{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2016:QSMVNECAWGFCOOOJYVJ4M5VKVH","short_pith_number":"pith:QSMVNECA","canonical_record":{"source":{"id":"1611.06952","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2016-11-21T19:03:11Z","cross_cats_sorted":[],"title_canon_sha256":"7742022f2ab95786384e0716b5af3f571c0d57ffce3fbc5f83a09d0fa4817a84","abstract_canon_sha256":"8a008d5e356c716e6c4050a26d26f58d62737f7f34cc1c6e7d1d0186d2118cb8"},"schema_version":"1.0"},"canonical_sha256":"8499569040b18a2739c9c553c676aaa9e4d1716390bbde2c0d867808303b5c76","source":{"kind":"arxiv","id":"1611.06952","version":3},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1611.06952","created_at":"2026-05-18T00:43:13Z"},{"alias_kind":"arxiv_version","alias_value":"1611.06952v3","created_at":"2026-05-18T00:43:13Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1611.06952","created_at":"2026-05-18T00:43:13Z"},{"alias_kind":"pith_short_12","alias_value":"QSMVNECAWGFC","created_at":"2026-05-18T12:30:41Z"},{"alias_kind":"pith_short_16","alias_value":"QSMVNECAWGFCOOOJ","created_at":"2026-05-18T12:30:41Z"},{"alias_kind":"pith_short_8","alias_value":"QSMVNECA","created_at":"2026-05-18T12:30:41Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2016:QSMVNECAWGFCOOOJYVJ4M5VKVH","target":"record","payload":{"canonical_record":{"source":{"id":"1611.06952","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2016-11-21T19:03:11Z","cross_cats_sorted":[],"title_canon_sha256":"7742022f2ab95786384e0716b5af3f571c0d57ffce3fbc5f83a09d0fa4817a84","abstract_canon_sha256":"8a008d5e356c716e6c4050a26d26f58d62737f7f34cc1c6e7d1d0186d2118cb8"},"schema_version":"1.0"},"canonical_sha256":"8499569040b18a2739c9c553c676aaa9e4d1716390bbde2c0d867808303b5c76","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:43:13.254935Z","signature_b64":"WK8/btfrIUDb0vx7bAg04oiND2rqZ9VzE+ixkyux73xRrUg+c/Jmj4xJmPi0ALi3yE1segfQuRm7qvzf5AkqAA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"8499569040b18a2739c9c553c676aaa9e4d1716390bbde2c0d867808303b5c76","last_reissued_at":"2026-05-18T00:43:13.254395Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:43:13.254395Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1611.06952","source_version":3,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:43:13Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"FhXqpWdz1CI4c9dm8M09TrBdlgJVTma3n8Mxt9nVDLd3L/IDbCQij9rsqZ93/vDP+ZtMDaHPfL05mM/TYfTrDA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-25T21:47:00.268180Z"},"content_sha256":"2b54d01be39dd8a93b8f5b6b1efc597d7b8e1140b614c336dbd3940e8d458ffd","schema_version":"1.0","event_id":"sha256:2b54d01be39dd8a93b8f5b6b1efc597d7b8e1140b614c336dbd3940e8d458ffd"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2016:QSMVNECAWGFCOOOJYVJ4M5VKVH","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Inferring Fine-grained Control Flow Inside SGX Enclaves with Branch Shadowing","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Hyesoon Kim, Marcus Peinado, Ming-Wei Shih, Prasun Gera, Sangho Lee, Taesoo Kim","submitted_at":"2016-11-21T19:03:11Z","abstract_excerpt":"In this paper, we explore a new, yet critical, side-channel attack against Intel Software Guard Extension (SGX), called a branch shadowing attack, which can reveal fine-grained control flows (i.e., each branch) of an enclave program running on real SGX hardware. The root cause of this attack is that Intel SGX does not clear the branch history when switching from enclave mode to non-enclave mode, leaving the fine-grained traces to the outside world through a branch-prediction side channel. However, exploiting the channel is not so straightforward in practice because 1) measuring branch predicti"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1611.06952","kind":"arxiv","version":3},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:43:13Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"SKVOqv1OIqpdmewexpSg5qOcvn0jSziv50cSKRRq3LwXuIhBZh0z4AFmsKzyzOxB/J+yqU40KjOEjvFwL3UHDA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-05-25T21:47:00.268877Z"},"content_sha256":"03ac489d27eceb924698e875337a9eac9b81170537e484598853ed382dbf7bc3","schema_version":"1.0","event_id":"sha256:03ac489d27eceb924698e875337a9eac9b81170537e484598853ed382dbf7bc3"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/QSMVNECAWGFCOOOJYVJ4M5VKVH/bundle.json","state_url":"https://pith.science/pith/QSMVNECAWGFCOOOJYVJ4M5