arXiv · 2609.10634
HermiCache: Enclave-Aware Cache Replacement for Trusted Execution Environments
Abstract
Trusted Execution Environments (TEEs) protect enclave memory from untrusted software but remain vulnerable to cache-based side-channel attacks due to shared microarchitectural resources. Existing countermeasures use techniques such as cache partitioning or randomization: these solutions are not ideal if a designer wants fine-grained configurations and a deterministic protection. In this paper, we introduce HermiCache which is an answer to these requirements. HermiCache is designed for RISC-V cores and has been implemented in the OpenHwGroup CVA6 core with a Keystone TEE for the software layer. The solution has an area overhead of 6% on the processor core.
Explore related subjects
Keep this discovery
Explore connections, maps & timelines
Oussama Elmnaouri, Pascal Cotret, Vianney Lapôtre, Loïc Lagadec. 2026-09-09. HermiCache: Enclave-Aware Cache Replacement for Trusted Execution Environments. https://arxiv.org/abs/2609.10634
Cite the original work for its findings. Save a collection to share your selection of sources.