{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,8,1]],"date-time":"2026-08-01T17:41:22Z","timestamp":1785606082065,"version":"3.56.0"},"reference-count":68,"publisher":"Association for Computing Machinery (ACM)","issue":"4","funder":[{"name":"National Science Foundation","award":["CNS-2155002 and CNS-2155029"],"award-info":[{"award-number":["CNS-2155002 and CNS-2155029"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["ACM Trans. Internet Technol."],"published-print":{"date-parts":[[2025,11,30]]},"abstract":"<jats:p>Cloud computing has become crucial for the commercial world due to its computational capacity, storage capabilities, scalability, software integration, and billing convenience. Initially, clouds were relatively homogeneous, but now diverse machine configurations in heterogeneous clouds are recognized for their improved application performance and energy efficiency. This shift is driven by the integration of various hardware to accommodate diverse user applications. However, alongside these advancements, security threats like micro-architectural attacks are increasing concerns for cloud providers and users. Studies like Repttack and Cloak &amp; Co-locate highlight the vulnerability of heterogeneous clouds to co-location attacks, where attacker and victim instances are placed together. The ease of these attacks isn\u2019t solely linked to heterogeneity but also correlates with how heterogeneous the target systems are. Despite this, no numerical metrics exist to quantify cloud heterogeneity. This article introduces the Heterogeneity Score (HeteroScore) to evaluate server setups and instances. HeteroScore significantly correlates with co-location attack security. The article also proposes strategies to balance diversity and security. This study pioneers the quantitative analysis connecting cloud heterogeneity and infrastructure security.<\/jats:p>\n          <jats:p\/>","DOI":"10.1145\/3746228","type":"journal-article","created":{"date-parts":[[2025,7,2]],"date-time":"2025-07-02T07:07:02Z","timestamp":1751440022000},"page":"1-31","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":3,"title":["Assessing and Mitigating Heterogeneity-Driven Security Threats in the Cloud"],"prefix":"10.1145","volume":"25","author":[{"ORCID":"https:\/\/orcid.org\/0009-0003-8942-7384","authenticated-orcid":false,"given":"Chongzhou","family":"Fang","sequence":"first","affiliation":[{"name":"University of California Davis","place":["Davis, United States"]}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3094-9439","authenticated-orcid":false,"given":"Najmeh","family":"Nazari","sequence":"additional","affiliation":[{"name":"University of California Davis","place":["Davis, United States"]}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6724-2093","authenticated-orcid":false,"given":"Behnam","family":"Omidi","sequence":"additional","affiliation":[{"name":"George Mason University","place":["Fairfax, United States"]}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0254-9246","authenticated-orcid":false,"given":"Han","family":"Wang","sequence":"additional","affiliation":[{"name":"Temple University","place":["Philadelphia, United States"]}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0006-1332-6204","authenticated-orcid":false,"given":"Aditya","family":"Puri","sequence":"additional","affiliation":[{"name":"Foothill High School","place":["Pleasanton, United States"]}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0001-7332-8686","authenticated-orcid":false,"given":"Manish","family":"Arora","sequence":"additional","affiliation":[{"name":"LearnDesk Inc","place":["San Francisco, United