{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,30]],"date-time":"2026-06-30T19:48:49Z","timestamp":1782848929190,"version":"3.54.5"},"reference-count":81,"publisher":"Association for Computing Machinery (ACM)","issue":"FSE","license":[{"start":{"date-parts":[[2026,6,30]],"date-time":"2026-06-30T00:00:00Z","timestamp":1782777600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/creativecommons.org\/licenses\/by\/4.0\/legalcode"}],"funder":[{"DOI":"10.13039\/501100001381","name":"National Research Foundation, Singapore","doi-asserted-by":"crossref","award":["NCR25-DeSCEmT-SMU"],"award-info":[{"award-number":["NCR25-DeSCEmT-SMU"]}],"id":[{"id":"10.13039\/501100001381","id-type":"DOI","asserted-by":"crossref"}]},{"name":"Cyber Security Agency of Singapore","award":["NCR25-DeSCEmT-SMU"],"award-info":[{"award-number":["NCR25-DeSCEmT-SMU"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Proc. ACM Softw. Eng."],"published-print":{"date-parts":[[2026,6,30]]},"abstract":"<jats:p>Trusted Execution Environments (TEEs) provide hardware-based isolation to protect sensitive data and computations from potentially compromised operating systems (OS). However, TEE applications inevitably interact with the untrusted OS through SDK interfaces, and improper partitioning can introduce severe vulnerabilities such as data leakage and code injection. While prior work has proposed static analysis tools to detect such issues, automated repair remains largely unexplored. This problem is particularly challenging due to three TEE-specific factors: the lack of standardized secure development guidelines, the difficulty of extracting semantic information from low-level C code, and the absence of mature testing and validation methods. In this work, we present TEERepair, a framework for automatically repairing bad partitioning issues in TEE applications. Our approach tackles the above challenges by introducing a domain-specific language (DSL) to encode repair rules that express and capture common TEE security patterns, which are instantiated as patch templates with placeholders for context-specific variables. We then leverage large language models (LLMs) to reason about code semantics and synthesize context-aware patches, and further generate test clients to validate the repairs. We evaluate TEERepair on the TEE Partitioning Errors Benchmark (PartitioningE-Bench), achieving a significantly higher repair success rate of 87.6% compared to baselines. Furthermore, applying TEERepair to real-world TEE projects, we submitted 5 repair pull requests, 2 of which have been confirmed and merged by project maintainers.<\/jats:p>","DOI":"10.1145\/3808207","type":"journal-article","created":{"date-parts":[[2026,6,30]],"date-time":"2026-06-30T17:06:14Z","timestamp":1782839174000},"page":"4551-4574","source":"Crossref","is-referenced-by-count":0,"title":["Automated Repair of TEE Partitioning Issues via DSL-Guided and LLM-Assisted Patching"],"prefix":"10.1145","volume":"3","author":[{"ORCID":"https:\/\/2.zoppoz.workers.dev:443\/https\/orcid.org\/0000-0001-9256-6930","authenticated-orcid":false,"given":"Chengyan","family":"Ma","sequence":"first","affiliation":[{"name":"Singapore Management University, Singapore, Singapore"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/2.zoppoz.workers.dev:443\/https\/orcid.org\/0000-0002-0799-5018","authenticated-orcid":false,"given":"Jieke","family":"Shi","sequence":"additional","affiliation":[{"name":"Singapore Management University, Singapore, Singapore"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/2.zoppoz.workers.dev:443\/https\/orcid.org\/0000-0001-6859-6005","authenticated-orcid":false,"given":"Ruidong","family":"Han","sequence":"additional","affiliation":[{"name":"Singapore