
NDSS 2025 – WAVEN: WebAssembly Memory Virtualization For Enclaves
Companies Mentioned
Why It Matters
By allowing secure, fine‑grained memory sharing among Wasm modules, WAVEN expands the range of confidential computing workloads—such as stateful functions‑as‑a‑service and data marketplaces—while preserving strong isolation, potentially accelerating adoption of WebAssembly in TEE‑based cloud services.
Summary
Researchers from Southern University of Science and Technology and ByteDance presented WAVEN, a WebAssembly memory virtualization layer designed for trusted execution environments (TEEs). WAVEN enables cross‑module memory sharing and page‑level access control, addressing the linear memory model’s limitations in Wasm‑based confidential computing. Implemented on the WAMR runtime, the prototype demonstrated low overhead and practical feasibility, marking the first solution to provide fine‑grained memory isolation for multi‑tenant enclaves. The work was showcased at NDSS 2025’s Confidential Computing session.
NDSS 2025 – WAVEN: WebAssembly Memory Virtualization For Enclaves
Comments
Want to join the conversation?
Loading comments...