arXiv:2601.07004cs.CRcs.AI2026-01被引 4

构建零信任架构,让AI记忆系统既安全又可协作。

MemTrust: A Zero-Trust Architecture for Unified AI Memory System

  • 用五层抽象+可信执行环境实现全链路防护
  • 支持跨应用共享且访问模式加密防侧漏
  • 适合注重隐私的AI记忆系统开发者

AI记忆系统正朝统一上下文层演进,以支持跨代理协作和多工具工作流,提升用户数据积累与偏好学习效率。但中心化架构引发信任危机:用户需将敏感记忆数据交由云服务商管理。我们识别出个性化需求与数据主权间的根本矛盾:中心化虽利于协作,却暴露用户数据;私有部署虽安全,却限制协同。为此,目标是在保持本地安全等效的前提下,实现更优的维护效率与协作能力。提出五层架构(存储、提取、学习、检索、治理),通过TEE技术对每层进行保护,构建可信框架。在此基础上设计MemTrust——一种基于硬件的零信任架构,提供全层密码学保障。贡献包括五层抽象、跨应用共享协议‘Context from MemTrust’、抗侧信道检索及全面安全分析。该架构使第三方开发者可低成本迁移现有系统,实现系统级可信。我们认为AI记忆是提升智能体效率与协作的核心基础设施,而MemTrust将成为通用可信框架,助力打造‘记忆的基础设施’。

原文摘要 · Abstract (English)

AI memory systems are evolving toward unified context layers that enable efficient cross-agent collaboration and multi-tool workflows, facilitating better accumulation of personal data and learning of user preferences. However, centralization creates a trust crisis where users must entrust cloud providers with sensitive digital memory data. We identify a core tension between personalization demands and data sovereignty: centralized memory systems enable efficient cross-agent collaboration but expose users' sensitive data to cloud provider risks, while private deployments provide security but limit collaboration. To resolve this tension, we aim to achieve local-equivalent security while enabling superior maintenance efficiency and collaborative capabilities. We propose a five-layer architecture abstracting common functional components of AI memory systems: Storage, Extraction, Learning, Retrieval, and Governance. By applying TEE protection to each layer, we establish a trustworthy framework. Based on this, we design MemTrust, a hardware-backed zero-trust architecture that provides cryptographic guarantees across all layers. Our contributions include the five-layer abstraction, "Context from MemTrust" protocol for cross-application sharing, side-channel hardened retrieval with obfuscated access patterns, and comprehensive security analysis. The architecture enables third-party developers to port existing systems with acceptable development costs, achieving system-wide trustworthiness. We believe that AI memory plays a crucial role in enhancing the efficiency and collaboration of agents and AI tools. AI memory will become the foundational infrastructure for AI agents, and MemTrust serves as a universal trusted framework for AI memory systems, with the goal of becoming the infrastructure of memory infrastructure.

AI记忆零信任可信执行

Thank you to arXiv for use of its open access interoperability. PaperDance 不是 arXiv 官方产品;中文卡片由大模型生成,请以原文为准。