Difference between revisions of "AFSecurity Seminar"

From mn/ifi/AFSecurity
Jump to: navigation, search
 
(45 intermediate revisions by the same user not shown)
Line 1: Line 1:
== Boklansering: Informasjonssikkerhet: Teori og praksis ==
+
== ''Confidential Computing'' ==
  
 
{| border="0" cellpadding="1" cellspacing="1" width="100%"
 
{| border="0" cellpadding="1" cellspacing="1" width="100%"
 
|-
 
|-
| '''TID:'''&nbsp; 26. oktober 2021, 14:00h<br />'''STED:'''&nbsp;  Informatikkbiblioteket, IFI/UiO, Ole Johan Dahls hus, Gaustadalleen 23b, Oslo<br /><br />'''AGENDA:'''<br />
+
| '''TIME:'''&nbsp; Friday 1 December 2023, 14:00h<br />'''PLACE:'''&nbsp;  Auditorium Smalltalk, 1st floor, IFI, UiO, Ole Johan Dahls hus, Gaustadalleen 23b, Oslo. [https://kart.finn.no/?lng=10.71782&lat=59.94342&zoom=17&mapType=normap&markers=10.71782,59.94342,r,Gaustadall%C3%A9en+23B See map].<br />
14:00h Velkommen til IFI og AF''Sikkerhet''<br />14:05h Lansering av boka Informasjonssikkerhet: Teori og praksis, Audun Jøsang, 1. utg. 2021,
+
All interested are welcome. Coffee and snaks served.<br />
[https://www.universitetsforlaget.no/ Universitetsforlaget]
+
<br />'''AGENDA:'''<br />
| <center>[[File:cover-informasjonssikkerhet.jpg|120px|link=https://www.universitetsforlaget.no/informasjonssikkerhet]]</center>
+
14:00h Welcome to AFSecurity at UiO <br />
| <center>[[File:Audun-ny-bok-2021.jpeg|200px|link=https://www.universitetsforlaget.no/Audun_Josang]]</center>
+
14:15h Invited talk<br />
 +
* TITLE: ''Confidential Computing'' &nbsp;
 +
* SPEAKER: Ijlal Loutfi, Canonical 
 +
| <center>[[File:photo-Ijlal-Loutfi.png|90px|link=https://www.linkedin.com/in/ijlal-loutfi-785125234/]]</center>
 +
| <center>[[File:logo-Canonical.png|320px|link=https://canonical.com/]]</center>
 
|}
 
|}
* Kunnskap om og kompetanse i informasjonssikkerhet er en forutsetning for å bygge og forvalte vår digitale infrastruktur på en bærekraftig måte. Ikke bare IT-eksperter, men også alle som benytter og forvalter digitale løsninger i sitt arbeid, trenger denne typen kompetanse. Forfatter Prof. Audun Jøsang på UiO forklarer hva som trengs for å skape god kompetanse i informasjonssikkerhet, og hvorfor bl.a. denne læreboken er viktig. Bokens primære målgruppe er bachelor- og masterstudenter i informatikk som tar emner eller moduler i informasjonssikkerhet. Fordi digitaliseringen gjør informasjonssikkerhet relevant innen mange andre fagområder, er boken også aktuell for studenter på andre studieretninger. En tredje målgruppe er ansatte i privat næringsliv eller i det offentlige som ønsker å oppdatere sine kunnskaper om informasjonssikkerhet.
+
* ABSTRACT:<br />Protecting data in-use has long been a challenging open problem in computer science. While being computed on in cleartext in system memory, your data stored in RAM is exposed to the millions lines of code that make up the underlying platform’s privileged system software. By design, a malicious firmware, or compromised operating system can easily leak your data, or compromise its integrity.<br /><br />Confidential computing is a privacy-enhancing system security primitive which addresses this challenge head-on, by running your security-sensitive processes in isolated execution environments whose security guarantees can be remotely attested. Its recent generations, such as Intel SGX, Intel TDX and AMD SEV SNP, make use of newer CPU hardware and architectural extensions, such as the AES-128 hardware encryption engine which encrypts RAM memory pages in real-time. Hardware with these capabilities is already available in the market, and public cloud providers have been one of its early adopters.<br /><br />In this presentation, we first visit the history of confidential computing, then study the technical system primitives which allow us to implement both isolation and attestation. We also explore the different silicon implementations of confidential computing, where they are deployed today, and for which uses cases.
  
