Academic Journal
Encloak: protecting sensitive data in remote computing using trusted execution environments.
| Title: | Encloak: protecting sensitive data in remote computing using trusted execution environments. |
|---|---|
| Authors: | Wang, Yongzhi, Liu, Bozhen |
| Source: | Cluster Computing; Jun2026, Vol. 29 Issue 3, p1-19, 19p |
| Subject Terms: | Cloud computing security measures, Data protection, Big data, Java programming language, Data privacy, Programming languages |
| Abstract: | Offloading computing jobs to untrusted clouds poses significant risks to sensitive data processed in those jobs. We present EnCloak, a Trusted Execution Environment (TEE)–based framework that protects the confidentiality and integrity of sensitive data in Java programs executed in untrusted clouds. EnCloak automatically identifies sensitive statements in the program, transforms them into Enclave Instructions (EIs) for safe execution inside a secure enclave named Cloak Enclave, which supports secure execution of EIs and protects sensitive variables and their intermediate states. We implemented a prototype system based on the design of EnCloak and evaluated its feasibility and performance on both CPU-intensive and big-data computing jobs. Our results showed that EnCloak provides end-to-end sensitive data protection while reducing the Trust Computing Base by 360 , compared with existing works. Additionally, the design of EnCloak, including the sensitive statements transformation, EI design, and the EI runtime design, are language-agnostic and TEE-agnostic, making it transferable to applications implemented in other programming languages and executed on other TEE environments. [ABSTRACT FROM AUTHOR] |
| Copyright of Cluster Computing is the property of Springer Nature and its content may not be copied or emailed to multiple sites without the copyright holder's express written permission. Additionally, content may not be used with any artificial intelligence tools or machine learning technologies. However, users may print, download, or email articles for individual use. This abstract may be abridged. No warranty is given about the accuracy of the copy. Users should refer to the original published version of the material for the full abstract. (Copyright applies to all Abstracts.) | |
| Database: | Complementary Index |
| FullText | Links: – Type: other Text: Availability: 0 CustomLinks: – Url: https://dx.doi.org/doi:10.1007/s10586-025-05880-2 Name: EDS - Springer Nature Journals (s7799221) Category: fullText Text: View record at Springer |
|---|---|
| Header | DbId: edb DbLabel: Complementary Index An: 191518549 RelevancyScore: 1082 AccessLevel: 6 PubType: Academic Journal PubTypeId: academicJournal PreciseRelevancyScore: 1082.4189453125 |
| IllustrationInfo | |
| Items | – Name: Title Label: Title Group: Ti Data: Encloak: protecting sensitive data in remote computing using trusted execution environments. – Name: Author Label: Authors Group: Au Data: <searchLink fieldCode="AR" term="%22Wang%2C+Yongzhi%22">Wang, Yongzhi</searchLink><br /><searchLink fieldCode="AR" term="%22Liu%2C+Bozhen%22">Liu, Bozhen</searchLink> – Name: TitleSource Label: Source Group: Src Data: Cluster Computing; Jun2026, Vol. 29 Issue 3, p1-19, 19p – Name: Subject Label: Subject Terms Group: Su Data: <searchLink fieldCode="DE" term="%22Cloud+computing+security+measures%22">Cloud computing security measures</searchLink><br /><searchLink fieldCode="DE" term="%22Data+protection%22">Data protection</searchLink><br /><searchLink fieldCode="DE" term="%22Big+data%22">Big data</searchLink><br /><searchLink fieldCode="DE" term="%22Java+programming+language%22">Java programming language</searchLink><br /><searchLink fieldCode="DE" term="%22Data+privacy%22">Data privacy</searchLink><br /><searchLink fieldCode="DE" term="%22Programming+languages%22">Programming languages</searchLink> – Name: Abstract Label: Abstract Group: Ab Data: Offloading computing jobs to untrusted clouds poses significant risks to sensitive data processed in those jobs. We present EnCloak, a Trusted Execution Environment (TEE)–based framework that protects the confidentiality and integrity of sensitive data in Java programs executed in untrusted clouds. EnCloak automatically identifies sensitive statements in the program, transforms them into Enclave Instructions (EIs) for safe execution inside a secure enclave named Cloak Enclave, which supports secure execution of EIs and protects sensitive variables and their intermediate states. We implemented a prototype system based on the design of EnCloak and evaluated its feasibility and performance on both CPU-intensive and big-data computing jobs. Our results showed that EnCloak provides end-to-end sensitive data protection while reducing the Trust Computing Base by 360 , compared with existing works. Additionally, the design of EnCloak, including the sensitive statements transformation, EI design, and the EI runtime design, are language-agnostic and TEE-agnostic, making it transferable to applications implemented in other programming languages and executed on other TEE environments. [ABSTRACT FROM AUTHOR] – Name: Abstract Label: Group: Ab Data: <i>Copyright of Cluster Computing is the property of Springer Nature and its content may not be copied or emailed to multiple sites without the copyright holder's express written permission. Additionally, content may not be used with any artificial intelligence tools or machine learning technologies. However, users may print, download, or email articles for individual use. This abstract may be abridged. No warranty is given about the accuracy of the copy. Users should refer to the original published version of the material for the full abstract.</i> (Copyright applies to all Abstracts.) |
| PLink | https://search.ebscohost.com/login.aspx?direct=true&site=eds-live&db=edb&AN=191518549 |
| RecordInfo | BibRecord: BibEntity: Identifiers: – Type: doi Value: 10.1007/s10586-025-05880-2 Languages: – Code: eng Text: English PhysicalDescription: Pagination: PageCount: 19 StartPage: 1 Subjects: – SubjectFull: Cloud computing security measures Type: general – SubjectFull: Data protection Type: general – SubjectFull: Big data Type: general – SubjectFull: Java programming language Type: general – SubjectFull: Data privacy Type: general – SubjectFull: Programming languages Type: general Titles: – TitleFull: Encloak: protecting sensitive data in remote computing using trusted execution environments. Type: main BibRelationships: HasContributorRelationships: – PersonEntity: Name: NameFull: Wang, Yongzhi – PersonEntity: Name: NameFull: Liu, Bozhen IsPartOfRelationships: – BibEntity: Dates: – D: 01 M: 06 Text: Jun2026 Type: published Y: 2026 Identifiers: – Type: issn-print Value: 13867857 Numbering: – Type: volume Value: 29 – Type: issue Value: 3 Titles: – TitleFull: Cluster Computing Type: main |
| ResultId | 1 |