Skip to content

jyao1/pub

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

2 Commits
 
 

Repository files navigation

姚颉文 (Jiewen Yao)

email: jiewen.yao@intel.com

github: https://github.com/jyao1

(ISC)2 Member ID: 755030. Certification for Information System Security Professional (CISSP), 2020.

ORCID: https://orcid.org/0000-0003-1944-3277

Education

  • September 2002 ~ June 2004, Master of Engineering (M.Eng.) in Software Engineering, Shanghai Jiaotong University, China.
  • September 1996 ~ June 2001, Bachelor of Medicine (B.M.) in Clinic Medicine, Fudan University, China.

Employment History

  • 2018 ~ current, Principal Engineer
    • Position: UEFI Firmware Security Architect, Intel TDX Software Architect
    • Primary interest is firmware security, secure boot, trusted computing, confidential computing, device attestation, post-quantum cryptography application in embedded environment.
  • 2013 ~ 2017, Staff Engineer
  • July 2004 ~ 2012, Firmware Engineer
  • July 2003 ~ June 2004, Intern

Shanghai Tissue Engineering Research Center, affiliated to Shanghai Ninth People's hospital

  • July 2001 ~ April 2002, Technician

Industry Activity

Award

Standard Contribution

  • Shim Firmware Architect, 2021
  • TD-SHIM Specification, 2022 (main contribution: shim firmware interface definition)

Intel

Opensource Project

Tianocore

DMTF

  • libspdm - initiator and project maintainer, (2020~present)
    • The SPDM sample implementation in C.
  • spdm-emu - initiator and project maintainer, (2020~present)
    • The SPDM emulator in OS environment.
  • spdm-dump - initiator and project maintainer, (2020~present)
    • The SPDM protocol dump tool for SPDM packet analysis.
  • SPDM-Responder-Validator - initiator and project maintainer, (2022~present)
    • The SPDM Responder device validation utility.

Confidential Computing Consortium (CCC)

  • spdm-rs - initiator and project maintainer, (2023~present)
    • The SPDM sample implementation in Rust language, also include IDE_KM, TDISP support.

Confidential Container (CoCo)

  • td-shim - initiator and project maintainer, (2021~present)
    • A shim firmware for Intel TDX in confidential VM.

Intel TDX / TDX Connect

  • MigTD - initiator and project maintainer, (2022~present)
    • Migration TD for Intel TDX Live Migrtion.
  • vtpm-td - initiator and project maintainer, (2022~present)
    • TD based virtual TPM for Intel TDX.
  • tee-io-validator - initiator and project maintainer, (2024~present)
    • The TEE-IO device validation utility.
  • tdp-vtpm - initiator and feature maintainer, (2024~present)
    • Coconut-SVSM TD-Partitioning based virtual TPM for Intel TDX.

Publication

Book (1)

Paper (4)

Tech Report / White Paper (27)

Conference Talk (22)

Patent (60)

