首页> 美国政府科技报告 >Enforcing Hardware-Assisted Integrity for Secure Transactions from Commodity Operating Systems.
【24h】

Enforcing Hardware-Assisted Integrity for Secure Transactions from Commodity Operating Systems.

机译:从商品操作系统实施安全交易的硬件辅助完整性。

获取原文

摘要

In this project, we tried to solve the isolation problem from a different perspective. We still set up two OSes for the user. One is the trusted OS for secure transactions; the other is the untrusted OS for normal transactions. To overcome the drawbacks of the VMMs, we provide a firmware-assisted system, referred to as secure switching system, which allows users to switch between a trusted operating system and an untrusted operating system on the same machine with a short switching time. In our solution, we put a small number of relatively trusted applications in the trusted OS, and a large number of untrusted applications in another untrusted OS. Even if the untrusted OS has been compromised, it cannot affect the applications in the trusted OS. Our solution reduces the attack surface for secure transactions by establishing a tailored trustworthy space and enables secure transactions with very low switching time on commodity hardware platforms.

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号