Management University, Singapore, Singapore"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/2.zoppoz.workers.dev:443\/https\/orcid.org\/0000-0001-6709-3721","authenticated-orcid":false,"given":"Ye","family":"Liu","sequence":"additional","affiliation":[{"name":"Singapore Management University, Singapore, Singapore"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/2.zoppoz.workers.dev:443\/https\/orcid.org\/0000-0002-8294-7606","authenticated-orcid":false,"given":"Feng","family":"Li","sequence":"additional","affiliation":[{"name":"Singapore Management University, Singapore, Singapore"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/2.zoppoz.workers.dev:443\/https\/orcid.org\/0009-0003-6794-4970","authenticated-orcid":false,"given":"Yuqing","family":"Niu","sequence":"additional","affiliation":[{"name":"Singapore Management University, Singapore, Singapore"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/2.zoppoz.workers.dev:443\/https\/orcid.org\/0000-0002-4367-7201","authenticated-orcid":false,"given":"David","family":"Lo","sequence":"additional","affiliation":[{"name":"Singapore Management University, Singapore, Singapore"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2026,6,30]]},"reference":[{"key":"e_1_2_1_1_1","doi-asserted-by":"crossref","unstructured":"Sharmin Afrose Sazzadur Rahaman and Danfeng Yao. 2019. CryptoAPI-Bench: A Comprehensive Benchmark on Java Cryptographic API Misuses. In 2019 IEEE Cybersecurity Development (SecDev). 49-61.","DOI":"10.1109\/SecDev.2019.00017"},{"key":"e_1_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1109\/UIC-ATC.2013.76"},{"key":"e_1_2_1_3_1","volume-title":"LLM-Based Agent for Program Repair. In 2025 IEEE\/ACM 47th International Conference on Software Engineering (ICSE). 2188-2200","author":"Bouzenia Islem","year":"2025","unstructured":"Islem Bouzenia, Premkumar Devanbu, and Michael Pradel. 2025. RepairAgent: An Autonomous, LLM-Based Agent for Program Repair. In 2025 IEEE\/ACM 47th International Conference on Software Engineering (ICSE). 2188-2200."},{"key":"e_1_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1145\/3664476.3664486"},{"key":"e_1_2_1_5_1","volume-title":"TEEzz: Fuzzing Trusted Applications on COTS Android Devices. In 2023 IEEE Symposium on Security and Privacy (SP). 1204-1219","author":"Busch Marcel","year":"2023","unstructured":"Marcel Busch, Aravind Machiry, Chad Spensky, Giovanni Vigna, Christopher Kruegel, and Mathias Payer. 2023. TEEzz: Fuzzing Trusted Applications on COTS Android Devices. In 2023 IEEE Symposium on Security and Privacy (SP). 1204-1219."},{"key":"e_1_2_1_6_1","volume-title":"EnclaveFuzz: Finding Vulnerabilities in SGX Applications. In 31st Annual Network and Distributed System Security Symposium, NDSS 2024","author":"Chen Liheng","year":"2024","unstructured":"Liheng Chen, Zheming Li, Zheyu Ma, Yuan Li, Baojian Chen, and Chao Zhang. 2024. EnclaveFuzz: Finding Vulnerabilities in SGX Applications. In 31st Annual Network and Distributed System Security Symposium, NDSS 2024, San Diego, California, USA, February 26 -March 1, 2024. The Internet Society."},{"key":"e_1_2_1_7_1","first-page":"1943","article-title":"SequenceR: Sequence-to-Sequence Learning for End-to-End Program Repair","volume":"47","author":"Chen Zimin","year":"2021","unstructured":"Zimin Chen, Steve Kommrusch, Michele Tufano, Louis-No\u00ebl Pouchet, Denys Poshyvanyk, and Martin Monperrus. 2021. SequenceR: Sequence-to-Sequence Learning for End-to-End Program Repair. IEEE Transactions on Software Engineering 47, 9 (2021), 1943-1959.","journal-title":"IEEE Transactions on Software Engineering"},{"key":"e_1_2_1_8_1","unstructured":"Intel Corporation. 