<?xml version='1.0' encoding='utf-8'?>
<!DOCTYPE rfc [
  <!ENTITY nbsp    "&#160;">
  <!ENTITY zwsp   "&#8203;">
  <!ENTITY nbhy   "&#8209;">
  <!ENTITY wj     "&#8288;">
]>
<?xml-stylesheet type="text/xsl" href="rfc2629.xslt" ?>
<!-- generated by https://github.com/cabo/kramdown-rfc version 1.7.39 (Ruby 3.4.9) -->
<rfc xmlns:xi="http://www.w3.org/2001/XInclude" ipr="trust200902" docName="draft-intra-handshake-fail-14" category="info" submissionType="IETF" tocInclude="true" sortRefs="true" symRefs="true" version="3">
  <!-- xml2rfc v2v3 conversion 3.34.0 -->
  <front>
    <title abbrev="Intra-handshake Attestation Considered Harmful">Intra-handshake (aka Early) Attestation Considered Harmful (CVE-2026-33697 of CVSS 7.5 and several other CVEs of up to expected CVSS 9.8 upcoming)</title>
    <seriesInfo name="Internet-Draft" value="draft-intra-handshake-fail-14"/>
    <author fullname="Muhammad Usama Sardar">
      <organization>TU Dresden, Germany</organization>
      <address>
        <email>muhammad_usama.sardar@tu-dresden.de</email>
      </address>
    </author>
    <author fullname="Songbo Bu">
      <organization>Shanghai Guan An Information Technology Co., Ltd., China</organization>
      <address>
        <email>bluedognull@gmail.com</email>
      </address>
    </author>
    <author fullname="Chengxin Huang">
      <organization>Independent</organization>
      <address>
        <email>aurestarnull@gmail.com</email>
      </address>
    </author>
    <author fullname="Haowen Song">
      <organization>Shanghai Guan An Information Technology Co., Ltd., China</organization>
      <address>
        <email>havan12050544@gmail.com</email>
      </address>
    </author>
    <author fullname="Kaya Ercihan">
      <organization>Switch</organization>
      <address>
        <email>kaya.ercihan@switch.ch</email>
      </address>
    </author>
    <author fullname="Iman Schrock">
      <organization>EMILIA Protocol, Inc.</organization>
      <address>
        <email>team@emiliaprotocol.ai</email>
      </address>
    </author>
    <date year="2026" month="August" day="27"/>
    <workgroup>SEAT</workgroup>
    <keyword>AI agents</keyword>
    <keyword>Intra-handshake attestation</keyword>
    <keyword>CVE-2026-33697</keyword>
    <abstract>
      <?line 119?>

<t>The draft aims to provide technical details of <eref target="https://www.cve.org/CVERecord?id=CVE-2026-33697">CVE-2026-33697</eref> and <eref target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-16488">EUVD-2026-16488</eref>, which is substantial technical evidence of how <strong>intra</strong>-handshake attestation fails in practice, even <em>without physical access</em>. Moreover, since continuous attestation is generally required, <strong>intra</strong>-handshake attestation adds <strong>unnecessary complexity</strong>. The results are backed by the research <xref target="Intra-handshake.fail"/> and the artifacts <xref target="Intra-handshake.fail-repo"/> in state-of-the-art formal analysis tool, ProVerif, under Apache-2.0 license for reproducibility, and have been acknowledged by the relevant stakeholders.</t>
    </abstract>
    <note removeInRFC="true">
      <name>About This Document</name>
      <t>
        The latest revision of this draft can be found at <eref target="https://muhammad-usama-sardar.github.io/intra-handshake-fail/draft-intra-handshake-fail.html"/>.
        Status information for this document may be found at <eref target="https://datatracker.ietf.org/doc/draft-intra-handshake-fail/"/>.
      </t>
      <t>Source for this draft and an issue tracker can be found at
        <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail"/>.</t>
    </note>
  </front>
  <middle>
    <?line 123?>

<section anchor="introduction">
      <name>Introduction</name>
      <t><xref target="Intra-handshake.fail"/> presents a general approach to analyze the intra-handshake attestation proposals, regardless of whether they are within the scope of SEAT charter or not. From a security perspective, one of the key decision factors is the candidate binding mechanism. Some binding mechanisms are within scope of SEAT charter and others are not. The artifacts are in <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 license for reproducibility and extensibility.</t>
      <t>A <strong>complementary</strong> paper <xref target="ID-Crisis"/> presents the identity crisis in pre- and intra-handshake attestation. The formal analysis is available in <xref target="ID-Crisis-repo"/> under Apache-2.0 license for reproducibility and extensibility.</t>
      <t>Another complementary paper -- currently under submission -- performs a thorough formal analysis of the design options in intra-handshake attestation.</t>
      <section anchor="overview">
        <name>Overview</name>
        <t>This draft presents the formal specification and analysis of the candidate binding mechanisms for binding in intra-handshake attestation for standardization for attested TLS protocols:</t>
        <table>
          <name>Binding mechanisms, implementations and ProVerif artifacts</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Used in</th>
              <th align="left">Artifacts</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">
                <eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MarkusRudy.contrast-atls-ccc-attestation.pdf">Edgeless Systems Contrast</eref>; <eref target="https://www.sns-itrust6g.com/wp-content/uploads/2025/12/Webinar-Architecting-Trust-CONFIDENTIAL6G.pdf">Cocos AI</eref>;  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <xref target="I-D.fossati-tls-attestation-06"/></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7">binder7</eref></td>
            </tr>
          </tbody>
        </table>
        <artwork><![CDATA[
We provide a formal proof of insecurity of all the above candidate
binding mechanisms of intra-handshake attestation using the
state-of-the-art tool ProVerif and propose a mitigation for the
discovered security vulnerabilities. Our study reveals that it may
not be possible to achieve strong application-traffic (level 3)
binding using intra-handshake attestation alone. This can be exploited
for relay attacks, where an attacker makes a client accept an evidence
from a different machine. So the client cannot be sure that it connects
to its desired server.
