-0817","affiliations":[{"raw_affiliation_string":"KAIST, Republic of Korea","institution_ids":["https://openalex.org/I157485424"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5062542768","display_name":"Seunghyo Kang","orcid":"https://orcid.org/0009-0005-6471-2183"},"institutions":[{"id":"https://openalex.org/I157485424","display_name":"Korea Advanced Institute of Science and Technology","ror":"https://ror.org/05apxxy63","country_code":"KR","type":"education","lineage":["https://openalex.org/I157485424"]}],"countries":["KR"],"is_corresponding":false,"raw_author_name":"Seunghyo Kang","raw_affiliation_strings":["KAIST, Republic of Korea"],"raw_orcid":"https://orcid.org/0009-0005-6471-2183","affiliations":[{"raw_affiliation_string":"KAIST, Republic of Korea","institution_ids":["https://openalex.org/I157485424"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100756237","display_name":"Sanghyeon Lee","orcid":"https://orcid.org/0009-0003-7060-6315"},"institutions":[{"id":"https://openalex.org/I157485424","display_name":"Korea Advanced Institute of Science and Technology","ror":"https://ror.org/05apxxy63","country_code":"KR","type":"education","lineage":["https://openalex.org/I157485424"]}],"countries":["KR"],"is_corresponding":false,"raw_author_name":"Sanghyeon Lee","raw_affiliation_strings":["KAIST, Republic of Korea"],"raw_orcid":"https://orcid.org/0009-0003-7060-6315","affiliations":[{"raw_affiliation_string":"KAIST, Republic of Korea","institution_ids":["https://openalex.org/I157485424"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100379045","display_name":"Taehoon Kim","orcid":"https://orcid.org/0000-0003-1819-968X"},"institutions":[{"id":"https://openalex.org/I142401562","display_name":"Electronics and Telecommunications Research Institute","ror":"https://ror.org/03ysstz10","country_code":"KR","type":"facility","lineage":["https://openalex.org/I142401562","https://openalex.org/I2801339556","https://openalex.org/I4210144908","https://openalex.org/I4387152098"]}],"countries":["KR"],"is_corresponding":false,"raw_author_name":"Taehoon Kim","raw_affiliation_strings":["ETRI, Republic of Korea"],"raw_orcid":"https://orcid.org/0000-0003-1819-968X","affiliations":[{"raw_affiliation_string":"ETRI, Republic of Korea","institution_ids":["https://openalex.org/I142401562"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5037553165","display_name":"Jongse Park","orcid":"https://orcid.org/0000-0002-6629-449X"},"institutions":[{"id":"https://openalex.org/I157485424","display_name":"Korea Advanced Institute of Science and Technology","ror":"https://ror.org/05apxxy63","country_code":"KR","type":"education","lineage":["https://openalex.org/I157485424"]}],"countries":["KR"],"is_corresponding":false,"raw_author_name":"Jongse Park","raw_affiliation_strings":["KAIST, Republic of Korea"],"raw_orcid":"https://orcid.org/0000-0002-6629-449X","affiliations":[{"raw_affiliation_string":"KAIST, Republic of Korea","institution_ids":["https://openalex.org/I157485424"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5019825813","display_name":"Youngjin Kwon","orcid":"https://orcid.org/0000-0001-5602-2397"},"institutions":[{"id":"https://openalex.org/I157485424","display_name":"Korea Advanced Institute of Science and Technology","ror":"https://ror.org/05apxxy63","country_code":"KR","type":"education","lineage":["https://openalex.org/I157485424"]}],"countries":["KR"],"is_corresponding":false,"raw_author_name":"Youngjin Kwon","raw_affiliation_strings":["KAIST, Republic of Korea"],"raw_orcid":"https://orcid.org/0000-0001-5602-2397","affiliations":[{"raw_affiliation_string":"KAIST, Republic of Korea","institution_ids":["https://openalex.org/I157485424"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5047149607","display_name":"Jaehyuk Huh","orcid":"https://orcid.org/0000-0002-1742-047X"},"institutions":[{"id":"https://openalex.org/I157485424","display_name":"Korea Advanced Institute of Science and