2020. Intel(R) Software Guard Extensions Developer Guide. https:\/\/2.zoppoz.workers.dev:443\/https\/community.intel.com\/legacyfs\/ online\/drupal_files\/managed\/33\/70\/intel-sgx-developer-guide.pdf"},{"key":"e_1_2_1_9_1","volume-title":"C (July","author":"Duan Guoyun","year":"2023","unstructured":"Guoyun Duan, Yuanzhi Fu, Boyang Zhang, Peiyao Deng, Jianhua Sun, Hao Chen, and Zhiwen Chen. 2023. TEEFuzzer: A fuzzing framework for trusted execution environments with heuristic seed mutation. Future Gener. Comput. Syst. 144, C (July 2023), 192-204."},{"key":"e_1_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1145\/2896921.2896931"},{"key":"e_1_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1145\/2994459.2994460"},{"key":"e_1_2_1_12_1","volume-title":"SNPL: One Scheme of Securing Nodes in IoT Perception Layer. Sensors 20, 4","author":"Fan Yongkai","year":"2020","unstructured":"Yongkai Fan, Guanqun Zhao, Kuan-Ching Li, Bin Zhang, Gang Tan, Xiaofeng Sun, and Fanglue Xia. 2020. SNPL: One Scheme of Securing Nodes in IoT Perception Layer. Sensors 20, 4 (2020)."},{"key":"e_1_2_1_13_1","volume-title":"Proceedings of the 15th International Conference on Availability, Reliability and Security","author":"Fleischer Fabian","year":"2020","unstructured":"Fabian Fleischer, Marcel Busch, and Phillip Kuhrt. 2020. Memory corruption attacks within Android TEEs: a case study based on OP-TEE. In Proceedings of the 15th International Conference on Availability, Reliability and Security (Virtual Event, Ireland) (ARES '20). Association for Computing Machinery, New York, NY, USA, Article 53, 9 pages."},{"key":"e_1_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/3540250.3549098"},{"key":"e_1_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1145\/3418461"},{"key":"e_1_2_1_16_1","unstructured":"GitHub. 2025. CodeQL -codeql.github.com. https:\/\/2.zoppoz.workers.dev:443\/https\/codeql.github.com."},{"key":"e_1_2_1_17_1","unstructured":"GlobalPlatform Inc. 2018. TEE Internal Core API Specification Version 1.1.2.50. https:\/\/2.zoppoz.workers.dev:443\/https\/globalplatform.org\/wpcontent\/uploads\/2018\/06\/GPD_TEE_Internal_Core_API_Specification_v1.1.2.50_PublicReview.pdf"},{"key":"e_1_2_1_18_1","volume-title":"34th USENIX Security Symposium, USENIX Security 2025","author":"Hu Yiwei","year":"2025","unstructured":"Yiwei Hu, Zhen Li, Kedie Shu, Shenghua Guan, Deqing Zou, Shouhuai Xu, Bin Yuan, and Hai Jin. 2025. SoK: Automated Vulnerability Repair: Methods, Tools, and Assessments. In 34th USENIX Security Symposium, USENIX Security 2025, Seattle, WA, USA, August 13-15, 2025, Lujo Bauer and Giancarlo Pellegrino (Eds.). USENIX Association, 4421-4440."},{"key":"e_1_2_1_19_1","volume-title":"Article 36 (Oct.","author":"Huang Kai","year":"2024","unstructured":"Kai Huang, Zhengzi Xu, Su Yang, Hongyu Sun, Xuejun Li, Zheng Yan, and Yuqing Zhang. 2024. Evolving Paradigms in Automated Program Repair: Taxonomy, Challenges, and Opportunities. ACM Comput. Surv. 57, 2, Article 36 (Oct. 2024), 43 pages."},{"key":"e_1_2_1_20_1","unstructured":"Huawei Technologies Co. Ltd. 2019. Huawei iTrustee V3.0 on Kirin 980 Security Target. https:\/\/2.zoppoz.workers.dev:443\/https\/messervices.cyber. gouv.fr\/visas\/ANSSI-CC-2020-67-cible.pdf"},{"key":"e_1_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1145\/3213846.3213871"},{"key":"e_1_2_1_22_1","volume-title":"CURE: Code-Aware Neural Machine Translation for Automatic Program Repair. In 2021 IEEE\/ACM 43rd International Conference on Software Engineering (ICSE). 