比特幣交易所 比特幣交易所
Ctrl+D 比特幣交易所
ads

英特爾SGX和區塊鏈安全:iExec的端到端解決方案_THE

Author:

Time:1900/1/1 0:00:00

點擊藍字關注我們

英特爾SGX和區塊鏈

iExec端到端解決方案

iExec很榮幸地宣布即將推出首個集成英特爾SGX的端到端解決方案,用于分布式計算的安全技術應用。在2018年10月30日布拉格Devcon4會議上,iExec和英特爾將宣布重大合作新聞。

張磊,iExec安全總監介紹了英特爾SGXEnclave技術,以及如何保證參與區塊鏈網絡的用戶和應用的安全問題,特別是基于區塊鏈的分布式云技術方面。

敬請關注!

正文相關鏈接

IntelSGX:https://software.intel.com/en-us/sgx

Thechallenge:Howcanweguaranteesecurityondecentralizedanddistributednetworks?

Blockchain-basedapplicationsandcomputingarenotownedorcontrolledbyonespecificentitybutratherpoweredbyadistributednetworkofmultiplemachinesor‘nodes’.Thedistributednatureofdecentralizedcloudcomputingnetworkspresentachallengetoguaranteesecurityasanyrootprivilegeusermayeasilyinspectthesensitivedataandtamperwiththeapplicationrunningonthedecentralizedhost.Fortraditionalcentralizedcloudcomputingproviders,itiseasiertoemployexistingsecuritymechanismsprotecttheinvolvedapplication.

Fordecentralizedblockchain-basedclouds,asilicon-basedsecuritysolution,called‘IntelSGX’,istheonlyefficientsolutiontoprotectusersandapplicationsinvolvedinBlockchain-baseddecentralizedcomputing.

IntelSGX(IntelSoftwareGuardExtensions),isasetofCPUinstructioncodesthatenabletheexecutionofselectpiecescodeanddatainprotectedareascalledenclaves.Basically,whileyouhaveanapplicationrunningonahostmachine,SGXenclavesessentiallyactasabubble,isolatingandprotectingtheapplicationfromthehostmachine,inthisway,eventherootprivilegeadministratorofthehostmachineisnotabletopenetratethisbubbletoaccessandtamperwiththeapplication.

美股三大指數集體低開 英特爾跌約10%:1月27日消息,美股開盤,道指跌0.03%,納指跌0.36%,標普500指數跌0.25%。英特爾開跌約10%,公司2022年Q4營收同比降32%并創2016年以來最低營收,2023年Q1指引大幅低于市場預期。雪佛龍跌2.54%,2022年Q4凈利潤63.53億美元,調整后每股盈利4.09美元,但均不及市場預期。[2023/1/28 11:32:53]

AnintroductiontoIntelSGXEnclaves-iExecSecurityR&D,LeiZhang

“WhatmakesIntelSGXcompellingisthatitprovidesahardwaretrustedexecutionenvironment(TEE),allowingbetterprotectionsfordatain-use,at-restandin-transit,built-inCPUinstructionsandplatformenhancementsprovidecryptographicassertionsforthecodethatispermittedtoaccessthedata.Ifthecodeisalteredortampered,thenaccessisdeniedandtheenvironmentdisabled.”

—RickEchevarria,VicepresidentofIntel’sSoftwareandServicesGroup.

1.TheiExecE2ESGXsolution

iExecispioneeringthebuildingofablockchain-enableddecentralizedanddistributedcloudnetwork.Theyhavenowprovidedthefirsteverfullandend-to-endsolutionintegratingSGXfortheblockchain-basedcloud.SomeofourinitialworkwithintelSGXcanbereadinthisblogpostandiscoveredinthisvideopresentation.iExecpresentedthefirstphaseofworkonSGXinMarch2018attheIBMThinkConferenceinLasVegasandco-presentedalongsideIntelinMay2018atConsensusinNewYork..Thisfirstphasefocusedontheprotectionofthesecretsbuiltindecentralizedapplications:althoughtheapplicationsrunsondecentralizednodes,theinvolvedsensitivedatacannotbeinspectedoralteredwithbymaliciousattackersonthenetwork.Howeverthefirststageofworkwasbasedonsomesophisticated(raw)frameworksandthefunctionalityofthesolutionwaslimitedtoonlyprotectnativesecretsoftheapplication,furthermorethesolutioncouldbecomplicatedforappdevelopersandusers,especiallyforthosewhoarenotinthefieldofITandcomputing.

