[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"doc-detail-83522-en":3,"doc-seo-83522-105":30,"detail-sidebar-cat-0-en-105":91},{"code":4,"msg":5,"data":6},0,"success",{"doc_id":7,"user_id":8,"nickname":9,"user_avatar":10,"doc_module":4,"category_id":11,"category_name":12,"doc_title":13,"doc_description":14,"doc_content":15,"file_id":16,"file_url":17,"file_type":18,"file_size":19,"view_count":20,"is_deleted":4,"is_public":21,"is_downloadable":21,"audit_status":21,"page_count":22,"language":23,"language_code":24,"site_id":25,"html_lang":24,"table_of_contents":26,"faqs":27,"seo_title":13,"seo_description":14,"update_tm":28,"read_time":29},83522,549758146520,"Patrick","https://ap-avatar.wpscdn.com/avatar/80002397d8c0411e94?_k=1775819394049821470",8,"Research & Report","Know Thy Neighbor: Cross-TEE Mutual Attestation","Cloud services rely on multiple heterogeneous components that exchange information across both traditional execution environments and trusted applications running inside trusted execution environments (TEEs). To ensure all parties satisfy required security conditions, trusted applications use attestation before communicating. While mutual remote attestation can work for same-type TEEs, cross-TEE support becomes costly because every TEE type must implement others’ attestation stacks. The Heterogeneous Mutual Attestation (Hema) protocol provides a formally verified cross-TEE solution with efficiency and security benefits.","Know Thy Neighbor: Cross-TEE Mutual Attestation  \nDaniel Andrade, João N. Silva, Miguel P. Correia  \nINESC-ID, Instituto Superior Técnico, Universidade de Lisboa  \n[daniel.andrade@tecnico.ulisboa.pt](daniel.andrade@tecnico.ulisboa.pt), [joao.n.silva@inesc-id.pt](joao.n.silva@inesc-id.pt), [miguel.p.correia@tecnico.ulisboa.pt](miguel.p.correia@tecnico.ulisboa.pt)  \narXiv :2607 .00695v 1 [ cs .CR] 1 Jul 2026  \nAbstract—Cloud services are composed of multiple heterogeneous distributed components and instances that communicate with one another. This occurs both in applications and services running in traditional execution environments and in trusted applications (TAs) running in trusted execution environments (TEEs). TA instances use attestation before exchanging information to ensure all parties meet the expected security conditions. The straightforward solution to mutually attesting two TA instances that are willing to communicate is employing remote attestation mechanisms in both directions. This is typically the case when the two TA instances are running on TEEs of the same type. In order to support cross-TEE attestation, such an approach, that is, using remote attestation in both directions, would require each TEE type (e.g., SGX, TrustZone) to support the attestation software stack of all other TEE types with which it needs to interact. A dedicated cross-TEE mutual attestation solution has multiple benefits in terms of efficiency and security.  \nThis paper presents the Heterogeneous Mutual Attestation (Hema) protocol, a formally-verified protocol for the mutual attestation of TA instances running on the same TEE type or on different TEE types.  \nIndex Terms—Mutual attestation, protocols, security, trusted execution environments.  \nI. INTRODUCTION  \nCloud computing [1] benefits companies by reducing upfront infrastructure costs and their maintenance, which are now handled by a third party, and by increasing the availability, elasticity, and scalability of computing resources in comparison to traditional on-premise computing. There is, however, a potential cost in terms of security and privacy because cloud providers have access to the data located in their cloud services. A malicious employee could forge, modify, delete, or leak customer data irrespective of what any privacy policy might say [2] . In addition, cloud providers may share data with third parties to satisfy law enforcement requests and warrants. These issues are always a risk to the customers of cloud providers even when a cloud provider follows best practices for securing customer computations and data.  \nTrusted execution environment (TEE) technologies [3], [4] such as Intel SGX [5] and Arm TrustZone [6] present themselves as a solution to these security risks by providing isolated containers to run computations, and mechanisms to authenticate what is being computed and how, and to securely store application data outside said containers. Attestation gives the owners of the data confidence on what is being computed. Attestation: Cloud services are composed of multiple distributed components and instances that communicate with one another. This communication occurs both in applications and services running in traditional execution environments and in  \nFig. 1: Mutual attestation by employing remote attestation in both directions. The remote attestation scheme in (a) is the same in both directions, but in (b) the remote attestation schemes are different for each direction (i.e., RA vs RA’) because the TEEs hosting the TAs are of different types (which we represented by using different colors, i.e., Green vs Red) .  \ntrusted applications (TAs) running in TEEs. TAs use attestation to prove, to other parties, that they meet the expected security conditions, namely that the TA is running on a real and up-todate TEE, has the correct code and initial data, and, similarly to the TEE, is itself up to date.  \nThe straightforward solution for attesting two TA instances want","cbCaislk9jhZfqBR","https://ap.wps.com/l/cbCaislk9jhZfqBR","pdf",436134,4,1,17,"English","en",105,"# Introduction\n## Trusted execution environments and attestation\n## Remote attestation vs dedicated mutual attestation\n## Motivation for cross-TEE mutual attestation","[{\"question\":\"What problem does cross-TEE mutual attestation address?\",\"answer\":\"It addresses secure information exchange between trusted application instances running in different trusted execution environment (TEE) types, where parties must verify they meet expected security conditions.\"},{\"question\":\"Why is using remote attestation in both directions not ideal for different TEE types?\",\"answer\":\"It requires each TEE type to support the attestation software stack of all other TEE types it needs to interact with, increasing complexity and limiting interoperability.\"},{\"question\":\"What does the Hema protocol contribute?\",\"answer\":\"Hema is a formally verified heterogeneous mutual attestation protocol enabling mutual attestation for trusted applications on the same or different TEE types, with improvements in efficiency, security, correctness, interoperability, and reusability.\"}]",1784188604,43,{"code":4,"msg":31,"data":32},"ok",{"site_id":25,"language":24,"slug":33,"title":13,"keywords":34,"description":14,"schema_data":35,"social_meta":86,"head_meta":88,"extra_data":90,"updated_unix":28},"know-thy-neighbor-cross-tee-mutual-attestation","",{"@graph":36,"@context":85},[37,53,68],{"@type":38,"itemListElement":39},"BreadcrumbList",[40,44,48,51],{"item":41,"name":42,"@type":43,"position":21},"https://docshare.wps.com","Home","ListItem",{"item":45,"name":46,"@type":43,"position":47},"https://docshare.wps.com/document/","Document",2,{"item":49,"name":12,"@type":43,"position":50},"https://docshare.wps.com/document/research-report/",3,{"item":52,"name":13,"@type":43,"position":20},"https://docshare.wps.com/document/know-thy-neighbor-cross-tee-mutual-attestation/83522/",{"url":52,"name":13,"@type":54,"author":55,"headline":13,"publisher":57,"fileFormat":60,"inLanguage":24,"description":14,"dateModified":61,"datePublished":62,"encodingFormat":60,"isAccessibleForFree":63,"interactionStatistic":64},"DigitalDocument",{"name":9,"@type":56},"Person",{"url":41,"name":58,"@type":59},"DocShare","Organization","application/pdf","2026-07-23","2026-07-16",true,{"@type":65,"interactionType":66,"userInteractionCount":20},"InteractionCounter",{"@type":67},"ViewAction",{"@type":69,"mainEntity":70},"FAQPage",[71,77,81],{"name":72,"@type":73,"acceptedAnswer":74},"What problem does cross-TEE mutual attestation address?","Question",{"text":75,"@type":76},"It addresses secure information exchange between trusted application instances running in different trusted execution environment (TEE) types, where parties must verify they meet expected security conditions.","Answer",{"name":78,"@type":73,"acceptedAnswer":79},"Why is using remote attestation in both directions not ideal for different TEE types?",{"text":80,"@type":76},"It requires each TEE type to support the attestation software stack of all other TEE types it needs to interact with, increasing complexity and limiting interoperability.",{"name":82,"@type":73,"acceptedAnswer":83},"What does the Hema protocol contribute?",{"text":84,"@type":76},"Hema is a formally verified heterogeneous mutual attestation protocol enabling mutual attestation for trusted applications on the same or different TEE types, with improvements in efficiency, security, correctness, interoperability, and reusability.","https://schema.org",{"og:url":52,"og:type":87,"og:title":13,"og:site_name":58,"og:description":14},"article",{"robots":89,"canonical":52},"index,follow",{"doc_id":7,"site_id":25},{"code":4,"msg":5,"data":92},[93,97,101,105,110,115,120,123,128,131,135],{"id":21,"doc_module":4,"doc_module_name":46,"category_name":94,"show_sort_weight":95,"slug":96},"Story & Novel",90,"story-novel",{"id":47,"doc_module":4,"doc_module_name":46,"category_name":98,"show_sort_weight":99,"slug":100},"Literature",80,"literature",{"id":20,"doc_module":4,"doc_module_name":46,"category_name":102,"show_sort_weight":103,"slug":104},"Exam",70,"exam",{"id":106,"doc_module":4,"doc_module_name":46,"category_name":107,"show_sort_weight":108,"slug":109},5,"Comic",60,"comic",{"id":111,"doc_module":4,"doc_module_name":46,"category_name":112,"show_sort_weight":113,"slug":114},6,"Technology",50,"technology",{"id":116,"doc_module":4,"doc_module_name":46,"category_name":117,"show_sort_weight":118,"slug":119},7,"Healthcare",40,"healthcare",{"id":11,"doc_module":4,"doc_module_name":46,"category_name":12,"show_sort_weight":121,"slug":122},30,"research-report",{"id":124,"doc_module":4,"doc_module_name":46,"category_name":125,"show_sort_weight":126,"slug":127},9,"Religion & Spirituality",20,"religion-spirituality",{"id":126,"doc_module":4,"doc_module_name":46,"category_name":129,"show_sort_weight":126,"slug":130},"World Cup","world-cup",{"id":132,"doc_module":4,"doc_module_name":46,"category_name":133,"show_sort_weight":132,"slug":134},10,"Lifestyle","lifestyle",{"id":136,"doc_module":4,"doc_module_name":46,"category_name":137,"show_sort_weight":106,"slug":138},19,"General","general"]