ConMonitor: Lightweight Container Protection with Virtualization and VM Functions

S Xu, Q Zhou, Z Zhang, X Jia, D Liu, H Huang… - Proceedings of the …, 2024 - dl.acm.org
Containers are widely used in multi-tenant cloud computing for their ease of deployment,
minimal overhead, and fast start-up. However, the intrinsic shared kernel model of …

Dorami: Privilege Separating Security Monitor on RISC-V TEEs

M Kuhne, S Volos, S Shinde - arxiv preprint arxiv:2410.03653, 2024 - arxiv.org
TEE implementations on RISC-V offer an enclave abstraction by introducing a trusted
component called the security monitor (SM). The SM performs critical tasks such as isolating …