1161-1173","author":"Jiang Nan","year":"2021","unstructured":"Nan Jiang, Thibaud Lutellier, and Lin Tan. 2021. CURE: Code-Aware Neural Machine Translation for Automatic Program Repair. In 2021 IEEE\/ACM 43rd International Conference on Software Engineering (ICSE). 1161-1173."},{"key":"e_1_2_1_23_1","doi-asserted-by":"crossref","first-page":"971","DOI":"10.1145\/3373376.3378486","volume-title":"Proceedings of the Twenty-Fifth International Conference on Architectural Support for Programming Languages and Operating Systems","author":"Khandaker Mustakimur Rahman","year":"2020","unstructured":"Mustakimur Rahman Khandaker, Yueqiang Cheng, Zhi Wang, and Tao Wei. 2020. COIN Attacks: On Insecurity of Enclave Untrusted Interfaces in SGX. In Proceedings of the Twenty-Fifth International Conference on Architectural Support for Programming Languages and Operating Systems (Lausanne, Switzerland) (ASPLOS '20). Association for Computing Machinery, New York, NY, USA, 971-985."},{"key":"e_1_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE.2013.6606626"},{"key":"e_1_2_1_25_1","volume-title":"34th USENIX Security Symposium, USENIX Security 2025","author":"Kim Youngjoon","year":"2025","unstructured":"Youngjoon Kim, Sunguk Shin, Hyoungshick Kim, and Jiwon Yoon. 2025. Logs In, Patches Out: Automated Vulnerability Repair via Tree-of-Thought LLM Analysis. In 34th USENIX Security Symposium, USENIX Security 2025, Seattle, WA, USA, August 13-15, 2025, Lujo Bauer and Giancarlo Pellegrino (Eds.). USENIX Association, 4401-4419."},{"key":"e_1_2_1_26_1","article-title":"ContrastRepair: Enhancing Conversation-Based Automated Program Repair via Contrastive Test Case Pairs","volume":"34","author":"Kong Jiaolong","year":"2025","unstructured":"Jiaolong Kong, Xiaofei Xie, Mingfei Cheng, Shangqing Liu, Xiaoning Du, and Qi Guo. 2025. ContrastRepair: Enhancing Conversation-Based Automated Program Repair via Contrastive Test Case Pairs. ACM Trans. Softw. Eng. Methodol. 34, 8, Article 216 (Oct. 2025), 31 pages.","journal-title":"ACM Trans. Softw. Eng. Methodol."},{"key":"e_1_2_1_27_1","first-page":"3","article-title":"FixMiner: Mining relevant fix patterns for automated program repair","volume":"25","author":"Koyuncu Anil","year":"2020","unstructured":"Anil Koyuncu, Kui Liu, Tegawend\u00e9 F. Bissyand\u00e9, Dongsun Kim, Jacques Klein, Martin Monperrus, and Yves Le Traon. 2020. FixMiner: Mining relevant fix patterns for automated program repair. Empirical Softw. Engg. 25, 3 (May 2020), 1980-2024.","journal-title":"Empirical Softw. Engg."},{"key":"e_1_2_1_28_1","volume-title":"2021 5th International Conference on Intelligent Computing and Control Systems (ICICCS). 323-332","author":"Lala Shubham Kumar","unstructured":"Shubham Kumar Lala, Akshat Kumar, and Subbulakshmi T. 2021. Secure Web development using OWASP Guidelines. In 2021 5th International Conference on Intelligent Computing and Control Systems (ICICCS). 323-332."},{"key":"e_1_2_1_29_1","doi-asserted-by":"crossref","first-page":"14","DOI":"10.1145\/3268935.3268938","volume-title":"Proceedings of the 3rd Workshop on System Software for Trusted Execution","author":"Lazard Titouan","year":"2018","unstructured":"Titouan Lazard, Johannes G\u00f6tzfried, Tilo M\u00fcller, Gianni Santinelli, and Vincent Lefebvre. 2018. TEEshift: Protecting Code Confidentiality by Selectively Shifting Functions into TEEs. In Proceedings of the 3rd Workshop on System Software for Trusted Execution (Toronto, Canada) (SysTEX '18). Association for Computing Machinery, New York, NY, USA, 14-19."