NDSS 2025 – WAVEN: WebAssembly Memory Virtualization For Enclaves

NDSS 2025 – WAVEN: WebAssembly Memory Virtualization For Enclaves

Security Boulevard
Security BoulevardJan 23, 2026

Companies Mentioned

Why It Matters

By allowing secure, fine‑grained memory sharing among Wasm modules, WAVEN expands the range of confidential computing workloads—such as stateful functions‑as‑a‑service and data marketplaces—while preserving strong isolation, potentially accelerating adoption of WebAssembly in TEE‑based cloud services.

Summary

Researchers from Southern University of Science and Technology and ByteDance presented WAVEN, a WebAssembly memory virtualization layer designed for trusted execution environments (TEEs). WAVEN enables cross‑module memory sharing and page‑level access control, addressing the linear memory model’s limitations in Wasm‑based confidential computing. Implemented on the WAMR runtime, the prototype demonstrated low overhead and practical feasibility, marking the first solution to provide fine‑grained memory isolation for multi‑tenant enclaves. The work was showcased at NDSS 2025’s Confidential Computing session.

NDSS 2025 – WAVEN: WebAssembly Memory Virtualization For Enclaves

Comments

Want to join the conversation?

Loading comments...