Trusted Execution Environment (TEE) / Môi trường Thực thi Tin cậy
📖 Trusted Execution Environment (TEE)
Definition (English):
TEEs (Intel SGX, AMD SEV, ARM TrustZone) are hardware-isolated memory enclaves that protect code and data from the OS, hypervisor, and other processes. They provide attestation (proof of code integrity) and sealing (encrypting data to the enclave). Used for: confidential computing, secure model inference, private data analytics, federated learning with hardware roots of trust. Side-channel attacks remain a threat.
📖 Môi trường Thực thi Tin cậy
Định nghĩa (Tiếng Việt):
TEE (Intel SGX, AMD SEV, ARM TrustZone) là vùng nhớ bị cách ly phần cứng bảo vệ mã và dữ liệu khỏi OS, hypervisor và quy trình khác. Chúng cung cấp attestation (bằng chứng tính toàn vẹn mã) và sealing (mã hóa dữ liệu cho enclave). Sử dụng cho: confidential computing, suy luận mô hình an toàn, phân tích dữ liệu riêng tư, học liên kết với phần cứng tin cậy. Tấn công side-channel vẫn là mối đe dọa.
📂 Phân loại: Privacy