},{"key":"e_1_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2011.104"},{"key":"e_1_2_1_31_1","article-title":"TEESlice: Protecting Sensitive Neural Network Models in Trusted Execution Environments when Attackers Have Pre-Trained Models","volume":"34","author":"Li Ding","year":"2025","unstructured":"Ding Li, Ziqi Zhang, Mengyu Yao, Yifeng Cai, Yao Guo, and Xiangqun Chen. 2025. TEESlice: Protecting Sensitive Neural Network Models in Trusted Execution Environments when Attackers Have Pre-Trained Models. ACM Trans. Softw. Eng. Methodol. 34, 6, Article 166 (July 2025), 49 pages.","journal-title":"ACM Trans. Softw. Eng. Methodol."},{"key":"e_1_2_1_32_1","first-page":"3","article-title":"Research on ARM TrustZone","volume":"22","author":"Li Wenhao","year":"2019","unstructured":"Wenhao Li, Yubin Xia, and Haibo Chen. 2019. Research on ARM TrustZone. GetMobile: Mobile Comp. and Comm. 22, 3 (Jan. 2019), 17-22.","journal-title":"GetMobile: Mobile Comp. and Comm."},{"key":"e_1_2_1_33_1","first-page":"602","volume-title":"Proceedings of the ACM\/IEEE 42nd International Conference on Software Engineering","author":"Li Yi","unstructured":"Yi Li, Shaohua Wang, and Tien N. Nguyen. 2020. DLFix: context-based code transformation learning for automated program repair. In Proceedings of the ACM\/IEEE 42nd International Conference on Software Engineering (Seoul, South Korea) (ICSE '20). Association for Computing Machinery, New York, NY, USA, 602-614."},{"key":"e_1_2_1_34_1","first-page":"511","volume-title":"Proceedings of the 44th International Conference on Software Engineering","author":"Li Yi","unstructured":"Yi Li, Shaohua Wang, and Tien N. Nguyen. 2022. DEAR: a novel deep learning-based approach for automated program repair. In Proceedings of the 44th International Conference on Software Engineering (Pittsburgh, Pennsylvania) (ICSE '22). Association for Computing Machinery, New York, NY, USA, 511-523."},{"key":"e_1_2_1_35_1","doi-asserted-by":"publisher","DOI":"10.1145\/3293882.3330577"},{"key":"e_1_2_1_36_1","volume-title":"AVATAR: Fixing Semantic Bugs with Fix Patterns of Static Analysis Violations. In 2019 IEEE 26th International Conference on Software Analysis, Evolution and Reengineering (SANER). 1-12","author":"Liu Kui","unstructured":"Kui Liu, Anil Koyuncu, Dongsun Kim, and Tegawende F. Bissyand\u00e8. 2019. AVATAR: Fixing Semantic Bugs with Fix Patterns of Static Analysis Violations. In 2019 IEEE 26th International Conference on Software Analysis, Evolution and Reengineering (SANER). 1-12."},{"key":"e_1_2_1_37_1","first-page":"298","volume-title":"Proceedings of the 43rd Annual ACM SIGPLAN-SIGACT Symposium on Principles of Programming Languages (St","author":"Long Fan","year":"2016","unstructured":"Fan Long and Martin Rinard. 2016. Automatic patch generation by learning correct code. In Proceedings of the 43rd Annual ACM SIGPLAN-SIGACT Symposium on Principles of Programming Languages (St. Petersburg, FL, USA) (POPL '16). Association for Computing Machinery, New York, NY, USA, 298-312."},{"key":"e_1_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2022.3216020"},{"key":"e_1_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.1145\/3395363.3397369"},{"key":"e_1_2_1_40_1","volume-title":"DITING: A Static Analyzer for Identifying Bad Partitioning Issues in TEE Applications. arXiv:2502.15281 [cs.CR]","author":"Ma Chengyan","year":"2025","unstructured":"Chengyan Ma, Ruidong Han, Jieke Shi, Ye Liu, Yuqing Niu, Di Lu, Chuang Tian, Jianfeng Ma, Debin Gao, and David Lo. 2025. DITING: A Static Analyzer for Identifying Bad Partitioning Issues in TEE Applications. arXiv:2502.15281 [cs.CR]"},{"key":"e_1_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1109\/TKDE.2024.3380367"},{"key":"e_1_2_1_42_1","doi-asserted-by":"publisher","DOI":"10.1109\/TC.2017.2647955"},{"key":"e_1_2_1_43_1","doi-asserted-by":"publisher","DOI":"10.1145\/2931037.2948705"},{"key":"e_1_2_1_44_1","volume-title":"SSBSE 2018, Montpellier, France, September 8-9, 2018, Proceedings (Lecture Notes in Computer Science","volume":"86","author":"Martinez Matias","year":"2018","unstructured":"Matias Martinez and Martin Monperrus. 