AFSecurity: Confidential Computing

Velkommen til UiO AFSecurity seminar om digital sikkerhet.

Canonical

Dr. Ijlal Loutfi from Canonical explains Confidential Computing at UiO's AFSecurity seminar.

Ijlal Loutfi
Ijlal Loutfi

See the program below and at the AFSecurity wiki. All interested are welcome. Coffee and snacks served.

TIME: Friday 1 December 2023, at 14:00h
PLACE: Auditorium Smalltalk, 1st floor, IFI, UiO.
AGENDA:
14:00h Welcome to AFSecurity at UiO
14:15h Invited talk

  • TITLE: Confidential Computing
  • SPEAKER: Dr. Ijlal Loutfi
  • ABSTRACT: Protecting data in-use has long been a challenging open problem in computer science. While being computed on in cleartext in system memory, your data stored in RAM is exposed to the millions lines of code that make up the underlying platform’s privileged system software. By design, a malicious firmware, or compromised operating system can easily leak your data, or compromise its integrity.

    Confidential computing is a privacy-enhancing system security primitive which addresses this challenge head-on, by running your security-sensitive processes in isolated execution environments whose security guarantees can be remotely attested. Its recent generations, such as Intel SGX, Intel TDX and AMD SEV SNP, make use of newer CPU hardware and architectural extensions, such as the AES-128 hardware encryption engine which encrypts RAM memory pages in real-time. Hardware with these capabilities is already available in the market, and public cloud providers have been one of its early adopters.

    In this presentation, we first visit the history of confidential computing, then study the technical system primitives which allow us to implement both isolation and attestation. We also explore the different silicon implementations of confidential computing, where they are deployed today, and for which uses cases..

15:15h Discussion.

BIO:
Dr. Ijlal Loutfi is the product lead for Ubuntu Security at Canonical. She has a PhD in cyber security from the University of Oslo, where she worked on Trusted Execution Environments and Identity Management.


Academic Forum on Security is organised by UiO Digital Security.
Publisert 14. nov. 2023 14:47 - Sist endret 1. des. 2023 19:53