Confidential computing for high-assurance RISC-V embedded systems
Confidential computing for high-assurance RISC-V embedded systems
Dear HN community! Looking forward to hearing your feedback on ACE (assured confidential execution), technology that implements VM-based trusted execution environment (TEE) for embedded RISC-V systems with focus on a formally verified and auditable firmware. We target high-assurance systems that can benefit from compartmentalization and hardware-backed isolation. The key ingredient called security monitor (firmware) is implemented in Rust. The formal specification is defined as annotations directly in code and gets translated to Coq using RefinedRust automation. ACE design is now part of the RISCV confidential VM extension (CoVE) specification (deployment model 3).
Share cardActual performance
Launch Intel predictions
Analyze your own launch →Correct prediction on native model
Similar products
Zscilib, scientific computing lib for embedded devices
Sandal, lightweight containerization for embedded systems
Emu – language for numerical computing embedded in Rust
Embedded Systems Weekly
The Causes of Latency in Computing Systems, and Why It Frustrates Us
Implementing Binary Communication Protocols in C++ for Embedded Systems
Distributed computing
Molecular/Waveform Computing Unification
a Lispy, embedded Forth
Runnable embedded "Gists"