I tillegg til forfatteren Audun Jøsang vil representanter fra forskjellige miljøer belyses boken fra sine perspektiver, bl.a. bachelorstudent Selma Frost Øgaard, seniorrådgiver Håkon Styri fra NSM, forlagsredaktør Eli Valheim fra Universitetsforlaget, og instituttleder Prof. Stephan Oepen fra Institutt for informatikk på UiO.
+
<br />15:00h Discussion<br />
  
'''BIO:''' &nbsp; Audun Jøsang er professor og leder av Forskningsgruppen for digital sikkerhet på UiO. I tillegg til en PhD i informasjonssikkerhet fra NTNU har han to mastergrader, en i informasjonssikkerhet fra Royal Holloway College, University of London, og en siv.ing.-mastergrad i telekommunikasjon fra NTH. Han underviste informasjonssikkerhet ved QUT i Australia i perioden 2000-2007, og har bred ekspertise innen cybersikkerhet med erfaring fra næringsliv og forskning internasjonalt. Jøsang er sertifisert CISSP og CISM. .<br />
+
'''BIO:''' &nbsp; Dr. Ijlal Loutfi is the product lead for Ubuntu Security at Canonical. She has a PhD in cyber security from the University of Oslo, where she worked on Trusted Execution Environments and Identity Management.
 +
 
 +
 
 +
<br /><br />
  
 
{| border="0" cellpadding="1" cellspacing="1" width="90%"
 
{| border="0" cellpadding="1" cellspacing="1" width="90%"
 
|-
 
|-
 
| [[File:AFSecurity-small.png|250px]]
 
| [[File:AFSecurity-small.png|250px]]
| AF''Security'' is organised by the UiO Research Group on [https://www.mn.uio.no/ifi/english/research/groups/sec/ Digital Security]
+
| AF''Security'' is organised by UiO [https://www.mn.uio.no/ifi/forskning/grupper/sec/ Digital Security].
| [[File:Sec-light-360.png|250px|link=https://www.mn.uio.no/ifi/english/research/groups/sec/]]
+
| [[File:logo-uio-english-2022.png|250px|link=https://www.mn.uio.no/]]
 +
| [[File:Sec-light-360.png|150px|link=https://www.mn.uio.no/ifi/english/research/groups/sec/]]
 
|}
 
|}

Latest revision as of 15:30, 14 November 2023

Confidential Computing

TIME:  Friday 1 December 2023, 14:00h
PLACE:  Auditorium Smalltalk, 1st floor, IFI, UiO, Ole Johan Dahls hus, Gaustadalleen 23b, Oslo. See map.

All interested are welcome. Coffee and snaks served.

AGENDA:
14:00h Welcome to AFSecurity at UiO
14:15h Invited talk

  • TITLE: Confidential Computing  
  • SPEAKER: Ijlal Loutfi, Canonical
Photo-Ijlal-Loutfi.png
Logo-Canonical.png
  • ABSTRACT:
    Protecting data in-use has long been a challenging open problem in computer science. While being computed on in cleartext in system memory, your data stored in RAM is exposed to the millions lines of code that make up the underlying platform’s privileged system software. By design, a malicious firmware, or compromised operating system can easily leak your data, or compromise its integrity.

    Confidential computing is a privacy-enhancing system security primitive which addresses this challenge head-on, by running your security-sensitive processes in isolated execution environments whose security guarantees can be remotely attested. Its recent generations, such as Intel SGX, Intel TDX and AMD SEV SNP, make use of newer CPU hardware and architectural extensions, such as the AES-128 hardware encryption engine which encrypts RAM memory pages in real-time. Hardware with these capabilities is already available in the market, and public cloud providers have been one of its early adopters.

    In this presentation, we first visit the history of confidential computing, then study the technical system primitives which allow us to implement both isolation and attestation. We also explore the different silicon implementations of confidential computing, where they are deployed today, and for which uses cases.


15:00h Discussion

BIO:   Dr. Ijlal Loutfi is the product lead for Ubuntu Security at Canonical. She has a PhD in cyber security from the University of Oslo, where she worked on Trusted Execution Environments and Identity Management.




AFSecurity-small.png AFSecurity is organised by UiO Digital Security. Logo-uio-english-2022.png Sec-light-360.png