英特爾計劃今年提高芯片價格,部分芯片價格或上漲20%:金色財經消息,英特爾將在今年晚些時候提高其旗艦CPU和各種其他芯片的價格,包括Wi-Fi和其他連接芯片。英特爾已經通知了客戶價格上漲的消息,這可能會導致假期期間更多的PC和筆記本電腦價格上漲。雖然最終定價尚未確定,但一些芯片可能會上漲20%。

英特爾今年早些時候已經警告說,由于通貨膨脹持續,以及材料、運輸和勞動力成本的上升,該公司正在考慮提高某些芯片的價格。“在第一季度財報電話會議上,英特爾表示,由于通脹壓力,它將提高某些業務領域的定價,”英特爾發言人在日經新聞的一份聲明中表示,“公司已經開始通知客戶這些變化。”

6月底,英特爾宣布開始交付專用于挖礦的定制芯片Intel Blockscale ASIC,Argo、GRIID、HIVE等加密貨幣礦企為首批客戶。目前尚不清楚本次漲價是否會影響礦機芯片。(The Verge)[2022/7/16 2:16:56]

iExechastocontinuedtomakesignificantcontributions,workingdiligentlywithourpartners,topushforwardapowerfulanduser-friendlyend-to-endSGXsolution.Thissolutionisintendedtobeusedasanindustryreferencetoenhancetheoverallsecurityofdecentralizedcloudcomputing.ThisnewSGXsolution,combinedwithBlockchain,allowsforunmatchedleveloftrustforDecentralizedApplications(Dapps)andexecution/dataprocessingondecentralizednodes.TheiExecapproachspecificallyallowsBlockchaintoworkwithSGXinorderto:

ProtecttheDAppandprovidefulldataprotectionthatcannotbeaccessedbytheexecutionhost,especiallyforuser’sinputandoutputdata.

GuaranteetheintegrationoftheDapp/Data,makingsurethecorrectandexpectedDApporDataisrunningonthedecentralizednode.

Provideblockchain-basedvalidationforoff-chaincomputing,verifyingthattheDappiscorrectlyexecutedinanenclaveandisneithertamperednorinterruptedbythedecentralizednode.Asmart-contractsignatureissignedinsidethissecureenclavebeforetheverificationisdonebytheblockchainnetwork.

英特爾中國董事長王銳:告別浮夸的元宇宙,才能走向真正的元宇宙:3月5日消息,英特爾中國董事長王銳,在接受采訪時談到:元宇宙的最終需求是基礎算力。這就是典型的美國的硬核科技巨頭在對待元宇宙這件事情上的態度,不高談闊論,不盲目的談論商業,而是非常務實的從底層產業技術層面去思考自身企業在其中的位置,以及能夠解決與突破的技術方向。

英特爾中國董事長王銳談到元宇宙時,說:每個人心中的元宇宙藍圖都是不同的,核心需求還是基礎算力。所以我說這個世界對我們有需求,就是最大的好消息。最慘就是這個世界不需要你了,而今天我看不到這個世界不需要英特爾的任何一個原因。我們下一步需要考慮的是怎么加大投入,以更好地適應未來元宇宙對算力和連接的指數型增長的需求。對我們來說,機會無處不在,關鍵在于怎樣抓住機會。可以說,目前為止,英特爾是助力元宇宙最典型的例子,包括我們奧運會上孿生場館的管理。這項碩果也被列在在奧運會的科技遺產中。(封面)[2022/3/5 13:39:04]

MakesuretheexecutionandDAppresultisvalid,neithercopied,norfabricatedbymaliciousdecentralizednode.

Protecttheend-to-endprivacyofDAppresult,whichcanneverbeinspectedbyanyoneelsebuttheuser.

Afriendly-userinterface:significantsimplificationforuserstoencrypt/decrypttheinput/outputdataandtriggertheSGXapplicationexecution.

EasyusabilityisakeyelementofUserExperience;withthenewiExecE2ESGXsolution,useronlyneeds3simplestepstorunanE2ESGXapplicationandtoprovideafullprotectionofuser’sinputandoutputdata.

