<?xml version='1.0' encoding='utf-8'?>
<!DOCTYPE rfc [
  <!ENTITY nbsp    "&#160;">
  <!ENTITY zwsp   "&#8203;">
  <!ENTITY nbhy   "&#8209;">
  <!ENTITY wj     "&#8288;">
]>
<?xml-stylesheet type="text/xsl" href="rfc2629.xslt" ?>
<!-- generated by https://github.com/cabo/kramdown-rfc version 1.7.43 (Ruby 3.4.9) -->
<rfc xmlns:xi="http://www.w3.org/2001/XInclude" ipr="trust200902" docName="draft-intra-handshake-fail-45" category="info" submissionType="IETF" tocInclude="true" sortRefs="true" symRefs="true" version="3">
  <!-- xml2rfc v2v3 conversion 3.34.1 -->
  <front>
    <title abbrev="Early Attestation Considered Harmful">Early Attestation Considered Very Harmful (CVE-2026-92701 of CVSS 9.1, CVE-2026-92702 of CVSS 9.1, CVE-2026-33697 of CVSS 7.5, and 37 other CVEs of up to expected CVSS 10.0 upcoming)</title>
    <seriesInfo name="Internet-Draft" value="draft-intra-handshake-fail-45"/>
    <author fullname="Muhammad Usama Sardar">
      <organization abbrev="TU Dresden">Technical University of Dresden</organization>
      <address>
        <postal>
          <city>Dresden</city>
          <code>01187</code>
          <country>Germany</country>
        </postal>
        <email>muhammad_usama.sardar@tu-dresden.de</email>
      </address>
    </author>
    <author fullname="Viacheslav Dubeyko">
      <organization>CoreWeave</organization>
      <address>
        <email>slava@dubeyko.com</email>
      </address>
    </author>
    <author fullname="Jean-Marie Jacquet">
      <organization>University of Namur</organization>
      <address>
        <postal>
          <city>Namur</city>
          <country>Belgium</country>
        </postal>
        <email>jean-marie.jacquet@unamur.be</email>
      </address>
    </author>
    <author fullname="Songbo Bu">
      <organization>Shanghai Guan An Information Technology Co., Ltd.</organization>
      <address>
        <postal>
          <country>China</country>
        </postal>
        <email>bluedognull@gmail.com</email>
      </address>
    </author>
    <author fullname="Chengxin Huang">
      <organization>Independent</organization>
      <address>
        <email>aurestarnull@gmail.com</email>
      </address>
    </author>
    <author fullname="Haowen Song">
      <organization>Shanghai Guan An Information Technology Co., Ltd.</organization>
      <address>
        <postal>
          <country>China</country>
        </postal>
        <email>havan12050544@gmail.com</email>
      </address>
    </author>
    <author fullname="Kaya Ercihan">
      <organization>Switch</organization>
      <address>
        <postal>
          <city>Zurich</city>
          <country>Switzerland</country>
        </postal>
        <email>kaya.ercihan@switch.ch</email>
      </address>
    </author>
    <author initials="D. K. A." surname="Küçük" fullname="Dr Kubilay Ahmet Küçük">
      <organization>DPhil Oxford University</organization>
      <address>
        <email>dr.kucuk@oxfordalumni.org</email>
      </address>
    </author>
    <author fullname="Sylvain Bellemare">
      <organization>Sureshot Labs</organization>
      <address>
        <postal>
          <country>Japan</country>
        </postal>
        <email>sbellem@gmail.com</email>
      </address>
    </author>
    <author initials="E. C. M." surname="Willems" fullname="Eva C. M. Willems">
      <organization>Independent</organization>
      <address>
        <postal>
          <country>Netherlands</country>
        </postal>
        <email>evac.m.willems@proton.me</email>
      </address>
    </author>
    <author fullname="Justin DESSENNES SAINTEN">
      <organization>Independent Corporate Risk Consultant</organization>
      <address>
        <postal>
          <city>Paris</city>
          <country>France</country>
        </postal>
        <email>dessennes_sainten@msn.com</email>
      </address>
    </author>
    <author fullname="Massimiliano Brighindi">
      <organization>PHI-OMEGA</organization>
      <address>
        <postal>
          <city>San Benedetto del Tronto</city>
          <country>Italy</country>
        </postal>
        <email>phiomega.runtime@gmail.com</email>
      </address>
    </author>
    <author fullname="Mikerah Quintyne-Collins">
      <organization>HashCloak Inc and Stoffel Labs Inc</organization>
      <address>
        <postal>
          <country>Canada</country>
        </postal>
        <email>mikerah@hashcloak.com</email>
      </address>
    </author>
    <author fullname="Iman Schrock">
      <organization>EMILIA Protocol, Inc.</organization>
      <address>
        <email>team@emiliaprotocol.ai</email>
      </address>
    </author>
    <date year="2026" month="September" day="25"/>
    <workgroup>SEAT</workgroup>
    <keyword>AI agents</keyword>
    <keyword>Intra-handshake attestation</keyword>
    <keyword>Early attestation</keyword>
    <keyword>CVE-2026-33697</keyword>
    <keyword>CVE-2026-92701</keyword>
    <keyword>CVE-2026-92702</keyword>
    <abstract>
      <?line 302?>

