{"id":"https://openalex.org/W4404400662","doi":"https://doi.org/10.1145/3694715.3695956","title":"Modular Verification of Secure and Leakage-Free Systems: From Application Specification to Circuit-Level Implementation","display_name":"Modular Verification of Secure and Leakage-Free Systems: From Application Specification to Circuit-Level Implementation","publication_year":2024,"publication_date":"2024-11-04","ids":{"openalex":"https://openalex.org/W4404400662","doi":"https://doi.org/10.1145/3694715.3695956"},"language":"en","primary_location":{"id":"doi:10.1145/3694715.3695956","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3694715.3695956","pdf_url":null,"source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the ACM SIGOPS 30th Symposium on Operating Systems Principles","raw_type":"proceedings-article"},"type":"conference-paper","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://doi.org/10.1145/3694715.3695956","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5091720485","display_name":"Anish Athalye","orcid":"https://orcid.org/0000-0001-9355-6857"},"institutions":[{"id":"https://openalex.org/I63966007","display_name":"Massachusetts Institute of Technology","ror":"https://ror.org/042nb2s44","country_code":"US","type":"education","lineage":["https://openalex.org/I63966007"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Anish Athalye","raw_affiliation_strings":["Massachusetts Institute of Technology, Cambridge, MA, US"],"raw_orcid":"https://orcid.org/0000-0001-9355-6857","affiliations":[{"raw_affiliation_string":"Massachusetts Institute of Technology, Cambridge, MA, US","institution_ids":["https://openalex.org/I63966007"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5010212636","display_name":"Henry Corrigan-Gibbs","orcid":"https://orcid.org/0009-0006-7577-4512"},"institutions":[{"id":"https://openalex.org/I63966007","display_name":"Massachusetts Institute of Technology","ror":"https://ror.org/042nb2s44","country_code":"US","type":"education","lineage":["https://openalex.org/I63966007"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Henry Corrigan-Gibbs","raw_affiliation_strings":["Massachusetts Institute of Technology, Cambridge, MA, US"],"raw_orcid":"https://orcid.org/0009-0006-7577-4512","affiliations":[{"raw_affiliation_string":"Massachusetts Institute of Technology, Cambridge, MA, US","institution_ids":["https://openalex.org/I63966007"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5110236312","display_name":"Frans Kaashoek","orcid":null},"institutions":[{"id":"https://openalex.org/I63966007","display_name":"Massachusetts Institute of Technology","ror":"https://ror.org/042nb2s44","country_code":"US","type":"education","lineage":["https://openalex.org/I63966007"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Frans Kaashoek","raw_affiliation_strings":["Massachusetts Institute of Technology, Cambridge, MA, US"],"raw_orcid":"https://orcid.org/0000-0001-7098-586X","affiliations":[{"raw_affiliation_string":"Massachusetts Institute of Technology, Cambridge, MA, US","institution_ids":["https://openalex.org/I63966007"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5073987903","display_name":"Joseph Tassarotti","orcid":"https://orcid.org/0000-0001-5692-3347"},"institutions":[{"id":"https://openalex.org/I57206974","display_name":"New York University","ror":"https://ror.org/0190ak572","country_code":"US","type":"education","lineage":["https://openalex.org/I57206974"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Joseph Tassarotti","raw_affiliation_strings":["New York University, New York, NY, US"],"raw_orcid":"https://orcid.org/0000-0001-5692-3347","affiliations":[{"raw_affiliation_string":"New York University, New York, NY, US","institution_ids":["https://openalex.org/I57206974"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5082808262","display_name":"Nickolai Zeldovich","orcid":"https://orcid.org/0000-0003-0238-2703"},"institutions":[{"id":"https://openalex.org/I63966007","display_name":"Massachusetts Institute of Technology","ror":"https://ror.org/042nb2s44","country_code":"US","type":"education","lineage":["https://openalex.org/I63966007"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Nickolai Zeldovich","raw_affiliation_strings":["Massachusetts Institute of Technology, Cambridge, MA, US"],"raw_orcid":"https://orcid.org/0000-0003-0238-2703","affiliations":[{"raw_affiliation_string":"Massachusetts Institute of Technology, Cambridge, MA, US","institution_ids":["https://openalex.org/I63966007"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.657,"has_fulltext":true,"cited_by_count":5,"citation_normalized_percentile":{"value":0.86847831,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":96,"max":98},"biblio":{"volume":null,"issue":null,"first_page":"655","last_page":"672"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9987000226974487,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.9987000226974487,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7258959412574768},{"id":"https://openalex.org/keywords/modular-design","display_name":"Modular design","score":0.679990828037262},{"id":"https://openalex.org/keywords/leakage","display_name":"Leakage (economics)","score":0.47142690420150757},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.4697421193122864},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.2542336583137512}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7258959412574768},{"id":"https://openalex.org/C101468663","wikidata":"https://www.wikidata.org/wiki/Q1620158","display_name":"Modular design","level":2,"score":0.679990828037262},{"id":"https://openalex.org/C2777042071","wikidata":"https://www.wikidata.org/wiki/Q6509304","display_name":"Leakage (economics)","level":2,"score":0.47142690420150757},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.4697421193122864},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.2542336583137512},{"id":"https://openalex.org/C139719470","wikidata":"https://www.wikidata.org/wiki/Q39680","display_name":"Macroeconomics","level":1,"score":0.0},{"id":"https://openalex.org/C162324750","wikidata":"https://www.wikidata.org/wiki/Q8134","display_name":"Economics","level":0,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1145/3694715.3695956","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3694715.3695956","pdf_url":null,"source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the ACM SIGOPS 30th Symposium on Operating Systems Principles","raw_type":"proceedings-article"},{"id":"pmh:oai:dspace.mit.edu:1721.1/157857","is_oa":true,"landing_page_url":"https://hdl.handle.net/1721.1/157857","pdf_url":"https://dspace.mit.edu/bitstream/1721.1/157857/1/3694715.3695956.pdf","source":{"id":"https://openalex.org/S4306400425","display_name":"DSpace@MIT (Massachusetts Institute of Technology)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I63966007","host_organization_name":"Massachusetts Institute of Technology","host_organization_lineage":["https://openalex.org/I63966007"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-nc","license_id":"https://openalex.org/licenses/cc-by-nc","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Association for Computing Machinery","raw_type":"http://purl.org/eprint/type/ConferencePaper"}],"best_oa_location":{"id":"doi:10.1145/3694715.3695956","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3694715.3695956","pdf_url":null,"source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the ACM SIGOPS 30th Symposium on Operating Systems Principles","raw_type":"proceedings-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":50,"referenced_works":["https://openalex.org/W69090831","https://openalex.org/W140235344","https://openalex.org/W1434079718","https://openalex.org/W1657240689","https://openalex.org/W1977764760","https://openalex.org/W1988079752","https://openalex.org/W2023035194","https://openalex.org/W2040856861","https://openalex.org/W2057156093","https://openalex.org/W2095770127","https://openalex.org/W2122049982","https://openalex.org/W2126823808","https://openalex.org/W2150174204","https://openalex.org/W2183849663","https://openalex.org/W2267469130","https://openalex.org/W2328819335","https://openalex.org/W2402794349","https://openalex.org/W2415236938","https://openalex.org/W2563516355","https://openalex.org/W2578546025","https://openalex.org/W2762625979","https://openalex.org/W2767162229","https://openalex.org/W2787976344","https://openalex.org/W2898893133","https://openalex.org/W2901705877","https://openalex.org/W2928036819","https://openalex.org/W2953840721","https://openalex.org/W2964540713","https://openalex.org/W2978094579","https://openalex.org/W3033726579","https://openalex.org/W3034103899","https://openalex.org/W3081530771","https://openalex.org/W3082349452","https://openalex.org/W3122076682","https://openalex.org/W3175981353","https://openalex.org/W4206109607","https://openalex.org/W4237041209","https://openalex.org/W4238567305","https://openalex.org/W4281986595","https://openalex.org/W4323026390","https://openalex.org/W4376312585","https://openalex.org/W4399851201","https://openalex.org/W6631075134","https://openalex.org/W6682205580","https://openalex.org/W6736003816","https://openalex.org/W6764400683","https://openalex.org/W6769857062","https://openalex.org/W6772849236","https://openalex.org/W6797883788","https://openalex.org/W6931651971"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2899084033","https://openalex.org/W2748952813","https://openalex.org/W2390279801","https://openalex.org/W4391913857","https://openalex.org/W2358668433","https://openalex.org/W4396701345","https://openalex.org/W2376932109","https://openalex.org/W2001405890","https://openalex.org/W4396696052"],"abstract_inverted_index":{"Parfait":[0,26,76,110,133],"is":[1,20,52,161],"a":[2,10,53,121,164],"framework":[3],"for":[4,137,140],"proving":[5,57],"that":[6,144],"an":[7,23,35,116],"implementation":[8,84],"of":[9,34,65,88,100,126,150,155,167],"hardware":[11,33],"security":[12,58],"module":[13],"(HSM)":[14],"leaks":[15],"nothing":[16,157],"more":[17,158],"than":[18,159],"what":[19,160],"mandated":[21],"by":[22,61,163],"application":[24],"specification.":[25],"proofs":[27],"cover":[28],"the":[29,32,41,83,101,127,145],"software":[30],"and":[31,59,67,97,120,130,152],"HSM,":[36,123],"which":[37],"catches":[38],"bugs":[39],"above":[40],"cycle-level":[42],"digital":[43],"circuit":[44],"abstraction,":[45,89],"including":[46,115],"timing":[47],"side":[48],"channels.":[49],"Parfait's":[50],"contribution":[51],"scalable":[54],"approach":[55],"to":[56,77,81,111],"non-leakage":[60],"using":[62],"intermediate":[63],"levels":[64,87],"abstraction":[66],"relating":[68],"them":[69],"with":[70],"transitive":[71],"information-preserving":[72],"refinement.":[73],"This":[74],"enables":[75],"use":[78,109],"different":[79,86],"techniques":[80],"verify":[82,112],"at":[85],"reuse":[90],"existing":[91],"verified":[92],"components":[93],"such":[94],"as":[95],"CompCert,":[96],"automate":[98],"parts":[99],"proof,":[102],"while":[103],"still":[104],"providing":[105],"end-to-end":[106],"guarantees.":[107],"We":[108],"four":[113],"HSMs,":[114],"ECDSA":[117],"certificate-signing":[118],"HSM":[119,147],"password-hashing":[122],"on":[124],"top":[125],"OpenTitan":[128],"Ibex":[129],"PicoRV32":[131],"processors.":[132],"provides":[134],"strong":[135],"guarantees":[136],"these":[138],"HSMs:":[139],"instance,":[141],"it":[142],"proves":[143],"ECDSA-on-Ibex":[146],"implementation---2,300":[148],"lines":[149,154],"code":[151],"13,500":[153],"Verilog---leaks":[156],"allowed":[162],"40-line":[165],"specification":[166],"its":[168],"behavior.":[169]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":3}],"updated_date":"2026-08-18T07:49:30.821534","created_date":"2025-10-10T00:00:00"}