States"]}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2035-8512","authenticated-orcid":false,"given":"Setareh","family":"Rafatirad","sequence":"additional","affiliation":[{"name":"University of California Davis","place":["Davis, United States"]}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8904-4699","authenticated-orcid":false,"given":"Houman","family":"Homayoun","sequence":"additional","affiliation":[{"name":"University of California Davis","place":["Davis, United States"]}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2116-2223","authenticated-orcid":false,"given":"Khaled","family":"Khasawneh","sequence":"additional","affiliation":[{"name":"George Mason University","place":["Fairfax, United States"]}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2025,9,13]]},"reference":[{"key":"e_1_3_1_2_2","unstructured":"2022. Amazon EC2. Retrieved July 2025 from https:\/\/aws.amazon.com\/pm\/ec2\/"},{"key":"e_1_3_1_3_2","unstructured":"2022. Docker Hub. Retrieved July 2025 from https:\/\/hub.docker.com\/"},{"key":"e_1_3_1_4_2","unstructured":"2022. google Cloud. Retrieved July 2025 from https:\/\/cloud.google.com\/"},{"key":"e_1_3_1_5_2","unstructured":"2022. Kubernetes. Retrieved July 2025 from https:\/\/kubernetes.io\/"},{"key":"e_1_3_1_6_2","unstructured":"2022. Microsoft Azure. Retrieved July 2025 from https:\/\/azure.microsoft.com\/en-us\/"},{"key":"e_1_3_1_7_2","unstructured":"2022. OpenNebula. Retrieved July 2025 from https:\/\/opennebula.io\/"},{"key":"e_1_3_1_8_2","unstructured":"2022. OpenStack. Retrieved July 2025 from https:\/\/www.openstack.org\/"},{"key":"e_1_3_1_9_2","doi-asserted-by":"publisher","DOI":"10.1109\/GLOCOM.2018.8647868"},{"key":"e_1_3_1_10_2","first-page":"469","volume-title":"Proceedings of the USENIX Symposium on Networked Systems Design and Implementation","author":"Alipourfard Omid","year":"2017","unstructured":"Omid Alipourfard, Hongqiang Harry Liu, Jianshu Chen, Shivaram Venkataraman, Minlan Yu, and Ming Zhang. 2017. Cherrypick: Adaptively unearthing the best cloud configurations for big data analytics. In Proceedings of the USENIX Symposium on Networked Systems Design and Implementation. 469\u2013482."},{"key":"e_1_3_1_11_2","doi-asserted-by":"publisher","DOI":"10.1109\/SPW.2016.28"},{"key":"e_1_3_1_12_2","first-page":"9","volume-title":"Proceedings of the ACM Workshop on Cloud Computing Security","author":"Azar Yossi","year":"2014","unstructured":"Yossi Azar, Seny Kamara, Ishai Menache, Mariana Raykova, and Bruce Shepard. 2014. Co-location-resistant clouds. In Proceedings of the ACM Workshop on Cloud Computing Security. 9\u201320."},{"key":"e_1_3_1_13_2","first-page":"85","article-title":"Dynamiccloudsim: Simulating heterogeneity in computational clouds","volume":"46","author":"Bux Marc","year":"2015","unstructured":"Marc Bux and Ulf Leser. 2015. Dynamiccloudsim: Simulating heterogeneity in computational clouds. Proceedings of the 2nd ACM SIGMOD Workshop on Scalable Workflow Execution Engines and Technologies 46 (2015), 85\u201399.","journal-title":"Proceedings of the 2nd ACM SIGMOD Workshop on Scalable Workflow Execution Engines and Technologies"},{"key":"e_1_3_1_14_2","doi-asserted-by":"publisher","DOI":"10.1145\/3241737"},{"key":"e_1_3_1_15_2","first-page":"163","volume-title":"Proceedings of the Great Lakes Symposium on VLSI","author":"Canella Claudio","year":"2020","unstructured":"Claudio Canella, Khaled N. Khasawneh, and Daniel Gruss. 2020. The evolution of transient-execution attacks. In Proceedings of the Great Lakes Symposium on VLSI. 163\u2013168."