<?xml version='1.0' encoding='utf-8'?>
<!DOCTYPE rfc [
  <!ENTITY nbsp    "&#160;">
  <!ENTITY zwsp   "&#8203;">
  <!ENTITY nbhy   "&#8209;">
  <!ENTITY wj     "&#8288;">
]>
<?xml-stylesheet type="text/xsl" href="rfc2629.xslt" ?>
<!-- generated by https://github.com/cabo/kramdown-rfc version 1.7.43 (Ruby 3.4.9) -->
<rfc xmlns:xi="http://www.w3.org/2001/XInclude" ipr="trust200902" docName="draft-intra-handshake-fail-43" category="info" submissionType="IETF" tocInclude="true" sortRefs="true" symRefs="true" version="3">
  <!-- xml2rfc v2v3 conversion 3.34.1 -->
  <front>
    <title abbrev="Early Attestation Considered Harmful">Early Attestation Considered Very Harmful (CVE-2026-92701 of CVSS 9.1, CVE-2026-92702 of CVSS 9.1, CVE-2026-33697 of CVSS 7.5, and 37 other CVEs of up to expected CVSS 10.0 upcoming)</title>
    <seriesInfo name="Internet-Draft" value="draft-intra-handshake-fail-43"/>
    <author fullname="Muhammad Usama Sardar">
      <organization abbrev="TU Dresden">Technical University of Dresden</organization>
      <address>
        <postal>
          <city>Dresden</city>
          <code>01187</code>
          <country>Germany</country>
        </postal>
        <email>muhammad_usama.sardar@tu-dresden.de</email>
      </address>
    </author>
    <author fullname="Viacheslav Dubeyko">
      <organization>CoreWeave</organization>
      <address>
        <email>slava@dubeyko.com</email>
      </address>
    </author>
    <author fullname="Jean-Marie Jacquet">
      <organization>University of Namur</organization>
      <address>
        <postal>
          <city>Namur</city>
          <country>Belgium</country>
        </postal>
        <email>jean-marie.jacquet@unamur.be</email>
      </address>
    </author>
    <author fullname="Songbo Bu">
      <organization>Shanghai Guan An Information Technology Co., Ltd.</organization>
      <address>
        <postal>
          <country>China</country>
        </postal>
        <email>bluedognull@gmail.com</email>
      </address>
    </author>
    <author fullname="Chengxin Huang">
      <organization>Independent</organization>
      <address>
        <email>aurestarnull@gmail.com</email>
      </address>
    </author>
    <author fullname="Haowen Song">
      <organization>Shanghai Guan An Information Technology Co., Ltd.</organization>
      <address>
        <postal>
          <country>China</country>
        </postal>
        <email>havan12050544@gmail.com</email>
      </address>
    </author>
    <author fullname="Kaya Ercihan">
      <organization>Switch</organization>
      <address>
        <postal>
          <city>Zurich</city>
          <country>Switzerland</country>
        </postal>
        <email>kaya.ercihan@switch.ch</email>
      </address>
    </author>
    <author initials="D. K. A." surname="Küçük" fullname="Dr Kubilay Ahmet Küçük">
      <organization>DPhil Oxford University</organization>
      <address>
        <email>dr.kucuk@oxfordalumni.org</email>
      </address>
    </author>
    <author fullname="Serhii Nikolaichuk">
      <organization>The Capital Index</organization>
      <address>
        <postal>
          <city>Austin, Texas</city>
          <country>USA</country>
        </postal>
        <email>nikolaichuk.s.f@gmail.com</email>
      </address>
    </author>
    <author fullname="Sylvain Bellemare">
      <organization>Sureshot Labs</organization>
      <address>
        <postal>
          <country>Japan</country>
        </postal>
        <email>sbellem@gmail.com</email>
      </address>
    </author>
    <author initials="E. C. M." surname="Willems" fullname="Eva C. M. Willems">
      <organization>Independent</organization>
      <address>
        <postal>
          <country>Netherlands</country>
        </postal>
        <email>evac.m.willems@proton.me</email>
      </address>
    </author>
    <author fullname="Justin DESSENNES SAINTEN">
      <organization>Independent Corporate Risk Consultant</organization>
      <address>
        <postal>
          <city>Paris</city>
          <country>France</country>
        </postal>
        <email>dessennes_sainten@msn.com</email>
      </address>
    </author>
    <author fullname="Massimiliano Brighindi">
      <organization>PHI-OMEGA</organization>
      <address>
        <postal>
          <city>San Benedetto del Tronto</city>
          <country>Italy</country>
        </postal>
        <email>phiomega.runtime@gmail.com</email>
      </address>
    </author>
    <author fullname="Mikerah Quintyne-Collins">
      <organization>HashCloak Inc and Stoffel Labs Inc</organization>
      <address>
        <postal>
          <country>Canada</country>
        </postal>
        <email>mikerah@hashcloak.com</email>
      </address>
    </author>
    <author fullname="Iman Schrock">
      <organization>EMILIA Protocol, Inc.</organization>
      <address>
        <email>team@emiliaprotocol.ai</email>
      </address>
    </author>
    <date year="2026" month="September" day="24"/>
    <workgroup>SEAT</workgroup>
    <keyword>AI agents</keyword>
    <keyword>Intra-handshake attestation</keyword>
    <keyword>Early attestation</keyword>
    <keyword>CVE-2026-33697</keyword>
    <keyword>CVE-2026-92701</keyword>
    <keyword>CVE-2026-92702</keyword>
    <abstract>
      <?line 296?>

<t>The draft aims to provide technical details of <xref target="CVE-2026-33697"/>, <xref target="EUVD-2026-16488"/>, <xref target="CVE-2026-92701"/>, <xref target="EUVD-2026-83194"/>, <xref target="CVE-2026-92702"/>, <xref target="EUVD-2026-83192"/> and several GitHub Security Advisories (GHSAs) which provide substantial technical evidence of how early attestation fails in practice, even <strong>without physical access</strong> to the desired machine. Moreover, since continuous attestation is generally required <xref target="CSA-eBPF"/> <xref target="MITRE-Continuous-Attestation"/>, early attestation adds <strong>unnecessary complexity</strong>. The results are backed by the research <xref target="Intra-handshake.fail"/>, <xref target="TLS-RA"/>, <xref target="EarlyAttestationBleed"/> and the artifacts <xref target="Intra-handshake.fail-repo"/> in state-of-the-art formal analysis tool, ProVerif, under Apache-2.0 license for reproducibility, extensibility, and review, and have been acknowledged by the relevant stakeholders. Currently, there are <strong>two CVEs of CVSS 9.1, one CVE of CVSS 7.5, one GHSA of 9.0-10.0, one GHSA of CVSS 7.8, seven GHSAs of CVSS 7.4, and one GHSA of CVSS 6.3 published against the broader early attestation covering all layers of the ecosystem up to the application</strong>. The research papers on these are currently either under submission or being prepared for submission. The artifacts of these papers will be shared with the community under Apache-2.0 license for reproducibility, extensibility, and review. In our analysis, the remaining implementations of early attestation -- Edgeless Systems Contrast and Meta's AI -- remain vulnerable.</t>
    </abstract>
    <note removeInRFC="true">
      <name>About This Document</name>
      <t>
        The latest revision of this draft can be found at <eref target="https://muhammad-usama-sardar.github.io/intra-handshake-fail/draft-intra-handshake-fail.html"/>.
        Status information for this document may be found at <eref target="https://datatracker.ietf.org/doc/draft-intra-handshake-fail/"/>.
      </t>
      <t>Source for this draft and an issue tracker can be found at
        <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail"/>.</t>
    </note>
  </front>
  <middle>
    <?line 300?>

<section anchor="introduction">
      <name>Introduction</name>
      <t><xref target="Intra-handshake.fail"/> presents a general approach to analyze the intra-handshake (aka early) attestation proposals, regardless of whether they are within the scope of SEAT charter or not. From a security perspective, one of the key decision factors is the candidate binding mechanism. Some binding mechanisms are within scope of SEAT charter and others are not. The artifacts are available in <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 license for reproducibility, extensibility and further research.</t>
      <t>A <strong>complementary</strong> paper <xref target="ID-Crisis"/> presents the identity crisis in pre- and intra-handshake attestation. The formal analysis is available in <xref target="ID-Crisis-repo"/> under Apache-2.0 license for reproducibility and extensibility.</t>
      <t>Another complementary paper -- currently under submission -- performs a thorough formal analysis of the design options in intra-handshake attestation.</t>
      <section anchor="overview">
        <name>Overview</name>
        <t><xref target="Intra-handshake.fail"/> presents the formal specification and analysis of the candidate binding mechanisms for binding in intra-handshake attestation for standardization for attested TLS protocols:</t>
        <table>
          <name>Binding mechanisms, implementations and ProVerif artifacts</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Used in</th>
              <th align="left">Artifacts</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MarkusRudy.contrast-atls-ccc-attestation.pdf">Edgeless Systems Contrast</eref>; <eref target="https://www.sns-itrust6g.com/wp-content/uploads/2025/12/Webinar-Architecting-Trust-CONFIDENTIAL6G.pdf">Cocos AI v0.8.2</eref>;  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref>; <eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI updated spec</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <xref target="I-D.fossati-tls-attestation-06"/></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7">binder7</eref></td>
            </tr>
          </tbody>
        </table>
        <artwork><![CDATA[
We provide a formal proof of insecurity of all the above candidate
binding mechanisms of intra-handshake attestation using the
state-of-the-art tool ProVerif and propose a mitigation for the
discovered security vulnerabilities. Our study reveals that it may
not be possible to achieve strong application-traffic (level 3)
binding using intra-handshake attestation alone. This can be exploited
for relay attacks, where an attacker makes a client accept an evidence
from a different machine. So the client cannot be sure that it connects
to its desired server.