]]></artwork>
        <t>We responsibly disclosed the vulnerability in intra-handshake attestation -- as noted in <xref target="GHSA-Cocos-AI"/> issued -- to the vendors, which resulted in  <xref target="CVE-2026-33697"/> of CVSS 7.5.</t>
      </section>
      <section anchor="modeling-other-binding-mechanisms">
        <name>Modeling Other Binding Mechanisms</name>
        <t>The artifacts are quite flexible for modification and testing of different intra-handshake attestation binding mechanisms by simply changing single <tt>rdata</tt> parameter in the Client and Server processes. Folder <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/aggregate">aggregate</eref> contains all analyzed and proposed binding mechanisms in <xref target="Intra-handshake.fail"/> to select via comment and uncomment. Other folders contain one specific binding mechanism.</t>
      </section>
      <section anchor="seat-early-attestation">
        <name>SEAT-Early-Attestation</name>
        <t>The draft <xref target="I-D.fossati-seat-early-attestation"/> is an extension of the provably vulnerable (and withdrawn) draft <xref target="I-D.fossati-tls-attestation-10"/> with the following two main changes from a formal perspective:</t>
        <ol spacing="normal" type="1"><li>
            <t>Binder has been updated</t>
          </li>
          <li>
            <t>Post-handshake attestation part has been added for re-attestation</t>
          </li>
        </ol>
        <t>The current binder in <xref target="I-D.fossati-seat-early-attestation"/> does not prevent relay attacks as there is no <strong>shared secret</strong> in the binder.</t>
        <t>Post-handshake attestation part may prevent relay attacks, but then the <strong>additional complexity</strong> of intra-handshake attestation is unjustified.</t>
      </section>
    </section>
    <section anchor="credits">
      <name>Credits</name>
      <table>
        <name>GHSAs/CVEs and finders</name>
        <thead>
          <tr>
            <th align="left">GHSA/CVE</th>
            <th align="left">Finders</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-16488"/></td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI"/></td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems"/></td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">TBA</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
        </tbody>
      </table>
    </section>
    <section anchor="threat-model">
      <name>Threat Model</name>
      <t>The threat model is explained in Sec. 6.1 of <xref target="Intra-handshake.fail"/> and Sec. 4 of <xref target="ID-Crisis"/>.</t>
    </section>
    <section anchor="detailed-vulnerability-disclosure-timeline-and-public-acknowledgements-by-affected-vendors">
      <name>Detailed Vulnerability Disclosure Timeline and Public Acknowledgements by Affected Vendors</name>
      <table>
        <name>Detailed vulnerability disclosure timeline and acknowledgements</name>
        <thead>
          <tr>
            <th align="left">Event</th>
            <th align="left">Date</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">Our initial responsible disclosure to vendor</td>
            <td align="left">07 Oct, 2025</td>
          </tr>
          <tr>
            <td align="left">Acknowledgement by vendor</td>
            <td align="left">14 Dec, 2025</td>
          </tr>
          <tr>
            <td align="left">Information to the <eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">IETF</eref></td>
            <td align="left">11 Jan, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://web.archive.org/web/20260227160554/https://www.ultraviolet.rs/blog/tee-tls-privacy/">Public announcement</eref> by vendor</td>
            <td align="left">27 Feb, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>]</td>
            <td align="left">23 March, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-33697"/> published  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-16488"/>  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/rustls/releases/tag/privasys-v0.8.1">Acknowledgment</eref> by Privasys for rustls <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">9 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/go/releases/tag/privasys-v0.5.1-go1.26.5">Acknowledgment</eref> by Privasys for go <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">10 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation</eref> declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref></td>
            <td align="left">17 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation repo</eref> archived</td>
            <td align="left">22 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable draft <xref target="I-D.fossati-tls-attestation-10"/> withdrawn by authors</td>
            <td align="left">23 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">29 July, 2026</td>
          </tr>
        </tbody>
      </table>
      <t><strong>Neither the GHSAs nor the CVE has any dependency whatsoever on the considered threat model with <tt>WeakHash</tt>, <tt>WeakDH</tt>, or <tt>BadElement</tt>.</strong> They hold independent of those, i.e., with <tt>StrongHash</tt> and <tt>StrongDH</tt> and all good elements within a group.</t>
    </section>
    <section anchor="eu-enisa">
      <name>EU ENISA</name>
      <t>European Union's <eref target="https://euvd.enisa.europa.eu/homepage">ENISA</eref> has independently published <xref target="EUVD-2026-16488"/> with CVSS 7.5 to acknowledge this vulnerability.</t>
    </section>
    <section anchor="sec-cvss-scores">
      <name>Comparison with Other Vulnerabilities in Confidential Computing Literature</name>
      <t>Severity is based on <eref target="https://nvd.nist.gov/vuln-metrics/cvss">NIST metrics</eref>.</t>
      <table>
        <name>Comparison with other vulnerabilities in confidential computing literature</name>
        <thead>
          <tr>
            <th align="left">Vulnerability</th>
            <th align="left">CVE</th>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <eref target="https://wiretap.fail/files/wiretap.pdf">wiretap.fail</eref></td>
            <td align="left">No CVE (<eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2025-10-28-001.html">Intel</eref> and <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3040.html">AMD</eref> announcements)</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://tee.fail/files/paper.pdf">TEE.fail</eref></td>
            <td align="left">No CVE</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://dl.acm.org/doi/10.1145/3658644.3690230">TDXdown</eref></td>
            <td align="left">
              <eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2024-10-08-001.html">Intel</eref></td>
            <td align="left">2.5</td>
            <td align="left">Low</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/staleus/staleus_usenix26.pdf">Staleus</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-54509">CVE-2025-54509</eref></td>
            <td align="left">4.0</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-6197">CVE-2025-61972</eref></td>
            <td align="left">4.2</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://badram.eu/badram.pdf">BadRAM</eref></td>
            <td align="left">
              <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3015.html">AMD</eref></td>
            <td align="left">5.3</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-61971">CVE-2025-61971</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/fabricked/fabricked_usenix26.pdf">Fabricked</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=cve-2025-54510">CVE-2025-54510</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">Intra-handshake.fail</eref></td>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">7.5</td>
            <td align="left">High</td>
          </tr>
        </tbody>
      </table>
      <t>The comparison of the above with CVSS <strong>7.5</strong> for <xref target="Intra-handshake.fail"/> indicates that attested TLS is not mature yet compared to the rest of the confidential computing stack, and is currently one of the weakest links in the ecosystem.</t>
    </section>
    <section anchor="more-cves">
      <name>More CVEs</name>
      <t>Further formal analysis has led to the following potential CVEs for intra-handshake attestation (currently under disclosure):</t>
      <table>
        <name>Expected CVEs for intra-handshake attestation under disclosure</name>
        <thead>
          <tr>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
            <th align="left">Number of CVEs</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">9.8</td>
            <td align="left">Critical</td>
            <td align="left">1</td>
          </tr>
          <tr>
            <td align="left">9.1</td>
            <td align="left">Critical</td>
            <td align="left">2</td>
          </tr>
          <tr>
            <td align="left">8.7</td>
            <td align="left">High</td>
            <td align="left">1</td>
          </tr>
          <tr>
            <td align="left">7.5</td>
            <td align="left">High</td>
            <td align="left">2</td>
          </tr>
          <tr>
            <td align="left">7.4</td>
            <td align="left">High</td>
            <td align="left">2</td>
          </tr>
          <tr>
            <td align="left">6.3</td>
            <td align="left">Medium</td>
            <td align="left">2</td>
          </tr>
        </tbody>
      </table>
      <t>These are preliminary estimates of scores, not final assigned score. They are still under review.</t>
    </section>
    <section anchor="vulnerable-implementations">
      <name>Vulnerable Implementations</name>
      <t>At least the following implementations are vulnerable:</t>
      <ul spacing="normal">
        <li>
          <t><eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI</eref>: <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
        <li>
          <t><eref target="https://github.com/ultravioletrs/cocos">Cocos AI</eref>: <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>], <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
        <li>
          <t><eref target="https://github.com/edgelesssys/contrast">Edgeless Systems Contrast</eref>: <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</t>
        </li>
        <li>
          <t><eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref>: declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref> and <strong>archived</strong></t>
        </li>
        <li>
          <t>Privasys rustls: <eref target="https://github.com/Privasys/rustls/releases/tag/privasys-v0.8.1">Acknowledgment</eref> of applicability of <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
        <li>