},{"key":"e_1_3_1_16_2","doi-asserted-by":"crossref","first-page":"21","DOI":"10.1145\/2663474.2663478","volume-title":"Proceedings of the 1st ACM Workshop on Moving Target Defense","author":"Carter Kevin M.","year":"2014","unstructured":"Kevin M. Carter, James F. Riordan, and Hamed Okhravi. 2014. A game theoretic approach to strategy determination for dynamic platform defenses. In Proceedings of the 1st ACM Workshop on Moving Target Defense. 21\u201330."},{"key":"e_1_3_1_17_2","first-page":"44","volume-title":"Proceedings of the IEEE International Symposium on Workload Characterization","author":"Che Shuai","year":"2009","unstructured":"Shuai Che, Michael Boyer, Jiayuan Meng, David Tarjan, Jeremy W. Sheaffer, Sang-Ha Lee, and Kevin Skadron. 2009. Rodinia: A benchmark suite for heterogeneous computing. In Proceedings of the IEEE International Symposium on Workload Characterization. 44\u201354."},{"key":"e_1_3_1_18_2","first-page":"378","volume-title":"Proceedings of the IEEE International Conference on Cluster Computing","author":"Crago Steve","year":"2011","unstructured":"Steve Crago, Kyle Dunn, Patrick Eads, Lorin Hochstein, Dong-In Kang, Mikyung Kang, Devendra Modium, Karandeep Singh, Jinwoo Suh, and John Paul Walters. 2011. Heterogeneous cloud computing. In Proceedings of the IEEE International Conference on Cluster Computing. 378\u2013385."},{"key":"e_1_3_1_19_2","doi-asserted-by":"publisher","DOI":"10.1145\/2499368.2451125"},{"key":"e_1_3_1_20_2","doi-asserted-by":"publisher","DOI":"10.1145\/2644865.2541941"},{"issue":"4","key":"e_1_3_1_21_2","doi-asserted-by":"crossref","first-page":"868","DOI":"10.1109\/TCAD.2021.3070243","article-title":"Imitating functional operations for mitigating side-channel leakage","volume":"41","author":"Dhavlle Abhijitt","year":"2021","unstructured":"Abhijitt Dhavlle, Setareh Rafatirad, Khaled Khasawneh, Houman Homayoun, and Sai Manoj Pudukotai Dinakarrao. 2021. Imitating functional operations for mitigating side-channel leakage. IEEE Transactions on Computer-Aided Design of Integrated Circuits and Systems 41, 4 (2021), 868\u2013881.","journal-title":"IEEE Transactions on Computer-Aided Design of Integrated Circuits and Systems"},{"key":"e_1_3_1_22_2","first-page":"1","volume-title":"Proceedings of the USENIX Annual Technical Conference","author":"Duplyakin Dmitry","year":"2019","unstructured":"Dmitry Duplyakin, Robert Ricci, Aleksander Maricq, Gary Wong, Jonathon Duerig, Eric Eide, Leigh Stoller, Mike Hibler, David Johnson, Kirk Webb,et al. 2019. The design and operation of CloudLab. In Proceedings of the USENIX Annual Technical Conference. 1\u201314."},{"key":"e_1_3_1_23_2","doi-asserted-by":"publisher","DOI":"10.3390\/a11100160"},{"key":"e_1_3_1_24_2","unstructured":"Chongzhou Fang Najmeh Nazari Behnam Omidi Han Wang Aditya Puri Manish Arora Setareh Rafatirad Houman Homayoun and Khaled N. Khasawneh. 2023. HeteroScore: Evaluating and Mitigating Cloud Security Threats Brought by Heterogeneity. In Proceedings of Network and Distributed Systems Security Sympsium."},{"key":"e_1_3_1_25_2","volume-title":"Proceedings of the Network and Distributed Systems Security Symposium","author":"Fang Chongzhou","year":"2022","unstructured":"Chongzhou Fang, Han Wang, Najmeh Nazari, Behnam Omidi, Avesta Sasan, Khaled N. Khasawneh, Setareh Rafatirad, and Houman Homayoun. 2022. Repttack: Exploiting cloud schedulers to guide co-location attacks. In Proceedings of the Network and Distributed Systems Security Symposium."},{"issue":"1","key":"e_1_3_1_26_2","doi-asserted-by":"crossref","first-page":"420","DOI":"10.1109\/TASE.2018.2826723","article-title":"Model predictive control for energy-efficient, quality-aware, and secure virtual machine placement","volume":"16","author":"Gaggero Mauro","year":"2018","unstructured":"Mauro Gaggero and Luca Caviglione. 