Technology","ror":"https://ror.org/05apxxy63","country_code":"KR","type":"education","lineage":["https://openalex.org/I157485424"]}],"countries":["KR"],"is_corresponding":false,"raw_author_name":"Jaehyuk Huh","raw_affiliation_strings":["KAIST, Republic of Korea"],"raw_orcid":"https://orcid.org/0000-0002-1742-047X","affiliations":[{"raw_affiliation_string":"KAIST, Republic of Korea","institution_ids":["https://openalex.org/I157485424"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":7,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.4684,"has_fulltext":true,"cited_by_count":9,"citation_normalized_percentile":{"value":0.85984004,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":99},"biblio":{"volume":"21","issue":"1","first_page":"1","last_page":"25"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11614","display_name":"Cloud Data Security Solutions","score":0.996999979019165,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10478","display_name":"Diamond and Carbon-based Materials Research","score":0.9829000234603882,"subfield":{"id":"https://openalex.org/subfields/2505","display_name":"Materials Chemistry"},"field":{"id":"https://openalex.org/fields/25","display_name":"Materials Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8143148422241211},{"id":"https://openalex.org/keywords/direct-anonymous-attestation","display_name":"Direct Anonymous Attestation","score":0.7439849972724915},{"id":"https://openalex.org/keywords/trusted-computing","display_name":"Trusted Computing","score":0.7049748301506042},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.6254568696022034},{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.6026991009712219},{"id":"https://openalex.org/keywords/trusted-platform-module","display_name":"Trusted Platform Module","score":0.5804640054702759},{"id":"https://openalex.org/keywords/host","display_name":"Host (biology)","score":0.5457876920700073},{"id":"https://openalex.org/keywords/trusted-network-connect","display_name":"Trusted Network Connect","score":0.5286253690719604},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.5119851231575012},{"id":"https://openalex.org/keywords/isolation","display_name":"Isolation (microbiology)","score":0.5093918442726135},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5022568702697754},{"id":"https://openalex.org/keywords/sandbox","display_name":"Sandbox (software development)","score":0.5022315979003906},{"id":"https://openalex.org/keywords/software-deployment","display_name":"Software deployment","score":0.49321478605270386},{"id":"https://openalex.org/keywords/cloister","display_name":"Cloister","score":0.4588087797164917},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.4352344870567322},{"id":"https://openalex.org/keywords/resource","display_name":"Resource (disambiguation)","score":0.417082279920578},{"id":"https://openalex.org/keywords/function","display_name":"Function (biology)","score":0.4169832766056061},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.22361424565315247}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8143148422241211},{"id":"https://openalex.org/C169796023","wikidata":"https://www.wikidata.org/wiki/Q3708936","display_name":"Direct Anonymous Attestation","level":3,"score":0.7439849972724915},{"id":"https://openalex.org/C2776831232","wikidata":"https://www.wikidata.org/wiki/Q966812","display_name":"Trusted Computing","level":2,"score":0.7049748301506042},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.6254568696022034},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.6026991009712219},{"id":"https://openalex.org/C202775310","wikidata":"https://www.wikidata.org/wiki/Q1140366","display_name":"Trusted Platform Module","level":2,"score":0.5804640054702759},{"id":"https://openalex.org/C126831891","wikidata":"https://www.wikidata.org/wiki/Q221673","display_name":"Host (biology)","level":2,"score":0.5457876920700073},{"id":"https://openalex.org/C206149592","wikidata":"https://www.wikidata.org/wiki/Q3999882","display_name":"Trusted Network Connect","level":3,"score":0.5286253690719604},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.5119851231575012},{"id":"https://openalex.org/C2775941552","wikidata":"https://www.wikidata.org/wiki/Q25212305","display_name":"Isolation (microbiology)","level":2,"score":0.5093918442726135},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5022568702697754},{"id":"https://openalex.org/C167981075","wikidata":"https://www.wikidata.org/wiki/Q2667186","display_name":"Sandbox (software development)","level":2,"score":0.5022315979003906},{"id":"https://openalex.org/C105339364","wikidata":"https://www.wikidata.org/wiki/Q2297740","display_name":"Software deployment","level":2,"score":0.49321478605270386},{"id":"https://openalex.org/C2776808436","wikidata":"https://www.wikidata.org/wiki/Q1430154","display_name":"Cloister","level":2,"score":0.4588087797164917},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.4352344870567322},{"id":"https://openalex.org/C206345919","wikidata":"https://www.wikidata.org/wiki/Q20380951","display_name":"Resource (disambiguation)","level":2,"score":0.417082279920578},{"id":"https://openalex.org/C14036430","wikidata":"https://www.wikidata.org/wiki/Q3736076","display_name":"Function (biology)","level":2,"score":0.4169832766056061},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.22361424565315247},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C18903297","wikidata":"https://www.wikidata.org/wiki/Q7150","display_name":"Ecology","level":1,"score":0.0},{"id":"https://openalex.org/C89423630","wikidata":"https://www.wikidata.org/wiki/Q7193","display_name":"Microbiology","level":1,"score":0.0},{"id":"https://openalex.org/C142362112","wikidata":"https://www.wikidata.org/wiki/Q735","display_name":"Art","level":0,"score":0.0},{"id":"https://openalex.org/C78458016","wikidata":"https://www.wikidata.org/wiki/Q840400","display_name":"Evolutionary biology","level":1,"score":0.0},{"id":"https://openalex.org/C153349607","wikidata":"https://www.wikidata.org/wiki/Q36649","display_name":"Visual arts","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3632954","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3632954","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3632954","source":{"id":"https://openalex.org/S26056741","display_name":"ACM Transactions on Architecture and Code Optimization","issn_l":"1544-3566","issn":["1544-3566","1544-3973"],"is_oa":true,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Architecture and Code Optimization","raw_type":"journal-article"}],"best_oa_location":{"id":"doi:10.1145/3632954","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3632954","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3632954","source":{"id":"https://openalex.org/S26056741","display_name":"ACM Transactions on Architecture and Code Optimization","issn_l":"1544-3566","issn":["1544-3566","1544-3973"],"is_oa":true,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Architecture and Code Optimization","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G12967831","display_name":null,"funder_award_id":"IITP2017-0-00466","funder_id":"https://openalex.org/F4320335489","funder_display_name":"Institute for Information and Communications Technology Promotion"},{"id":"https://openalex.org/G705544124","display_name":null,"funder_award_id":"NRF-2022R1A2B5B01002133","funder_id":"https://openalex.org/F4320322120","funder_display_name":"National Research Foundation of Korea"}],"funders":[{"id":"https://openalex.org/F4320320671","display_name":"National Research Foundation","ror":"https://ror.org/05s0g1g46"},{"id":"https://openalex.org/F4320322120","display_name":"National Research Foundation of Korea","ror":"https://ror.org/013aysd81"},{"id":"https://openalex.org/F4320328359","display_name":"Ministry of Science and ICT, South