          <t>Pirvasys go: <eref target="https://github.com/Privasys/go/releases/tag/privasys-v0.5.1-go1.26.5">Acknowledgment</eref> of applicability of <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
      </ul>
      <t>If you are aware of any other intra-handshake attestation implementation, please let us know so that we can check and responsibly disclose the vulnerabilities to them.</t>
    </section>
    <section anchor="vulnerable-protocol-specifications">
      <name>Vulnerable Protocol Specifications</name>
      <t>At least the following protocol specifications with intra-handshake attestation <em>path</em> are vulnerable to <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/>:</t>
      <ul spacing="normal">
        <li>
          <t><xref target="I-D.fossati-tls-attestation-09"/>: symbolic proof of insecurity; <xref target="I-D.fossati-tls-attestation-10"/> <strong>withdrawn</strong> after the CVE</t>
        </li>
        <li>
          <t><xref target="I-D.fossati-seat-early-attestation"/>: symbolic and (paper-and-pen-based) computational proof of insecurity (originally done for -04 and applies also to -06)
          </t>
          <ul spacing="normal">
            <li>
              <t>As a SEAT WG participant pointed out, please note that both <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> contain a link to <xref target="GHSA-Cocos-AI"/> that contains a link to <xref target="SEAT-vulnerability-report"/> that contains the G3 property (cf. <xref target="sec-corr-goals"/>) that this draft does not satisfy.</t>
            </li>
            <li>
              <t>Some WG participants successfully reproduced the vulnerability by substituting the right value of <tt>rdata</tt> in the shared formal model <xref target="Intra-handshake.fail-repo"/> that led to the CVE.</t>
            </li>
            <li>
              <t>An informal reasoning is that binder is not <strong>directly</strong> derived from any <strong>shared secret</strong> in this draft.</t>
            </li>
            <li>
              <t><strong>Unnecessary complexity</strong> is itself a security concern</t>
            </li>
          </ul>
        </li>
        <li>
          <t><xref target="I-D.ritz-seat-facts"/>: symbolic proof of insecurity
          </t>
          <ul spacing="normal">
            <li>
              <t>violates G3 property in our analysis</t>
            </li>
            <li>
              <t>unnecessary complexity is itself a security concern</t>
            </li>
          </ul>
        </li>
      </ul>
    </section>
    <section anchor="binding-levels">
      <name>Binding Levels</name>
      <ol spacing="normal" type="1"><li>
          <t>DH shared secret (<tt>gxy</tt>) used as shared secret between client and server</t>
        </li>
        <li>
          <t>Handshake traffic key (<tt>htsc</tt>) used for encryption of handshake messages</t>
        </li>
        <li>
          <t>Application traffic key (<tt>astc</tt>) used for encryption of application data</t>
        </li>
      </ol>
      <t>Please see Sec. 6.2 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="sec-corr-goals">
      <name>Security Properties (Correlation Goals)</name>
      <t>We consider TLS Server as RATS Attester, which is typical in confidential computing.</t>
      <ol spacing="normal" type="1"><li>
          <t>Correlation of Evidence to a DH Shared Secret (G1)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Handshake Traffic Key (G2)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Application Traffic Key (G3)</t>
        </li>
      </ol>
      <t>Please see Sec. 6.3 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="main-results">
      <name>Main Results</name>
      <ul spacing="normal">
        <li>
          <t>All analyzed binding mechanisms and the corresponding implementations of intra-handshake attestation are vulnerable to relay attacks.</t>
        </li>
        <li>
          <t>Early exporter helps achieve level 1 binding.</t>
        </li>
        <li>
          <t>Our proposed mechanism helps achieve level 2 binding.</t>
        </li>
        <li>
          <t>It may not be possible to achieve level 3 in intra-handshake attestation alone without additional assumptions.</t>
        </li>
      </ul>
      <table>
        <name>Main results</name>
        <thead>
          <tr>
            <th align="left">Property</th>
            <th align="left">Mechanism #1,2,4,6</th>
            <th align="left">Mechanism #3,5,7</th>
            <th align="left">Proposed mechanism</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">G1 : Correlation of Evidence to <tt>gxy</tt></td>
            <td align="left">❌</td>
            <td align="left">✅</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G2 : Correlation of Evidence to <tt>kch</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G3 : Correlation of Evidence to <tt>kc</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">❌</td>
          </tr>
        </tbody>
      </table>
      <t>Please see Sec. 7.1 and Figure 5 of <xref target="Intra-handshake.fail"/> for details of attacks.</t>
      <section anchor="expected-results">
        <name>Expected Results</name>
        <table>
          <name>Expected results</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Artifacts</th>
              <th align="left">Expected results</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/">binder1</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/log.txt">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/">binder2</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/log.txt">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/">binder3</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/log.txt">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/">binder4</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/log.txt">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/">binder5</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/log.txt">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/">binder6</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/log.txt">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/">binder7</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/log.txt">binder7</eref></td>
            </tr>
            <tr>
              <td align="left">8.</td>
              <td align="left">Proposed</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/">proposal</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/log.txt">proposal</eref></td>
            </tr>
          </tbody>
        </table>
      </section>
    </section>
    <section anchor="implications-of-findings">
      <name>Implications of Findings</name>
      <section anchor="implications-of-findings-for-ietf-seat-wg">
        <name>Implications of Findings for IETF SEAT WG</name>
        <ul spacing="normal">
          <li>
            <t>We believe post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>, can achieve level 3 binding.</t>
          </li>
          <li>
            <t>The research suggests that recent hybrid proposals (combination of intra-handshake attestation and post-handshake attestation) <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> may add <strong>unnecessary complexity</strong> of intra-handshake attestation without adding any security benefit compared to post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>. We are not aware of any <strong>security property</strong> that hybrid proposals can achieve that post-handshake attestation alone cannot achieve.</t>
          </li>
          <li>
            <t>As demonstrated by our symbolic analysis using ProVerif, the protocol specifications <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> remain vulnerable to CVE-2026-33697. We have also proved that <xref target="I-D.fossati-seat-early-attestation-04"/> and <xref target="I-D.fossati-seat-early-attestation"/> violate the security theorems in the computational model.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-lake-wg">
        <name>Implications of Findings for IETF LAKE WG</name>
        <ul spacing="normal">
          <li>
            <t>Similar problems occur for protocol specification <eref target="https://datatracker.ietf.org/doc/draft-ietf-lake-ra/">lake-ra</eref>.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-tls-wg">
        <name>Implications of Findings for IETF TLS WG</name>
        <ul spacing="normal">
          <li>
            <t><xref target="I-D.fossati-tls-attestation-09"/> is vulnerable to <xref target="CVE-2026-33697"/>. Thankfully, the authors have withdrawn <xref target="I-D.fossati-tls-attestation-10"/>.</t>
          </li>
          <li>
            <t>Remote attestation <em>within</em> the handshake is very dangerous, since to our knowledge, it is one of the highest scored published vulnerabilities in confidential computing literature (see <xref target="sec-cvss-scores"/>).</t>
          </li>
        </ul>
        <artwork><![CDATA[
Given the high- and critical-severity vulnerabilities, we recommend
that the developers and maintainers of intra-handshake attestation MUST
urgently move to post-handshake attestation.
]]></artwork>
      </section>
      <section anchor="implications-of-findings-for-agent2agent">
        <name>Implications of Findings for Agent2Agent</name>
        <t>From a security perspective, intra-handshake attestation does more damage than protection for AI agents.</t>
      </section>
    </section>
    <section anchor="technical-details">
      <name>Technical Details</name>
      <section anchor="tool">
        <name>Tool</name>
        <t>We use state-of-the-art symbolic security analysis tool <eref target="https://ieeexplore.ieee.org/document/9833653">ProVerif</eref> for the specification of the protocols.</t>
      </section>
      <section anchor="modeling">
        <name>Modeling</name>
        <t>The formal model uses the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work as the starting point to focus on relay attacks in intra-handshake attestation in this work.
The rationale is that we consider it more useful to show the added value of this contribution to the community by using the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> as the baseline, rather than showing the same diversion attacks from <xref target="ID-Crisis"/>, and the discovered CVE (<xref target="CVE-2026-33697"/>) -- which the previous analysis could not find -- practically demonstrates the added value.
This modeling choice makes it clear that even with the diversion attacks fixed, high-severity relay attacks would still remain in intra-handshake attestation.</t>
        <t>Note: Similar to the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work, we model non-PSK-based handshake.