2018. Model predictive control for energy-efficient, quality-aware, and secure virtual machine placement. IEEE Transactions on Automation Science and Engineering 16, 1 (2018), 420\u2013432.","journal-title":"IEEE Transactions on Automation Science and Engineering"},{"issue":"1","key":"e_1_3_1_27_2","first-page":"45","article-title":"Vmware distributed resource management: Design, implementation, and lessons learned","volume":"1","author":"Gulati Ajay","year":"2012","unstructured":"Ajay Gulati, Anne Holler, Minwen Ji, Ganesha Shanmuganathan, Carl Waldspurger, and Xiaoyun Zhu. 2012. Vmware distributed resource management: Design, implementation, and lessons learned. VMware Technical Journal 1, 1 (2012), 45\u201364.","journal-title":"VMware Technical Journal"},{"issue":"3","key":"e_1_3_1_28_2","doi-asserted-by":"crossref","first-page":"307","DOI":"10.1109\/TCC.2014.2339858","article-title":"Evaluating and improving the performance and scheduling of HPC applications in cloud","volume":"4","author":"Gupta Abhishek","year":"2014","unstructured":"Abhishek Gupta, Paolo Faraboschi, Filippo Gioachin, Laxmikant V. Kale, Richard Kaufmann, Bu-Sung Lee, Verdi March, Dejan Milojicic, and Chun Hui Suen. 2014. Evaluating and improving the performance and scheduling of HPC applications in cloud. IEEE Transactions on Cloud Computing 4, 3 (2014), 307\u2013321.","journal-title":"IEEE Transactions on Cloud Computing"},{"key":"e_1_3_1_29_2","doi-asserted-by":"crossref","first-page":"275","DOI":"10.1007\/978-3-319-61176-1_15","volume-title":"Data and Applications Security and Privacy XXXI: 31st Annual IFIP WG 11.3 Conference, DBSec 2017, Philadelphia, PA, USA, July 19-21, 2017, Proceedings 31","author":"Han Jin","year":"2017","unstructured":"Jin Han, Wanyu Zang, Songqing Chen, and Meng Yu. 2017. Reducing security risks of clouds through virtual machine placement. In Data and Applications Security and Privacy XXXI: 31st Annual IFIP WG 11.3 Conference, DBSec 2017, Philadelphia, PA, USA, July 19-21, 2017, Proceedings 31. Springer, 275\u2013292."},{"key":"e_1_3_1_30_2","doi-asserted-by":"crossref","unstructured":"Jin Han Wanyu Zang Meng Yu and Ravi Sandhu. 2020. Quantify Co-residency risks in the cloud through deep learning. IEEE Transactions on Dependable and Secure Computing 18.4 (2020) 1568\u20131579.","DOI":"10.1109\/TDSC.2020.3032073"},{"key":"e_1_3_1_31_2","volume-title":"Defending Against Co-resident Attacks in Cloud Computing","author":"Han Yi","year":"2015","unstructured":"Yi Han. 2015. Defending Against Co-resident Attacks in Cloud Computing. Ph. D. Dissertation. University of Melbourne, Department of Computing and Information Systems."},{"key":"e_1_3_1_32_2","first-page":"143","volume-title":"Proceedings of the 29th ACM on International Conference on Supercomputing","author":"He Wenting","year":"2015","unstructured":"Wenting He, Huimin Cui, Binbin Lu, Jiacheng Zhao, Shengmei Li, Gong Ruan, Jingling Xue, Xiaobing Feng, Wensen Yang, and Youliang Yan. 2015. Hadoop+ modeling and evaluating the heterogeneity for mapreduce applications in heterogeneous clusters. In Proceedings of the 29th ACM on International Conference on Supercomputing. 143\u2013153."},{"key":"e_1_3_1_33_2","doi-asserted-by":"publisher","DOI":"10.1049\/iet-ifs.2017.0086"},{"key":"e_1_3_1_34_2","first-page":"898","article-title":"Seriously, get off my cloud! Cross-VM RSA Key Recovery in a Public Cloud.","volume":"2015","author":"Inci Mehmet Sinan","year":"2015","unstructured":"Mehmet Sinan Inci, Berk G\u00fclmezoglu, Gorka Irazoqui Apecechea, Thomas Eisenbarth, and Berk Sunar. 