Let’sthinkaboutatypicalSGXapplication,sayforexampleaFinTechapplication.Theapplicationisfedbysomeuserinputdatawhichcontainssomeuser’spersonalandsensitivesecrets(e.g.bankaccountinformation,personalprivacy,etc…),theoutputresultsoftheapplicationalsocontainsomesensitivedataandareonlyintendedtouserwhotriggerstheapplication.Theinputdataandtheoutputresultsneedtobestrictlyprotectedduringthewholeprocedure.Thenon-encryptedsensitivedataneverleavesuserlocalscopeorhigh-securedtrustedexecutionenvironment:SXGenclave.Hereisagenericdescriptionofthe3simplestepsofiExec’sSGXsolution.

Phala:英特爾緩存泄露漏洞并未對TEE項目造成影響:金色財經報道,日前,Intel已于6月9日發布微碼補丁修復了緩存泄露漏洞(CVE-2020-0548/0549),即所謂可被利用泄露敏感數據的漏洞。經由Phala Network團隊測試確認,未升級的Intel SGX設備已經被吊銷證書,SGX設備必須升級才能通過遠程認證。

據悉該漏洞是由安全團隊于去11月向Intel提交報告的,1月與英特爾共同公布初步信息,6月9日釋放補丁并吊銷證書,該漏洞沒有對TEE項目造成實際安全影響。[2020/6/15]

Step1:Useronlyneedstorunonesimplecommandwhichallowstoautomatically:

Encryptuser’sinputdata

Pushtheencrypteddatatoaremotefilesystem(i.e.theremotefilesystemcanbeanypublicfilesharingserviceandenduserisfreetochoosehis/herpreferredone,pleasenotethatthisserviceisnotprovidedbyiExec)

Updaterelatedsessiondata(i.e.eachuser’striggeringoftheapplicationisasession)toaSGXbasedsecretmanagementservice.Secretmanagementservicecanbedeployedinaflexibleway:itcanbeatuser’sside,orscheduler’sside(i.e.SGXworkpool).

Step2:UsertriggersthetargetapplicationviasimpleclicksfromtheiExecDappstoreandmarketplaceviaauser-friendlyUIinterface.

OncethetargetapplicationistriggeredatremoteSGXdecentralizednode,theapplicationwillfirstlyautomaticallypulltheencrypteduserinputdatafromremotefilesystem(i.e.pushedinstep1);retrievethesecretkeyviasecuredSGXprovisionchannel,whichisthenusedtodecrypttheuserinputdata,thedecryptionisdoneonlyinsidethehigh-securedtrustedenvironment—SGXenclave;thedecrypteddatacanthenbeusedtofeedtheapplicationexecution,assoonastheapplicationresultisavailable,asignatureisprecededbasedontheprivatekeyprotectedinsidetheSGXenclave,whichcannotbeinspectedbytheoutsideworld.TheapplicationresultisfinallyencryptedandthentheiExec’sverificationprocedure(i.e.ProofofContribution)istriggered.EverythingissecurelyhappenedinsidetheIntelSGXenclaveensuredbyIntelhardwareCPUandnosecretisabletorevealedtotheoutsideworld.

動態 | 寶馬、英特爾等與Tribe Accelerator合作推動區塊鏈:據cryptobriefing報道,新加坡政府支持的首個區塊鏈加速器Tribe Accelerator剛剛宣布與寶馬、尼爾森和英特爾公司建立戰略合作伙伴關系。Tribe Accelerator希望利用三大公司的資金、能力和資源來幫助小型技術創新公司的發展。[2019/3/25]

Thesignatureisfinallytransferredtoon-chainnetworkandverifiedbyon-chainsmartcontractviatheregisteredcorrespondingpublickey.Ifthesignatureverificationpassesandapplicationresult’strustlevelachievesagiventhreshold.Theuserwillbeinformedtodownloadtheencryptedresult.

Thewholeprocedureisdoneautomaticallyinahighsecureway,andthisprocedureistriggeredbyonlysomesimpleclicksfromuserviathefriendlyUIinterface.

Fig.1iExec’sE2ESGXworkflow

Step3:Usercandownloadtheencryptedresultpackage,andusercanjustrunonesimplecommandtodecrypttheresult.Pleasenotethatonlytheuserwhotriggersthetask(i.e.SGXapplication)isabletodownloadtheencryptedresult,andonlytheuserownsthekeytodecrypttheapplicationresult.

Pleasenotethattheprocedureisplatformindependent,andthereforeiscompatiblewithdifferentoperatingsystems:Windows,Linux,MacOS.