From <xref target="ID-Crisis"/>:</t>
        <ul empty="true">
          <li>
            <t>For modeling TLS 1.3, we consider handshakes based on Diffie-Hellman over either finite fields or elliptic curves, represented as (EC)DHE. This is because we are unaware of any publicly available specification or implementation of attested TLS with PSK-based handshakes.</t>
          </li>
        </ul>
        <t>While it would be nice to model PSK-based handshake, the rationale is that the correlation properties studied in this work do not necessarily require it.</t>
        <t>Note: The artifacts consider the case of server authentication only, as client authentication is optional in TLS 1.3. No claims are made about other configurations.</t>
      </section>
      <section anchor="properties">
        <name>Properties</name>
        <t>Properties in <xref target="Intra-handshake.fail"/> are complemetary to properties in <xref target="ID-Crisis"/>. Sec. 8 of <xref target="ID-Crisis"/> mentions:</t>
        <ul empty="true">
          <li>
            <t>We emphasize that both diversion and relay attacks are orthogonal and thus the two works are complementary.</t>
          </li>
        </ul>
      </section>
      <section anchor="technical-vulnerability-report">
        <name>Technical Vulnerability Report</name>
        <t>Technical vulnerability report is available at <xref target="Intra-handshake.fail"/>. It is accepted for publication at ESORICS 2026.</t>
        <section anchor="vulnerabilities">
          <name>Vulnerabilities</name>
          <t>Sec. 7.1 of <xref target="Intra-handshake.fail"/> presents the technical details with abstract attack traces of the vulnerabilities.</t>
        </section>
        <section anchor="mitigation">
          <name>Mitigation</name>
          <t>Sec. 7.2 of <xref target="Intra-handshake.fail"/> presents the technical details of the proposed mitigation.</t>
        </section>
      </section>
      <section anchor="artifacts">
        <name>Artifacts</name>
        <t>Artifacts are available at <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 License.</t>
      </section>
    </section>
    <section anchor="sec-news">
      <name>Media Coverage</name>
      <t>Several media professionals and bloggers have covered the vulnerabilities to protect the community from the harm of intra-handshake attestation.</t>
      <ul spacing="normal">
        <li>
          <t><eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref></t>
        </li>
        <li>
          <t>(Japanese) <eref target="https://blackhatnews.tokyo/archives/119915">BlackHatNewsTokyo</eref></t>
        </li>
        <li>
          <t>(Several languages) <eref target="https://hackernoon.com/attested-tls-was-supposed-to-be-the-last-trust-boundary-it-isnt-formal-methods-show-how">Hackernoon</eref></t>
        </li>
        <li>
          <t><eref target="https://podcasts.apple.com/eg/podcast/attested-tls-was-supposed-to-be-the-last-trust/id1698517643?i=1000776623286">Apple podcast</eref></t>
        </li>
        <li>
          <t><eref target="https://meterpreter.org/attested-tls-vulnerability-cve-2026-33697/">Information Security News</eref></t>
        </li>
        <li>
          <t><eref target="https://thenextgentechinsider.com/pulse/critical-flaw-discovered-in-confidential-computing-attestation-protocols">TheNextGenTechInsider</eref></t>
        </li>
        <li>
          <t><eref target="https://dailysecurityreview.com/resources/cve-2026-33697-attested-tls-relay-flaw-hits-whatsapp-cocos-ai/">DailySecurityReview</eref></t>
        </li>
        <li>
          <t><eref target="https://www.scworld.com/brief/confidential-computings-remote-attestation-protocol-may-have-fundamental-flaw">SC World</eref></t>
        </li>
        <li>
          <t><eref target="https://blogs.groupware.org.uk/01-Quantum-Inc/the-handshake-that-cant-keep-its-promise-why-confidential-computings-flaw-changes-the-data-sovereignty-conversation/">01 Quantum</eref></t>
        </li>
        <li>
          <t>(Russian) <eref target="https://www.securitylab.ru/news/574545.php">Security Lab</eref></t>
        </li>
        <li>
          <t>(German) <eref target="https://www.blogspan.net/confidential-computing-attestierung-relay-luecke/">blogspan</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://finance.sina.cn/tech/2026-07-04/detail-inifscxt9953361.d.html">Sina</eref></t>
        </li>
        <li>
          <t><eref target="https://data4biz.com/articles/una-falla-rompe-la-fiducia-del-confidential-computing">data4biz</eref></t>
        </li>
        <li>
          <t>(Russian) <eref target="https://www.itsec.ru/news/issledovateli-nashli-kriticheskuyu-uyazvimost-v-attested-tls">ITSec</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://post.smzdm.com/p/a82ol990/">smzdm</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://www.donews.com/news/detail/4/6621022.html">donews</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://i.ifeng.com/c/8uUfy0PMmqE">ifeng</eref></t>
        </li>
        <li>
          <t><eref target="https://www.dugganusa.com/post/confidential-computing-s-whole-pitch-is-trust-the-proof-not-the-cloud-two-years-of-formal-verifi">dugganusa</eref></t>
        </li>
        <li>
          <t><eref target="https://github.com/pduggusa/dugganusa-ietf/tree/main/cve-2026-33697-attestation">dugganusa repo</eref></t>
        </li>
        <li>
          <t><eref target="https://sploitus.com/exploit?id=92591A05-07BC-5015-BA3D-B1347B35D684">spoitus</eref></t>
        </li>
        <li>
          <t><eref target="https://news.lavx.hu/article/attested-tls-research-exposes-a-weak-link-in-confidential-computing">lavx news</eref></t>
        </li>
        <li>
          <t><eref target="https://www.sohu.com/a/1045865934_122004016">sohu</eref></t>
        </li>
        <li>
          <t>(Persian) <eref target="https://news.ditty.ir/news/attested-tls-relay-flaw-formal-methods/019f6221-26ca-7293-9ee9-5557b3c0b8f8">news.ditty</eref></t>
        </li>
        <li>
          <t>(Russian) <eref target="https://limpvpn.com/ru/news/attested-tls-whatsapp-privacy-flaw-2026">LiMP VPN</eref></t>
        </li>
        <li>
          <t><eref target="https://daily.dev/posts/kI6PoNzPx">daily.dev</eref></t>
        </li>
        <li>
          <t><eref target="https://warden.veritai.ch/news/researchers-find-attested-tls-flaws-that-weaken-confidential-computing-trust-model">warden</eref></t>
        </li>
        <li>
          <t><eref target="https://db.gcve.eu/sightings/?query=cve-2026-33697">GCVE.eu</eref></t>
        </li>
        <li>
          <t><eref target="https://vulnerability.circl.lu/vuln/CVE-2026-33697#sightings">vuln.lu</eref></t>
        </li>
        <li>
          <t><eref target="https://coderlegion.com/24087/intra-handshake-attestation-when-more-security-doesnt-mean-better-security">coderlegion</eref></t>
        </li>
        <li>
          <t><eref target="https://www.anjuna.io/blog/attested-tls-flaw-explained">Anjuna Security</eref></t>
        </li>
        <li>
          <t><eref target="https://freenode.net/digest/67">freenode</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://blog.csdn.net/weixin_42376192/category_13096766.html">csdn</eref></t>
        </li>
        <li>
          <t><eref target="https://osintsights.com/confidential-computing-flaws-expose-trust-risks">osintsights</eref></t>
        </li>
        <li>
          <t>(Turkish) <eref target="https://hardwaremania.com/haber/arastirma-attested-tls-confidential-computing-icin-zayif-kaliyor/">hardwaremania</eref></t>
        </li>
        <li>
          <t><eref target="https://akber.com/sovereignty-in-the-cloud-is-an-illusion/">akber</eref></t>
        </li>
        <li>
          <t><eref target="https://www.ad-hoc-news.de/wissenschaft/cloud-souveraenitaet-red-hat-startet-reifegrad-assessments-gegen/69691475">ad-hoc news</eref></t>
        </li>
        <li>
          <t><eref target="https://aimultiple.com/privacy-enhancing-technologies">AIMultiple</eref></t>
        </li>
      </ul>
      <section anchor="security-researchers">
        <name>Security Researchers</name>
        <t>Several credible security researchers, such as the following, have publicly attested to it.</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://www.linkedin.com/posts/michaelpak_confidential-computings-core-trust-mechanism-activity-7479415537836376064-q-A4/">Michael Pak</eref></t>
          </li>
          <li>
            <t><eref target="https://www.linkedin.com/posts/rrbranco_one-more-evidence-that-there-is-no-such-a-share-7479582122366615552-X0A5/">Rodrigo Branco</eref></t>
          </li>
          <li>
            <t><eref target="https://www.linkedin.com/posts/bart-preneel-4451412_on-the-limits-of-confidential-computing-share-7479549718294077440-wfi3/">Bart Preneel</eref></t>
          </li>
          <li>
            <t><eref target="https://www.linkedin.com/in/strufe/recent-activity/all/">Thorsten Strufe</eref></t>
          </li>
        </ul>
      </section>
      <section anchor="germanys-bsi">
        <name>Germany's BSI</name>
        <t>Germany's Federal Office for Information Security (Bundesamt für Sicherheit in der Informationstechnik) has attested to it. Carina Hilt, deputy press spokesperson at BSI, told <eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref>:</t>
        <artwork><![CDATA[
CC alone cannot satisfy the requirements for digital sovereignty.