2015. Seriously, get off my cloud! Cross-VM RSA Key Recovery in a Public Cloud. IACR Cryptol. ePrint Arch. 2015 (2015), 898.","journal-title":"IACR Cryptol. ePrint Arch."},{"key":"e_1_3_1_35_2","first-page":"368","volume-title":"Proceedings of the International Conference on Cryptographic Hardware and Embedded Systems","author":"Inci Mehmet Sinan","year":"2016","unstructured":"Mehmet Sinan Inci, Berk Gulmezoglu, Gorka Irazoqui, Thomas Eisenbarth, and Berk Sunar. 2016. Cache attacks enable bulk key recovery on the cloud. In Proceedings of the International Conference on Cryptographic Hardware and Embedded Systems. Springer, 368\u2013388."},{"key":"e_1_3_1_36_2","first-page":"537","volume-title":"Proceedings of the IEEE International Conference on Computer Design","author":"Islam Md Shohidul","year":"2020","unstructured":"Md Shohidul Islam, Abraham Peedikayil Kuruvila, Kanad Basu, and Khaled N. Khasawneh. 2020. Nd-hmds: Non-differentiable hardware malware detectors against evasive transient execution attacks. In Proceedings of the IEEE International Conference on Computer Design. 537\u2013544."},{"key":"e_1_3_1_37_2","first-page":"1","volume-title":"Proceedings of the ACM\/IEEE Design Automation Conference","author":"Kayaalp Mehmet","year":"2017","unstructured":"Mehmet Kayaalp, Khaled N Khasawneh, Hodjat Asghari Esfeden, Jesse Elwell, Nael Abu-Ghazaleh, Dmitry Ponomarev, and Aamer Jaleel. 2017. Ric: Relaxed inclusion caches for mitigating llc side-channel attacks. In Proceedings of the ACM\/IEEE Design Automation Conference. 1\u20136."},{"key":"e_1_3_1_38_2","doi-asserted-by":"publisher","DOI":"10.1145\/3316781.3317903"},{"key":"e_1_3_1_39_2","doi-asserted-by":"publisher","DOI":"10.1145\/2678373.2665726"},{"key":"e_1_3_1_40_2","volume-title":"Proceedings of the USENIX Workshop on Offensive Technologies","author":"Koruyeh Esmaeil Mohammadian","year":"2018","unstructured":"Esmaeil Mohammadian Koruyeh, Khaled N. Khasawneh, Chengyu Song, and Nael Abu-Ghazaleh. 2018. Spectre returns! speculation attacks using the return stack buffer. In Proceedings of the USENIX Workshop on Offensive Technologies."},{"key":"e_1_3_1_41_2","first-page":"39","volume-title":"Proceedings of the IEEE Symposium on Security and Privacy","author":"Koruyeh Esmaeil Mohammadian","year":"2020","unstructured":"Esmaeil Mohammadian Koruyeh, Shirin Haji Amin Shirazi, Khaled N Khasawneh, Chengyu Song, and Nael Abu-Ghazaleh. 2020. Speccfi: Mitigating spectre attacks using cfi informed speculation. In Proceedings of the IEEE Symposium on Security and Privacy. 39\u201353."},{"issue":"2","key":"e_1_3_1_42_2","doi-asserted-by":"crossref","first-page":"28","DOI":"10.1109\/MSP.2013.129","article-title":"Security through diversity: Are we there yet?","volume":"12","author":"Larsen Per","year":"2013","unstructured":"Per Larsen, Stefan Brunthaler, and Michael Franz. 2013. Security through diversity: Are we there yet? IEEE Security and Privacy 12, 2 (2013), 28\u201335.","journal-title":"IEEE Security and Privacy"},{"key":"e_1_3_1_43_2","first-page":"973","volume-title":"Proceedings of the USENIX Security Symposium","author":"Lipp Moritz","year":"2018","unstructured":"Moritz Lipp, Michael Schwarz, Daniel Gruss, Thomas Prescher, Werner Haas, Anders Fogh, Jann Horn, Stefan Mangard, Paul Kocher, Daniel Genkin, et\u00a0al. 2018. Meltdown: Reading kernel memory from user space. In Proceedings of the USENIX Security Symposium. 973\u2013990."},{"key":"e_1_3_1_44_2","doi-asserted-by":"publisher","DOI":"10.1145\/3456629"},{"key":"e_1_3_1_45_2","first-page":"1","volume-title":"Proceedings of the International Symposium on Secure and Private Execution Environment Design","author":"Makrani Hosein Mohammadi","year":"2021","unstructured":"Hosein Mohammadi Makrani, Hossein Sayadi, Najmeh Nazari, Avesta Sasan, Khaled N. Khasawneh, Setareh Rafatirad, and Houman Homayoun. 