2018. Ultra-Large Repair Search Space with Automatically Mined Templates: The Cardumen Mode of Astor. In Search-Based Software Engineering -10th International Symposium, SSBSE 2018, Montpellier, France, September 8-9, 2018, Proceedings (Lecture Notes in Computer Science, Vol. 11036), Thelma Elita Colanzi and Phil McMinn (Eds.). Springer, 65-86."},{"key":"e_1_2_1_45_1","first-page":"6","article-title":"Curating GitHub for engineered software projects","volume":"22","author":"Munaiah Nuthan","year":"2017","unstructured":"Nuthan Munaiah, Steven Kroh, Craig Cabrey, and Meiyappan Nagappan. 2017. Curating GitHub for engineered software projects. Empirical Softw. Engg. 22, 6 (Dec. 2017), 3219-3253.","journal-title":"Empirical Softw. Engg."},{"key":"e_1_2_1_46_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-81645-2_10"},{"key":"e_1_2_1_47_1","doi-asserted-by":"publisher","DOI":"10.1145\/2666620.2666632"},{"key":"e_1_2_1_48_1","unstructured":"Yuqing Niu Jieke Shi Ruidong Han Ye Liu Chengyan Ma Yunbo Lyu and David Lo. 2026. What You Trust Is Insecure: Demystifying How Developers (Mis)Use Trusted Execution Environments in Practice. arXiv:2512.17363 [cs.SE]"},{"key":"e_1_2_1_49_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2020.2978346"},{"key":"e_1_2_1_50_1","unstructured":"Abhik Roychoudhury. 2025. Agentic AI for Software: thoughts from Software Engineering community. arXiv:2508.17343 [cs.SE]"},{"key":"e_1_2_1_51_1","volume-title":"2025 IEEE\/ACM 47th International Conference on Software Engineering (ICSE). 963-974","author":"Ruan Haifeng","year":"2025","unstructured":"Haifeng Ruan, Yuntong Zhang, and Abhik Roychoudhury. 2025. SpecRover: Code Intent Extraction via LLMs. In 2025 IEEE\/ACM 47th International Conference on Software Engineering (ICSE). 963-974."},{"key":"e_1_2_1_52_1","volume-title":"Understanding Trust Relationships in Cloud- Based Confidential Computing. In 2024 IEEE European Symposium on Security and Privacy Workshops (EuroS&PW). 169-176","author":"Scopelliti Gianluca","year":"2024","unstructured":"Gianluca Scopelliti, Christoph Baumann, and Jan Tobias M\u00fchlberg. 2024. Understanding Trust Relationships in Cloud- Based Confidential Computing. In 2024 IEEE European Symposium on Security and Privacy Workshops (EuroS&PW). 169-176."},{"key":"e_1_2_1_53_1","doi-asserted-by":"publisher","DOI":"10.1145\/3453483.3454051"},{"key":"e_1_2_1_54_1","article-title":"Vulnerability Repair via Concolic Execution and Code Mutations","volume":"34","author":"Shariffdeen Ridwan","year":"2025","unstructured":"Ridwan Shariffdeen, Christopher S. Timperley, Yannic Noller, Claire Le Goues, and Abhik Roychoudhury. 2025. Vulnerability Repair via Concolic Execution and Code Mutations. ACM Trans. Softw. Eng. Methodol. 34, 4, Article 105 (April 2025), 27 pages.","journal-title":"ACM Trans. Softw. Eng. Methodol."},{"key":"e_1_2_1_55_1","volume-title":"Research Report","author":"Sharma Raksha","year":"2033","unstructured":"Raksha Sharma. 2024. Trusted Execution Environment Market Research Report 2033. https:\/\/2.zoppoz.workers.dev:443\/https\/growthmarketreports. com\/report\/trusted-execution-environment-market"},{"key":"e_1_2_1_56_1","volume-title":"Automatically Fixing C Buffer Overflows Using Program Transformations. In 2014 44th Annual IEEE\/IFIP International Conference on Dependable Systems and Networks. 124-135","author":"Shaw Alex","year":"2014","unstructured":"Alex Shaw, Dusten Doggett, and Munawar Hafiz. 