]]></artwork>
        <artwork><![CDATA[
dependencies on other services, such as identity and key
management etc., are also not mitigated by CC.
]]></artwork>
        <t>CC refers to Confidential Computing, and attested TLS is the core trust mechanism of CC.</t>
      </section>
    </section>
    <section anchor="reviews">
      <name>Reviews</name>
      <section anchor="conference-reviews">
        <name>Conference Reviews</name>
        <t><xref target="Intra-handshake.fail"/> has been peer-reviewed and accepted for publication at ESORICS 2026.</t>
      </section>
      <section anchor="ietfirtf">
        <name>IETF/IRTF</name>
        <t>Several participants of the IETF/IRTF have attested to the results by independently reproducing the results and reviewing the code. Some of the participants have independently reproduced the results by developing their own formal models and a proof-of-concept implementation of the vulnerabilities. Some of the messages are mentioned below (<strong>excluding</strong> the messages of <em>paper</em> authors):</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/">https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/">https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/">https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/">https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/">https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/">https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/">https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/">https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/">https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/">https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/">https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/">https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/">https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/">https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/">https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/">https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/">https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/">https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/">https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/">https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/">https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/">https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/">https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/">https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/">https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/">https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/">https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/">https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/">https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/">https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/">https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/">https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/">https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/">https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/">https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/">https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/">https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/">https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/">https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/">https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/">https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/">https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/">https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/">https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/">https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/">https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/">https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/">https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/">https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/">https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/">https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/">https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/">https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/">https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/">https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/">https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/">https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/">https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/">https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/">https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/">https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/">https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3J3s_YFnf9IQ87Tv2c1q4f36xKQ/">https://mailarchive.ietf.org/arch/msg/seat/3J3s_YFnf9IQ87Tv2c1q4f36xKQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JWKMYY1YG1E2iS_HyQ4rDmOsDGw/">https://mailarchive.ietf.org/arch/msg/seat/JWKMYY1YG1E2iS_HyQ4rDmOsDGw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rK1nDSewAbVL_weOp98knYZcg6s/">https://mailarchive.ietf.org/arch/msg/seat/rK1nDSewAbVL_weOp98knYZcg6s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Wjuz0fIj8tjYocUmiZZXcSwwFHw/">https://mailarchive.ietf.org/arch/msg/seat/Wjuz0fIj8tjYocUmiZZXcSwwFHw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SYiV4KZNr20re6QkGmyWS3pPteA/">https://mailarchive.ietf.org/arch/msg/seat/SYiV4KZNr20re6QkGmyWS3pPteA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZYgxm1ibt6p4dL7xF1YNdl0XSpc/">https://mailarchive.ietf.org/arch/msg/seat/ZYgxm1ibt6p4dL7xF1YNdl0XSpc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/6LKgOp22YRxGTYb-i-BxiMGzMW4/">https://mailarchive.ietf.org/arch/msg/seat/6LKgOp22YRxGTYb-i-BxiMGzMW4/</eref></t>
          </li>
        </ul>
        <section anchor="main-questions">
          <name>Main Questions</name>
          <t>In short, five main questions have been raised by WG participants in support of our work:</t>
          <ul spacing="normal">
            <li>
              <t>What <strong>security property</strong> hybrid (intra- + post-handshake attestation) provides that post-handshake attestation alone cannot provide?</t>
            </li>
            <li>
              <t>Since continuous attestation is required in most use cases, how is <strong>additional complexity</strong> of <strong>intra</strong>-handshake attestation justified? Use cases with one-time attestation can be covered by doing attestation round immediately after Connection Establishment Time: see <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-6-2">reference</eref>.</t>
            </li>
            <li>
              <t>What is the benefit of doing <strong>signatures</strong> of remote attestation <strong>within</strong> the handshake (as this latency can be exploited)? We add that <strong>verification</strong> of signatures is also time consuming, which can be exploited too. See <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-4.2.4">reference</eref>.</t>
            </li>
            <li>
              <t>How evidence is bound to the secure channel without involving any <strong>shared secret</strong>?</t>
            </li>
            <li>
              <t>How does a verifying relying party get the legitimate PIIDs and CHIP_IDs?</t>
            </li>
          </ul>
        </section>
      </section>
      <section anchor="researchers-outside-of-ietfirtf">
        <name>Researchers outside of IETF/IRTF</name>
        <t>Some researchers have approached us confirming the proof-of-concept of the vulnerabilities in intra-handshake attestation. More information will be added once their pre-prints/papers are public.</t>
      </section>
    </section>
    <section anchor="security-considerations">
      <name>Security Considerations</name>
      <t>All of this document is about the <strong>insecurity</strong> of <strong>intra</strong>-handshake attestation.</t>
      <t>By no means should the vendors mentioned in this draft be considered less secure than any other vendors implementing intra-handshake attestation solutions. In particular, those who have closed-source implementations are most likely more vulnerable than the open-source ones, since the former cannot easily be reviewed by the security community. Even extensive security reviews -- of closed-source implementations -- by cybersecurity firms often do not perform formal analysis, and thus such reviews may miss corner cases and subtle vulnerabilities.</t>
    </section>
    <section anchor="ethical-considerations">
      <name>Ethical Considerations</name>
      <t>We (i.e., the super set of all authors involved in this research, including but not limited to Muhammad Usama Sardar, Mariam Moustafa, Tuomas Aura, Viacheslav Dubeyko, Jean-Marie Jacquet, Songbo Bu, Chengxin Huang, and Haowen Song) are ethical researchers aiming to protect the community from the potential harm caused by the exploitability of the vulnerabilities in intra-handshake attestation. We have responsibly disclosed the vulnerabilities to the respective developers and maintainers following their respective disclosure processes and provided them our proposed mitigations and requested them to take rapid action.</t>
      <t>We have released only the formal analysis for published CVE. To minimize exploit in the wild, we have not publicly released the proof-of-concept exploit code.</t>
      <t>We have not retrieved any real data from any real system. We have not released any key to any public forum or to any person.</t>
      <section anchor="evidence-of-explanation-of-vulnerabilities-to-the-authors-of-vulnerable-drafts">
        <name>Evidence of Explanation of Vulnerabilities to the Authors of Vulnerable Drafts</name>
        <t>To the best of our abilities, knowledge, and understanding, we have tried to explain the vulnerabilities to the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> first privately in several meetings and then later on publicly for at least half a year at several forums, including but not limited to CCC Attestation SIG and IETF/IRTF. Please see the (non-exhaustive list of) recordings <xref target="sec-recordings"/> and the archives <xref target="sec-archives"/> below. We sincerely thank the authors of <xref target="I-D.fossati-tls-attestation-10"/> for withdrawing their draft to protect further exploits mentioned in <xref target="sec-news"/>.</t>
        <section anchor="sec-recordings">
          <name>Recordings</name>
          <table>