  • Jiewen Yao, Shamanna Datta, Mehesh Natu, Xiaoyu Ruan, Andrew Draper, Raghunandan Makaram, Alberto Munoz, "Implementation of device seamless update with pre-authorization policy in trusted execution environment", WO2024040509A1
  • Murugasamy Nachimuthu, Jiewen Yao, "Memory preserved warm reset mechanism", WO2024040508A1
  • Jiewen Yao, Vedvyas Shanbhogue, Ravi Sahita, "Virtual microcontroller for device authentication in a confidential computing environment", WO2023230836A1
  • Jiewen Yao, Subrata Banik, Rajesh Poornachandran, Vincent Zimmer, "Confidential compute architecture for silicon initialization for ip protection and assurance", WO2023230834A1
  • Arie Aharon, Jiewen Yao, "Secure shared memory buffer for communications between trusted execution environment virtual machines", WO2023191895A1
  • Ravi Sahita, Jiewen Yao, "Techniques to implement mutual authentication for confidential computing", WO2023184291A1
  • Ravi Sahita, Jiewen Yao, Utkarsh Y. Kakaiya, "Techniques to implement confidential computing with a remote device via use of trust domains", WO2023184203A1
  • Shamanna Datta, Mahesh Natu, Jiewen Yao, Xiaoyu Ruan, Andrew Martyn Draper, Raghunandan Makaram, Alberto Munoz, "Device runtime update pre-authentication", WO2023159458A1
  • Jiewen Yao, Vedvyas Shanbhogue, Ravi Sahita, "Circuitry and methods for implementing a trusted execution environment security manager", WO2023115248A1
  • Utkarsh Y. Kakaiya, Jiewen Yao, "Device Security Manager Architecture For Trusted Execution Environment Input/Output (TEE-IO) Capable System-On-A-Chip Integrated Devices", US20230289433A1, 20230289433
  • Jiewen Yao, Vincent Zimmer, "System Management Mode Runtime Resiliency Manager", US20230013235A1, 20230013235
  • Fumin Lu, Hong Pu, Lei Wang, Jiewen Yao, "Offloading reliability, availability and serviceability runtime system management interrupt error handling to cpu on-die modules", WO2022099531A1
  • Jiewen Yao, Hong Pu, Ye Li, Jun Dong, Fumin Lu, "Offloading processor memory training to on-die controller module", WO2022032508A1
  • Jiewen Yao, David Harriman, Xiaoyu Ruan, Mahesh Natu, "Method To Support PCI Device Having Multiple SPDM Secure Sessions With Different Security Policies For Each Security Domain By Virtualized Data Object Exchange", US20220179961A1, 20220179961
  • Sarathy Jayakumar, Jiewen Yao, Murugasamy Nachimuthu, Ruixia Li, Siyuan Fu, Chuan Song, Wei Xu, "Seamless System Management Mode Code Injection", US20210365559A1, 20210365559
  • Murugasamy K. Nachimuthu, Ruixia Li, Siyuan Fu, Jiewen Yao, Wei Xu, "System And Method To Provide SMM Runtime Telemetry Support", US20210208869A1, 20210208869
  • Sarathy Jayakumar, Yao Jiewen, Murugasamy K Nachimuthu, Ruixia Li, Siyuan Fu, "Seamless SMM Global Driver Update Base On SMM Root Of Trust", US20210141903A1, 20210141903
  • Jiewen Yao, Vincent J. Zimmer, "Manageability Engine And Automatic Firmware Validation", 20200387611
  • Vincent Zimmer, Jiewen Yao, "Firmware Component With Self-Descriptive Dependency Information", US11249748, 20200310788, 20240168754
  • Kirk D. Brannock, Jiewen Yao, "Smm Protection Utilizing Ring Separation And SMI Isolation", 20190156015
  • Jiewen Yao, Rangasai V. Chaganty, Xiang Ma, Ravi Poovalur Rangarajan, Rajesh Poornachandran, Nivedita Aggarwal, Giri P. Mudusuru, Vincent J. Zimmer, Satya P. Yarlagadda, Amy Chan, Sudeep Das, "Enhanced secure boot", US10885199, US11354417, 20190370470, 20210124829
  • Jiewen Yao, Vincent J. Zimmer, Wei Li, Rajesh Poornachandran, Giri P. Mudusuru, "Techniques for coordinating device boot security", US10747884, 20180341774
  • Jiewen Yao, Vincent J. Zimmer, Rajesh Poornachandran, "Computing apparatus and method with persistent memory", US10664573, 20180144105
  • Rangasai V. Chaganty, Vincent Zimmer, Satya P. Yarlagadda, Giri P. Mudusuru, Jiewen Yao, Xiang Ma, Ravi Rangarajan, "Methods, systems and apparatus to improve boot efficiency", US10635607, 20180004534
  • Michael A. Rothman, Vincent J. Zimmer, Giri P. Mudusuru, Jiewen Yao, Jie Lin, "Technology to facilitate rapid booting with high-speed and low-speed nonvolatile memory", US10474473, 20180293080
  • Michael A. Rothman, Vincent J. Zimmer, Jiewen Yao, "Streamlined physical restart of servers method and apparatus", US10394295, 20180335816
  • Vincent J. Zimmer, Jiewen Yao, Sarathy Jayakumar, Robert C. Swanson, Rajesh Poornachandran, Gopinatth Selvaraje, Mingqiu Sun, John S. Howard, Eugene Gorbatov, "Execution context migration method and apparatus", US10372491, 20180046502
  • Jiewen Yao, Vincent Zimmer, Nicholas Adams, Willard Wiseman, Giri Mudusuru, Nuo Zhang, "Controlled customization of silicon initialization", US10310865, US11068276, 20170003976, 20190286450
