Please use this identifier to cite or link to this item: http://hdl.handle.net/10397/109014
PIRA download icon_1.1View/Download Full Text
Title: Building a lightweight trusted execution environment for Arm GPUs
Authors: Wang, C 
Deng, Y
Ning, Z
Leach, K
Li, J
Yan, S
He, Z
Cao, J 
Zhang, F
Issue Date: Jul-2024
Source: IEEE transactions on dependable and secure computing, July-Aug. 2024, v. 21, no. 4, p. 3801-3816
Abstract: A wide range of Arm endpoints leverage integrated and discrete GPUs to accelerate computation. However, Arm GPU security has not been explored by the community. Existing work has used Trusted Execution Environments (TEEs) to address GPU security concerns on Intel-based platforms, but there are numerous architectural differences that lead to novel technical challenges in deploying TEEs for Arm GPUs. There is a need for generalizable and efficient Arm-based GPU security mechanisms. To address these problems, we present StrongBox , the first GPU TEE for secured general computation on Arm endpoints. StrongBox provides an isolated execution environment by ensuring exclusive access to GPU. Our approach is based in part on a dynamic, fine-grained memory protection policy as Arm-based GPUs typically share a unified memory with the CPU. Furthermore, StrongBox reduces runtime overhead from the redundant security introspection operations. We also design an effective defense mechanism within secure world to protect the confidential GPU computation. Our design leverages the widely-deployed Arm TrustZone and generic Arm features, without hardware modification or architectural changes. We prototype StrongBox using an off-the-shelf Arm Mali GPU and perform an extensive evaluation. Results show that StrongBox successfully ensures GPU computation security with a low (4.70%–15.26%) overhead.
Keywords: Arm endpoint GPU
Secure virtualization
Trusted execution environment
Publisher: Institute of Electrical and Electronics Engineers
Journal: IEEE transactions on dependable and secure computing 
ISSN: 1545-5971
EISSN: 1941-0018
DOI: 10.1109/TDSC.2023.3334277
Rights: © 2023 The Authors. This work is licensed under a Creative Commons Attribution-NonCommercial-NoDerivatives 4.0 License. For more information, see https://creativecommons.org/licenses/by-nc-nd/4.0/
The following publication C. Wang et al., "Building a Lightweight Trusted Execution Environment for Arm GPUs," in IEEE Transactions on Dependable and Secure Computing, vol. 21, no. 4, pp. 3801-3816, July-Aug. 2024 is available at https://doi.org/10.1109/TDSC.2023.3334277.
Appears in Collections:Journal/Magazine Article

Files in This Item:
File Description SizeFormat 
Wang_Building_Lightweight_Trusted.pdf1.27 MBAdobe PDFView/Open
Open Access Information
Status open access
File Version Version of Record
Access
View full-text via PolyU eLinks SFX Query
Show full item record

Page views

91
Citations as of Nov 10, 2025

Downloads

54
Citations as of Nov 10, 2025

SCOPUSTM   
Citations

1
Citations as of Dec 19, 2025

Google ScholarTM

Check

Altmetric


Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.