Links

Overview

结合TrustZone,实现在Normal World加载运行Security Sensitive Applications,提供了有点类似于intel sgx的那种模式。解决了TrustZone TA作者不易将程序部署到arm设备上的问题。

整体结构图如下。

Untitled

Key points

Untitled

Security Analysis

Adversary model

How to protect

相关工作

作者后续工作

[[USENIX Security 21]CURE: A Security Architecture with CUstomizable and Resilient Enclaves](https://www.notion.so/USENIX-Security-21-CURE-A-Security-Architecture-with-CUstomizable-and-Resilient-Enclaves-3296fc02fb7946da9bdd53f2d6910053?pvs=21)

类似工作