Korea","ror":"https://ror.org/01wpjm123"},{"id":"https://openalex.org/F4320335489","display_name":"Institute for Information and Communications Technology Promotion","ror":"https://ror.org/01g0hqq23"}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4388672093.pdf","grobid_xml":"https://content.openalex.org/works/W4388672093.grobid-xml"},"referenced_works_count":14,"referenced_works":["https://openalex.org/W2013542432","https://openalex.org/W2025567609","https://openalex.org/W2118811116","https://openalex.org/W2162639668","https://openalex.org/W2890909432","https://openalex.org/W2946820880","https://openalex.org/W3120421331","https://openalex.org/W3197835242","https://openalex.org/W4210613944","https://openalex.org/W4234604793","https://openalex.org/W4245923077","https://openalex.org/W4298112463","https://openalex.org/W4302557380","https://openalex.org/W6801131132"],"related_works":["https://openalex.org/W2355956995","https://openalex.org/W2372678089","https://openalex.org/W104943326","https://openalex.org/W2381474365","https://openalex.org/W2383968738","https://openalex.org/W2371948564","https://openalex.org/W2357322421","https://openalex.org/W2389819096","https://openalex.org/W2373112531","https://openalex.org/W2365715481"],"abstract_inverted_index":{"In":[0,90],"cloud-based":[1],"serverless":[2,17,66,116,139,230],"computing,":[3,18],"an":[4,63,129,216],"application":[5],"consists":[6],"of":[7,58,95,122],"multiple":[8],"functions":[9],"provided":[10],"by":[11,206],"mutually":[12,103],"distrusting":[13],"parties.":[14],"For":[15],"secure":[16],"the":[19,38,47,51,56,59,77,82,92,107,120,150,222,240],"hardware-based":[20,151],"trusted":[21,65,104,115,138,170,185,229],"execution":[22],"environment":[23],"(TEE)":[24],"can":[25,232],"provide":[26],"strong":[27],"isolation":[28,153],"among":[29],"functions.":[30],"However,":[31,106],"not":[32],"only":[33,161],"protecting":[34,46],"each":[35,96],"function":[36,160,213],"from":[37,50,76,85,179],"host":[39,48,78],"OS":[40],"and":[41,81,175,198],"other":[42],"functions,":[43,52],"but":[44],"also":[45],"system":[49,79,83,177],"is":[53,192],"critical":[54],"for":[55,137,189,211],"security":[57],"cloud":[60,199],"servers.":[61],"Such":[62],"emerging":[64],"computing":[67],"poses":[68],"new":[69,144],"challenges:":[70],"Each":[71],"TEE":[72,97,109,131,164],"must":[73,87,98],"be":[74,88,99,233],"isolated":[75],"bi-directionally,":[80],"calls":[84,178],"it":[86,148,167,182],"validated.":[89],"addition,":[91],"resource":[93,186],"utilization":[94],"accountable":[100],"in":[101,154,239],"a":[102,158,169,184],"way.":[105],"current":[108],"model":[110,132],"cannot":[111],"efficiently":[112],"represent":[113],"such":[114,123],"applications.":[117],"To":[118],"overcome":[119],"lack":[121],"hardware":[124],"support,":[125],"this":[126,225],"article":[127,226],"proposes":[128,142,168],"extended":[130],"called":[133],"Cloister":[134,141,202],",":[135],"designed":[136],"computing.":[140],"four":[143],"key":[145],"techniques.":[146],"First,":[147],"extends":[149],"memory":[152,209],"SGX":[155,219,241],"to":[156,194],"confine":[157],"deployed":[159],"within":[162],"its":[163,208],"(enclave).":[165],"Second,":[166],"monitor":[171],"enclave":[172,204],"that":[173,191,228],"filters":[174],"validates":[176],"enclaves.":[180],"Third,":[181],"provides":[183],"accounting":[187],"mechanism":[188],"enclaves":[190],"agreeable":[193],"both":[195],"service":[196],"developers":[197],"providers.":[200],"Finally,":[201],"accelerates":[203],"loading":[205],"redesigning":[207],"verification":[210],"fast":[212],"deployment.":[214],"Using":[215],"emulated":[217],"Intel":[218],"platform":[220],"with":[221,236],"proposed":[223],"extensions,":[224],"shows":[227],"applications":[231],"effectively":[234],"supported":[235],"small":[237],"changes":[238],"hardware.":[242]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":7},{"year":2024,"cited_by_count":1}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
