A Formal Framework for State Continuity of Protected Modules | IEEE Conference Publication | IEEE Xplore