PRA-TLS is an attestation protocol that covers the client application invoking an enclave, not just the enclave. A trusted Attester Daemon measures the host environment and application code at runtime, and the protocol is checked formally with Tamarin Prover. A prototype on Intel SGX was evaluated for performance.
Confidential Computing Monthly
Trusted execution environments and confidential AI: GPU and CPU enclaves, attestation, attacks and real deployments.
Latest issue
Oct 6 · 3 of 5 shownThis issue leans on remote attestation: two arXiv papers extend what a TEE attestation can prove, one covering the host application and one covering audits of proprietary code, both prototyped on Intel SGX. Also here are a microarchitectural side-channel paper on LLM training-data membership, a deployed SEV-SNP attestation service, and an SGX/TDX learning site. The two attestation papers are the most worth reading.
Proposes chaining attestable build with an attestable audit workload (fuzzing, static analysis, AI code auditing, formal methods run inside a TEE). A verifier can then conclude that an artifact was built from source meeting audited properties without seeing the source or the artifact. A proof of concept runs the Bandit analyzer on Python code using Intel SGX with Gramine.
A bilingual learning site on Intel SGX and TDX covering principles, hardware requirements, memory structures, SGX instructions and TDX module calls. Remote attestation gets only a brief summary, with protocols and validation left to separate study.
More in Privacy
Streams that already watch this field. Follow one as it is — it costs nothing extra.
Everything in fully homomorphic encryption: new papers and benchmarks, libraries and releases, new projects and startups, funding, products, standards, talks and events, attacks and incidents — across research, industry and onchain FHE.
Everything around FHERMA, the FHE challenge platform by Fair Math: new challenges and prize pools, results and winners, solution write-ups, Polycircuit and OpenFHE-rs releases, partnerships and mentions.
Every new release of the homomorphic encryption libraries, compilers and SDKs — TFHE-rs, Concrete, fhEVM, OpenFHE, SEAL, HEIR, Lattigo, Poulpy, CryptoLab HEaaN and enVector, Desilo, IBM HElayers, Apple Swift HE, TenSEAL and GPU libraries — with what changed.