  • Jiewen Yao, Vincent J. Zimmer, Bassam N. Coury, "Secure communication channel for system management mode", US10776524, 20180322313
  • Jiewen Yao, Michael A Rothman, Vincent J. Zimmer, "Techniques to maintain memory confidentiality through power state changes", WO2018176388
  • Jiewen Yao, Vincent J. Zimmer, "Extended memory for smm transfer monitor", WO2018058566
  • Jiewen Yao, Vincent J. Zimmer, Rajesh Poornachandran, "Drone proximity charging", US20210039781, 20210039781
  • Jiewen Yao, Vincent J. Zimmer, Rajesh Poornachandran, "Technologies for fast unmanned aerial vehicle state migration using a trusted execution environment", WO2018165981
  • Jiewen Yao, Vincent J. Zimmer, Roy Hopkins, David Webb, Qian Ouyang, Hao Wu, "Apparatuses and methods for preboot voice authentication", WO2017166264
  • Vincent J. Zimmer, Igor Muttik, Rajesh Poornachandran, Jiewen Yao, Mohan Atreya, Gopinatth Selvaraje, "Encryption key retrieval", US9525675, 20160191481
  • Brian Cockrell, Jacob J. Gauthier, Jiewen Yao, Vincent J. Zimmer, Elmer A. Amaya, "Policy-based secure web boot", US10205750, 20140282815
  • Ulf R. Hanebutte, Jiewen Yao, Vincent J. Zimmer, "Computing devices methods and storage media for a sensor layer and sensor usages in an operating system-absent environment", US10169047, 20160216974
  • Jiewen Yao, Vincent J. Zimmer, Brian S. Payne, Nicholas J. Adams, "Hardware configuration reporting systems", US9870475, 20160292423
  • Jiewen Yao, Vincent J. Zimmer, Nicholas J. Adams, Willard M. Wiseman, Qin Long, Shihui Li, "Trusted boot and runtime operation", US9384352, 20150095633
  • Willard Monty Wiseman, Kirk Brannock, Brian Delgado, Jiewen Yao, Vincent Zimmer, "Isolated Guest Creation In A Virtualized Computing System", WO2014043884, 20140229942
  • Qin Long, Ting Ye, Vincent Zimmer, Jiewen Yao, "Method apparatus system and machine readable storage medium for providing software security", US9323541, 20140250293
  • Jiewen Yao, Vincent Zimmer, "Mechanism to support reliability availability and serviceability (RAS) flows in a peer monitor", US9311177, 20150186322
  • Jiewen Yao, Chuan Song, Haili Zhang, Wenlong Yang, "Method apparatus and system of recovering an operating system on a portable communication device", US9270339, 20140065958
  • Guo Dong, Jiewen Yao, Vincent J. Zimmer, Michael A. Rothman, "Security co-processor boot performance", US9223983, US9563775, 20150220738, 20160188881
  • Jiewen Yao, Vincent J. Zimmer, "Computing device boot software authentication", US9141802, US9589138, 20140089651, 20160110546
  • Qian Ouyang, Yang Cong, Jiewen Yao, Vincent J. Zimmer, "Methods and apparatus for displaying video despite a nonfunctional operating system", US8832494, 20140146183
  • Vincent Zimmer, Mohan Kumar, Mahesh Natu, Jiewen Yao, Qin Long, Liang Cui, "System and method to secure boot both UEFI and legacy option ROM's with common policy engine", US8694761, 20100169633
  • Jiewen Yao, Vincent J. Zimmer, "Method and system for securing application program interfaces in unified extensible firmware interface", US8635664, 20090172797
  • Vincent J. Zimmer, Jiewen Yao, "Bios routine avoidance", US8458726, 20090144754
  • Jiewen Yao, Liang Cui, Qin Long, Vincent J. Zimmer, "Enabling byte-code based image isolation", US8327415, 20090300370
  • Vincent J. Zimmer, Jiewen Yao, "Method and apparatus for sequential hypervisor invocation", US8321931, 20090249053
  • Jiewen Yao, Hua Shao, "Pre-boot environment power management", US8230237, 20090150660
  • Vincent J. Zimmer, Jiewen Yao, "System management mode inter-processor interrupt redirection", US8151027, 20100262743, 20120159028
  • Jiewen Yao, Ned McArthur Smith, Vincent J. Zimmer, Qin Long, "Authentication for resume boot path", US8086839, 20100169631
  • Vincent J. Zimmer, Mohan Kumar, Mahesh Natu, Qin Long, Liang Cui, Jiewen Yao, "Apparatus and method for secure boot environment", US7984286, 20090327684
  • Jiewen Yao, Vincent J. Zimmer, Kunye Zhu, "Remote firmware recovery", US7865775, 20090249120
  • Jiewen Yao, Vincent J. Zimmer, Qin Long, Liang Cui, "Method for isolating third party pre-boot firmware from trusted pre-boot firmware", US7827371, 20090063835
  • Liang Cui, Qin Long, Vincent J. Zimmer, Jiewen Yao, "Method and System for Secure Booting Unified Extensible Firmware Interface Executables", EP2141625, 20100083002
  • Sean Shang, Hua Fang, Jiewen Yao, Vincent J. Zimmer, Qin Long, Jiong Gong, Ruiyu Ni, Michael A. Rothman, "Method and Systems to Display Platform Graphics During Operating System Initialization", EP2479666, 20100079472
  • Jiewen Yao, Vincent J. Zimmer, Qin Long, "System management mode isolation in firmware", 20090119748

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published