            <name>Evidence of several explanations of vulnerabilities to the authors of vulnerable drafts</name>
            <thead>
              <tr>
                <th align="left">Event/Host</th>
                <th align="left">Venue</th>
                <th align="left">Date(s)</th>
                <th align="left">Evidence</th>
              </tr>
            </thead>
            <tbody>
              <tr>
                <td align="left">
                  <eref target="https://lpc.events/event/20/">Linux Plumbers Conference 2026</eref></td>
                <td align="left">Prague, Czechia</td>
                <td align="left">5-7 Oct, 2026</td>
                <td align="left">slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ga4gh.org/event/14th-plenary/">GA4GH 14th Plenary Meeting</eref></td>
                <td align="left">Singapore</td>
                <td align="left">28 Sept-2 Oct, 2026</td>
                <td align="left">slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://sites.google.com/di.uniroma1.it/esorics2026/">ESORICS 2026</eref></td>
                <td align="left">Rome, Italy</td>
                <td align="left">14-18 Sept, 2026</td>
                <td align="left">slides</td>
              </tr>
              <tr>
                <td align="left">IETF RATS Interim meeting</td>
                <td align="left">Virtual</td>
                <td align="left">TBA Sept, 2026</td>
                <td align="left">slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://summit.riot-os.org/2026/">RIOT Summit 2026</eref></td>
                <td align="left">Grenoble, France</td>
                <td align="left">2-4 September, 2026</td>
                <td align="left">
                  <eref target="https://summit.riot-os.org/2026/blog/speakers/muhammad-usama-sardar/">abstract</eref>, slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ga4gh.org/work_stream/data-security/">Data Security Work Stream (DSWS)</eref> at the <eref target="https://www.ga4gh.org/">Global Alliance for Genomics and Health (GA4GH)</eref></td>
                <td align="left">Virtual</td>
                <td align="left">24 Aug, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/413569575_High-Severity_Vulnerabilities_in_Former_GIF_Design_for_Attested_TLS_draft-fossati-seat-early-attestation">slides</eref>, <eref target="https://us02web.zoom.us/rec/share/UAn381deia-aMNmjGHhMqxocc1HcyF7ksLlaeeKefxO4bSC2mHPzwPQPYGe2dnZR.zfleYCmmtiteo_NS">video</eref></td>
              </tr>
              <tr>
                <td align="left">Confidential AI Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">21 July, 2026</td>
                <td align="left">
                  <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/odgd_xmhjQXiR_aLYdqtVvDJeF4/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">21 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-seat-binding-properties-of-expat-00.pdf">slides</eref>, <eref target="https://youtu.be/Fb5Hzh1mp1E?t=4189">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">IETF 126 Hackdemo Happy Hour</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">20 July, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">demo</eref></td>
              </tr>
              <tr>
                <td align="left">Confidential Computing Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">20 July, 2026</td>
                <td align="left">
                  <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hotrfc-sessa-15-confidential-computing-and-digital-sovereignty-00">slides</eref>, <eref target="https://youtu.be/FDHWRijxKso?t=3285">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ietf.org/meeting/hackathons/126-hackathon/">IETF 126 Hackathon</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hackathon-sessd-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/GRqyrDIEgEw?t=1340">video</eref></td>
              </tr>
              <tr>
                <td align="left">IEPG @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/g8q_u19vXzk?t=4404">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">Workshop</eref> @ <eref target="https://www.wissenschaftsnacht-dresden.de/en/">Dresden Science Night 2026</eref></td>
                <td align="left">Dresden</td>
                <td align="left">26 June, 2026</td>
                <td align="left">
                  <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">demo</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://output-dd.de/">Output 2026</eref></td>
                <td align="left">Dresden</td>
                <td align="left">25 June, 2026</td>
                <td align="left">
                  <eref target="https://output-dd.de/projekte/relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems/">demo</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://events.linuxfoundation.org/confidential-computing-summit/">Confidential Computing Summit 2026</eref> (presented by Jens Albers)</td>
                <td align="left">San Francisco, USA</td>
                <td align="left">23-24 June, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411851358_Standardization_of_Attested_TLS">poster</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://confidentialcontainers.org/">Confidential Containers Community Meeting</eref> @ <eref target="https://www.cncf.io/">Cloud Native Computing Foundation</eref></td>
                <td align="left">Virtual</td>
                <td align="left">30 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411849492_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref>, <eref target="https://zoom.us/rec/share/3thZhsRi-BZJL-GqjnwGzh7inbltuKIlpVjqMlWp6WRdMTZ66Z8p-8YjaaeOfbhX.CoH6YBukaKua0gkt">video</eref> around timestamp 00:27:00</td>
              </tr>
              <tr>
                <td align="left">GIF Project showcase @ <eref target="https://www.ga4gh.org/event/april-connect-2026/">GA4GH April Connect 2026</eref></td>
                <td align="left">Montreal, Canada (virtual)</td>
                <td align="left">17 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/412136610_Trusted_Research_Environment_TRE_Open_Suite">slides</eref>, <eref target="https://youtu.be/Kr9oxp1fdn0?t=1083">video</eref>, <eref target="https://www.ga4gh.org/document/arpril-connect-2026-meeting-report/">report</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://sos-vo.org/group/hotsos/">NSA Symposium on Hot Topics in the Science of Security (HotSoS) 2026</eref></td>
                <td align="left">Virtual</td>
                <td align="left">16 April, 2026</td>
                <td align="left">
                  <eref target="https://sos-vo.org/group/hotsos/2026/sardar">abstract</eref>, <eref target="https://sos-vo.org/system/files/2026-04/20260416_HotSoS%20%281%29.pdf">slides</eref>, <eref target="https://sos-vo.org/group/hotsos/2026/sardar">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fg-pet.gi.de/veranstaltung/15th-privacy-enhancing-techniques-convention">PET-CON 2026.1: 15th Privacy Enhancing Techniques Convention</eref></td>
                <td align="left">Karlsruhe, Germany</td>
                <td align="left">16-17 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411849502_Formal_Analysis_of_Attested_TLS">slides</eref>, <eref target="https://www.researchgate.net/publication/411852738_Formal_Analysis_of_Attested_TLS_and_Standardization_in_the_IETF">poster</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://gtmfs2026.sciencesconf.org/program?lang=en">GTMFS 2026: Annual Meeting of the WG "Formal Methods in Security"</eref></td>
                <td align="left">Luz-Saint-Sauveur, France</td>
                <td align="left">24-26 Mar, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411853715_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref></td>
              </tr>
              <tr>
                <td align="left">CFRG @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">19 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-cfrg-relay-attacks-00">slides</eref>, <eref target="https://youtu.be/IfKgbO74Lt4?t=6054">video</eref></td>
              </tr>
              <tr>
                <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref> (relay)</td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">17 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-seat-security-analysis-00">slides</eref>, <eref target="https://youtu.be/hX7genEkN7w?t=676">video</eref></td>
              </tr>
              <tr>
                <td align="left">Side meeting @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">16 Mar, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/403474373_Proposed_RG_Confidential_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">LAKE @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">16 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-lake-formal-analysis-of-attested-edhoc-00">slides</eref>, <eref target="https://youtu.be/JzfLpbnhl0A?t=3117">video</eref></td>
              </tr>
              <tr>
                <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">15 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hotrfc-sessa-formal-proof-of-insecurity-of-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/OtOo7Nogisw?t=3514">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ietf.org/meeting/hackathons/125-hackathon/">IETF 125 Hackathon</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">14-15 Mar, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/125/hackathon#relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hackathon-sessd-relay-attacks-in-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/62A58qH19MI?t=2270">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">10 Feb, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksGen_20260210.pdf">slides</eref>; <eref target="https://www.youtube.com/watch?v=idqwb0hFlhs&amp;list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1061s">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/session/rats">IETF RATS Interim meeting</eref></td>
                <td align="left">Virtual</td>
                <td align="left">9 Feb, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/materials/slides-interim-2026-rats-01-sessa-relayattacks-00.pdf">slides</eref>, <eref target="https://youtu.be/gURY61dViPw?t=1474">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fosdem.org/2026/schedule/track/confidential-computing/">Confidential Computing</eref> devroom at <eref target="https://fosdem.org/2026/">FOSDEM 2026</eref></td>
                <td align="left">Brussels, Belgium</td>
                <td align="left">31 Jan-1 Feb, 2026</td>
                <td align="left">