2014. Automatically Fixing C Buffer Overflows Using Program Transformations. In 2014 44th Annual IEEE\/IFIP International Conference on Dependable Systems and Networks. 124-135."},{"key":"e_1_2_1_57_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2020.3047813"},{"key":"e_1_2_1_58_1","unstructured":"The KLEE Team. 2026. KLEE -klee-se.org. https:\/\/2.zoppoz.workers.dev:443\/https\/klee-se.org\/."},{"key":"e_1_2_1_59_1","unstructured":"TrustedFirmware.org. 2023. About OP-TEE. https:\/\/2.zoppoz.workers.dev:443\/https\/optee.readthedocs.io\/en\/latest\/general\/about.html"},{"key":"e_1_2_1_60_1","doi-asserted-by":"publisher","DOI":"10.1145\/3340544"},{"key":"e_1_2_1_61_1","doi-asserted-by":"publisher","DOI":"10.1007\/s11416-021-00391-1"},{"key":"e_1_2_1_62_1","doi-asserted-by":"publisher","DOI":"10.1145\/3611643.3616271"},{"key":"e_1_2_1_63_1","volume-title":"The Plastic Surgery Hypothesis in the Era of Large Language Models. In 2023 38th IEEE\/ACM International Conference on Automated Software Engineering (ASE). 522-534","author":"Xia Chunqiu Steven","year":"2023","unstructured":"Chunqiu Steven Xia, Yifeng Ding, and Lingming Zhang. 2023. The Plastic Surgery Hypothesis in the Era of Large Language Models. In 2023 38th IEEE\/ACM International Conference on Automated Software Engineering (ASE). 522-534."},{"key":"e_1_2_1_64_1","volume-title":"Automated Program Repair in the Era of Large Pretrained Language Models. In 2023 IEEE\/ACM 45th International Conference on Software Engineering (ICSE). 1482-1494","author":"Xia Chunqiu Steven","year":"2023","unstructured":"Chunqiu Steven Xia, Yuxiang Wei, and Lingming Zhang. 2023. Automated Program Repair in the Era of Large Pretrained Language Models. In 2023 IEEE\/ACM 45th International Conference on Software Engineering (ICSE). 1482-1494."},{"key":"e_1_2_1_65_1","doi-asserted-by":"publisher","DOI":"10.1145\/3540250.3549101"},{"key":"e_1_2_1_66_1","unstructured":"Chunqiu Steven Xia and Lingming Zhang. 2023. Conversational Automated Program Repair. arXiv:2301.13246 [cs.SE]"},{"key":"e_1_2_1_67_1","doi-asserted-by":"publisher","DOI":"10.1145\/3650212.3680323"},{"key":"e_1_2_1_68_1","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2016.2560811"},{"key":"e_1_2_1_69_1","volume-title":"Delegating Verification for Remote Attestation Using TEE. In 2024 IEEE European Symposium on Security and Privacy Workshops (EuroS&PW). 186-192","author":"Yagawa Takashi","year":"2024","unstructured":"Takashi Yagawa, Tadanori Teruya, Kuniyasu Suzaki, and Hirotake Abe. 2024. Delegating Verification for Remote Attestation Using TEE. In 2024 IEEE European Symposium on Security and Privacy Workshops (EuroS&PW). 186-192."},{"key":"e_1_2_1_70_1","volume-title":"Proceedings of the 37th IEEE\/ACM International Conference on Automated Software Engineering","author":"Ye He","year":"2023","unstructured":"He Ye, Matias Martinez, Xiapu Luo, Tao Zhang, and Martin Monperrus. 2023. SelfAPR: Self-supervised Program Repair with Test Execution Diagnostics. In Proceedings of the 37th IEEE\/ACM International Conference on Automated Software Engineering (Rochester, MI, USA) (ASE '22). Association for Computing Machinery, New York, NY, USA, Article 92, 13 pages."},{"key":"e_1_2_1_71_1","doi-asserted-by":"publisher","DOI":"10.1145\/3510003.3510222"},{"key":"e_1_2_1_72_1","volume-title":"PATCHAGENT: A Practical Program Repair Agent Mimicking Human Expertise. In 34th USENIX Security Symposium, USENIX Security 2025","author":"Yu Zheng","year":"2025","unstructured":"Zheng Yu, Ziyi Guo, Yuhang Wu, Jiahao Yu, Meng Xu, Dongliang Mu, Yan Chen, and Xinyu Xing. 2025. PATCHAGENT: A Practical Program Repair Agent Mimicking Human Expertise. In 34th USENIX Security Symposium, USENIX Security 2025, Seattle, WA, USA, August 13-15, 2025, Lujo Bauer and Giancarlo Pellegrino (Eds.). USENIX Association, 4381-4400."