]]></artwork>
        <t>We responsibly disclosed the vulnerability in intra-handshake attestation -- as noted in <xref target="GHSA-Cocos-AI"/> issued -- to the vendors, which resulted in  <xref target="CVE-2026-33697"/> of CVSS 7.5.</t>
      </section>
      <section anchor="modeling-other-binding-mechanisms">
        <name>Modeling Other Binding Mechanisms</name>
        <t>The artifacts are quite flexible for modification and testing of different intra-handshake attestation binding mechanisms by simply changing single <tt>rdata</tt> parameter in the Client and Server processes. Folder <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/aggregate">aggregate</eref> contains all analyzed and proposed binding mechanisms in <xref target="Intra-handshake.fail"/> to select via comment and uncomment. Other folders contain one specific binding mechanism.</t>
      </section>
      <section anchor="seat-early-attestation">
        <name>SEAT-Early-Attestation</name>
        <t>The draft <xref target="I-D.fossati-seat-early-attestation"/> is an extension of the provably vulnerable (and withdrawn) draft <xref target="I-D.fossati-tls-attestation-10"/> with the following two main changes from a formal perspective:</t>
        <ol spacing="normal" type="1"><li>
            <t>Binder has been updated</t>
          </li>
          <li>
            <t>Optional post-handshake attestation part has been added for re-attestation</t>
          </li>
        </ol>
        <t>The current binder in <xref target="I-D.fossati-seat-early-attestation"/> does not prevent relay attacks as there is no <strong>shared secret</strong> in the binder. In addition to the formal analysis in <xref target="Intra-handshake.fail"/>, see <xref target="TLS-RA"/> for arguments why shared secret is necessary to prevent relay attacks.</t>
        <t>Post-handshake attestation part may prevent relay attacks, but then the <strong>additional complexity</strong> of intra-handshake attestation is unjustified.</t>
      </section>
      <section anchor="executive-summary-of-current-status">
        <name>Executive Summary of Current Status</name>
        <t>Severity is based on <eref target="https://nvd.nist.gov/vuln-metrics/cvss">NIST metrics</eref>. Scores of 13 more GHSAs is yet to be confirmed and will be added later in this table. <strong>For TLS reference, Heartbleed was CVSS 7.5</strong>.</t>
        <table>
          <name>Published CVEs/GHSAs for intra-handshake (aka early) attestation</name>
          <thead>
            <tr>
              <th align="left">CVSS</th>
              <th align="left">Severity</th>
              <th align="left">Number of Published GHSAs</th>
              <th align="left">Number of Published CVEs</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">9.0-10.0</td>
              <td align="left">Critical</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">9.1</td>
              <td align="left">Critical</td>
              <td align="left">2</td>
              <td align="left">2</td>
            </tr>
            <tr>
              <td align="left">7.8</td>
              <td align="left">High</td>
              <td align="left">2</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">7.5</td>
              <td align="left">High</td>
              <td align="left">1</td>
              <td align="left">1</td>
            </tr>
            <tr>
              <td align="left">7.4</td>
              <td align="left">High</td>
              <td align="left">7</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">6.3</td>
              <td align="left">Medium</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
          </tbody>
        </table>
      </section>
    </section>
    <section anchor="sec-credits">
      <name>Published GHSAs/CVEs</name>
      <table>
        <name>GHSAs/CVEs for intra-handshake (aka early) attestation and finders in (roughly) chronological order of publishing -- Except for the very last GHSA, CVSS scores of previous 13 GHSAs are preliminary</name>
        <thead>
          <tr>
            <th align="left">GHSA/CVE</th>
            <th align="left">CVSS</th>
            <th align="left">Finders</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI"/></td>
            <td align="left">7.8</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">7.5</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-16488"/></td>
            <td align="left">7.5</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI2"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI3"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems2"/></td>
            <td align="left">9.0-10.0</td>
            <td align="left">Markus Rudy; independently by Songbo Bu and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rustls"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-go"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-eov"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-eom"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc-da"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc-tcu"/></td>
            <td align="left">6.3</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-92701"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-92702"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-83194"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-83192"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-322v-xwfj-63cm">GHSA-322v-xwfj-63cm</eref></td>
            <td align="left">9.8</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-m9p9-3hxp-4j6j">GHSA-m9p9-3hxp-4j6j</eref></td>
            <td align="left">9.1</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-ppc4-fg56-x397">GHSA-ppc4-fg56-x397</eref></td>
            <td align="left">8.2</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6j47-3cm6-9cg6">GHSA-6j47-3cm6-9cg6</eref></td>
            <td align="left">8.1</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-4755-rh6c-694j">GHSA-4755-rh6c-694j</eref></td>
            <td align="left">8.1</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6f8q-88mv-c8vr">GHSA-6f8q-88mv-c8vr</eref></td>
            <td align="left">7.9</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-qqq3-6c47-684v">GHSA-qqq3-6c47-684v</eref></td>
            <td align="left">7.5</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-xxr6-w252-4ggx">GHSA-xxr6-w252-4ggx</eref></td>
            <td align="left">7.5</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-fmrx-fjqw-37gp</eref></td>
            <td align="left">6.5</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-f96w-jjf8-xpw3</eref></td>
            <td align="left">5.6</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fqrx-3wc2-4g49">GHSA-fqrx-3wc2-4g49</eref></td>
            <td align="left">4.4</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-mrgr-34cc-fcg8">GHSA-mrgr-34cc-fcg8</eref></td>
            <td align="left">4.2</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-wqf9-jfmm-f68v">GHSA-wqf9-jfmm-f68v</eref></td>
            <td align="left">4.2</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-376m-h37w-4rvq">GHSA-376m-h37w-4rvq</eref></td>
            <td align="left">7.8</td>
            <td align="left">Chengxin Huang, Songbo Bu, and Muhammad Usama Sardar</td>
          </tr>
        </tbody>
      </table>
    </section>
    <section anchor="threat-model">
      <name>Threat Model</name>
      <t>The threat model is explained in Sec. 6.1 of <xref target="Intra-handshake.fail"/> and Sec. 4 of <xref target="ID-Crisis"/>.</t>
      <t>Beyond post-generation leakage of <tt>privEK</tt> considered in <xref target="Intra-handshake.fail"/>, the same adversary capability may arise from failures during key generation or entropy provisioning. Platform-attestation keys and workload-controlled TLS keys belong to distinct key-generation domains: for example, in AMD SEV-SNP the VCEK is derived by SNP firmware from chip-unique secrets and a TCB version, while several other platform secrets are specified as CSRNG-generated; by contrast, <tt>privEK</tt> and TLS (EC)DHE private values are typically generated by software executing inside the confidential VM using the guest OS or cryptographic-library random subsystem. Furthermore, SEV-SNP <tt>REPORT_DATA</tt> is supplied by the guest and incorporated into the signed attestation report without being interpreted by SNP firmware; consequently, valid Evidence can authenticate a binding value without attesting the entropy provenance, generation procedure, or exclusive possession of the corresponding private key. The <tt>LEK(privEK)</tt> capability should therefore also encompass predictable or repeated key generation caused by deficient entropy, cloned or rolled-back DRBG state, defective software or firmware, or malicious provisioning. <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-7055.html">CVE-2025-62626</eref> provides a concrete manufacturer-layer fault model: affected AMD Zen 5 processors could return insufficiently random values from certain <tt>RDSEED</tt> forms while incorrectly signaling success. This does not establish compromise of the AMD-SP-internal CSRNG or of a specific attested-TLS implementation, but demonstrates that ideal-randomness assumptions can fail below the protocol layer; software dependencies such as OpenSSL's <tt>--with-rand-seed=rdcpu</tt> (<eref target="https://github.com/openssl/openssl/blob/openssl-3.5.0/INSTALL.md">OpenSSL 3.5.0 INSTALL.md</eref>), which can use <tt>RDSEED</tt> or <tt>RDRAND</tt> as CSPRNG seed input, illustrate a possible propagation path from hardware entropy interfaces to workload TLS key generation.</t>
      <section anchor="low-level-mapping-of-the-system-model">
        <name>Low-Level Mapping of the System Model</name>
        <t>Figure 2 of <xref target="Intra-handshake.fail"/> provides a TEE-agnostic protocol-level
abstraction. For a low-level view, the following table maps the abstract
components to representative Intel TDX and AMD SEV-SNP implementations.</t>
        <table>
          <name>Mapping of the abstract system model to representative CC implementations</name>
          <thead>
            <tr>
              <th align="left">Fig. 2 element</th>
              <th align="left">Intel TDX</th>
              <th align="left">AMD SEV-SNP</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">
                <strong>Physical Machine</strong></td>
              <td align="left">TDX-capable Intel platform</td>
              <td align="left">SEV-SNP-capable AMD platform</td>
            </tr>
            <tr>
              <td align="left">
                <strong>CC Platform</strong></td>
              <td align="left">CPU HW + TDX Module + attestation infrastructure</td>
              <td align="left">CPU HW + AMD-SP/SNP (system) firmware + RMP/SEV machinery</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Quoting Agent</strong></td>
              <td align="left">TD QE</td>
              <td align="left">AMD-SP / SNP attestation (VM) firmware</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Confidential VM</strong></td>
              <td align="left">Trust Domain (TD)</td>
              <td align="left">Part of SNP confidential VM</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Network stack</strong></td>
              <td align="left">Part of guest OS + TLS library inside TD</td>
              <td align="left">Part of guest OS + TLS library inside SNP guest</td>
            </tr>
            <tr>
              <td align="left">
                <strong>HSM/TPM</strong></td>
              <td align="left">Secure element</td>
              <td align="left">Secure element</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privAK</tt></strong></td>
              <td align="left">Attestation key of TD Quoting Enclave</td>
              <td align="left">VCEK/VLEK signing key</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privEK</tt></strong></td>
              <td align="left">Workload/TLS-side ephemeral key</td>
              <td align="left">Workload/TLS-side ephemeral key</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privLTK</tt></strong></td>
              <td align="left">Long-term key in secure element</td>
              <td align="left">Long-term key in secure element</td>
            </tr>
          </tbody>
        </table>
        <t>The key material shown in the abstract model belongs to different implementation
and trust domains. The following table provides a corresponding low-level view.</t>
        <table>
          <name>Low-level implementation and key-generation domains</name>
          <thead>
            <tr>
              <th align="left">Component/key</th>
              <th align="left">Runs/lives where?</th>
              <th align="left">Type</th>
              <th align="left">Randomness/key source</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">TLS ECDHE</td>
              <td align="left">Inside network stack</td>
              <td align="left">Network stack</td>
              <td align="left">OS/library CSPRNG</td>
            </tr>
            <tr>
              <td align="left">
                <tt>privEK</tt></td>
              <td align="left">Inside confidential VM</td>
              <td align="left">Guest software</td>
              <td align="left">OS/library CSPRNG</td>
            </tr>
            <tr>
              <td align="left">AK</td>
              <td align="left">Quoting Agent</td>
              <td align="left">Firmware/enclave/platform key hierarchy</td>
              <td align="left">Platform-specific</td>
            </tr>
            <tr>
              <td align="left">Memory-encryption key</td>
              <td align="left">CC Platform</td>
              <td align="left">Hardware/firmware managed</td>
              <td align="left">Platform RNG/KDF</td>
            </tr>
            <tr>
              <td align="left">
                <tt>REPORT_DATA</tt></td>
              <td align="left">Created by Guest Software</td>
              <td align="left">Data binding</td>
              <td align="left">No independent entropy requirement</td>
            </tr>
          </tbody>
        </table>
        <t>Per-VM memory-encryption key is used to encrypt confidential VM's RAM.</t>
      </section>
    </section>
    <section anchor="detailed-vulnerability-disclosure-timeline-and-public-acknowledgements-by-affected-vendors">
      <name>Detailed Vulnerability Disclosure Timeline and Public Acknowledgements by Affected Vendors</name>
      <table>
        <name>Detailed vulnerability disclosure timeline and acknowledgements</name>
        <thead>
          <tr>
            <th align="left">Event</th>
            <th align="left">Date</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">Our initial responsible disclosure to vendor</td>
            <td align="left">07 Oct, 2025</td>
          </tr>
          <tr>
            <td align="left">Acknowledgement by vendor</td>
            <td align="left">14 Dec, 2025</td>
          </tr>
          <tr>
            <td align="left">Information to the <eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">IETF</eref></td>
            <td align="left">11 Jan, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://web.archive.org/web/20260227160554/https://www.ultraviolet.rs/blog/tee-tls-privacy/">Public announcement</eref> by vendor</td>
            <td align="left">27 Feb, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>]</td>
            <td align="left">23 March, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-33697"/> published  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-16488"/>  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/rustls/releases/tag/privasys-v0.8.1">Acknowledgment</eref> by Privasys for rustls <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">9 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/go/releases/tag/privasys-v0.5.1-go1.26.5">Acknowledgment</eref> by Privasys for go <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">10 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation</eref> declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref></td>
            <td align="left">17 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation repo</eref> archived</td>
            <td align="left">22 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable draft <xref target="I-D.fossati-tls-attestation-10"/> withdrawn by authors</td>
            <td align="left">23 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">29 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI2"/>  [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">16 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI3"/>  [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">16 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems2"/> [<strong>Severity = CRITICAL (CVSS 9.0-10.0)</strong>]</td>
            <td align="left">24 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rustls"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-go"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-eov"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-eom"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys archived early attestation in rustls and moved to post-handshake attestation</td>
            <td align="left">4 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys archived early attestation in go and moved to post-handshake attestation</td>
            <td align="left">4 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc-da"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">6 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc-tcu"/> [<strong>Severity = MEDIUM (CVSS 6.3)</strong>]</td>