VKVH/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/QSMVNECAWGFCOOOJYVJ4M5VKVH/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-05-25T21:47:00Z","links":{"resolver":"https://pith.science/pith/QSMVNECAWGFCOOOJYVJ4M5VKVH","bundle":"https://pith.science/pith/QSMVNECAWGFCOOOJYVJ4M5VKVH/bundle.json","state":"https://pith.science/pith/QSMVNECAWGFCOOOJYVJ4M5VKVH/state.json","well_known_bundle":"https://pith.science/.well-known/pith/QSMVNECAWGFCOOOJYVJ4M5VKVH/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2016:QSMVNECAWGFCOOOJYVJ4M5VKVH","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"8a008d5e356c716e6c4050a26d26f58d62737f7f34cc1c6e7d1d0186d2118cb8","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2016-11-21T19:03:11Z","title_canon_sha256":"7742022f2ab95786384e0716b5af3f571c0d57ffce3fbc5f83a09d0fa4817a84"},"schema_version":"1.0","source":{"id":"1611.06952","kind":"arxiv","version":3}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1611.06952","created_at":"2026-05-18T00:43:13Z"},{"alias_kind":"arxiv_version","alias_value":"1611.06952v3","created_at":"2026-05-18T00:43:13Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1611.06952","created_at":"2026-05-18T00:43:13Z"},{"alias_kind":"pith_short_12","alias_value":"QSMVNECAWGFC","created_at":"2026-05-18T12:30:41Z"},{"alias_kind":"pith_short_16","alias_value":"QSMVNECAWGFCOOOJ","created_at":"2026-05-18T12:30:41Z"},{"alias_kind":"pith_short_8","alias_value":"QSMVNECA","created_at":"2026-05-18T12:30:41Z"}],"graph_snapshots":[{"event_id":"sha256:03ac489d27eceb924698e875337a9eac9b81170537e484598853ed382dbf7bc3","target":"graph","created_at":"2026-05-18T00:43:13Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"In this paper, we explore a new, yet critical, side-channel attack against Intel Software Guard Extension (SGX), called a branch shadowing attack, which can reveal fine-grained control flows (i.e., each branch) of an enclave program running on real SGX hardware. The root cause of this attack is that Intel SGX does not clear the branch history when switching from enclave mode to non-enclave mode, leaving the fine-grained traces to the outside world through a branch-prediction side channel. However, exploiting the channel is not so straightforward in practice because 1) measuring branch predicti","authors_text":"Hyesoon Kim, Marcus Peinado, Ming-Wei Shih, Prasun Gera, Sangho Lee, Taesoo Kim","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2016-11-21T19:03:11Z","title":"Inferring Fine-grained Control Flow Inside SGX Enclaves with Branch Shadowing"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1611.06952","kind":"arxiv","version":3},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:2b54d01be39dd8a93b8f5b6b1efc597d7b8e1140b614c336dbd3940e8d458ffd","target":"record","created_at":"2026-05-18T00:43:13Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"8a008d5e356c716e6c4050a26d26f58d62737f7f34cc1c6e7d1d0186d2118cb8","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2016-11-21T19:03:11Z","title_canon_sha256":"7742022f2ab95786384e0716b5af3f571c0d57ffce3fbc5f83a09d0fa4817a84"},"schema_version":"1.0","source":{"id":"1611.06952","kind":"arxiv","version":3}},"canonical_sha256":"8499569040b18a2739c9c553c676aaa9e4d1716390bbde2c0d867808303b5c76","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"8499569040b18a2739c9c553c676aaa9e4d1716390bbde2c0d867808303b5c76","first_computed_at":"2026-05-18T00:43:13.254395Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:43:13.254395Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"WK8/btfrIUDb0vx7bAg04oiND2rqZ9VzE+ixkyux73xRrUg+c/Jmj4xJmPi0ALi3yE1segfQuRm7qvzf5AkqAA==","signature_status":"signed_v1","signed_at":"2026-05-18T00:43:13.254935Z","signed_message":"canonical_sha256_bytes"},"source_id":"1611.06952","source_kind":"arxiv","source_version":3}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:2b54d01be39dd8a93b8f5b6b1efc597d7b8e1140b614c336dbd3940e8d458ffd","sha256:03ac489d27eceb924698e875337a9eac9b81170537e484598853ed382dbf7bc3"],"state_sha256":"36186731a641d17feb0dd343f95bd878f48f871ce43d636c22130967776e1e00"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"s62+SjgShsH72FXollRO2PN1q3bFbxtL45QMtPvceXdbbojnmenKzwfzI7wYdymNq9Cq5eOZbMxaY9M0GT3kAA==","signed_message":"bundle_sha256_bytes","signed_at":"2026-05-25T21:47:00.272396Z","bundle_sha256":"ee78e08c976758517009af466a942e8593fb27de542e5c4e4da2a16bc3b4bf70"}}