<t>The draft aims to provide technical details of <xref target="CVE-2026-33697"/>, <xref target="EUVD-2026-16488"/>, <xref target="CVE-2026-92701"/>, <xref target="EUVD-2026-83194"/>, <xref target="CVE-2026-92702"/>, <xref target="EUVD-2026-83192"/> and several GitHub Security Advisories (GHSAs) which provide substantial technical evidence of how early attestation fails in practice, even <strong>without physical access</strong> to the desired machine. Moreover, since continuous attestation is generally required <xref target="CSA-eBPF"/> <xref target="MITRE-Continuous-Attestation"/>, early attestation adds <strong>unnecessary complexity</strong>. The results are backed by the research <xref target="Intra-handshake.fail"/>, <xref target="TLS-RA"/>, <xref target="EarlyAttestationBleed"/> and the artifacts <xref target="Intra-handshake.fail-repo"/> in state-of-the-art formal analysis tool, ProVerif, under Apache-2.0 license for reproducibility, extensibility, and review, and have been acknowledged by the relevant stakeholders. Currently, there are <strong>two CVEs of CVSS 9.1, one CVE of CVSS 7.5, one GHSA of 9.0-10.0, one GHSA of CVSS 7.8, seven GHSAs of CVSS 7.4, and one GHSA of CVSS 6.3 published against the broader early attestation covering all layers of the ecosystem up to the application</strong>. The research papers on these are currently either under submission or being prepared for submission. The artifacts of these papers will be shared with the community under Apache-2.0 license for reproducibility, extensibility, and review. In our analysis, the remaining implementations of early attestation -- Edgeless Systems Contrast and Meta's AI -- remain vulnerable.</t>
    </abstract>
    <note removeInRFC="true">
      <name>About This Document</name>
      <t>
        The latest revision of this draft can be found at <eref target="https://muhammad-usama-sardar.github.io/intra-handshake-fail/draft-intra-handshake-fail.html"/>.
        Status information for this document may be found at <eref target="https://datatracker.ietf.org/doc/draft-intra-handshake-fail/"/>.
      </t>
      <t>Source for this draft and an issue tracker can be found at
        <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail"/>.</t>
    </note>
  </front>
  <middle>
    <?line 306?>

<section anchor="introduction">
      <name>Introduction</name>
      <t><xref target="Intra-handshake.fail"/> presents a general approach to analyze the intra-handshake (aka early) attestation proposals, regardless of whether they are within the scope of SEAT charter or not. From a security perspective, one of the key decision factors is the candidate binding mechanism. Some binding mechanisms are within scope of SEAT charter and others are not. The artifacts are available in <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 license for reproducibility, extensibility and further research.</t>
      <t>A <strong>complementary</strong> paper <xref target="ID-Crisis"/> presents the identity crisis in pre- and intra-handshake attestation. The formal analysis is available in <xref target="ID-Crisis-repo"/> under Apache-2.0 license for reproducibility and extensibility.</t>
      <t>Another complementary paper -- currently under submission -- performs a thorough formal analysis of the design options in intra-handshake attestation.</t>
      <section anchor="overview">
        <name>Overview</name>
        <t><xref target="Intra-handshake.fail"/> presents the formal specification and analysis of the candidate binding mechanisms for binding in intra-handshake attestation for standardization for attested TLS protocols:</t>
        <table>
          <name>Binding mechanisms, implementations and ProVerif artifacts</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Used in</th>
              <th align="left">Artifacts</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <xref target="I-D.fossati-tls-attestation-09"/>; <eref target="https://www.sns-itrust6g.com/wp-content/uploads/2025/12/Webinar-Architecting-Trust-CONFIDENTIAL6G.pdf">Cocos AI v0.8.2</eref>;  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref>; <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MarkusRudy.contrast-atls-ccc-attestation.pdf">Edgeless Systems Contrast</eref>; <eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI updated spec</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <xref target="I-D.fossati-tls-attestation-06"/></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7">binder7</eref></td>
            </tr>
          </tbody>
        </table>
        <artwork><![CDATA[
We provide a formal proof of insecurity of all the above candidate
binding mechanisms of intra-handshake attestation using the
state-of-the-art tool ProVerif and propose a mitigation for the
discovered security vulnerabilities. Our study reveals that it may
not be possible to achieve strong application-traffic (level 3)
binding using intra-handshake attestation alone. This can be exploited
for relay attacks, where an attacker makes a client accept an evidence
from a different machine. So the client cannot be sure that it connects
to its desired server.