Inthenearfuture,wewillfurthersimplifyuser’sprocedure—allthethreestepswillbeintegratedintoonesimplestep,andcanbedonebyseveralsimpleclicksfromuserviauserfriendlyuserinterface—https://market.iex.ec/.

2.TheiExecSolutionisSGXVendorAgnostic

TheiExecplatformisopentodifferentSGXsolutionvendors.Specifically,iExechasbeencollaboratingwithSCONEandFortanixtointegratetheirSGXframeworksintoiExec’sE2ESGXsolution.WearealsointhephaseofevaluatingIntel’sPDOframework.Inthefuture,wewillalsoconsidertheSGXframeworkofGraphene/Graphene-ng.AllthemainstreamSGXsolutionswillbe100%compatiblewithiExec’splatform,andwewillleaveiExecDappdevelopersanduserstofreelychoosetheirpreferredSGXframeworks.OurobjectistopromotetheemergenceofanecosystemwhichprovidestrustedexecutionforBlockchainbasedcomputing,andthesetrustedservicecanbemonetizedviaiExec’smarketplace.

3.iExecContributionstowardsIndustryStandardization

iExecarepioneersinthefieldofblockchain-basedTrustComputing,andisveryactiveinleadingandpushingforwardtheindustrialstandardizationforinthiscontextforBlockchaintechnology.

Especially:

iExecisveryactiveinEEA(EnterpriseEthereumAlliance):iExecischairingtheTrustedComputeWorkGroup,andkeepscontributingandpushingforwardtheEEAspecifications,especiallytheOff-chainTrustedComputeSpecificationwhichistobepubliclyreleasedsoon.

iExecisactiveinIEEEaswell.iExecismemberofIEEEP2418,andisinvolvedinIEEEstandardprojectonDLT-basedFederatedIdentity,CredentialandTrustManagement.iExecleadsthestandardizationworkinseveralBlockchainbaseddomains,especiallythesecurityandTEE(TrustedExecutionEnvironment)

iExeciscollaboratingwithhardwaretrustedexecutionvendorstomoveforwardthishardwarebasedsecuritysolution(SGX)tobefullystandard-compliant,staytunedforthecomingupdatesduringDevcon4.

iExecisalsocollaboratingwithourpartnerstomoveforwardthestandardizationforBlockchainbasedFogComputinginthecontextofOpenFogconsortium.SomeresultofthefirststagecollaborationwithourpartnersonFogComputingwillbereleasedsoon,pleasestaytunedinthefollowingdays.

長按掃碼關注公眾號

點“閱讀原文”了解更多

Tags:THEIONANDICAETHERBeNFT SolutionsethicalstandardsNautical Coin

pepe最新價格
關于CEO交易所幣種下架警告通知_HTT

尊敬的CEO用戶: 香港CEO交易所致力于為全球用戶提供最優質、安全、高效區塊鏈資產交易服務,支持所有優質的區塊鏈項目發展。香港CEO交易所將不定期對已上線幣種進行嚴格評審.

1900/1/1 0:00:00
Bottos雙周快訊_T.OS

大事件 ⊙Bottos主網V3.2正式發布為了后續商用網絡建設,Bottos穩扎穩打,不斷夯實技術基礎,目前建立的V3.2版本網絡已支持全量的區塊鏈功能.

1900/1/1 0:00:00
重要|CPChain 基金會關于主網上線時間調整說明_CHA

CPChain 致親愛的CPChain社區支持者:記得今年年初時,我們曾在白皮書中寫下這么一段話:“CPChain的目標是構建一個面向物聯網系統的基礎數據平臺.

1900/1/1 0:00:00
【系統】BCEX全新交易機制“Maker-Taker”重磅上線_MAKE

尊敬的BCEX用戶: ????????BCEX即將上線全新交易機制Maker-Taker,上線時間:2018年10月10日具體詳情如下:????????用戶系統角色分為Maker、Taker(吃.

1900/1/1 0:00:00
CyberMiles 雙周報(1012更新)_MIL

1.CyberMiles主網將在10月15日正式上線ERC20CMT已于2018年10月9日23:59凍結,CyberMiles主網將在10月15日正式上線.

1900/1/1 0:00:00
【僵尸戰場】10月Alpha更新版_ALPH

說好的每月游戲新版本又如期而至啦!10月的alpha版已經正式發布了——只要有測試碼就可以玩哦.

1900/1/1 0:00:00
ads