FUsing Hybrid Remote Attestation with a Formally Verified Microkernel: Lessons Learned | IEEE Conference Publication | IEEE Xplore