{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2017:6IUREQYZT7TFKB5BFMD42FIWFC","short_pith_number":"pith:6IUREQYZ","canonical_record":{"source":{"id":"1710.09061","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-10-25T03:13:56Z","cross_cats_sorted":[],"title_canon_sha256":"d3282da2cbe8e315d0f441e635532df33e64d4ed26d2e4f015ab0af3d87672bd","abstract_canon_sha256":"27f361556937c9d90249d2ff93497c307f562e49cf50e2bda4f32bb1936cf035"},"schema_version":"1.0"},"canonical_sha256":"f2291243199fe65507a12b07cd1516289349a592f21ee63522355d02172c48a4","source":{"kind":"arxiv","id":"1710.09061","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1710.09061","created_at":"2026-05-18T00:32:00Z"},{"alias_kind":"arxiv_version","alias_value":"1710.09061v1","created_at":"2026-05-18T00:32:00Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1710.09061","created_at":"2026-05-18T00:32:00Z"},{"alias_kind":"pith_short_12","alias_value":"6IUREQYZT7TF","created_at":"2026-05-18T12:31:03Z"},{"alias_kind":"pith_short_16","alias_value":"6IUREQYZT7TFKB5B","created_at":"2026-05-18T12:31:03Z"},{"alias_kind":"pith_short_8","alias_value":"6IUREQYZ","created_at":"2026-05-18T12:31:03Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2017:6IUREQYZT7TFKB5BFMD42FIWFC","target":"record","payload":{"canonical_record":{"source":{"id":"1710.09061","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-10-25T03:13:56Z","cross_cats_sorted":[],"title_canon_sha256":"d3282da2cbe8e315d0f441e635532df33e64d4ed26d2e4f015ab0af3d87672bd","abstract_canon_sha256":"27f361556937c9d90249d2ff93497c307f562e49cf50e2bda4f32bb1936cf035"},"schema_version":"1.0"},"canonical_sha256":"f2291243199fe65507a12b07cd1516289349a592f21ee63522355d02172c48a4","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:32:00.459267Z","signature_b64":"0C58JtIhCSkHcUG+Aip8xztPVhJL5qhFyRZt50CoxawQ2cFFOGFEEcrJqfLPvUZZlOoXTt0/girhL4Uvau35BA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"f2291243199fe65507a12b07cd1516289349a592f21ee63522355d02172c48a4","last_reissued_at":"2026-05-18T00:32:00.458764Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:32:00.458764Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1710.09061","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:32:00Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"HFZXYCKH/Y+dRohydiaCGq8HzINrXuHZTaKKXoufHK8DMMwV6ccbIC6Riu8bYHqmkMc6IXw8tkOheGf/y3YdBA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-01T05:49:43.576769Z"},"content_sha256":"114fe98b2992dcd1d111267cf18fc94e56f29bdb897210760133a9b28eda74d3","schema_version":"1.0","event_id":"sha256:114fe98b2992dcd1d111267cf18fc94e56f29bdb897210760133a9b28eda74d3"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2017:6IUREQYZT7TFKB5BFMD42FIWFC","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Leaking Uninitialized Secure Enclave Memory via Structure Padding (Extended Abstract)","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Sangho Lee, Taesoo Kim","submitted_at":"2017-10-25T03:13:56Z","abstract_excerpt":"Intel software guard extensions (SGX) aims to provide an isolated execution environment, known as an enclave, for a user-level process to maximize its confidentiality and integrity. In this paper, we study how uninitialized data inside a secure enclave can be leaked via structure padding. We found that, during ECALL and OCALL, proxy functions that are automatically generated by the Intel SGX Software Development Kit (SDK) fully copy structure variables from an enclave to the normal memory to return the result of an ECALL function and to pass input parameters to an OCALL function. If the struct"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1710.09061","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:32:00Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"BpIT7LXyZTHfAam73EIdaKw2yJptQIugbrrK9mc5XxEIXp7Y++nAurmCnciSirXL9sM6zY/D2k2IZHf9o3nkCA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-01T05:49:43.577115Z"},"content_sha256":"80a26edc2f687d30e3ab27e4eb9c963818cdb51f6cb64dc938590eae005cb2e2","schema_version":"1.0","event_id":"sha256:80a26edc2f687d30e3ab27e4eb9c963818cdb51f6cb64dc938590eae005cb2e2"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/6IUREQYZT7TFKB5BFMD42FIWFC/bundle.json","state_url":"https://pith.science/pith