]]></artwork>
        <t>We responsibly disclosed the vulnerability in intra-handshake attestation -- as noted in <xref target="GHSA-Cocos-AI"/> issued -- to the vendors, which resulted in  <xref target="CVE-2026-33697"/> of CVSS 7.5.</t>
      </section>
      <section anchor="modeling-other-binding-mechanisms">
        <name>Modeling Other Binding Mechanisms</name>
        <t>The artifacts are quite flexible for modification and testing of different intra-handshake attestation binding mechanisms by simply changing single <tt>rdata</tt> parameter in the Client and Server processes. Folder <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/aggregate">aggregate</eref> contains all analyzed and proposed binding mechanisms in <xref target="Intra-handshake.fail"/> to select via comment and uncomment. Other folders contain one specific binding mechanism.</t>
      </section>
      <section anchor="seat-early-attestation">
        <name>SEAT-Early-Attestation</name>
        <t>The draft <xref target="I-D.fossati-seat-early-attestation"/> is an extension of the provably vulnerable (and withdrawn) draft <xref target="I-D.fossati-tls-attestation-10"/> with the following two main changes from a formal perspective:</t>
        <ol spacing="normal" type="1"><li>
            <t>Binder has been updated</t>
          </li>
          <li>
            <t>Optional post-handshake attestation part has been added for re-attestation</t>
          </li>
        </ol>
        <t>The current binder in <xref target="I-D.fossati-seat-early-attestation"/> does not prevent relay attacks as there is no <strong>shared secret</strong> in the binder. In addition to the formal analysis in <xref target="Intra-handshake.fail"/>, see <xref target="TLS-RA"/> for arguments why shared secret is necessary to prevent relay attacks.</t>
        <t>Post-handshake attestation part may prevent relay attacks, but then the <strong>additional complexity</strong> of intra-handshake attestation is unjustified.</t>
      </section>
      <section anchor="executive-summary-of-current-status">
        <name>Executive Summary of Current Status</name>
        <t>Severity is based on <eref target="https://nvd.nist.gov/vuln-metrics/cvss">NIST metrics</eref>. Scores of 13 more GHSAs is yet to be confirmed and will be added later in this table. <strong>For TLS reference, Heartbleed was CVSS 7.5</strong>.</t>
        <table>
          <name>Published CVEs/GHSAs for intra-handshake (aka early) attestation</name>
          <thead>
            <tr>
              <th align="left">CVSS</th>
              <th align="left">Severity</th>
              <th align="left">Number of Published GHSAs</th>
              <th align="left">Number of Published CVEs</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">9.0-10.0</td>
              <td align="left">Critical</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">9.1</td>
              <td align="left">Critical</td>
              <td align="left">2</td>
              <td align="left">2</td>
            </tr>
            <tr>
              <td align="left">7.8</td>
              <td align="left">High</td>
              <td align="left">2</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">7.5</td>
              <td align="left">High</td>
              <td align="left">1</td>
              <td align="left">1</td>
            </tr>
            <tr>
              <td align="left">7.4</td>
              <td align="left">High</td>
              <td align="left">8</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">6.3</td>
              <td align="left">Medium</td>
              <td align="left">2</td>
              <td align="left">-</td>
            </tr>
          </tbody>
        </table>
      </section>
    </section>
    <section anchor="sec-credits">
      <name>Published GHSAs/CVEs</name>
      <table>
        <name>GHSAs/CVEs for intra-handshake (aka early) attestation and finders in (roughly) chronological order of publishing -- Except for the very last 3 GHSAs, CVSS scores of previous 13 GHSAs are preliminary</name>
        <thead>
          <tr>
            <th align="left">GHSA/CVE</th>
            <th align="left">CVSS</th>
            <th align="left">Finders</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI"/></td>
            <td align="left">7.8</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">7.5</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-16488"/></td>
            <td align="left">7.5</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI2"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI3"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems2"/></td>
            <td align="left">9.0-10.0</td>