                  <eref target="https://fosdem.org/2026/schedule/event/GHGFBM-attestedtls/">abstract</eref>, <eref target="https://fosdem.org/2026/events/attachments/GHGFBM-attestedtls/slides/267432/20260201_60u9e0n.pdf">slides</eref>, <eref target="https://video.fosdem.org/2026/ud6215/GHGFBM-attestedtls.av1.webm">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">27 Jan, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksProposal_20260127.pdf">slides</eref>; <eref target="https://youtu.be/P04tLJcSxfM?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=434">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">13 Jan, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacks_20260113.pdf">slides</eref>; <eref target="https://youtu.be/cSrCZNyo7_g?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1083">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">16 Dec, 2025</td>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MuhammadUsamaSardar_Binding_Properties_20251216.pdf">slides</eref>; <eref target="https://youtu.be/w_MrjMeHyP8?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=593">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">2 Dec, 2025</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_Open_Questions_20251202.pdf">slides</eref>; <eref target="https://youtu.be/16aGZ-oZidg?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=2920">video</eref></td>
              </tr>
            </tbody>
          </table>
        </section>
        <section anchor="sec-archives">
          <name>Archives</name>
          <t>Since January, we have publicly informed the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> and shared our results with the community for review and to raise awareness on high-severity vulnerabilities and apply appropriate mitigations for the safety of their users:</t>
          <section anchor="ietfhttpswwwietforg">
            <name><eref target="https://www.ietf.org/">IETF</eref></name>
            <ul spacing="normal">
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">SEAT WG</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">RATS WG</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/tls/8lyqHh9y7_Lv6b1iXhpUqYrp0M0/">TLS WG</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/lake/Tovtl7wgvzwJWT2I2ZwnhoIOnYQ/">LAKE WG</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/saag/jBZVk7YySwpaFqydAfxW33kNZPY/">SAAG</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/practical-cybersecurity/d65WPaC0WbZRwxTBclnTkf7SmRs/">Practical Cybersecurity list</eref></t>
              </li>
              <li>
                <t>Agent2agent list <eref target="https://mailarchive.ietf.org/arch/msg/agent2agent/ubz7uXCs--YzuSWyXNNsmWf_tSQ/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/agent2agent/xHhjA94fzed6ONIvPRgwTT-WRmA/">thread2</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/dmsc/QC2adIcYkxiTlniEcc7ggk86BAY/">DSMC list</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/hackathon/PIrJ2O_QqcNUAnMIn_Vh22ImWMc/">Hackathon</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">126attendees</eref></t>
              </li>
            </ul>
          </section>
          <section anchor="irtfhttpswwwirtforg">
            <name><eref target="https://www.irtf.org/">IRTF</eref></name>
            <ul spacing="normal">
              <li>
                <t>UFMRG: <eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZWK0uMM92OdwlPbgXBvQApDpe5Q/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZRhR7o1HrWxfGDfgRJMR65RBkDE/">thread2</eref></t>
              </li>
              <li>
                <t>CFRG <eref target="https://mailarchive.ietf.org/arch/msg/cfrg/NbxHIw9H_xpSYbgfO_n7lVIFeWs/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">thread2</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/din/_8LE3Ru1xX16hgGJwryMTRwRoaA/">DINRG</eref></t>
              </li>
            </ul>
          </section>
          <section anchor="ccchttpsconfidentialcomputingio">
            <name><eref target="https://confidentialcomputing.io/">CCC</eref></name>
            <ul spacing="normal">
              <li>
                <t>Attestation SIG: <eref target="https://lists.confidentialcomputing.io/g/attestation/topic/117207133">thread1</eref> and <eref target="https://lists.confidentialcomputing.io/g/attestation/message/334">thread2</eref></t>
              </li>
              <li>
                <t>TAC: <eref target="https://lists.confidentialcomputing.io/g/tac/topic/117932193">thread1</eref> and <eref target="https://lists.confidentialcomputing.io/g/tac/topic/120068850">thread2</eref></t>
              </li>
            </ul>
          </section>
          <section anchor="ocphttpswwwopencomputeorg">
            <name><eref target="https://www.opencompute.org/">OCP</eref></name>
            <ul spacing="normal">
              <li>
                <t>OCP Security: <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/117932716">message1</eref>, <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120069056">message2</eref>, <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120483814">message3</eref> and <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120524635">message4</eref></t>
              </li>
            </ul>
            <t>If you know any other relevant mailing list that we should inform for protection of users, please let us know.</t>
          </section>
        </section>
      </section>
    </section>
    <section anchor="iana-considerations">
      <name>IANA Considerations</name>
      <t>This document has no IANA actions.</t>
    </section>
  </middle>
  <back>
    <references anchor="sec-combined-references">
      <name>References</name>
      <references anchor="sec-normative-references">
        <name>Normative References</name>
        <reference anchor="Intra-handshake.fail" target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="June"/>
          </front>
        </reference>
        <reference anchor="Intra-handshake.fail-repo" target="https://github.com/muhammad-usama-sardar/intra-handshake.fail">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="July"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-33697" target="https://www.cve.org/CVERecord?id=CVE-2026-33697">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-16488" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-16488">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-vfgg-mvxx-mgg7">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-hjgc-jc5v-fw7h">
          <front>
            <title>Remote attestation is susceptible to relay attacks</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="SEAT-vulnerability-report" target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">
          <front>
            <title>Relay Attacks in Intra-handshake Attestation for Confidential Agentic AI Systems</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <date year="2026" month="January"/>
          </front>
        </reference>
      </references>
      <references anchor="sec-informative-references">
        <name>Informative References</name>
        <reference anchor="ID-Crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author fullname="Muhammad Usama Sardar" initials="M." surname="Sardar">
              <organization>TU Dresden, Dresden, Germany</organization>
            </author>
            <author fullname="Mariam Moustafa" initials="M." surname="Moustafa">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <author fullname="Tuomas Aura" initials="T." surname="Aura">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <date month="June" year="2026"/>
          </front>
          <seriesInfo name="Proceedings of the ACM Asia Conference on Computer and Communications Security" value="pp. 547-560"/>
          <seriesInfo name="DOI" value="10.1145/3779208.3785387"/>
          <refcontent>ACM</refcontent>
        </reference>
        <reference anchor="ID-Crisis-repo" target="https://github.com/CCC-Attestation/formal-spec-id-crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="M." surname="Moustafa">
              <organization/>
            </author>
            <author initials="T." surname="Aura">
              <organization/>
            </author>
            <date year="2025" month="November"/>
          </front>
        </reference>
        <reference anchor="refTLS">
          <front>
            <title>Verified Models and Reference Implementations for the TLS 1.3 Standard Candidate</title>
            <author fullname="Karthikeyan Bhargavan" initials="K." surname="Bhargavan">
              <organization/>
            </author>
            <author fullname="Bruno Blanchet" initials="B." surname="Blanchet">
              <organization/>
            </author>
            <author fullname="Nadim Kobeissi" initials="N." surname="Kobeissi">
              <organization/>
            </author>
            <date month="May" year="2017"/>
          </front>
          <seriesInfo name="2017 IEEE Symposium on Security and Privacy (SP)" value="pp. 483-502"/>
          <seriesInfo name="DOI" value="10.1109/sp.2017.26"/>
          <refcontent>IEEE</refcontent>
        </reference>
        <reference anchor="I-D.fossati-seat-early-attestation">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="5" month="August" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a TLS extension that
   enables the negotiation and binding of the TLS authentication key to
   a remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   This extension has been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-06"/>
        </reference>
        <reference anchor="I-D.fossati-seat-early-attestation-04">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="27" month="May" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a series of TLS
   extensions that enable the binding of the TLS authentication key to a
   remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   These extensions have been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-04"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-06">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="19" month="March" year="2024"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-06"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-09">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="30" month="April" year="2025"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-09"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-10">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="23" month="July" year="2026"/>
            <abstract>
              <t>   This draft has been withdrawn.

