Tag

confidential computing

1 views collected around this technical thread.

AntTech
AntTech
Feb 12, 2025 · Information Security

Selected Ant Group Papers Presented at NDSS 2025

The 2025 NDSS conference in San Diego featured five Ant Group papers covering secure forensics for compromised TrustZone, privacy‑preserving inference for large Transformers, LLM‑driven shell command explanation, a scalable randomness beacon protocol, and enclave construction within confidential virtual machines.

NDSSRandomness BeaconShell Command Explanation
0 likes · 9 min read
Selected Ant Group Papers Presented at NDSS 2025
AntTech
AntTech
Oct 22, 2024 · Information Security

Asterinas Open-Source Secure OS and Confidential Computing Stack Launched by Chinese Research Institutions

On October 22, the open‑source Asterinas system software stack, featuring the Rust‑based Asterinas OS and confidential computing components, was announced by leading Chinese research labs and enterprises to provide a high‑performance, memory‑safe operating system and trusted execution environment for cloud, AI, and data‑centric workloads.

Operating SystemRustcloud computing
0 likes · 7 min read
Asterinas Open-Source Secure OS and Confidential Computing Stack Launched by Chinese Research Institutions
AntTech
AntTech
Oct 22, 2024 · Information Security

Asterinas Confidential Computing Platform: Architecture, Core Components, and Real‑World Applications

The Asterinas open‑source confidential computing stack, released by leading Chinese research institutions and Ant Group, combines HyperEnclave, Occlum, and TrustFlow to provide a secure, nationally‑trusted TEE foundation for cloud, AI, and data‑intensive workloads, addressing the shortcomings of existing commercial TEEs and enabling trustworthy data flow across diverse industries.

AsterinasCloud Securityconfidential computing
0 likes · 8 min read
Asterinas Confidential Computing Platform: Architecture, Core Components, and Real‑World Applications
AntTech
AntTech
Oct 18, 2024 · Information Security

CNCC2024 Confidential Computing Forum – Schedule, Speakers, and Research Abstracts

The second Confidential Computing Forum at CNCC2024, held on October 26 in Hangzhou, gathers leading experts to discuss TEE‑based secure computing, present cutting‑edge research on confidentiality, side‑channel attacks, collaborative trust, and cryptographic applications, and outlines future directions for data security in the digital economy.

Data Securityconfidential computinginformation security
0 likes · 10 min read
CNCC2024 Confidential Computing Forum – Schedule, Speakers, and Research Abstracts
AntTech
AntTech
Jul 19, 2023 · Information Security

IEEE 2952-2023 Standard for Secure Computing Based on Trusted Execution Environment – Technical Overview

The IEEE 2952-2023 standard, jointly released by Ant Group and multiple partners, defines a comprehensive technical framework for secure computing using Trusted Execution Environments, covering isolation, confidentiality, compatibility, performance, availability, and security, and outlines reference implementations, cluster management, and remote attestation mechanisms.

IEEE Standardconfidential computingsecure computing
0 likes · 7 min read
IEEE 2952-2023 Standard for Secure Computing Based on Trusted Execution Environment – Technical Overview
AntTech
AntTech
Dec 11, 2022 · Information Security

Occlum v1.0: Open‑Source Trusted Execution Environment OS with Major Performance Gains and Spark Big Data Integration

Occlum v1.0, the open‑source trusted execution environment operating system released by Ant Group, delivers up to five‑fold performance improvements, supports over 150 Linux syscalls, introduces async I/O, dynamic memory management, and a Spark‑BigDL big‑data analysis solution, while outlining future GPU and TDX extensions.

OcclumPerformanceRust
0 likes · 11 min read
Occlum v1.0: Open‑Source Trusted Execution Environment OS with Major Performance Gains and Spark Big Data Integration
DataFunSummit
DataFunSummit
Sep 18, 2022 · Information Security

Privacy Computing and Blockchain: Enabling Secure Data Collaboration

This article explains how privacy computing technologies such as federated learning, multi‑party computation, and trusted execution environments, combined with blockchain, address data sharing challenges in the digital economy by protecting privacy, ensuring compliance, and enabling secure, trusted collaboration across enterprises and government agencies.

Data SecuritySecure Data Sharingblockchain
0 likes · 11 min read
Privacy Computing and Blockchain: Enabling Secure Data Collaboration
AntTech
AntTech
Jul 27, 2022 · Cloud Native

Interview with Ant Group’s Trusted Native Team: Cloud‑Native Infrastructure, Service Mesh, Secure Containers, and Confidential Computing

The article interviews Ant Group’s Trusted Native team, detailing their cloud‑native infrastructure roadmap—including middleware mesh, SOFAStack, secure container runtimes like Kata and MOSN, confidential‑computing platforms such as Occlum, HyperEnclave and KubeTEE—while highlighting open‑source strategy, security considerations, and productization efforts.

Infrastructurecloud-nativeconfidential computing
0 likes · 19 min read
Interview with Ant Group’s Trusted Native Team: Cloud‑Native Infrastructure, Service Mesh, Secure Containers, and Confidential Computing
AntTech
AntTech
Apr 9, 2021 · Information Security

Next‑Generation Intel SGX on Ice Lake: Performance Evaluation and Optimization with Occlum

This article reviews the Ice Lake‑based next‑generation Intel SGX, compares its security and performance improvements over previous generations, presents detailed benchmark results on memory access, dynamic memory management and enclave switching, and describes software optimizations implemented in the Occlum runtime to mitigate remaining overheads.