/6IUREQYZT7TFKB5BFMD42FIWFC/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/6IUREQYZT7TFKB5BFMD42FIWFC/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-01T05:49:43Z","links":{"resolver":"https://pith.science/pith/6IUREQYZT7TFKB5BFMD42FIWFC","bundle":"https://pith.science/pith/6IUREQYZT7TFKB5BFMD42FIWFC/bundle.json","state":"https://pith.science/pith/6IUREQYZT7TFKB5BFMD42FIWFC/state.json","well_known_bundle":"https://pith.science/.well-known/pith/6IUREQYZT7TFKB5BFMD42FIWFC/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2017:6IUREQYZT7TFKB5BFMD42FIWFC","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"27f361556937c9d90249d2ff93497c307f562e49cf50e2bda4f32bb1936cf035","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-10-25T03:13:56Z","title_canon_sha256":"d3282da2cbe8e315d0f441e635532df33e64d4ed26d2e4f015ab0af3d87672bd"},"schema_version":"1.0","source":{"id":"1710.09061","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1710.09061","created_at":"2026-05-18T00:32:00Z"},{"alias_kind":"arxiv_version","alias_value":"1710.09061v1","created_at":"2026-05-18T00:32:00Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1710.09061","created_at":"2026-05-18T00:32:00Z"},{"alias_kind":"pith_short_12","alias_value":"6IUREQYZT7TF","created_at":"2026-05-18T12:31:03Z"},{"alias_kind":"pith_short_16","alias_value":"6IUREQYZT7TFKB5B","created_at":"2026-05-18T12:31:03Z"},{"alias_kind":"pith_short_8","alias_value":"6IUREQYZ","created_at":"2026-05-18T12:31:03Z"}],"graph_snapshots":[{"event_id":"sha256:80a26edc2f687d30e3ab27e4eb9c963818cdb51f6cb64dc938590eae005cb2e2","target":"graph","created_at":"2026-05-18T00:32:00Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Intel software guard extensions (SGX) aims to provide an isolated execution environment, known as an enclave, for a user-level process to maximize its confidentiality and integrity. In this paper, we study how uninitialized data inside a secure enclave can be leaked via structure padding. We found that, during ECALL and OCALL, proxy functions that are automatically generated by the Intel SGX Software Development Kit (SDK) fully copy structure variables from an enclave to the normal memory to return the result of an ECALL function and to pass input parameters to an OCALL function. If the struct","authors_text":"Sangho Lee, Taesoo Kim","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-10-25T03:13:56Z","title":"Leaking Uninitialized Secure Enclave Memory via Structure Padding (Extended Abstract)"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1710.09061","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:114fe98b2992dcd1d111267cf18fc94e56f29bdb897210760133a9b28eda74d3","target":"record","created_at":"2026-05-18T00:32:00Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"27f361556937c9d90249d2ff93497c307f562e49cf50e2bda4f32bb1936cf035","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-10-25T03:13:56Z","title_canon_sha256":"d3282da2cbe8e315d0f441e635532df33e64d4ed26d2e4f015ab0af3d87672bd"},"schema_version":"1.0","source":{"id":"1710.09061","kind":"arxiv","version":1}},"canonical_sha256":"f2291243199fe65507a12b07cd1516289349a592f21ee63522355d02172c48a4","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"f2291243199fe65507a12b07cd1516289349a592f21ee63522355d02172c48a4","first_computed_at":"2026-05-18T00:32:00.458764Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:32:00.458764Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"0C58JtIhCSkHcUG+Aip8xztPVhJL5qhFyRZt50CoxawQ2cFFOGFEEcrJqfLPvUZZlOoXTt0/girhL4Uvau35BA==","signature_status":"signed_v1","signed_at":"2026-05-18T00:32:00.459267Z","signed_message":"canonical_sha256_bytes"},"source_id":"1710.09061","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:114fe98b2992dcd1d111267cf18fc94e56f29bdb897210760133a9b28eda74d3","sha256:80a26edc2f687d30e3ab27e4eb9c963818cdb51f6cb64dc938590eae005cb2e2"],"state_sha256":"9e5d182101fae298f314a4d4ca8186290e8fbf99e4648617527d6d8231d3b134"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"mK7VekDsh7FjgU/SPxklBUi/CtcBZ5fmOiwkkhMzooCxLhrzCeZS/ywT55uvKVx9E2HQZUJ7BgwwefQWbWlWCw==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-01T05:49:43.579072Z","bundle_sha256":"c1ad9c2bc0040d011392941e3cac07fe2237a56817751cd0356c56fb539dc894"}}