About This Document

   This note is to be removed before publishing as an RFC.

   Status information for this document may be found at
   https://datatracker.ietf.org/doc/draft-fossati-tls-attestation/.

   Source for this draft and an issue tracker can be found at
   https://github.com/yaronf/draft-tls-attestation.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-10"/>
        </reference>
        <reference anchor="I-D.ritz-seat-facts">
          <front>
            <title>Factor-based Attestation and Credential Transport Scheme (FACTS) over TLS 1.3</title>
            <author fullname="Nathanael Ritz" initials="N." surname="Ritz">
              <organization>Independent</organization>
            </author>
            <date day="1" month="March" year="2026"/>
            <abstract>
              <t>   This document describes FACTS (Factor-based Attestation and
   Credential Transport Scheme) over TLS 1.3.  Conceptually acting as
   "multi-factor authentication" for machine identities, factor-based
   attestation derives session trust from multiple independent
   cryptographic inputs rather than a single point of failure.
   Specifically, it utilizes a dual-key scheme that binds identity to
   attestation evidence through the use of key encapsulation material
   keys (KEM) and traditional identity signing keys (IK), establishing
   per-session freshness.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ritz-seat-facts-00"/>
        </reference>
      </references>
    </references>
    <?line 645?>

<section numbered="false" anchor="acknowledgments">
      <name>Acknowledgments</name>
      <t>Acknowledgment does not necessarily imply attestation. It implies that the authors found the feedback and discussion useful in improving the formal analysis, the corresponding paper, or this draft.</t>
      <t>This draft benefits from several years of research on attested TLS, in particular some of the recent works mentioned below:</t>
      <t>We wish to express our sincere appreciation to the following for their review of our latest work:</t>
      <ul spacing="normal">
        <li>
          <t>Sammy Kerata Oina</t>
        </li>
        <li>
          <t>Drasko Draskovic</t>
        </li>
      </ul>
      <t><strong>Intra-handshake.fail</strong> <xref target="Intra-handshake.fail"/></t>
      <t>We would like to thank our co-authors of paper <xref target="Intra-handshake.fail"/> for their valuable contributions:</t>
      <ul spacing="normal">
        <li>
          <t>Viacheslav Dubeyko</t>
        </li>
        <li>
          <t>Jean-Marie Jacquet</t>
        </li>
      </ul>
      <t>We also gratefully acknowledge the following for insightful discussions and helpful reviews on <xref target="Intra-handshake.fail"/>:</t>
      <ul spacing="normal">
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Juho Forsén</t>
        </li>
        <li>
          <t>Markus Rudy</t>
        </li>
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Steve Kremer</t>
        </li>
        <li>
          <t>Tjaden Hess</t>
        </li>
        <li>
          <t>Martin Thomson</t>
        </li>
        <li>
          <t>Yuning Jiang</t>
        </li>
        <li>
          <t>Pavel Nikonorov</t>
        </li>
        <li>
          <t>Casey Wilson</t>
        </li>
        <li>
          <t>Anonymous ESORICS 2026 reviewers</t>
        </li>
        <li>
          <t>Danko Miladinovic</t>
        </li>
        <li>
          <t>John Preuß Mattsson</t>
        </li>
        <li>
          <t>Britta Hale</t>
        </li>
        <li>
          <t>Werner Staub</t>
        </li>
        <li>
          <t>Songbo Bu</t>
        </li>
        <li>
          <t>Haowen Song</t>
        </li>
        <li>
          <t>Chengxin Huang</t>
        </li>
        <li>
          <t>Steve Luo</t>
        </li>
        <li>
          <t>Kubilay Ahmet Küçük</t>
        </li>
        <li>
          <t>Iman Schrock</t>
        </li>
        <li>
          <t>Sophie Schmieg</t>
        </li>
        <li>
          <t>Davyd Okaianchenko</t>
        </li>
        <li>
          <t>Alistair Woodman</t>
        </li>
        <li>
          <t>Göran Selander</t>
        </li>
        <li>
          <t>Tom Sato</t>
        </li>
        <li>
          <t>Jakub Maria Plutowski</t>
        </li>
        <li>
          <t>Martin Friedrich</t>
        </li>
        <li>
          <t>Patrick Duggan</t>
        </li>
        <li>
          <t>Deb Cooley</t>
        </li>
      </ul>
      <t><strong>Identity Crisis</strong> <xref target="ID-Crisis"/></t>
      <t>We would like to thank our co-authors of complementary paper <xref target="ID-Crisis"/> for their valuable contributions:</t>
      <ul spacing="normal">
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Tuomas Aura</t>
        </li>
      </ul>
      <t>We also gratefully acknowledge the following for insightful discussions and helpful feedback:</t>
      <ul spacing="normal">
        <li>
          <t>Ionut Mihalcea</t>
        </li>
        <li>
          <t>Jean-Marie Jacquet</t>
        </li>
        <li>
          <t>Thomas Fossati</t>
        </li>
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Hannes Tschofenig</t>
        </li>
        <li>
          <t>Yaron Sheffer</t>
        </li>
        <li>
          <t>Laurence Lundblade</t>
        </li>
        <li>
          <t>Giridhar Mandyam</t>
        </li>
        <li>
          <t>Christopher Patton</t>
        </li>
        <li>
          <t>Jonathan Hoyland</t>
        </li>
        <li>
          <t>Richard Barnes</t>
        </li>
      </ul>
      <t><strong>refTLS</strong> <xref target="refTLS"/></t>
      <t>We sincerely thank the following for the foundational formal model of draft 20 of TLS 1.3 in their work <xref target="refTLS"/> that we have used as the foundation of all of this work:</t>
      <ul spacing="normal">
        <li>
          <t>Karthikeyan Bhargavan</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Nadim Kobeissi</t>
        </li>
      </ul>
      <t><strong>General</strong></t>
      <t>Several others at the IETF, IRTF, CCC, and GA4GH have contributed by providing feedback over the years. A non-exhaustive list of contributors is <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00#page=17">here</eref>.</t>
      <t>Muhammad Usama Sardar is funded by German Research Foundation ("Deutsche Forschungsgemeinschaft.")</t>
    </section>
  </back>
  <!-- ##markdown-source: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-->

</rfc>