Ice LakeIntel SGXNext‑Gen Occlum
0 likes · 8 min read
Next‑Generation Intel SGX on Ice Lake: Performance Evaluation and Optimization with Occlum
AntTech
AntTech
Apr 6, 2021 · Information Security

Confidential Computing: Challenges, Solutions, and the Role of Rust in the SOFAEnclave Stack

The article explains how confidential computing, built on trusted execution environments like Intel SGX, addresses data‑in‑use security, outlines the technical hurdles developers face, and showcases Ant Group's open‑source SOFAEnclave components—Occlum, HyperEnclave, and KubeTEE—highlighting Rust’s pivotal contribution.

Cloud SecurityRustSGX
0 likes · 13 min read
Confidential Computing: Challenges, Solutions, and the Role of Rust in the SOFAEnclave Stack
AntTech
AntTech
Jan 7, 2021 · Information Security

SOFAEnclave Confidential Computing Stack: Occlum, HyperEnclave, and KubeTEE Overview

This article introduces the SOFAEnclave confidential computing solution, detailing its three components—Occlum, HyperEnclave, and KubeTEE—explaining how they address practical challenges of enclave development, integration with cloud‑native environments, and secure large‑scale Kubernetes deployments.

EnclaveHyperEnclaveKubeTEE
0 likes · 9 min read
SOFAEnclave Confidential Computing Stack: Occlum, HyperEnclave, and KubeTEE Overview
AntTech
AntTech
Oct 19, 2020 · Information Security

Ensuring Security in Open Source Projects: Insights from Kata Containers and Community Practices

The article examines how open‑source projects can achieve robust security through organized vulnerability management teams, active collaboration with security researchers, and community‑driven initiatives, using Kata Containers and the broader cloud‑native ecosystem as illustrative examples.

cloud-nativeconfidential computingcontainer runtime
0 likes · 10 min read
Ensuring Security in Open Source Projects: Insights from Kata Containers and Community Practices
AntTech
AntTech
Sep 30, 2020 · Cloud Native

KubeTEE: An Open‑Source Cloud‑Native Confidential Computing Framework for Large‑Scale TEE Clusters

KubeTEE is an open‑source cloud‑native framework that integrates Trusted Execution Environment (TEE) technology with Kubernetes to provide a complete solution for developing, deploying, and operating large‑scale confidential computing applications, simplifying the entire lifecycle from code signing to runtime management.

KubeTEEcloud-nativeconfidential computing
0 likes · 9 min read
KubeTEE: An Open‑Source Cloud‑Native Confidential Computing Framework for Large‑Scale TEE Clusters
AntTech
AntTech
Apr 17, 2020 · Information Security

From Rust Advocate to Confidential Computing Pioneer: Tian Hongliang’s Journey at Ant Group

The article chronicles Tian Hongliang’s evolution from a Rust‑loving coder who excelled in Ant Group’s internal coding competition to a leading researcher in confidential computing, detailing his work on Intel SGX, the open‑source Occlum project, and the team’s recruitment drive for security engineers.

Ant GroupEnclaveOcclum
0 likes · 11 min read
From Rust Advocate to Confidential Computing Pioneer: Tian Hongliang’s Journey at Ant Group
AntTech
AntTech
Jan 21, 2020 · Information Security

Ant Group Papers Accepted at ASPLOS'20: Occlum Secure Enclave LibOS and Catalyzer Serverless Cold‑Start Optimization

Ant Group announced that two of its research papers—one on the Occlum secure enclave LibOS and another on the Catalyzer serverless cold‑start optimizer—were selected for presentation at the prestigious ASPLOS'20 conference, highlighting the company's contributions to confidential computing and serverless performance.

ASPLOSAnt Groupconfidential computing
0 likes · 4 min read
Ant Group Papers Accepted at ASPLOS'20: Occlum Secure Enclave LibOS and Catalyzer Serverless Cold‑Start Optimization
AntTech
AntTech
Dec 18, 2019 · Cloud Native

Ant Financial’s System Software Practices and Open‑Source Collaboration

In a 2019 OS2ATC talk, Ant Financial’s system department head explained how the company tackles massive data pressure, ultra‑high availability, secure containers, confidential computing, and open‑source initiatives such as OceanBase, Occlum, SOFAMesh, and Kata Containers to drive financial‑grade system software innovation.

cloud-nativeconfidential computingdatabases
0 likes · 8 min read
Ant Financial’s System Software Practices and Open‑Source Collaboration
AntTech
AntTech
Oct 11, 2019 · Cloud Native

Ant Group's Financial-Grade Cloud‑Native Security Architecture: Service Mesh, Secure Containers, and Confidential Computing

The article outlines Ant Group's end‑to‑end cloud‑native security architecture for the financial sector, detailing the SOFAMesh service‑mesh solution, Kata Containers secure‑container technology, and the SOFAEnclave confidential‑computing platform, together with performance results and open‑source links.

FinTechcloud-nativeconfidential computing
0 likes · 9 min read
Ant Group's Financial-Grade Cloud‑Native Security Architecture: Service Mesh, Secure Containers, and Confidential Computing
AntTech
AntTech
Sep 30, 2019 · Information Security

Confidential Computing and SOFAEnclave: Ant Financial’s Innovations in Secure Cloud‑Native Middleware

The article explains how Ant Financial leverages confidential computing technologies such as Intel SGX, the Occlum LibOS, and the KubeTEE cloud‑native cluster to build the SOFAEnclave middleware, addressing security, usability, and scalability challenges for financial‑grade data protection and multi‑party AI workloads.

Data SecurityKubeTEEOcclum
0 likes · 16 min read
Confidential Computing and SOFAEnclave: Ant Financial’s Innovations in Secure Cloud‑Native Middleware