},{"key":"e_1_2_1_73_1","article-title":"A Survey of Learning-based Automated Program Repair","volume":"33","author":"Zhang Quanjun","year":"2023","unstructured":"Quanjun Zhang, Chunrong Fang, Yuxiang Ma, Weisong Sun, and Zhenyu Chen. 2023. A Survey of Learning-based Automated Program Repair. ACM Trans. Softw. Eng. Methodol. 33, 2, Article 55 (Dec. 2023), 69 pages.","journal-title":"ACM Trans. Softw. Eng. Methodol."},{"key":"e_1_2_1_74_1","unstructured":"Quanjun Zhang Chunrong Fang Yang Xie YuXiang Ma Weisong Sun Yun Yang and Zhenyu Chen. 2024. A Systematic Literature Review on Large Language Models for Automated Program Repair. arXiv:2405.01466 [cs.SE]"},{"key":"e_1_2_1_75_1","article-title":"EffFix: Efficient and Effective Repair of Pointer Manipulating Programs","volume":"34","author":"Zhang Yuntong","year":"2025","unstructured":"Yuntong Zhang, Andreea Costea, Ridwan Shariffdeen, Davin McCall, and Abhik Roychoudhury. 2025. EffFix: Efficient and Effective Repair of Pointer Manipulating Programs. ACM Trans. Softw. Eng. Methodol. 34, 3, Article 69 (Feb. 2025), 27 pages.","journal-title":"ACM Trans. Softw. Eng. Methodol."},{"key":"e_1_2_1_76_1","doi-asserted-by":"publisher","DOI":"10.1145\/3650212.3680384"},{"key":"e_1_2_1_77_1","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3363205"},{"key":"e_1_2_1_78_1","first-page":"3","article-title":"A survey of Intel SGX and its applications","volume":"15","author":"Zheng Wei","year":"2021","unstructured":"Wei Zheng, Ying Wu, Xiaoxue Wu, Chen Feng, Yulei Sui, Xiapu Luo, and Yajin Zhou. 2021. A survey of Intel SGX and its applications. Front. Comput. Sci. 15, 3 (June 2021), 15 pages.","journal-title":"Front. Comput. Sci."},{"key":"e_1_2_1_79_1","volume-title":"Proceedings of the IEEE\/ACM 46th International Conference on Software Engineering","author":"Zhou Xin","year":"2024","unstructured":"Xin Zhou, Kisub Kim, Bowen Xu, Donggyun Han, and David Lo. 2024. Out of Sight, Out of Mind: Better Automatic Vulnerability Repair by Broadening Input Ranges and Sources. In Proceedings of the IEEE\/ACM 46th International Conference on Software Engineering (Lisbon, Portugal) (ICSE '24). Association for Computing Machinery, New York, NY, USA, Article 88, 13 pages."},{"key":"e_1_2_1_80_1","doi-asserted-by":"publisher","DOI":"10.1145\/3468264.3468544"},{"key":"e_1_2_1_81_1","volume-title":"Tare: Type-Aware Neural Program Repair. In 2023 IEEE\/ACM 45th International Conference on Software Engineering (ICSE). 1443-1455","author":"Zhu Qihao","year":"2023","unstructured":"Qihao Zhu, Zeyu Sun, Wenjie Zhang, Yingfei Xiong, and Lu Zhang. 2023. Tare: Type-Aware Neural Program Repair. In 2023 IEEE\/ACM 45th International Conference on Software Engineering (ICSE). 1443-1455."}],"container-title":["Proceedings of the ACM on Software Engineering"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/dl.acm.org\/doi\/pdf\/10.1145\/3808207","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,6,30]],"date-time":"2026-06-30T18:58:43Z","timestamp":1782845923000},"score":1,"resource":{"primary":{"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/dl.acm.org\/doi\/10.1145\/3808207"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,6,30]]},"references-count":81,"journal-issue":{"issue":"FSE","published-print":{"date-parts":[[2026,6,30]]}},"alternative-id":["10.1145\/3808207"],"URL":"https:\/\/2.zoppoz.workers.dev:443\/https\/doi.org\/10.1145\/3808207","relation":{},"ISSN":["2994-970X"],"issn-type":[{"value":"2994-970X","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026,6,30]]}}}