1. [Publications](/publications)
2. ShareMMU: Supporting Secure Address Translation Sharing among Untrusted Accelerators

 # ShareMMU: Supporting Secure Address Translation Sharing among Untrusted Accelerators

  ![](/sites/default/files/styles/wide/public/publications/ThreatModel.png?itok=z9F6KRZ4)

 The growing demand for accelerated computing is driving widespread deployment of multi-accelerator systems in the cloud and at the edge. These systems are temporally shared across processes that may not mutually trust one another and often include large pools of third-party, untrusted accelerators operating within a shared virtual address space. Due to the limited capability of the Input-Output Memory Management Unit (IOMMU) in supporting address translation, SoC designers are integrating large Shared Translation Lookaside Buffers (TLBs) that serve many accelerators and processes. While effective for performance, shared TLBs introduce new security risks that require urgent and careful consideration. This paper presents ShareMMU, an IOMMU design that securely enables reuse of pre-translated addresses across multiple untrusted accelerators while also mitigating potential side channels in the shared TLB. Compared to state-of-the-art mechanisms like Border Control and CryptoMMU, which incur 32% and 17% performance overhead, respectively, ShareMMU incurs a negligible 1.66% performance overhead relative to an unsecured baseline. Our side-channel resilient variant, ShareMMU-SP, incurs roughly 2.82% overhead.

 ## Authors

Faiz Alam (Granular Labs)

[Mohamed Tarek Ibn Ziad](/person/mohamed-tarek-ibn-ziad)

Yuanchao Xu (University of California, Santa Cruz)

Abdulrahman Mahmoud (MBZUAI)

Greg Byrd (North Carolina State University)

[Aamer Jaleel](/person/aamer-jaleel)

 ## Publication Date

Tuesday, September 15, 2026

 ## Published in

[59th IEEE/ACM International Symposium on Microarchitecture (MICRO)](https://www.microarch.org/micro59/)

 ## Research Area

[Computer Architecture](/research-area/computer-architecture)

[Security](/research-area/security)

 ## Uploaded Files

[ShareMMU\_MICRO26\_Camera\_Ready.pdf](https://d1qx31qr3h6wln.cloudfront.net/publications/ShareMMU_MICRO26_Camera_Ready.pdf?VersionId=5BjALNe5CpmAmE5xIkXa6I31Ml7zg1ZO "Open file in new window")961.81 KB

 ## Copyright

This material is posted here with permission of the IEEE. Internal or personal use of this material is permitted. However, permission to reprint/republish this material for advertising or promotional purposes or for creating new collective works for resale or redistribution must be obtained from the IEEE by writing to <pubs-permissions@ieee.org>.