            <td align="left">6 September, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-92701"/> published [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-92702"/> published [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-83194"/> [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-83192"/> [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-322v-xwfj-63cm">GHSA-322v-xwfj-63cm</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-m9p9-3hxp-4j6j">GHSA-m9p9-3hxp-4j6j</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-ppc4-fg56-x397">GHSA-ppc4-fg56-x397</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6j47-3cm6-9cg6">GHSA-6j47-3cm6-9cg6</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-4755-rh6c-694j">GHSA-4755-rh6c-694j</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6f8q-88mv-c8vr">GHSA-6f8q-88mv-c8vr</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-qqq3-6c47-684v">GHSA-qqq3-6c47-684v</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-xxr6-w252-4ggx">GHSA-xxr6-w252-4ggx</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-fmrx-fjqw-37gp</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-f96w-jjf8-xpw3</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fqrx-3wc2-4g49">GHSA-fqrx-3wc2-4g49</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-mrgr-34cc-fcg8">GHSA-mrgr-34cc-fcg8</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-wqf9-jfmm-f68v">GHSA-wqf9-jfmm-f68v</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <eref target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-376m-h37w-4rvq">GHSA-376m-h37w-4rvq</eref></td>
            <td align="left">24 September, 2026</td>
          </tr>
        </tbody>
      </table>
      <t><strong>Neither the GHSAs nor the CVEs have any dependency whatsoever on the considered threat model with <tt>WeakHash</tt>, <tt>WeakDH</tt>, or <tt>BadElement</tt>.</strong> They hold independent of those, i.e., with <tt>StrongHash</tt> and <tt>StrongDH</tt> and all good elements within a group.</t>
    </section>
    <section anchor="eu-enisa">
      <name>EU ENISA</name>
      <t>European Union's <eref target="https://euvd.enisa.europa.eu/homepage">ENISA</eref> has independently published <xref target="EUVD-2026-16488"/> with CVSS 7.5 to acknowledge this vulnerability.</t>
    </section>
    <section anchor="sec-cvss-scores">
      <name>Comparison with Other Vulnerabilities in Confidential Computing Literature</name>
      <t>Severity is based on <eref target="https://nvd.nist.gov/vuln-metrics/cvss">NIST metrics</eref>.</t>
      <table>
        <name>Comparison with other vulnerabilities in confidential computing literature</name>
        <thead>
          <tr>
            <th align="left">Vulnerability</th>
            <th align="left">CVE</th>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <eref target="https://wiretap.fail/files/wiretap.pdf">wiretap.fail</eref></td>
            <td align="left">No CVE (<eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2025-10-28-001.html">Intel</eref> and <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3040.html">AMD</eref> announcements)</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://tee.fail/files/paper.pdf">TEE.fail</eref></td>
            <td align="left">No CVE</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://ddropattack.eu/ddrop.pdf">DDRop</eref></td>
            <td align="left">No CVE (<eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2026-08-11-001.html">Intel</eref> and <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3048.html">AMD</eref> announcements)</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://dl.acm.org/doi/10.1145/3658644.3690230">TDXdown</eref></td>
            <td align="left">
              <eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2024-10-08-001.html">Intel</eref></td>
            <td align="left">2.5</td>
            <td align="left">Low</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/staleus/staleus_usenix26.pdf">Staleus</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-54509">CVE-2025-54509</eref></td>
            <td align="left">4.0</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-6197">CVE-2025-61972</eref></td>
            <td align="left">4.2</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://badram.eu/badram.pdf">BadRAM</eref></td>
            <td align="left">
              <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3015.html">AMD</eref></td>
            <td align="left">5.3</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-61971">CVE-2025-61971</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/fabricked/fabricked_usenix26.pdf">Fabricked</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=cve-2025-54510">CVE-2025-54510</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">Intra-handshake.fail</eref></td>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">7.5</td>
            <td align="left">High</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EarlyAttestationBleed"/></td>
            <td align="left">
              <xref target="CVE-2026-92701"/></td>
            <td align="left">9.1</td>
            <td align="left">Critical</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EarlyAttestationBleed"/></td>
            <td align="left">
              <xref target="CVE-2026-92702"/></td>
            <td align="left">9.1</td>
            <td align="left">Critical</td>
          </tr>
        </tbody>
      </table>
      <t>The comparison of the above with CVSS <strong>9.1</strong> for early attestation indicates that it is not mature yet compared to the rest of the confidential computing stack, and is currently one of the weakest links in the ecosystem.</t>
    </section>
    <section anchor="more-cves">
      <name>More CVEs</name>
      <t>Further formal analysis has led to the following potential CVEs for intra-handshake (aka early) attestation (currently under review and disclosure):</t>
      <table>
        <name>Expected CVEs for intra-handshake (aka early) attestation under review and disclosure</name>
        <thead>
          <tr>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
            <th align="left">Number of CVEs</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">9.0-10.0</td>
            <td align="left">Critical</td>
            <td align="left">1 (confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">9.8</td>
            <td align="left">Critical</td>
            <td align="left">1</td>
          </tr>
          <tr>
            <td align="left">8.7</td>
            <td align="left">High</td>
            <td align="left">1</td>
          </tr>
          <tr>
            <td align="left">7.8</td>
            <td align="left">High</td>
            <td align="left">1 (confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">7.5</td>
            <td align="left">High</td>
            <td align="left">5</td>
          </tr>
          <tr>
            <td align="left">7.4</td>
            <td align="left">High</td>
            <td align="left">9 (5 confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">6.3</td>
            <td align="left">Medium</td>
            <td align="left">7</td>
          </tr>
        </tbody>
      </table>
      <t>These are preliminary estimates of scores, not final assigned score. They are still under review.</t>
    </section>
    <section anchor="vulnerable-implementations">
      <name>Vulnerable Implementations</name>
      <t>As demonstrated in <xref target="Intra-handshake.fail"/> and <xref target="Intra-handshake.fail-repo"/>, at least the following intra-handshake implementations are vulnerable:</t>
      <ul spacing="normal">
        <li>
          <t><eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI</eref>: <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
        <li>
          <t><eref target="https://github.com/edgelesssys/contrast">Edgeless Systems Contrast</eref>: <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</t>
        </li>
      </ul>
      <t>If you are aware of any other intra-handshake attestation implementation, please let us know so that we can check and responsibly disclose the vulnerabilities to them.</t>
      <section anchor="archivedmitigated-implementations">
        <name>Archived/Mitigated Implementations</name>
        <t>The following intra-handshake implementations were vulnerable and have been <strong>archived</strong> or moved to <strong>post</strong>-handshake attestation:</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref>: declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref> and <strong>archived</strong></t>
          </li>
          <li>
            <t><eref target="https://github.com/ultravioletrs/cocos">Cocos AI &lt;= v0.8.2</eref>: <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>], <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]; <strong>migrated</strong> to post-handshake attestation since v0.9.0</t>
          </li>
          <li>
            <t><eref target="https://github.com/Privasys/rustls">Privasys rustls &lt;= privasys-v0.2.0</eref>: <xref target="GHSA-Privasys-rustls"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>], <strong>archived</strong> and Privasys migrated to post-handshake attestation</t>
          </li>
          <li>
            <t><eref target="https://github.com/Privasys/go">Pirvasys go &lt;= privasys-v0.3.0-go1.26.5</eref>: <xref target="GHSA-Privasys-go"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>], <strong>archived</strong> and Privasys migrated to post-handshake attestation</t>
          </li>
        </ul>
      </section>
    </section>
    <section anchor="vulnerable-protocol-specifications">
      <name>Vulnerable Protocol Specifications</name>
      <t>At least the following protocol specifications with intra-handshake attestation <em>path</em> are vulnerable to <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/>:</t>
      <ul spacing="normal">
        <li>
          <t><xref target="I-D.fossati-tls-attestation-09"/>: symbolic proof of insecurity; <xref target="I-D.fossati-tls-attestation-10"/> <strong>withdrawn</strong> after the CVE</t>
        </li>
        <li>
          <t><xref target="I-D.fossati-seat-early-attestation"/>: symbolic and (paper-and-pen-based) computational proof of insecurity (originally done for -04 and applies also to -06)
          </t>
          <ul spacing="normal">
            <li>
              <t>As a SEAT WG participant pointed out, please note that both <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> contain a link to <xref target="GHSA-Cocos-AI"/> that contains a link to <xref target="SEAT-vulnerability-report"/> that contains the G3 property (cf. <xref target="sec-corr-goals"/>) that this draft does not satisfy.</t>
            </li>
            <li>
              <t>Some WG participants successfully reproduced the vulnerability by substituting the right value of <tt>rdata</tt> in the shared formal model <xref target="Intra-handshake.fail-repo"/> that led to the CVE.</t>
            </li>
            <li>
              <t>An informal reasoning is that binder is not <strong>directly</strong> derived from any <strong>shared secret</strong> in this draft.</t>
            </li>
            <li>
              <t><strong>Unnecessary complexity</strong> is itself a security concern</t>
            </li>
          </ul>
        </li>
        <li>
          <t><xref target="I-D.ritz-seat-facts"/>: symbolic proof of insecurity
          </t>
          <ul spacing="normal">
            <li>
              <t>violates G3 property in our analysis</t>
            </li>
            <li>
              <t>unnecessary complexity is itself a security concern</t>
            </li>
          </ul>
        </li>
      </ul>
    </section>
    <section anchor="binding-levels">
      <name>Binding Levels</name>
      <ol spacing="normal" type="1"><li>
          <t>DH shared secret (<tt>gxy</tt>) used as shared secret between client and server</t>
        </li>
        <li>
          <t>Handshake traffic key (<tt>htsc</tt>) used for encryption of handshake messages</t>
        </li>
        <li>
          <t>Application traffic key (<tt>atsc</tt>) used for encryption of application data</t>
        </li>
      </ol>
      <t>Please see Sec. 6.2 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="sec-corr-goals">
      <name>Security Properties (Correlation Goals)</name>
      <t>We consider TLS Server as RATS Attester, which is typical in confidential computing.</t>
      <ol spacing="normal" type="1"><li>
          <t>Correlation of Evidence to a DH Shared Secret (G1)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Handshake Traffic Key (G2)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Application Traffic Key (G3)</t>
        </li>
      </ol>
      <t>Please see Sec. 6.3 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="main-results">
      <name>Main Results</name>
      <ul spacing="normal">
        <li>
          <t>All analyzed binding mechanisms and the corresponding implementations of intra-handshake attestation are vulnerable to relay attacks.</t>
        </li>
        <li>
          <t>Early exporter helps achieve level 1 binding.</t>
        </li>
        <li>
          <t>Our proposed mechanism helps achieve level 2 binding.</t>
        </li>
        <li>
          <t>It may not be possible to achieve level 3 in intra-handshake attestation alone without additional assumptions.</t>
        </li>
      </ul>
      <table>
        <name>Main results</name>
        <thead>
          <tr>
            <th align="left">Property</th>
            <th align="left">Mechanism #1,2,4,6</th>
            <th align="left">Mechanism #3,5,7</th>
            <th align="left">Proposed mechanism</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">G1 : Correlation of Evidence to <tt>gxy</tt></td>
            <td align="left">❌</td>
            <td align="left">✅</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G2 : Correlation of Evidence to <tt>kch</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G3 : Correlation of Evidence to <tt>kc</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">❌</td>
          </tr>
        </tbody>
      </table>
      <t>Please see Sec. 7.1 and Figure 5 of <xref target="Intra-handshake.fail"/> for details of attacks.</t>
      <section anchor="expected-results">
        <name>Expected Results</name>
        <table>
          <name>Expected results</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Artifacts</th>
              <th align="left">Expected results</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/">binder1</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/log.txt">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/">binder2</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/log.txt">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/">binder3</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/log.txt">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/">binder4</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/log.txt">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/">binder5</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/log.txt">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/">binder6</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/log.txt">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/">binder7</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/log.txt">binder7</eref></td>
            </tr>
            <tr>
              <td align="left">8.</td>
              <td align="left">Proposed</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/">proposal</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/log.txt">proposal</eref></td>
            </tr>
          </tbody>
        </table>
      </section>
    </section>
    <section anchor="implications-of-findings">
      <name>Implications of Findings</name>
      <section anchor="implications-of-findings-for-ietf-seat-wg">
        <name>Implications of Findings for IETF SEAT WG</name>
        <ul spacing="normal">
          <li>
            <t>We believe post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>, can achieve level 3 binding.</t>
          </li>
          <li>
            <t>The research suggests that recent hybrid proposals (combination of intra-handshake attestation and post-handshake attestation) <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> may add <strong>unnecessary complexity</strong> of intra-handshake attestation without adding any security benefit compared to post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>. We are not aware of any <strong>security property</strong> that hybrid proposals can achieve that post-handshake attestation alone cannot achieve.</t>
          </li>
          <li>
            <t>As demonstrated by our symbolic analysis using ProVerif, the protocol specifications <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> remain vulnerable to CVE-2026-33697. We have also proved that <xref target="I-D.fossati-seat-early-attestation-04"/> and <xref target="I-D.fossati-seat-early-attestation"/> violate the security theorems in the computational model.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-lake-wg">
        <name>Implications of Findings for IETF LAKE WG</name>
        <ul spacing="normal">
          <li>
            <t>Similar problems occur for protocol specification <eref target="https://datatracker.ietf.org/doc/draft-ietf-lake-ra/">lake-ra</eref>.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-tls-wg">
        <name>Implications of Findings for IETF TLS WG</name>
        <ul spacing="normal">
          <li>
            <t><xref target="I-D.fossati-tls-attestation-09"/> is vulnerable to <xref target="CVE-2026-33697"/>. Thankfully, the authors have withdrawn <xref target="I-D.fossati-tls-attestation-10"/>.</t>
          </li>
          <li>
            <t>Remote attestation <em>within</em> the handshake is very dangerous, since to our knowledge, it is one of the highest scored published vulnerabilities in confidential computing literature (see <xref target="sec-cvss-scores"/>). For reference, <strong>Heartbleed</strong> was <strong>7.5 CVSS</strong>.</t>
          </li>
        </ul>
        <artwork><![CDATA[
Given the high- and critical-severity vulnerabilities, we recommend
that the developers and maintainers of intra-handshake attestation MUST
urgently move to post-handshake attestation.