2021. Cloak & Co-locate: Adversarial railroading of resource sharing-based attacks on the cloud. In Proceedings of the International Symposium on Secure and Private Execution Environment Design. IEEE, 1\u201313."},{"issue":"1","key":"e_1_3_1_46_2","doi-asserted-by":"crossref","first-page":"39","DOI":"10.1007\/s10723-017-9417-z","article-title":"Orchestrating the deployment of high availability services on multi-zone and multi-cloud scenarios","volume":"16","author":"Moreno-Vozmediano Rafael","year":"2018","unstructured":"Rafael Moreno-Vozmediano, Rub\u00e9n S. Montero, Eduardo Huedo, and Ignacio Mart\u00edn Llorente. 2018. Orchestrating the deployment of high availability services on multi-zone and multi-cloud scenarios. Journal of Grid Computing 16, 1 (2018), 39\u201353.","journal-title":"Journal of Grid Computing"},{"key":"e_1_3_1_47_2","first-page":"1466","volume-title":"Proceedings of the IEEE Symposium on Security and Privacy","author":"Murdock Kit","year":"2020","unstructured":"Kit Murdock, David Oswald, Flavio D. Garcia, Jo Van Bulck, Daniel Gruss, and Frank Piessens. 2020. Plundervolt: Software-based fault injection attacks against Intel SGX. In Proceedings of the IEEE Symposium on Security and Privacy. 1466\u20131482."},{"key":"e_1_3_1_48_2","doi-asserted-by":"crossref","first-page":"354","DOI":"10.1145\/3123939.3124538","volume-title":"Proceedings of the IEEE\/ACM International Symposium on Microarchitecture","author":"Naghibijouybari Hoda","year":"2017","unstructured":"Hoda Naghibijouybari, Khaled N. Khasawneh, and Nael Abu-Ghazaleh. 2017. Constructing and characterizing covert channels on gpgpus. In Proceedings of the IEEE\/ACM International Symposium on Microarchitecture. 354\u2013366."},{"key":"e_1_3_1_49_2","first-page":"162","volume-title":"Proceedings of the 16th European Conference on Computer Systems","author":"Ngoc Tu Dinh","year":"2021","unstructured":"Tu Dinh Ngoc, Boris Teabe, Alain Tchana, Gilles Muller, and Daniel Hagimont. 2021. Mitigating vulnerability windows with hypervisor transplant. In Proceedings of the 16th European Conference on Computer Systems. 162\u2013177."},{"key":"e_1_3_1_50_2","first-page":"107","volume-title":"Proceedings of the International Conference on Critical Infrastructure Protection","author":"Okhravi Hamed","year":"2011","unstructured":"Hamed Okhravi, Adam Comella, Eric Robinson, Stephen Yannalfo, Peter Michaleas, and Joshua Haines. 2011. Creating a cyber moving target for critical infrastructure applications. In Proceedings of the International Conference on Critical Infrastructure Protection. Springer, 107\u2013123."},{"key":"e_1_3_1_51_2","first-page":"405","volume-title":"Proceedings of the International Workshop on Recent Advances in Intrusion Detection","author":"Okhravi Hamed","year":"2014","unstructured":"Hamed Okhravi, James Riordan, and Kevin Carter. 2014. Quantitative evaluation of dynamic platform techniques as a defensive mechanism. In Proceedings of the International Workshop on Recent Advances in Intrusion Detection. Springer, 405\u2013425."},{"key":"e_1_3_1_52_2","first-page":"179","volume-title":"Proceedings of the 2019 IEEE International Conference on Cloud Engineering .","author":"Okuno Shingo","year":"2019","unstructured":"Shingo Okuno, Fumi Iikura, and Yukihiro Watanabe. 2019. Maintenance scheduling for cloud infrastructure with timing constraints of live migration. In Proceedings of the 2019 IEEE International Conference on Cloud Engineering .IEEE, 179\u2013189."