Page 68 - 《软件学报》2026年第6期
P. 68
芮志清 等: MARC: 基于多智能体协同的硬件安全缺陷早期检测方法 2387
uploads/2024/01/RISC-V-Market-Analysis-2024-Abridged-Report-2.pdf
[2] Dessouky G, Gens D, Haney P, Persyn G, Kanuparthi AK, Khattri H, Fung JM, Sadeghi AR, Rajendran J. HardFails: Insights into
software-exploitable hardware bugs. In: Proc. of the 28th USENIX Security Symp. Santa Clara: USENIX Association, 2019. 213–230.
[3] Wikipedia. Software guard extensions. 2015. https://en.wikipedia.org/w/index.php?title=Software_Guard_Extensions&oldid=1306308365
[4] IPADS. Penglai-Enclave. 2025. https://github.com/Penglai-Enclave/Penglai-Enclave
[5] van Bulck J, Minkin M, Weisse O, Genkin D, Kasikci B, Piessens F, Silberstein M, Wenisch TF, Yarom Y, Strackx R. Foreshadow:
Extracting the keys to the Intel SGX kingdom with transient out-of-order execution. In: Proc. of the 27th USENIX Security Symp.
Baltimore: USENIX Association, 2018. 991–1008.
[6] Tang A, Sethumadhavan S, Stolfo SJ. CLKSCREW: Exposing the perils of security-oblivious energy management. In: Proc. of the 26th
USENIX Security Symp. Vancouver: USENIX Association, 2017. 1057–1074.
[7] Costan V, Lebedev IA, Devadas S. Sanctum: Minimal hardware extensions for strong software isolation. In: Proc. of the 25th USENIX
Security Symp. Austin: USENIX Association, 2016. 857–874.
[8] Brasser F, Gens D, Jauernig P, Sadeghi AR, Stapf E. SANCTUARY: ARMing TrustZone with user-space enclaves. In: Proc. of the 26th
Annual Network and Distributed System Security Symp. San Diego: The Internet Society, 2019. [doi: 10.14722/ndss.2019.23448]
[9] Lee D, Kohlbrenner D, Shinde S, Asanović K, Song D. Keystone: An open framework for architecting trusted execution environments.
In: Proc. of the 15th European Conf. on Computer Systems. Heraklion: ACM, 2020. 38. [doi: 10.1145/3342195.3387532]
[10] Xu PY, Kuang BY, Su M, Fu AM. Survey of large-language-model-based automated program repair. Journal of Computer Research and
Development, 2025, 62(8): 2040–2057 (in Chinese with English abstract). [doi: 10.7544/issn1000-1239.202440467]
[11] Thakur S, Ahmad B, Pearce H, Tan B, Dolan-Gavitt B, Karri R, Garg S. VeriGen: A large language model for Verilog code generation.
ACM Trans. on Design Automation of Electronic Systems, 2024, 29(3): 46. [doi: 10.1145/3643681]
[12] Ahmad B, Thakur S, Tan B, Karri R, Pearce H. On hardware security bug code fixes by prompting large language models. IEEE Trans.
on Information Forensics and Security, 2024, 19: 4043–4057. [doi: 10.1109/TIFS.2024.3374558]
[13] Li ZY, Dutta S, Naik M. IRIS: LLM-assisted static analysis for detecting security vulnerabilities. In: Proc. of the 13th Int’l Conf. on
Learning Representations. Singapore: OpenReview.net, 2025. 1–24.
[14] Chapman PJ, Rubio-González C, Thakur AV. Interleaving static analysis and LLM prompting. In: Proc. of the 13th ACM SIGPLAN Int’l
Workshop on the State of the Art in Program Analysis. Copenhagen: ACM, 2024. 9–17. [doi: 10.1145/3652588.3663317]
[15] Li HN, Hao Y, Zhai YZ, Qian ZY. Enhancing static analysis for practical bug detection: An LLM-integrated approach. Proc. of the ACM
on Programming Languages, 2024, 8(OOPSLA1): 111. [doi: 10.1145/3649828]
[16] Li ZY, Wu JZ, Ling X, Luo TY, Rui ZQ, Wu YJ. The seeds of the future sprout from history: Fuzzing for unveiling vulnerabilities in
prospective deep-learning libraries. In: Proc. of the 47th IEEE/ACM Int’l Conf. on Software Engineering (ICSE). Ottawa: IEEE, 2025.
1616–1627. [doi: 10.1109/ICSE55347.2025.00132]
[17] Wang LQ, Zhou YT, Li QS, Wang MK, Xu ZX, Cui D, Wang L, Luo YX. Multi-agent collaborative code reviewer recommendation
based on large language model. Ruan Jian Xue Bao/Journal of Software, 2025, 36(6): 2558–2575 (in Chinese with English abstract). http://
www.jos.org.cn/1000-9825/7326.htm [doi: 10.13328/j.cnki.jos.007326]
[18] Lewis P, Perez E, Piktus A, Petroni F, Karpukhin V, Goyal N, Küttler H, Lewis M, Yih W T, Rocktäschel T, Riedel S, Kiela D. Retrieval-
augmented generation for knowledge-intensive NLP tasks. In: Proc. of the 34th Conf. on Neural Information Processing Systems.
Vancouver: Neural Information Processing Systems Foundation, 2020. 9459–9474 [doi: 10.5555/3495724.3496517]
[19] DATE 2025 awards. 2025. https://date25.date-conference.com/awards
[20] Rui ZQ, Mei Y, Chen ZZ, Wu JZ, Ling X, Luo TY, Wu YJ. SeChain: Design and implementation of RISC-V secure boot mechanism
based on domestic cryptographic algorithms. Journal of Computer Research and Development, 2024, 61(6): 1458–1475 (in Chinese with
English abstract). [doi: 10.7544/issn1000-1239.202440088]
[21] Thomas F, Hetterich L, Zhang RY, Weber D, Gerlach L, Schwarz M. RISCVuzz: Discovering architectural CPU vulnerabilities via
differential hardware fuzzing. 2024. https://ghostwriteattack.com/riscvuzz.pdf
[22] Liu C, Wu YJ, Wu JZ, Zhao C. Survey on RISC-V system architecture research. Ruan Jian Xue Bao/Journal of Software, 2021, 32(12):
3992–4024 (in Chinese with English abstract). http://www.jos.org.cn/1000-9825/6490.htm [doi: 10.13328/j.cnki.jos.006490]
[23] Lipp M, Schwarz M, Gruss D, Prescher T, Haas W, Fogh A, Horn J, Mangard S, Kocher P, Genkin D, Yarom Y, Hamburg M. Meltdown:
Reading kernel memory from user space. In: Proc. of the 27th USENIX Security Symp. Baltimore: USENIX Association, 2018. 973–990.
[24] Kocher P, Horn J, Fogh A, Genkin D, Gruss D, Haas W, Hamburg M, Lipp M, Mangard S, Prescher T, Schwarz M, Yarom Y. Spectre
attacks: Exploiting speculative execution. In: Proc. of the 2019 IEEE Symp. on Security and Privacy. San Francisco: IEEE, 2019. 1–19.
[doi: 10.1109/SP.2019.00002]