            <td align="left">Markus Rudy; independently by Songbo Bu and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rustls"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-go"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-eov"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-eom"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc-da"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc-tcu"/></td>
            <td align="left">6.3</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-92701"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-92702"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-83194"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-83192"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-322v-xwfj-63cm">GHSA-322v-xwfj-63cm</eref></td>
            <td align="left">9.8</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-m9p9-3hxp-4j6j">GHSA-m9p9-3hxp-4j6j</eref></td>
            <td align="left">9.1</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-ppc4-fg56-x397">GHSA-ppc4-fg56-x397</eref></td>
            <td align="left">8.2</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6j47-3cm6-9cg6">GHSA-6j47-3cm6-9cg6</eref></td>
            <td align="left">8.1</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-4755-rh6c-694j">GHSA-4755-rh6c-694j</eref></td>
            <td align="left">8.1</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6f8q-88mv-c8vr">GHSA-6f8q-88mv-c8vr</eref></td>
            <td align="left">7.9</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-qqq3-6c47-684v">GHSA-qqq3-6c47-684v</eref></td>
            <td align="left">7.5</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-xxr6-w252-4ggx">GHSA-xxr6-w252-4ggx</eref></td>
            <td align="left">7.5</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-fmrx-fjqw-37gp</eref></td>
            <td align="left">6.5</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-f96w-jjf8-xpw3</eref></td>
            <td align="left">5.6</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fqrx-3wc2-4g49">GHSA-fqrx-3wc2-4g49</eref></td>
            <td align="left">4.4</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-mrgr-34cc-fcg8">GHSA-mrgr-34cc-fcg8</eref></td>
            <td align="left">4.2</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-wqf9-jfmm-f68v">GHSA-wqf9-jfmm-f68v</eref></td>
            <td align="left">4.2</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-376m-h37w-4rvq">GHSA-376m-h37w-4rvq</eref></td>
            <td align="left">7.8</td>
            <td align="left">Chengxin Huang, Songbo Bu, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI4"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI5"/></td>
            <td align="left">6.3</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
        </tbody>
      </table>
    </section>
    <section anchor="threat-model">
      <name>Threat Model</name>
      <t>The threat model is explained in Sec. 6.1 of <xref target="Intra-handshake.fail"/> and Sec. 4 of <xref target="ID-Crisis"/>.</t>
      <t>Beyond post-generation leakage of <tt>privEK</tt> considered in <xref target="Intra-handshake.fail"/>, the same adversary capability may arise from failures during key generation or entropy provisioning. Platform-attestation keys and workload-controlled TLS keys belong to distinct key-generation domains: for example, in AMD SEV-SNP the VCEK is derived by SNP firmware from chip-unique secrets and a TCB version, while several other platform secrets are specified as CSRNG-generated; by contrast, <tt>privEK</tt> and TLS (EC)DHE private values are typically generated by software executing inside the confidential VM using the guest OS or cryptographic-library random subsystem. Furthermore, SEV-SNP <tt>REPORT_DATA</tt> is supplied by the guest and incorporated into the signed attestation report without being interpreted by SNP firmware; consequently, valid Evidence can authenticate a binding value without attesting the entropy provenance, generation procedure, or exclusive possession of the corresponding private key. The <tt>LEK(privEK)</tt> capability should therefore also encompass predictable or repeated key generation caused by deficient entropy, cloned or rolled-back DRBG state, defective software or firmware, or malicious provisioning. <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-7055.html">CVE-2025-62626</eref> provides a concrete manufacturer-layer fault model: affected AMD Zen 5 processors could return insufficiently random values from certain <tt>RDSEED</tt> forms while incorrectly signaling success. This does not establish compromise of the AMD-SP-internal CSRNG or of a specific attested-TLS implementation, but demonstrates that ideal-randomness assumptions can fail below the protocol layer; software dependencies such as OpenSSL's <tt>--with-rand-seed=rdcpu</tt> (<eref target="https://github.com/openssl/openssl/blob/openssl-3.5.0/INSTALL.md">OpenSSL 3.5.0 INSTALL.md</eref>), which can use <tt>RDSEED</tt> or <tt>RDRAND</tt> as CSPRNG seed input, illustrate a possible propagation path from hardware entropy interfaces to workload TLS key generation.</t>
