Abstract

We present Flicker, an infrastructure for executing security-sensitive code in complete isolation while trusting as few as 250 lines of additional code. Flicker can also provide meaningful, fine-grained attestation of the code executed (as well as its inputs and outputs) to a remote party. Flicker guarantees these properties even if the BIOS, OS and DMA-enabled devices are all malicious. Flicker leverages new commodity processors from AMD and Intel and does not require a new OS or VMM. We demonstrate a full implementation of Flicker on an AMD platform and describe our development environment for simplifying the construction of Flicker-enabled code.

Citation impact

645
total citations
FWCI
82.69
Percentile
100%
References
33
Citations per year

Authors

5

Topics & keywords

Keywords
  • Flicker
  • Computer science
  • Code (set theory)
  • Embedded system
  • Computer hardware
  • Operating system
  • Programming language
UN Sustainable Development Goals
  • Industry, innovation and infrastructure
No related works found for this paper.