]]></artwork>
      </section>
      <section anchor="implications-of-findings-for-agent2agent">
        <name>Implications of Findings for Agent2Agent</name>
        <t>The findings of published CVEs/GHSAs up to 9.1 (presented in <xref target="sec-credits"/>) show that intra-handshake attestation can introduce significant security risks for AI agents when relied upon as a security mechanism.</t>
        <t>Attestation can provide evidence about an agent’s technical state, but such evidence should not be equated with governability. For a relying party, governability also depends on whether the agent’s identity, authority and permissions remain aligned with the intended interaction, whether responsibility for its actions can be attributed, and whether meaningful intervention remains possible. The findings in this draft reinforce that distinction by showing that even the binding between attestation evidence and the intended session can fail. Successful attestation should therefore be treated as one input into governance, rather than as sufficient evidence that an AI agent remains under effective control.</t>
      </section>
    </section>
    <section anchor="technical-details">
      <name>Technical Details</name>
      <section anchor="tool">
        <name>Tool</name>
        <t>We use state-of-the-art symbolic security analysis tool <eref target="https://ieeexplore.ieee.org/document/9833653">ProVerif</eref> for the specification of the protocols.</t>
      </section>
      <section anchor="modeling">
        <name>Modeling</name>
        <t>The formal model uses the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work as the starting point to focus on relay attacks in intra-handshake attestation in this work.
The rationale is that we consider it more useful to show the added value of this contribution to the community by using the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> as the baseline, rather than showing the same diversion attacks from <xref target="ID-Crisis"/>, and the discovered CVE (<xref target="CVE-2026-33697"/>) -- which the previous analysis could not find -- practically demonstrates the added value.
This modeling choice makes it clear that even with the diversion attacks fixed, high-severity relay attacks would still remain in intra-handshake attestation.</t>
        <t>Note: Similar to the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work, we model non-PSK-based handshake.
From <xref target="ID-Crisis"/>:</t>
        <ul empty="true">
          <li>
            <t>For modeling TLS 1.3, we consider handshakes based on Diffie-Hellman over either finite fields or elliptic curves, represented as (EC)DHE. This is because we are unaware of any publicly available specification or implementation of attested TLS with PSK-based handshakes.</t>
          </li>
        </ul>
        <t>While it would be nice to model PSK-based handshake, the rationale is that the correlation properties studied in this work do not necessarily require it.</t>
        <t>Note: The artifacts consider the case of server authentication only, as client authentication is optional in TLS 1.3. No claims are made about other configurations.</t>
      </section>
      <section anchor="properties">
        <name>Properties</name>
        <t>Properties in <xref target="Intra-handshake.fail"/> are complemetary to properties in <xref target="ID-Crisis"/>. Sec. 8 of <xref target="ID-Crisis"/> mentions:</t>
        <ul empty="true">
          <li>
            <t>We emphasize that both diversion and relay attacks are orthogonal and thus the two works are complementary.</t>
          </li>
        </ul>
      </section>
      <section anchor="technical-vulnerability-report">
        <name>Technical Vulnerability Report</name>
        <t>Technical vulnerability report is available at <xref target="Intra-handshake.fail"/>. It is accepted for publication at ESORICS 2026.</t>
        <section anchor="vulnerabilities">
          <name>Vulnerabilities</name>
          <t>Sec. 7.1 of <xref target="Intra-handshake.fail"/> presents the technical details with abstract attack traces of the vulnerabilities.</t>
        </section>
        <section anchor="mitigation">
          <name>Mitigation</name>
          <t>Sec. 7.2 of <xref target="Intra-handshake.fail"/> presents the technical details of the proposed mitigation.</t>
        </section>
      </section>
      <section anchor="artifacts">
        <name>Artifacts</name>
        <t>Artifacts are available at <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 License.</t>
      </section>
    </section>
    <section anchor="sec-news">
      <name>Media Coverage</name>
      <t>Several cybersecurity and media professionals and bloggers have covered the vulnerabilities to protect the community from the harm of early attestation.</t>
      <section anchor="earlyattestationbleed">
        <name>EarlyAttestationBleed</name>
        <t><xref target="EarlyAttestationBleed"/></t>
        <ul spacing="normal">
          <li>
            <t>(German) <eref target="https://cybersecurity-news.de/cve-2026-92701-trusted-execution-environments-0-8-2/">Cybersecurity news (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t>(German) <eref target="https://cybersecurity-news.de/cve-2026-92702-cocos-ai-0-8-2/">Cybersecurity news (CVE-2026-92702)</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://www.anquan114.com/archives/7429">Security 114</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://mp.weixin.qq.com/s/31Glxqr6ofHylTyrtNsuaQ">KK says security</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="mp.weixin.qq.com/s/REtESPngXemSro0hjIZyxw">Safe Meow Station</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://mp.weixin.qq.com/s/864dwIXF5IY04q7ig4uBwg">Digital World Information</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://mp.weixin.qq.com/s/864dwIXF5IY04q7ig4uBwg">Shusei Consulting</eref></t>
          </li>
          <li>
            <t><eref target="https://freenode.net/digest/518">Freenode</eref></t>
          </li>
          <li>
            <t><eref target="https://collective.flashbots.net/t/earlyattestationbleed-paper-review/6054">Flashbots</eref></t>
          </li>
          <li>
            <t>(Japanese) <eref target="https://www.rich-wise.co.jp/cve-info/cve-2026-92701-intel-tdx%E3%81%AE%E8%84%86%E5%BC%B1%E6%80%A7%E3%81%AB%E3%82%88%E3%82%8A%E3%82%BB%E3%82%AD%E3%83%A5%E3%83%AA%E3%83%86%E3%82%A3%E5%AF%BE%E7%AD%96%E3%82%92%E8%AC%9B%E3%81%98%E3%82%8B/">Rich &amp; Wise with Socrates and Plato</eref></t>
          </li>
          <li>
            <t><eref target="https://app.opencve.io/cve/CVE-2026-92701">OpenCVE (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t><eref target="https://app.opencve.io/cve/CVE-2026-92702">OpenCVE (CVE-2026-92702)</eref></t>
          </li>
          <li>
            <t>CIRCL's <eref target="https://vulnerability.circl.lu/vuln/CVE-2026-92701">vulnerability.circl.lu (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t>CIRCL's <eref target="https://vulnerability.circl.lu/vuln/CVE-2026-92702">vulnerability.circl.lu (CVE-2026-92702)</eref></t>
          </li>
          <li>
            <t>GCVE's <eref target="https://db.gcve.eu/vuln/cve-2026-92701">db.gcve.eu (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t>GCVE's <eref target="https://db.gcve.eu/vuln/cve-2026-92702">db.gcve.eu (CVE-2026-92702)</eref></t>
          </li>
        </ul>
        <t>If you have written an article on this and would like to be added here, please send us a PR at <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail">https://github.com/muhammad-usama-sardar/intra-handshake-fail</eref> or an email with the subject "Media coverage of EarlyAttestationBleed."</t>
      </section>
      <section anchor="intra-handshakefail">
        <name>Intra-handshake.fail</name>
        <t><xref target="Intra-handshake.fail"/></t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref></t>
          </li>
          <li>
            <t>(Japanese) <eref target="https://blackhatnews.tokyo/archives/119915">BlackHatNewsTokyo</eref></t>
          </li>
          <li>
            <t>(Several languages) <eref target="https://hackernoon.com/attested-tls-was-supposed-to-be-the-last-trust-boundary-it-isnt-formal-methods-show-how">Hackernoon</eref></t>
          </li>
          <li>
            <t><eref target="https://podcasts.apple.com/eg/podcast/attested-tls-was-supposed-to-be-the-last-trust/id1698517643?i=1000776623286">Apple podcast</eref></t>
          </li>
          <li>
            <t><eref target="https://meterpreter.org/attested-tls-vulnerability-cve-2026-33697/">Information Security News</eref></t>
          </li>
          <li>
            <t><eref target="https://thenextgentechinsider.com/pulse/critical-flaw-discovered-in-confidential-computing-attestation-protocols">TheNextGenTechInsider</eref></t>
          </li>
          <li>
            <t><eref target="https://dailysecurityreview.com/resources/cve-2026-33697-attested-tls-relay-flaw-hits-whatsapp-cocos-ai/">DailySecurityReview</eref></t>
          </li>
          <li>
            <t><eref target="https://www.scworld.com/brief/confidential-computings-remote-attestation-protocol-may-have-fundamental-flaw">SC World</eref></t>
          </li>
          <li>
            <t><eref target="https://blogs.groupware.org.uk/01-Quantum-Inc/the-handshake-that-cant-keep-its-promise-why-confidential-computings-flaw-changes-the-data-sovereignty-conversation/">01 Quantum</eref></t>
          </li>
          <li>
            <t>(Russian) <eref target="https://www.securitylab.ru/news/574545.php">Security Lab</eref></t>
          </li>
          <li>
            <t>(German) <eref target="https://www.blogspan.net/confidential-computing-attestierung-relay-luecke/">blogspan</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://finance.sina.cn/tech/2026-07-04/detail-inifscxt9953361.d.html">Sina</eref></t>
          </li>
          <li>
            <t><eref target="https://data4biz.com/articles/una-falla-rompe-la-fiducia-del-confidential-computing">data4biz</eref></t>
          </li>
          <li>
            <t>(Russian) <eref target="https://www.itsec.ru/news/issledovateli-nashli-kriticheskuyu-uyazvimost-v-attested-tls">ITSec</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://post.smzdm.com/p/a82ol990/">smzdm</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://www.donews.com/news/detail/4/6621022.html">donews</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://i.ifeng.com/c/8uUfy0PMmqE">ifeng</eref></t>
          </li>
          <li>
            <t><eref target="https://www.dugganusa.com/post/confidential-computing-s-whole-pitch-is-trust-the-proof-not-the-cloud-two-years-of-formal-verifi">dugganusa</eref></t>
          </li>
          <li>
            <t><eref target="https://github.com/pduggusa/dugganusa-ietf/tree/main/cve-2026-33697-attestation">dugganusa repo</eref></t>
          </li>
          <li>
            <t><eref target="https://sploitus.com/exploit?id=92591A05-07BC-5015-BA3D-B1347B35D684">spoitus</eref></t>
          </li>
          <li>
            <t><eref target="https://news.lavx.hu/article/attested-tls-research-exposes-a-weak-link-in-confidential-computing">lavx news</eref></t>
          </li>
          <li>
            <t><eref target="https://www.sohu.com/a/1045865934_122004016">sohu</eref></t>
          </li>
          <li>
            <t>(Persian) <eref target="https://news.ditty.ir/news/attested-tls-relay-flaw-formal-methods/019f6221-26ca-7293-9ee9-5557b3c0b8f8">news.ditty</eref></t>
          </li>
          <li>
            <t>(Russian) <eref target="https://limpvpn.com/ru/news/attested-tls-whatsapp-privacy-flaw-2026">LiMP VPN</eref></t>
          </li>
          <li>
            <t><eref target="https://daily.dev/posts/kI6PoNzPx">daily.dev</eref></t>
          </li>
          <li>
            <t><eref target="https://warden.veritai.ch/news/researchers-find-attested-tls-flaws-that-weaken-confidential-computing-trust-model">warden</eref></t>
          </li>
          <li>
            <t><eref target="https://db.gcve.eu/sightings/?query=cve-2026-33697">GCVE.eu</eref></t>
          </li>
          <li>
            <t><eref target="https://vulnerability.circl.lu/vuln/CVE-2026-33697#sightings">vuln.lu</eref></t>
          </li>
          <li>
            <t><eref target="https://coderlegion.com/24087/intra-handshake-attestation-when-more-security-doesnt-mean-better-security">coderlegion</eref></t>
          </li>
          <li>
            <t><eref target="https://www.anjuna.io/blog/attested-tls-flaw-explained">Anjuna Security</eref></t>
          </li>
          <li>
            <t><eref target="https://privasys.org/blog/binding-attestation-to-the-tls-session/">Privasys</eref></t>
          </li>
          <li>
            <t><eref target="https://caution.co/blog/steve-attesting-the-session.html">Caution</eref></t>
          </li>
          <li>
            <t><eref target="https://freenode.net/digest/67">freenode</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://blog.csdn.net/weixin_42376192/category_13096766.html">csdn</eref></t>
          </li>
          <li>
            <t><eref target="https://osintsights.com/confidential-computing-flaws-expose-trust-risks">osintsights</eref></t>
          </li>
          <li>
            <t>(Turkish) <eref target="https://hardwaremania.com/haber/arastirma-attested-tls-confidential-computing-icin-zayif-kaliyor/">hardwaremania</eref></t>
          </li>
          <li>
            <t><eref target="https://akber.com/sovereignty-in-the-cloud-is-an-illusion/">akber</eref></t>
          </li>
          <li>
            <t><eref target="https://www.ad-hoc-news.de/wissenschaft/cloud-souveraenitaet-red-hat-startet-reifegrad-assessments-gegen/69691475">ad-hoc news</eref></t>
          </li>
          <li>
            <t><eref target="https://aimultiple.com/privacy-enhancing-technologies">AIMultiple</eref></t>
          </li>
        </ul>
        <section anchor="security-researchers">
          <name>Security Researchers</name>
          <t>Several credible security researchers, such as the following, have publicly attested to it.</t>
          <ul spacing="normal">
            <li>
              <t><eref target="https://www.linkedin.com/posts/michaelpak_confidential-computings-core-trust-mechanism-activity-7479415537836376064-q-A4/">Michael Pak</eref></t>
            </li>
            <li>
              <t><eref target="https://www.linkedin.com/posts/rrbranco_one-more-evidence-that-there-is-no-such-a-share-7479582122366615552-X0A5/">Rodrigo Branco</eref></t>
            </li>
            <li>
              <t><eref target="https://www.linkedin.com/posts/bart-preneel-4451412_on-the-limits-of-confidential-computing-share-7479549718294077440-wfi3/">Bart Preneel</eref></t>
            </li>
            <li>
              <t><eref target="https://www.linkedin.com/in/strufe/recent-activity/all/">Thorsten Strufe</eref></t>
            </li>
          </ul>
        </section>
        <section anchor="germanys-bsi">
          <name>Germany's BSI</name>
          <t>Germany's Federal Office for Information Security (Bundesamt für Sicherheit in der Informationstechnik) has attested to it. Carina Hilt, deputy press spokesperson at BSI, told <eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref>:</t>
          <artwork><![CDATA[
CC alone cannot satisfy the requirements for digital sovereignty.