},{"key":"e_1_3_1_53_2","first-page":"199","volume-title":"Proceedings of the ACM Conference on Computer and Communications Security","author":"Ristenpart Thomas","year":"2009","unstructured":"Thomas Ristenpart, Eran Tromer, Hovav Shacham, and Stefan Savage. 2009. Hey, you, get off of my cloud: exploring information leakage in third-party compute clouds. In Proceedings of the ACM Conference on Computer and Communications Security. 199\u2013212."},{"key":"e_1_3_1_54_2","doi-asserted-by":"publisher","DOI":"10.1145\/2465351.2465386"},{"key":"e_1_3_1_55_2","first-page":"71","article-title":"Exploiting the DRAM rowhammer bug to gain kernel privileges","volume":"15","author":"Seaborn Mark","year":"2015","unstructured":"Mark Seaborn and Thomas Dullien. 2015. Exploiting the DRAM rowhammer bug to gain kernel privileges. Black Hat 15 (2015), 71.","journal-title":"Black Hat"},{"key":"e_1_3_1_56_2","first-page":"1057","volume-title":"Proceedings of the USENIX Security Symposium","author":"Tang Adrian","year":"2017","unstructured":"Adrian Tang, Simha Sethumadhavan, and Salvatore Stolfo. 2017. CLKSCREW: Exposing the perils of security-oblivious energy management. In Proceedings of the USENIX Security Symposium. 1057\u20131074."},{"key":"e_1_3_1_57_2","first-page":"913","volume-title":"Proceedings of the USENIX Security Symposium","author":"Varadarajan Venkatanathan","year":"2015","unstructured":"Venkatanathan Varadarajan, Yinqian Zhang, Thomas Ristenpart, and Michael Swift. 2015. A placement vulnerability study in multi-tenant public clouds. In Proceedings of the USENIX Security Symposium. 913\u2013928."},{"key":"e_1_3_1_58_2","first-page":"363","volume-title":"Proceedings of the USENIX Symposium on Networked Systems Design and Implementation","author":"Venkataraman Shivaram","year":"2016","unstructured":"Shivaram Venkataraman, Zongheng Yang, Michael Franklin, Benjamin Recht, and Ion Stoica. 2016. Ernest: Efficient performance prediction for large-scale advanced analytics. In Proceedings of the USENIX Symposium on Networked Systems Design and Implementation. 363\u2013378."},{"issue":"1","key":"e_1_3_1_59_2","doi-asserted-by":"crossref","first-page":"1146","DOI":"10.1109\/TVT.2023.3300975","article-title":"Performance analysis of a VM-PM repair strategy in MEC-enabled wireless systems with bursty traffic","volume":"73","author":"Wang Yuting","year":"2023","unstructured":"Yuting Wang, Xiaofan Han, and Shunfu Jin. 2023. Performance analysis of a VM-PM repair strategy in MEC-enabled wireless systems with bursty traffic. IEEE Transactions on Vehicular Technology 73, 1 (2023), 1146\u20131161.","journal-title":"IEEE Transactions on Vehicular Technology"},{"issue":"8","key":"e_1_3_1_60_2","first-page":"2470","article-title":"Heterogeneity and interference-aware virtual machine provisioning for predictable performance in the cloud","volume":"65","author":"Xu Fei","year":"2015","unstructured":"Fei Xu, Fangming Liu, and Hai Jin. 2015. Heterogeneity and interference-aware virtual machine provisioning for predictable performance in the cloud. IEEE Transactions on Computers 65, 8 (2015), 2470\u20132483.","journal-title":"IEEE Transactions on Computers"},{"key":"e_1_3_1_61_2","unstructured":"Yuval Yarom. 2016. Mastik: A micro-architectural side-channel toolkit. Retrieved July 2025 from https:\/\/github.com\/0xADE1A1DE\/Mastik"},{"key":"e_1_3_1_62_2","first-page":"719","volume-title":"Proceedings of the USENIX Security Symposium","author":"Yarom Yuval","year":"2014","unstructured":"Yuval Yarom and Katrina Falkner. 2014. FLUSH+ RELOAD: A high resolution, low noise, L3 cache side-channel attack. In Proceedings of the USENIX Security Symposium. 719\u2013732."