]]></artwork>
          <artwork><![CDATA[
dependencies on other services, such as identity and key
management etc., are also not mitigated by CC.
]]></artwork>
          <t>CC refers to Confidential Computing, and attested TLS is the core trust mechanism of CC.</t>
        </section>
      </section>
    </section>
    <section anchor="reviews">
      <name>Reviews</name>
      <section anchor="conference-reviews">
        <name>Conference Reviews</name>
        <t><xref target="Intra-handshake.fail"/> has been peer-reviewed and accepted for publication at ESORICS 2026.</t>
      </section>
      <section anchor="ietfirtf">
        <name>IETF/IRTF</name>
        <t>Several participants of the IETF/IRTF have attested to the results by independently reproducing the results and reviewing the code. Some of the participants have independently reproduced the results by developing their own formal models and a proof-of-concept implementation of the vulnerabilities. Some of the messages are mentioned below (<strong>excluding</strong> the messages of authors of <xref target="Intra-handshake.fail"/>):</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/">https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/">https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/">https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/">https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/">https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/">https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/">https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/">https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/">https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/">https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/">https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/">https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/">https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/">https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/">https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/">https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/">https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/">https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/">https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/">https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/">https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/">https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/">https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/">https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/">https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/">https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/">https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/">https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/">https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/">https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/">https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/">https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/">https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/">https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/">https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/">https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/">https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/">https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/">https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/">https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/">https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/">https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/">https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/">https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/">https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/">https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/">https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/">https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/">https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/">https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/">https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/">https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/">https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/">https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/">https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/">https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/">https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/">https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/">https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/">https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/">https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/">https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3J3s_YFnf9IQ87Tv2c1q4f36xKQ/">https://mailarchive.ietf.org/arch/msg/seat/3J3s_YFnf9IQ87Tv2c1q4f36xKQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JWKMYY1YG1E2iS_HyQ4rDmOsDGw/">https://mailarchive.ietf.org/arch/msg/seat/JWKMYY1YG1E2iS_HyQ4rDmOsDGw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rK1nDSewAbVL_weOp98knYZcg6s/">https://mailarchive.ietf.org/arch/msg/seat/rK1nDSewAbVL_weOp98knYZcg6s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Wjuz0fIj8tjYocUmiZZXcSwwFHw/">https://mailarchive.ietf.org/arch/msg/seat/Wjuz0fIj8tjYocUmiZZXcSwwFHw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SYiV4KZNr20re6QkGmyWS3pPteA/">https://mailarchive.ietf.org/arch/msg/seat/SYiV4KZNr20re6QkGmyWS3pPteA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZYgxm1ibt6p4dL7xF1YNdl0XSpc/">https://mailarchive.ietf.org/arch/msg/seat/ZYgxm1ibt6p4dL7xF1YNdl0XSpc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/6LKgOp22YRxGTYb-i-BxiMGzMW4/">https://mailarchive.ietf.org/arch/msg/seat/6LKgOp22YRxGTYb-i-BxiMGzMW4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3oHcKPtXLfBUYCZoN1nnO6e1F-s/">https://mailarchive.ietf.org/arch/msg/seat/3oHcKPtXLfBUYCZoN1nnO6e1F-s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aSybH9ihnNjN7SjdhhY_XtxhMtc/">https://mailarchive.ietf.org/arch/msg/seat/aSybH9ihnNjN7SjdhhY_XtxhMtc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/d_G8r7LMGjA45BPexZwsfmmAtJY/">https://mailarchive.ietf.org/arch/msg/seat/d_G8r7LMGjA45BPexZwsfmmAtJY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/u-za86_YJ0spwBXBwTVQzwiOCrU/">https://mailarchive.ietf.org/arch/msg/seat/u-za86_YJ0spwBXBwTVQzwiOCrU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/P4IMdvCx8lSEKrCiJIjbpBCRr4g/">https://mailarchive.ietf.org/arch/msg/seat/P4IMdvCx8lSEKrCiJIjbpBCRr4g/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-AO9yFJoflV1wDwwch45dmqkmyo/">https://mailarchive.ietf.org/arch/msg/seat/-AO9yFJoflV1wDwwch45dmqkmyo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/H0LqHfBasQml69Y-9Zl_njfsE8s/">https://mailarchive.ietf.org/arch/msg/seat/H0LqHfBasQml69Y-9Zl_njfsE8s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3hOGlYyc_yntmvT0tjYxldlwaxM/">https://mailarchive.ietf.org/arch/msg/seat/3hOGlYyc_yntmvT0tjYxldlwaxM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JbwL9cdl6fiP0vBGgASUUDmaPy8/">https://mailarchive.ietf.org/arch/msg/seat/JbwL9cdl6fiP0vBGgASUUDmaPy8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/TtewHbMGKBQOKD2sqrgTrnpCOkI/">https://mailarchive.ietf.org/arch/msg/seat/TtewHbMGKBQOKD2sqrgTrnpCOkI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UsIj6o7wf4hX_uCL51TCTv-wFxU/">https://mailarchive.ietf.org/arch/msg/seat/UsIj6o7wf4hX_uCL51TCTv-wFxU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/a6c8D6PBDRe0x4DAqXM3t4EPc4c/">https://mailarchive.ietf.org/arch/msg/seat/a6c8D6PBDRe0x4DAqXM3t4EPc4c/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/prB537Jht2kELVCSrTRktjbp7Y4/">https://mailarchive.ietf.org/arch/msg/seat/prB537Jht2kELVCSrTRktjbp7Y4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/RPnKYfUCD_MRw3hnA00zg684yGM/">https://mailarchive.ietf.org/arch/msg/seat/RPnKYfUCD_MRw3hnA00zg684yGM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/nMH_0sLLU5MekoEnzWKJnIJmaSk/">https://mailarchive.ietf.org/arch/msg/seat/nMH_0sLLU5MekoEnzWKJnIJmaSk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/GJCA31mgAehlgFPRu_yHA10lKPI/">https://mailarchive.ietf.org/arch/msg/seat/GJCA31mgAehlgFPRu_yHA10lKPI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/9f-21JMK6s1Pdcob6mPo06rNwmQ/">https://mailarchive.ietf.org/arch/msg/seat/9f-21JMK6s1Pdcob6mPo06rNwmQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/8qq_GFT391IEbGZZQUtYMONX9U0/">https://mailarchive.ietf.org/arch/msg/seat/8qq_GFT391IEbGZZQUtYMONX9U0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xzu2UlClYMkG8gNSOClxGJgwnOI/">https://mailarchive.ietf.org/arch/msg/seat/xzu2UlClYMkG8gNSOClxGJgwnOI/</eref></t>
          </li>
          <li>
            <t>Exploit: <eref target="https://mailarchive.ietf.org/arch/msg/seat/MfxWpRtlTqPElX8vX4v8uiN65TU/">https://mailarchive.ietf.org/arch/msg/seat/MfxWpRtlTqPElX8vX4v8uiN65TU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/PkU0jW_xHAF18rZmtZJ2A2p_wHs/">https://mailarchive.ietf.org/arch/msg/seat/PkU0jW_xHAF18rZmtZJ2A2p_wHs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/jZmdYKQlfherbhowIEmZRw2HF1c/">https://mailarchive.ietf.org/arch/msg/seat/jZmdYKQlfherbhowIEmZRw2HF1c/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-0j6UpsD_CebqPPMNkDJCjySqEI/">https://mailarchive.ietf.org/arch/msg/seat/-0j6UpsD_CebqPPMNkDJCjySqEI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/ssDrZRFW4s6CSaYeA9ImH0PPQ10/">https://mailarchive.ietf.org/arch/msg/rats/ssDrZRFW4s6CSaYeA9ImH0PPQ10/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/OPBI_Wd-RoTzzdh5D0JZoWlNGI8/">https://mailarchive.ietf.org/arch/msg/rats/OPBI_Wd-RoTzzdh5D0JZoWlNGI8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/nfrdr1T9Pdp6D_kj2Et3XZk-hOY/">https://mailarchive.ietf.org/arch/msg/rats/nfrdr1T9Pdp6D_kj2Et3XZk-hOY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/gMMvtP1IXsXFfb0X5nMhRTaLLok/">https://mailarchive.ietf.org/arch/msg/rats/gMMvtP1IXsXFfb0X5nMhRTaLLok/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/yaGG4sVf4pCfJ0HNPPRv3Xg0cG8/">https://mailarchive.ietf.org/arch/msg/rats/yaGG4sVf4pCfJ0HNPPRv3Xg0cG8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/DaA1jDQNF-bdO5x-dkVbSzlHcD4/">https://mailarchive.ietf.org/arch/msg/rats/DaA1jDQNF-bdO5x-dkVbSzlHcD4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/ptkHZUDzSoYnD6R5zln6HcE1cv4/">https://mailarchive.ietf.org/arch/msg/rats/ptkHZUDzSoYnD6R5zln6HcE1cv4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/n1-mBLW1m4TKiGsQqOhOIkbNxVs/">https://mailarchive.ietf.org/arch/msg/seat/n1-mBLW1m4TKiGsQqOhOIkbNxVs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/mBHcB8YRR0HVcyihhjm11XqRhWE/">https://mailarchive.ietf.org/arch/msg/seat/mBHcB8YRR0HVcyihhjm11XqRhWE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/zY3vdP_TZKZIdK_kpcrwWQuYf8s/">https://mailarchive.ietf.org/arch/msg/seat/zY3vdP_TZKZIdK_kpcrwWQuYf8s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/QcXGunfoT1OKrBI_FRsgpNsXvn4/">https://mailarchive.ietf.org/arch/msg/seat/QcXGunfoT1OKrBI_FRsgpNsXvn4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/FSh0tTa7h1NcaeVZENqz6wg45C8/">https://mailarchive.ietf.org/arch/msg/seat/FSh0tTa7h1NcaeVZENqz6wg45C8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5uos1xo5lkLisK-9RGJWLJaAnmk/">https://mailarchive.ietf.org/arch/msg/seat/5uos1xo5lkLisK-9RGJWLJaAnmk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2Vyb3hcqRoJF4tLkJOxs2CueNuw/">https://mailarchive.ietf.org/arch/msg/seat/2Vyb3hcqRoJF4tLkJOxs2CueNuw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/9mDNq-Fv3-9726qe_te0nfYKMaM/">https://mailarchive.ietf.org/arch/msg/seat/9mDNq-Fv3-9726qe_te0nfYKMaM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/KwtGScLIYvUCW2A0HxAS5s9XMMo/">https://mailarchive.ietf.org/arch/msg/seat/KwtGScLIYvUCW2A0HxAS5s9XMMo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SpLBEi5_nMr51gSng5oqS1uTlxU/">https://mailarchive.ietf.org/arch/msg/seat/SpLBEi5_nMr51gSng5oqS1uTlxU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/b2laJbuyFQQr6Q1nUCbpKa_PNz8/">https://mailarchive.ietf.org/arch/msg/seat/b2laJbuyFQQr6Q1nUCbpKa_PNz8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/V-3QA8_dX1A5mdKxoVy-1z_8RlA/">https://mailarchive.ietf.org/arch/msg/seat/V-3QA8_dX1A5mdKxoVy-1z_8RlA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vjIo3JCMjHglRNaSSHNOqjKgDxs/">https://mailarchive.ietf.org/arch/msg/seat/vjIo3JCMjHglRNaSSHNOqjKgDxs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/pE1j3aP-qvaUgT-Q88JextCIlcc/">https://mailarchive.ietf.org/arch/msg/seat/pE1j3aP-qvaUgT-Q88JextCIlcc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/uojEp8S21Ftf2osLCJNoR8xPzKA/">https://mailarchive.ietf.org/arch/msg/seat/uojEp8S21Ftf2osLCJNoR8xPzKA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xP6PxDJhAH9bnefUjlKc0f96ak8/">https://mailarchive.ietf.org/arch/msg/seat/xP6PxDJhAH9bnefUjlKc0f96ak8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/krTrXMiNIPyYzVDvlXlJB0UvaSk/">https://mailarchive.ietf.org/arch/msg/seat/krTrXMiNIPyYzVDvlXlJB0UvaSk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5dHBv3DyUy4Fprh71i90x6pHPCY/">https://mailarchive.ietf.org/arch/msg/seat/5dHBv3DyUy4Fprh71i90x6pHPCY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/HErXLOWPTDmOK6RMVO8J0lEGCyU/">https://mailarchive.ietf.org/arch/msg/rats/HErXLOWPTDmOK6RMVO8J0lEGCyU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/QqstD1bsKrZrfQ_VQU-Z9KhYnxM/">https://mailarchive.ietf.org/arch/msg/rats/QqstD1bsKrZrfQ_VQU-Z9KhYnxM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/Oh4lBsX5wtnqPJM1cPOkt1mPOAQ/">https://mailarchive.ietf.org/arch/msg/rats/Oh4lBsX5wtnqPJM1cPOkt1mPOAQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/dMAZ-uAbZIlUxiDbO_0ZBVh4q90/">https://mailarchive.ietf.org/arch/msg/rats/dMAZ-uAbZIlUxiDbO_0ZBVh4q90/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/FRdzVOJ5OBs4M1yuFk_ntxYl1yI/">https://mailarchive.ietf.org/arch/msg/rats/FRdzVOJ5OBs4M1yuFk_ntxYl1yI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/qr4w7FinCkG1qt27aCCjJKruP5E/">https://mailarchive.ietf.org/arch/msg/rats/qr4w7FinCkG1qt27aCCjJKruP5E/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/mf_CtbtSDHPz3uMHRXele2vwYr8/">https://mailarchive.ietf.org/arch/msg/ufmrg/mf_CtbtSDHPz3uMHRXele2vwYr8/</eref></t>
          </li>
        </ul>
        <section anchor="main-questions">
          <name>Main Questions</name>
          <t>In short, five main questions have been raised by WG participants in support of our work:</t>
          <ul spacing="normal">
            <li>
              <t>What <strong>security property</strong> hybrid (intra- + post-handshake attestation) provides that post-handshake attestation alone cannot provide?</t>
            </li>
            <li>
              <t>Since continuous attestation is required in most use cases <xref target="CSA-eBPF"/> <xref target="MITRE-Continuous-Attestation"/>, how is <strong>additional complexity</strong> of <strong>intra</strong>-handshake attestation justified? Use cases with one-time attestation can be covered by doing attestation round immediately after Connection Establishment Time: see <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-6-2">reference</eref>.</t>
            </li>
            <li>
              <t>What is the benefit of doing <strong>signatures</strong> of remote attestation <strong>within</strong> the handshake (as this latency can be exploited)? We add that <strong>verification</strong> of signatures is also time consuming, which can be exploited too. See <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-4.2.4">reference</eref>.</t>
            </li>
            <li>
              <t>How evidence is bound to the secure channel without involving any <strong>shared secret</strong>? See <xref target="TLS-RA"/>.</t>
            </li>
            <li>
              <t>How does a verifying relying party get the legitimate PIIDs and CHIP_IDs?</t>
            </li>
          </ul>
        </section>
        <section anchor="guidance-text">
          <name>Guidance Text</name>
          <ul spacing="normal">
            <li>
              <t>Evidence MUST be bound to the secure channel. Failure to do so results in
relay attacks <xref target="CVE-2026-33697"/>, <xref target="EUVD-2026-16488"/>, <xref target="GHSA-Cocos-AI"/>.</t>
            </li>
            <li>
              <t>Verifier MUST have access to legitimate hardware identifiers of the
Attester. Failure to do so results in relay attacks <xref target="GHSA-Edgeless-Systems"/>.</t>
            </li>
            <li>
              <t>Verifier MUST carefully check the binding. Failure to do so results in
relay attacks <xref target="GHSA-Cocos-AI2"/>, <xref target="GHSA-Cocos-AI3"/>.</t>
            </li>
            <li>
              <t>Binder MUST contain shared secrets. Failure to do so results in relay
attacks <xref target="GHSA-Privasys-rustls"/>, <xref target="GHSA-Privasys-go"/>, <xref target="GHSA-Privasys-eov"/>, <xref target="GHSA-Privasys-eom"/>, <xref target="GHSA-Privasys-rtc"/>, <xref target="GHSA-Privasys-rtc-da"/>, <xref target="GHSA-Privasys-rtc-tcu"/>.</t>
            </li>
          </ul>
        </section>
      </section>
      <section anchor="researchers-outside-of-ietfirtf">
        <name>Researchers outside of IETF/IRTF</name>
        <t>Some researchers have approached us confirming the proof-of-concept of the vulnerabilities in intra-handshake attestation. More information will be added once their pre-prints/papers are public.</t>
      </section>
    </section>
    <section anchor="security-considerations">
      <name>Security Considerations</name>
      <t>All of this document is about the <strong>insecurity</strong> of <strong>intra</strong>-handshake (aka early) attestation.</t>
      <t>By no means should the vendors mentioned in this draft be considered less secure than any other vendors implementing intra-handshake attestation solutions. In particular, those who have closed-source implementations are most likely more vulnerable than the open-source ones, since the former cannot easily be reviewed by the security community. Even extensive security reviews -- of closed-source implementations -- by cybersecurity firms often do not perform formal analysis, and thus such reviews may miss corner cases and subtle vulnerabilities.</t>
    </section>
    <section anchor="ethical-considerations">
      <name>Ethical Considerations</name>
      <t>We (i.e., the super set of all authors involved in this research, including but not limited to Muhammad Usama Sardar, Mariam Moustafa, Tuomas Aura, Viacheslav Dubeyko, Jean-Marie Jacquet, Songbo Bu, Chengxin Huang, Haowen Song, Kaya Ercihan, Dr. Kubilay Ahmet Küçük, Serhii Nikolaichuk, Sylvain Bellemare, Eva C. M. Willems, Justin DESSENNES SAINTEN, Massimiliano Brighindi, Mikerah Quintyne-Collins, and Iman Schrock) are ethical researchers aiming to protect the community from the potential harm caused by the exploitability of the vulnerabilities in early attestation. We have <strong>responsibly disclosed</strong> the vulnerabilities to the respective developers and maintainers following their respective disclosure processes and provided them our proposed mitigations and requested them to take rapid action.</t>
      <t>We have released only the formal analysis for published CVE-2026-33697. To minimize exploit in the wild, we have not publicly released the proof-of-concept exploit code.</t>
      <t>We have not retrieved any real data from any real system. We have not released any key to any public forum or to any person.</t>
      <section anchor="evidence-of-explanation-of-vulnerabilities-to-the-authors-of-vulnerable-drafts">
        <name>Evidence of Explanation of Vulnerabilities to the Authors of Vulnerable Drafts</name>
        <t>To the best of our abilities, knowledge, and understanding, we have tried to explain the vulnerabilities to the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> first privately in several meetings and then later on publicly for at least half a year at several forums, including but not limited to CCC Attestation SIG and IETF/IRTF. Please see the (non-exhaustive list of) recordings <xref target="sec-recordings"/> and the archives <xref target="sec-archives"/> below. We sincerely thank the authors of <xref target="I-D.fossati-tls-attestation-10"/> for withdrawing their draft to protect further exploits mentioned in <xref target="sec-news"/>.</t>
        <section anchor="sec-recordings">
          <name>Recordings</name>
          <table>
            <name>Evidence of several explanations of vulnerabilities to the authors of vulnerable drafts</name>
            <thead>
              <tr>
                <th align="left">Event/Host</th>
                <th align="left">Venue</th>
                <th align="left">Date(s)</th>
                <th align="left">Evidence</th>
              </tr>
            </thead>
            <tbody>
              <tr>
                <td align="left">System Boot and Security MC @ <eref target="https://lpc.events/event/20/">Linux Plumbers Conference 2026</eref></td>
                <td align="left">Prague, Czechia</td>
                <td align="left">5 Oct, 2026</td>
                <td align="left">
                  <eref target="https://lpc.events/event/20/contributions/2585/">abstract</eref>, slides, video</td>
              </tr>
              <tr>
                <td align="left">BoF @ <eref target="https://lpc.events/event/20/">Linux Plumbers Conference 2026</eref></td>
                <td align="left">Prague, Czechia</td>
                <td align="left">5 Oct, 2026</td>
                <td align="left">
                  <eref target="https://lpc.events/event/20/contributions/2640/">abstract</eref>, slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ga4gh.org/event/14th-plenary/">GA4GH 14th Plenary Meeting</eref></td>
                <td align="left">Singapore</td>
                <td align="left">28 Sept-2 Oct, 2026</td>
                <td align="left">slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fg-pet.gi.de/veranstaltung/16th-privacy-enhancing-techniques-convention">PET-CON 2026.2: 16th Privacy Enhancing Techniques Convention</eref></td>
                <td align="left">Lübeck, Germany</td>
                <td align="left">28-29 Sept, 2026</td>
                <td align="left">slides</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://sites.google.com/di.uniroma1.it/esorics2026/">ESORICS 2026</eref></td>
                <td align="left">Rome, Italy</td>
                <td align="left">14-18 Sept, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/414416257_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">slides</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/session/rats">IETF RATS Interim meeting</eref></td>
                <td align="left">Virtual</td>
                <td align="left">14 Sept, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/materials/slides-interim-2026-rats-03-sessa-protecting-the-rats-ecosystem-from-critical-severity-vulnerabilities-00">slides</eref>, <eref target="https://youtu.be/y5_SR0-DzH0?t=255">video</eref></td>
              </tr>
              <tr>
                <td align="left">Hackathon @ <eref target="https://summit.riot-os.org/2026/">RIOT Summit 2026</eref></td>
                <td align="left">Grenoble, France</td>
                <td align="left">4 September, 2026</td>
                <td align="left">
                  <eref target="https://notes.inria.fr/2ppogr2fTSKusRog3RXbPQ?view#topic-security-analysis-of-attested-tls-and-attested-edhoc">topic synopsis</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://summit.riot-os.org/2026/">RIOT Summit 2026</eref></td>
                <td align="left">Grenoble, France</td>
                <td align="left">2-4 September, 2026</td>
                <td align="left">
                  <eref target="https://summit.riot-os.org/2026/blog/speakers/muhammad-usama-sardar/">abstract</eref>, <eref target="https://www.researchgate.net/publication/413988306_Security_Analysis_of_Attested_TLS_and_Attested_EDHOC">slides</eref>, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ga4gh.org/work_stream/data-security/">Data Security Work Stream (DSWS)</eref> at the <eref target="https://www.ga4gh.org/">Global Alliance for Genomics and Health (GA4GH)</eref></td>
                <td align="left">Virtual</td>
                <td align="left">24 Aug, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/413569575_High-Severity_Vulnerabilities_in_Former_GIF_Design_for_Attested_TLS_draft-fossati-seat-early-attestation">slides</eref>, <eref target="https://us02web.zoom.us/rec/share/UAn381deia-aMNmjGHhMqxocc1HcyF7ksLlaeeKefxO4bSC2mHPzwPQPYGe2dnZR.zfleYCmmtiteo_NS">video</eref></td>
              </tr>
              <tr>
                <td align="left">Confidential AI Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">21 July, 2026</td>
                <td align="left">
                  <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/odgd_xmhjQXiR_aLYdqtVvDJeF4/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">21 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-seat-binding-properties-of-expat-00.pdf">slides</eref>, <eref target="https://youtu.be/Fb5Hzh1mp1E?t=4189">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">IETF 126 Hackdemo Happy Hour</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">20 July, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">demo</eref></td>
              </tr>
              <tr>
                <td align="left">Confidential Computing Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">20 July, 2026</td>
                <td align="left">
                  <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hotrfc-sessa-15-confidential-computing-and-digital-sovereignty-00">slides</eref>, <eref target="https://youtu.be/FDHWRijxKso?t=3285">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ietf.org/meeting/hackathons/126-hackathon/">IETF 126 Hackathon</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hackathon-sessd-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/GRqyrDIEgEw?t=1340">video</eref></td>
              </tr>
              <tr>
                <td align="left">IEPG @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/g8q_u19vXzk?t=4404">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">Workshop</eref> @ <eref target="https://www.wissenschaftsnacht-dresden.de/en/">Dresden Science Night 2026</eref></td>
                <td align="left">Dresden</td>
                <td align="left">26 June, 2026</td>
                <td align="left">
                  <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">demo</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://output-dd.de/">Output 2026</eref></td>
                <td align="left">Dresden</td>
                <td align="left">25 June, 2026</td>
                <td align="left">
                  <eref target="https://output-dd.de/projekte/relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems/">demo</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://events.linuxfoundation.org/confidential-computing-summit/">Confidential Computing Summit 2026</eref> (presented by Jens Albers)</td>
                <td align="left">San Francisco, USA</td>
                <td align="left">23-24 June, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411851358_Standardization_of_Attested_TLS">poster</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://confidentialcontainers.org/">Confidential Containers Community Meeting</eref> @ <eref target="https://www.cncf.io/">Cloud Native Computing Foundation</eref></td>
                <td align="left">Virtual</td>
                <td align="left">30 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411849492_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref>, <eref target="https://zoom.us/rec/share/3thZhsRi-BZJL-GqjnwGzh7inbltuKIlpVjqMlWp6WRdMTZ66Z8p-8YjaaeOfbhX.CoH6YBukaKua0gkt">video</eref> around timestamp 00:27:00</td>
              </tr>
              <tr>
                <td align="left">GIF Project showcase @ <eref target="https://www.ga4gh.org/event/april-connect-2026/">GA4GH April Connect 2026</eref></td>
                <td align="left">Montreal, Canada (virtual)</td>
                <td align="left">17 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/412136610_Trusted_Research_Environment_TRE_Open_Suite">slides</eref>, <eref target="https://youtu.be/Kr9oxp1fdn0?t=1083">video</eref>, <eref target="https://www.ga4gh.org/document/arpril-connect-2026-meeting-report/">report</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://sos-vo.org/group/hotsos/">NSA Symposium on Hot Topics in the Science of Security (HotSoS) 2026</eref></td>
                <td align="left">Virtual</td>
                <td align="left">16 April, 2026</td>
                <td align="left">