},{"key":"e_1_3_1_63_2","first-page":"44","volume-title":"Proceedings of the Workshop on Job Scheduling Strategies for Parallel Processing.","author":"Yoo Andy B.","year":"2003","unstructured":"Andy B. Yoo, Morris A. Jette, and Mark Grondona. 2003. Slurm: Simple linux utility for resource management. In Proceedings of the Workshop on Job Scheduling Strategies for Parallel Processing.Springer, 44\u201360."},{"key":"e_1_3_1_64_2","first-page":"1078","volume-title":"Proceedings of the 2013 IEEE 10th International Conference on High Performance Computing and Communications and 2013 IEEE International Conference on Embedded and Ubiquitous Computing","author":"Yu Si","year":"2013","unstructured":"Si Yu, Xiaolin Gui, Feng Tian, Pan Yang, and Jianqiang Zhao. 2013. A security-awareness virtual machine placement scheme in the cloud. In Proceedings of the 2013 IEEE 10th International Conference on High Performance Computing and Communications and 2013 IEEE International Conference on Embedded and Ubiquitous Computing. IEEE, 1078\u20131083."},{"key":"e_1_3_1_65_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.simpat.2019.02.003"},{"key":"e_1_3_1_66_2","doi-asserted-by":"publisher","DOI":"10.1145\/3445814.3446699"},{"key":"e_1_3_1_67_2","first-page":"990","volume-title":"Proceedings of the ACM SIGSAC Conference on Computer and Communications Security","author":"Zhang Yinqian","year":"2014","unstructured":"Yinqian Zhang, Ari Juels, Michael K Reiter, and Thomas Ristenpart. 2014. Cross-tenant side-channel attacks in PaaS clouds. In Proceedings of the ACM SIGSAC Conference on Computer and Communications Security. 990\u20131003."},{"key":"e_1_3_1_68_2","first-page":"388","volume-title":"Proceedings of the IFIP International Information Security Conference","author":"Zhang Yulong","year":"2012","unstructured":"Yulong Zhang, Min Li, Kun Bai, Meng Yu, and Wanyu Zang. 2012. Incentive compatible moving target defense against vm-colocation attacks in clouds. In Proceedings of the IFIP International Information Security Conference. Springer, 388\u2013399."},{"key":"e_1_3_1_69_2","first-page":"133","volume-title":"Proceedings of the 29th ACM International Conference on Architectural Support for Programming Languages and Operating Systems","author":"Zhao Zirui Neil","year":"2024","unstructured":"Zirui Neil Zhao, Adam Morrison, Christopher W. Fletcher, and Josep Torrellas. 2024. Everywhere all at once: Co-location attacks on public cloud FaaS. In Proceedings of the 29th ACM International Conference on Architectural Support for Programming Languages and Operating Systems. 133\u2013149."}],"container-title":["ACM Transactions on Internet Technology"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3746228","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,13]],"date-time":"2025-09-13T11:20:16Z","timestamp":1757762416000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3746228"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,9,13]]},"references-count":68,"journal-issue":{"issue":"4","published-print":{"date-parts":[[2025,11,30]]}},"alternative-id":["10.1145\/3746228"],"URL":"https:\/\/doi.org\/10.1145\/3746228","relation":{},"ISSN":["1533-5399","1557-6051"],"issn-type":[{"value":"1533-5399","type":"print"},{"value":"1557-6051","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,9,13]]},"assertion":[{"value":"2024-08-06","order":0,"name":"received","label":"Received","group":{"name":"publication_history","label":"Publication History"}},{"value":"2025-05-25","order":2,"name":"accepted","label":"Accepted","group":{"name":"publication_history","label":"Publication History"}},{"value":"2025-09-13","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}