                  <eref target="https://sos-vo.org/group/hotsos/2026/sardar">abstract</eref>, <eref target="https://sos-vo.org/system/files/2026-04/20260416_HotSoS%20%281%29.pdf">slides</eref>, <eref target="https://sos-vo.org/group/hotsos/2026/sardar">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fg-pet.gi.de/veranstaltung/15th-privacy-enhancing-techniques-convention">PET-CON 2026.1: 15th Privacy Enhancing Techniques Convention</eref></td>
                <td align="left">Karlsruhe, Germany</td>
                <td align="left">16-17 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411849502_Formal_Analysis_of_Attested_TLS">slides</eref>, <eref target="https://www.researchgate.net/publication/411852738_Formal_Analysis_of_Attested_TLS_and_Standardization_in_the_IETF">poster</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://gtmfs2026.sciencesconf.org/program?lang=en">GTMFS 2026: Annual Meeting of the WG "Formal Methods in Security"</eref></td>
                <td align="left">Luz-Saint-Sauveur, France</td>
                <td align="left">24-26 Mar, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411853715_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref></td>
              </tr>
              <tr>
                <td align="left">CFRG @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">19 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-cfrg-relay-attacks-00">slides</eref>, <eref target="https://youtu.be/IfKgbO74Lt4?t=6054">video</eref></td>
              </tr>
              <tr>
                <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref> (relay)</td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">17 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-seat-security-analysis-00">slides</eref>, <eref target="https://youtu.be/hX7genEkN7w?t=676">video</eref></td>
              </tr>
              <tr>
                <td align="left">Side meeting @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">16 Mar, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/403474373_Proposed_RG_Confidential_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">LAKE @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">16 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-lake-formal-analysis-of-attested-edhoc-00">slides</eref>, <eref target="https://youtu.be/JzfLpbnhl0A?t=3117">video</eref></td>
              </tr>
              <tr>
                <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">15 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hotrfc-sessa-formal-proof-of-insecurity-of-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/OtOo7Nogisw?t=3514">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ietf.org/meeting/hackathons/125-hackathon/">IETF 125 Hackathon</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">14-15 Mar, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/125/hackathon#relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hackathon-sessd-relay-attacks-in-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/62A58qH19MI?t=2270">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">10 Feb, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksGen_20260210.pdf">slides</eref>; <eref target="https://www.youtube.com/watch?v=idqwb0hFlhs&amp;list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1061s">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/session/rats">IETF RATS Interim meeting</eref></td>
                <td align="left">Virtual</td>
                <td align="left">9 Feb, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/materials/slides-interim-2026-rats-01-sessa-relayattacks-00.pdf">slides</eref>, <eref target="https://youtu.be/gURY61dViPw?t=1474">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fosdem.org/2026/schedule/track/confidential-computing/">Confidential Computing</eref> devroom at <eref target="https://fosdem.org/2026/">FOSDEM 2026</eref></td>
                <td align="left">Brussels, Belgium</td>
                <td align="left">31 Jan-1 Feb, 2026</td>
                <td align="left">
                  <eref target="https://fosdem.org/2026/schedule/event/GHGFBM-attestedtls/">abstract</eref>, <eref target="https://fosdem.org/2026/events/attachments/GHGFBM-attestedtls/slides/267432/20260201_60u9e0n.pdf">slides</eref>, <eref target="https://video.fosdem.org/2026/ud6215/GHGFBM-attestedtls.av1.webm">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">27 Jan, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksProposal_20260127.pdf">slides</eref>; <eref target="https://youtu.be/P04tLJcSxfM?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=434">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">13 Jan, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacks_20260113.pdf">slides</eref>; <eref target="https://youtu.be/cSrCZNyo7_g?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1083">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">16 Dec, 2025</td>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MuhammadUsamaSardar_Binding_Properties_20251216.pdf">slides</eref>; <eref target="https://youtu.be/w_MrjMeHyP8?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=593">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">2 Dec, 2025</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_Open_Questions_20251202.pdf">slides</eref>; <eref target="https://youtu.be/16aGZ-oZidg?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=2920">video</eref></td>
              </tr>
            </tbody>
          </table>
        </section>
        <section anchor="sec-archives">
          <name>Archives</name>
          <t>Since January, we have publicly informed the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> and shared our results with the community for review and to raise awareness on high-severity vulnerabilities and apply appropriate mitigations for the safety of their users:</t>
          <section anchor="intra-handshakefail-1">
            <name>Intra-handshake.fail</name>
            <section anchor="ietfhttpswwwietforg">
              <name><eref target="https://www.ietf.org/">IETF</eref></name>
              <ul spacing="normal">
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">SEAT WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">RATS WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/tls/8lyqHh9y7_Lv6b1iXhpUqYrp0M0/">TLS WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/lake/Tovtl7wgvzwJWT2I2ZwnhoIOnYQ/">LAKE WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/saag/jBZVk7YySwpaFqydAfxW33kNZPY/">SAAG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/practical-cybersecurity/d65WPaC0WbZRwxTBclnTkf7SmRs/">Practical Cybersecurity list</eref></t>
                </li>
                <li>
                  <t>Agent2agent list <eref target="https://mailarchive.ietf.org/arch/msg/agent2agent/ubz7uXCs--YzuSWyXNNsmWf_tSQ/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/agent2agent/xHhjA94fzed6ONIvPRgwTT-WRmA/">thread2</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/dmsc/QC2adIcYkxiTlniEcc7ggk86BAY/">DSMC list</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/hackathon/PIrJ2O_QqcNUAnMIn_Vh22ImWMc/">Hackathon</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">126attendees</eref></t>
                </li>
              </ul>
            </section>
            <section anchor="irtfhttpswwwirtforg">
              <name><eref target="https://www.irtf.org/">IRTF</eref></name>
              <ul spacing="normal">
                <li>
                  <t>UFMRG: <eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZWK0uMM92OdwlPbgXBvQApDpe5Q/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZRhR7o1HrWxfGDfgRJMR65RBkDE/">thread2</eref></t>
                </li>
                <li>
                  <t>CFRG <eref target="https://mailarchive.ietf.org/arch/msg/cfrg/NbxHIw9H_xpSYbgfO_n7lVIFeWs/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">thread2</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/din/_8LE3Ru1xX16hgGJwryMTRwRoaA/">DINRG</eref></t>
                </li>
              </ul>
            </section>
            <section anchor="ccchttpsconfidentialcomputingio">
              <name><eref target="https://confidentialcomputing.io/">CCC</eref></name>
              <ul spacing="normal">
                <li>
                  <t>Attestation SIG: <eref target="https://lists.confidentialcomputing.io/g/attestation/topic/117207133">thread1</eref> and <eref target="https://lists.confidentialcomputing.io/g/attestation/message/334">thread2</eref></t>
                </li>
                <li>
                  <t>TAC: <eref target="https://lists.confidentialcomputing.io/g/tac/topic/117932193">thread1</eref> and <eref target="https://lists.confidentialcomputing.io/g/tac/topic/120068850">thread2</eref></t>
                </li>
              </ul>
            </section>
            <section anchor="ocphttpswwwopencomputeorg">
              <name><eref target="https://www.opencompute.org/">OCP</eref></name>
              <ul spacing="normal">
                <li>
                  <t>OCP Security: <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/117932716">message1</eref>, <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120069056">message2</eref>, <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120483814">message3</eref> and <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120524635">message4</eref></t>
                </li>
              </ul>
            </section>
          </section>
          <section anchor="earlyattestationbleed-1">
            <name>EarlyAttestationBleed</name>
            <ul spacing="normal">
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZQKdp07P4UeTushAC1q9eBBtp0s/">IRTF UFMRG</eref></t>
              </li>
              <li>
                <t><eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/materials/slides-interim-2026-rats-03-sessa-protecting-the-rats-ecosystem-from-critical-severity-vulnerabilities-00">IETF RATS</eref></t>
              </li>
              <li>
                <t><eref target="https://ocp-all.groups.io/g/OCP-Security/message/1263">OCP Security</eref></t>
              </li>
              <li>
                <t><eref target="https://sympa.inria.fr/sympa/arc/proverif/2026-09/msg00000.html">ProVerif</eref></t>
              </li>
            </ul>
            <t>If you know any other relevant mailing list that we should inform for protection of users, please let us know.</t>
          </section>
        </section>
      </section>
    </section>
    <section anchor="contributions">
      <name>Contributions</name>
      <t>Contributions to the draft are welcome at <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail">https://github.com/muhammad-usama-sardar/intra-handshake-fail</eref>.</t>
      <t>Wenn Sie nur Deutsch sprechen, können Sie sich gerne per E-Mail an den Erstautor wenden. Wir haben Mitglieder, die Ihnen bei der Übersetzung Ihres Beitrags helfen können.</t>
      <t>如果您只会说中文，非常欢迎您通过电子邮件联系第四位作者。我们有成员可以协助翻译您的投稿。</t>
    </section>
    <section anchor="iana-considerations">
      <name>IANA Considerations</name>
      <t>This document has no IANA actions.</t>
    </section>
  </middle>
  <back>
    <references anchor="sec-combined-references">
      <name>References</name>
      <references anchor="sec-normative-references">
        <name>Normative References</name>
        <reference anchor="Intra-handshake.fail" target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="June"/>
          </front>
        </reference>
        <reference anchor="Intra-handshake.fail-repo" target="https://github.com/muhammad-usama-sardar/intra-handshake.fail">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="July"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-33697" target="https://www.cve.org/CVERecord?id=CVE-2026-33697">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-16488" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-16488">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-92701" target="https://www.cve.org/CVERecord?id=CVE-2026-92701">
          <front>
            <title>Cocos AI Intra-handshake attested TLS implementation is vulnerable to session-misbinding attacks for Intel TDX verifier path</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-92702" target="https://www.cve.org/CVERecord?id=CVE-2026-92702">
          <front>
            <title>Cocos AI Intra-handshake attested TLS implementation can accept Evidence with nil, empty, or omitted reportData in the AMD SEV-SNP path</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-83194" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-83194">
          <front>
            <title>EUVD-2026-83194</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-83192" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-83192">
          <front>
            <title>EUVD-2026-83192</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-vfgg-mvxx-mgg7">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI2" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-4px3-wj2x-xx47">
          <front>
            <title>Cocos AI intra-handshake attested TLS implementation is vulnerable to session-misbinding attacks for Intel TDX verifier path</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI3" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-4r6g-mp48-j2rw">
          <front>
            <title>Cocos AI intra-handshake attested TLS implementation can accept Evidence with nil, empty, or omitted reportData in the AMD SEV-SNP path</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-hjgc-jc5v-fw7h">
          <front>
            <title>Remote attestation is susceptible to relay attacks</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems2" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-m2qg-wrxv-h898">
          <front>
            <title>Generated policies don't detect all image substitutions</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="SEAT-vulnerability-report" target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">
          <front>
            <title>Relay Attacks in Intra-handshake Attestation for Confidential Agentic AI Systems</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <date year="2026" month="January"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rustls" target="https://github.com/Privasys/rustls/security/advisories/GHSA-j6qv-435v-r492">
          <front>
            <title>Privasys RA-TLS challenge mode did not bind attestation evidence to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-go" target="https://github.com/Privasys/go/security/advisories/GHSA-7jfw-53rm-phh2">
          <front>
            <title>Privasys Go fork: RA-TLS challenge mode did not bind attestation evidence to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-eov" target="https://github.com/Privasys/enclave-os-virtual/security/advisories/GHSA-p5fp-g94g-g9m9">
          <front>
            <title>enclave-os-virtual: RA-TLS challenge certificates were not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-eom" target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-49qm-4pj3-w2c6">
          <front>
            <title>enclave-os-mini: RA-TLS challenge certificates were not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-5qrc-v874-mxvx">
          <front>
            <title>ra-tls-clients: RA-TLS challenge verifier accepted quotes not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc-da" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-pj2x-5wqv-fh57">
          <front>
            <title>Privasys Intra-handshake attested TLS implementation is vulnerable to Diversion Attacks</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc-tcu" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-gg8q-mfhh-wrrc">
          <front>
            <title>Privasys Intra-handshake attested TLS implementation is vulnerable to TOCTOU Attacks</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="ID-Crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author fullname="Muhammad Usama Sardar" initials="M." surname="Sardar">
              <organization>TU Dresden, Dresden, Germany</organization>
            </author>
            <author fullname="Mariam Moustafa" initials="M." surname="Moustafa">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <author fullname="Tuomas Aura" initials="T." surname="Aura">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <date month="June" year="2026"/>
          </front>
          <seriesInfo name="Proceedings of the ACM Asia Conference on Computer and Communications Security" value="pp. 547-560"/>
          <seriesInfo name="DOI" value="10.1145/3779208.3785387"/>
          <refcontent>ACM</refcontent>
        </reference>
        <reference anchor="ID-Crisis-repo" target="https://github.com/CCC-Attestation/formal-spec-id-crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="M." surname="Moustafa">
              <organization/>
            </author>
            <author initials="T." surname="Aura">
              <organization/>
            </author>
            <date year="2025" month="November"/>
          </front>
        </reference>
        <reference anchor="refTLS">
          <front>
            <title>Verified Models and Reference Implementations for the TLS 1.3 Standard Candidate</title>
            <author fullname="Karthikeyan Bhargavan" initials="K." surname="Bhargavan">
              <organization/>
            </author>
            <author fullname="Bruno Blanchet" initials="B." surname="Blanchet">
              <organization/>
            </author>
            <author fullname="Nadim Kobeissi" initials="N." surname="Kobeissi">
              <organization/>
            </author>
            <date month="May" year="2017"/>
          </front>
          <seriesInfo name="2017 IEEE Symposium on Security and Privacy (SP)" value="pp. 483-502"/>
          <seriesInfo name="DOI" value="10.1109/sp.2017.26"/>
          <refcontent>IEEE</refcontent>
        </reference>
        <reference anchor="TLS-RA" target="https://www.usenix.org/conference/atc25/presentation/weinhold">
          <front>
            <title>Separate but together: integrating remote attestation into TLS</title>
            <author initials="" surname="Carsten Weinhold">
              <organization/>
            </author>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="" surname="Ionuț Mihalcea">
              <organization/>
            </author>
            <author initials="" surname="Yogesh Deshpande">
              <organization/>
            </author>
            <author initials="" surname="Hannes Tschofenig">
              <organization/>
            </author>
            <author initials="" surname="Yaron Sheffer">
              <organization/>
            </author>
            <author initials="" surname="Thomas Fossati">
              <organization/>
            </author>
            <author initials="" surname="Michael Roitzsch">
              <organization/>
            </author>
            <date year="2025" month="July"/>
          </front>
        </reference>
        <reference anchor="CSA-eBPF" target="https://cloudsecurityalliance.org/blog/2026/09/09/mitre-s-new-framework-securing-the-ebpf-layer-your-ai-depends-on">
          <front>
            <title>MITRE's New Framework: Securing the eBPF Layer Your AI Depends On</title>
            <author initials="" surname="Cloud Security Alliance">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="MITRE-Continuous-Attestation" target="https://www.mitre.org/news-insights/publication/framework-continuous-remote-attestation">
          <front>
            <title>Framework for Continuous Remote Attestation</title>
            <author initials="" surname="MITRE's Confidential Computing Layered Attestation Working Group">
              <organization/>
            </author>
            <date year="2026" month="July"/>
          </front>
        </reference>
        <reference anchor="EarlyAttestationBleed" target="https://www.researchgate.net/publication/414529199_EarlyAttestationBleed_Three_Critical-severity_Vulnerabilities_of_CVSS_90_in_Confidential_Computing">
          <front>
            <title>EarlyAttestationBleed: Three Critical-severity Vulnerabilities of CVSS ≥ 9.0 in Confidential Computing</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="" surname="Songbo Bu">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
      </references>
      <references anchor="sec-informative-references">
        <name>Informative References</name>
        <reference anchor="I-D.fossati-seat-early-attestation">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="20" month="September" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a TLS extension that
   enables the negotiation and binding of the TLS authentication key to
   a remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   This extension has been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-07"/>
        </reference>
        <reference anchor="I-D.fossati-seat-early-attestation-04">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="27" month="May" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a series of TLS
   extensions that enable the binding of the TLS authentication key to a
   remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   These extensions have been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-04"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-06">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="19" month="March" year="2024"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-06"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-09">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="30" month="April" year="2025"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-09"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-10">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="23" month="July" year="2026"/>
            <abstract>
              <t>   This draft has been withdrawn.

About This Document

   This note is to be removed before publishing as an RFC.

   Status information for this document may be found at
   https://datatracker.ietf.org/doc/draft-fossati-tls-attestation/.

   Source for this draft and an issue tracker can be found at
   https://github.com/yaronf/draft-tls-attestation.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-10"/>
        </reference>
        <reference anchor="I-D.ritz-seat-facts">
          <front>
            <title>Factor-based Attestation and Credential Transport Scheme (FACTS) over TLS 1.3</title>
            <author fullname="Nathanael Ritz" initials="N." surname="Ritz">
              <organization>Independent</organization>
            </author>
            <date day="1" month="March" year="2026"/>
            <abstract>
              <t>   This document describes FACTS (Factor-based Attestation and
   Credential Transport Scheme) over TLS 1.3.  Conceptually acting as
   "multi-factor authentication" for machine identities, factor-based
   attestation derives session trust from multiple independent
   cryptographic inputs rather than a single point of failure.
   Specifically, it utilizes a dual-key scheme that binds identity to
   attestation evidence through the use of key encapsulation material
   keys (KEM) and traditional identity signing keys (IK), establishing
   per-session freshness.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ritz-seat-facts-00"/>
        </reference>
      </references>
    </references>
    <?line 1052?>

<section numbered="false" anchor="acknowledgments">
      <name>Acknowledgments</name>
      <t>Acknowledgment does not necessarily imply attestation. It implies that the authors found the feedback and discussion useful in improving the formal analysis, the corresponding paper, or this draft.</t>
      <t>This draft benefits from several years of research on attested TLS, in particular some of the recent works mentioned below:</t>
      <t><strong>EarlyAttestationBleed</strong> <xref target="EarlyAttestationBleed"/></t>
      <t>We wish to express our sincere appreciation to the following for their review:</t>
      <ul spacing="normal">
        <li>
          <t>Sammy Kerata Oina</t>
        </li>
        <li>
          <t>Drasko Draskovic</t>
        </li>
        <li>
          <t>Markus Rudy</t>
        </li>
        <li>
          <t>Kaya Ercihan</t>
        </li>
        <li>
          <t>Peg Jones</t>
        </li>
        <li>
          <t>Bertrand Foing</t>
        </li>
        <li>
          <t>Rebekah Overdorf</t>
        </li>
        <li>
          <t>Tobias Pulls</t>
        </li>
      </ul>
      <t><strong>Intra-handshake.fail</strong> <xref target="Intra-handshake.fail"/></t>
      <t>We gratefully acknowledge the following for insightful discussions and helpful reviews on <xref target="Intra-handshake.fail"/>:</t>
      <ul spacing="normal">
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Juho Forsén</t>
        </li>
        <li>
          <t>Markus Rudy</t>
        </li>
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Steve Kremer</t>
        </li>
        <li>
          <t>Tjaden Hess</t>
        </li>
        <li>
          <t>Martin Thomson</t>
        </li>
        <li>
          <t>Yuning Jiang</t>
        </li>
        <li>
          <t>Pavel Nikonorov</t>
        </li>
        <li>
          <t>Casey Wilson</t>
        </li>
        <li>
          <t>Anonymous ESORICS 2026 reviewers</t>
        </li>
        <li>
          <t>Marco Anisetti (ESORICS 2026 shepherd)</t>
        </li>
        <li>
          <t>Danko Miladinovic</t>
        </li>
        <li>
          <t>Rongkuan He</t>
        </li>
        <li>
          <t>Peeter Laud</t>
        </li>
        <li>
          <t>Stephen Holmes</t>
        </li>
        <li>
          <t>Ammara Gul</t>
        </li>
        <li>
          <t>Atul Prakash</t>
        </li>
        <li>
          <t>Paul Syverson</t>
        </li>
        <li>
          <t>Jan Tobias Muehlberg</t>
        </li>
        <li>
          <t>John Preuß Mattsson</t>
        </li>
        <li>
          <t>Britta Hale</t>
        </li>
        <li>
          <t>Werner Staub</t>
        </li>
        <li>
          <t>Songbo Bu</t>
        </li>
        <li>
          <t>Haowen Song</t>
        </li>
        <li>
          <t>Chengxin Huang</t>
        </li>
        <li>
          <t>Steve Luo</t>
        </li>
        <li>
          <t>Andrew Miller</t>
        </li>
        <li>
          <t>Kubilay Ahmet Küçük</t>
        </li>
        <li>
          <t>Iman Schrock</t>
        </li>
        <li>
          <t>Sophie Schmieg</t>
        </li>
        <li>
          <t>Davyd Okaianchenko</t>
        </li>
        <li>
          <t>Alistair Woodman</t>
        </li>
        <li>
          <t>Göran Selander</t>
        </li>
        <li>
          <t>Tom Sato</t>
        </li>
        <li>
          <t>Jakub Maria Plutowski</t>
        </li>
        <li>
          <t>Martin Friedrich</t>
        </li>
        <li>
          <t>Patrick Duggan</t>
        </li>
        <li>
          <t>Deb Cooley</t>
        </li>
      </ul>
      <t><strong>Identity Crisis</strong> <xref target="ID-Crisis"/></t>
      <t>We would like to thank our co-authors of paper <xref target="ID-Crisis"/> for their valuable contributions:</t>
      <ul spacing="normal">
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Tuomas Aura</t>
        </li>
      </ul>
      <t>We also gratefully acknowledge the following for insightful discussions and helpful feedback:</t>
      <ul spacing="normal">
        <li>
          <t>Ionut Mihalcea</t>
        </li>
        <li>
          <t>Jean-Marie Jacquet</t>
        </li>
        <li>
          <t>Thomas Fossati</t>
        </li>
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Hannes Tschofenig</t>
        </li>
        <li>
          <t>Yaron Sheffer</t>
        </li>
        <li>
          <t>Laurence Lundblade</t>
        </li>
        <li>
          <t>Giridhar Mandyam</t>
        </li>
        <li>
          <t>Christopher Patton</t>
        </li>
        <li>
          <t>Jonathan Hoyland</t>
        </li>
        <li>
          <t>Richard Barnes</t>
        </li>
      </ul>
      <t><strong>refTLS</strong> <xref target="refTLS"/></t>
      <t>We sincerely thank the following for the foundational formal model of draft 20 of TLS 1.3 in their work <xref target="refTLS"/> that we have used as the foundation of all of this work:</t>
      <ul spacing="normal">
        <li>
          <t>Karthikeyan Bhargavan</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Nadim Kobeissi</t>
        </li>
      </ul>
      <t><strong>General</strong></t>
      <t>Several others at the IETF, IRTF, CCC, and GA4GH have contributed by providing feedback over the years. A non-exhaustive list of contributors is <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00#page=17">here</eref>.</t>
      <t>Muhammad Usama Sardar is funded by German Research Foundation ("Deutsche Forschungsgemeinschaft.")</t>
    </section>
  </back>
  <!-- ##markdown-source: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-->

</rfc>