      <section anchor="low-level-mapping-of-the-system-model">
        <name>Low-Level Mapping of the System Model</name>
        <t>Figure 2 of <xref target="Intra-handshake.fail"/> provides a TEE-agnostic protocol-level
abstraction. For a low-level view, the following table maps the abstract
components to representative Intel TDX and AMD SEV-SNP implementations.</t>
        <table>
          <name>Mapping of the abstract system model to representative CC implementations</name>
          <thead>
            <tr>
              <th align="left">Fig. 2 element</th>
              <th align="left">Intel TDX</th>
              <th align="left">AMD SEV-SNP</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">
                <strong>Physical Machine</strong></td>
              <td align="left">TDX-capable Intel platform</td>
              <td align="left">SEV-SNP-capable AMD platform</td>
            </tr>
            <tr>
              <td align="left">
                <strong>CC Platform</strong></td>
              <td align="left">CPU HW + TDX Module + attestation infrastructure</td>
              <td align="left">CPU HW + AMD-SP/SNP (system) firmware + RMP/SEV machinery</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Quoting Agent</strong></td>
              <td align="left">TD QE</td>
              <td align="left">AMD-SP / SNP attestation (VM) firmware</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Confidential VM</strong></td>
              <td align="left">Trust Domain (TD)</td>
              <td align="left">Part of SNP confidential VM</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Network stack</strong></td>
              <td align="left">Part of guest OS + TLS library inside TD</td>
              <td align="left">Part of guest OS + TLS library inside SNP guest</td>
            </tr>
            <tr>
              <td align="left">
                <strong>HSM/TPM</strong></td>
              <td align="left">Secure element</td>
              <td align="left">Secure element</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privAK</tt></strong></td>
              <td align="left">Attestation key of TD Quoting Enclave</td>
              <td align="left">VCEK/VLEK signing key</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privEK</tt></strong></td>
              <td align="left">Workload/TLS-side ephemeral key</td>
              <td align="left">Workload/TLS-side ephemeral key</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privLTK</tt></strong></td>
              <td align="left">Long-term key in secure element</td>
              <td align="left">Long-term key in secure element</td>
            </tr>
          </tbody>
        </table>
        <t>The key material shown in the abstract model belongs to different implementation
and trust domains. The following table provides a corresponding low-level view.</t>
        <table>
          <name>Low-level implementation and key-generation domains</name>
          <thead>
            <tr>
              <th align="left">Component/key</th>
              <th align="left">Runs/lives where?</th>
              <th align="left">Type</th>
              <th align="left">Randomness/key source</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">TLS ECDHE</td>
              <td align="left">Inside network stack</td>
              <td align="left">Network stack</td>
              <td align="left">OS/library CSPRNG</td>
            </tr>
            <tr>
              <td align="left">
                <tt>privEK</tt></td>
              <td align="left">Inside confidential VM</td>
              <td align="left">Guest software</td>
              <td align="left">OS/library CSPRNG</td>
            </tr>
            <tr>
              <td align="left">AK</td>
              <td align="left">Quoting Agent</td>
              <td align="left">Firmware/enclave/platform key hierarchy</td>
              <td align="left">Platform-specific</td>
            </tr>
            <tr>
              <td align="left">Memory-encryption key</td>
              <td align="left">CC Platform</td>
              <td align="left">Hardware/firmware managed</td>
              <td align="left">Platform RNG/KDF</td>
            </tr>
            <tr>
              <td align="left">
                <tt>REPORT_DATA</tt></td>
              <td align="left">Created by Guest Software</td>
              <td align="left">Data binding</td>
              <td align="left">No independent entropy requirement</td>
            </tr>
          </tbody>
        </table>
        <t>Per-VM memory-encryption key is used to encrypt confidential VM's RAM.</t>
      </section>
    </section>
    <section anchor="detailed-vulnerability-disclosure-timeline-and-public-acknowledgements-by-affected-vendors">
      <name>Detailed Vulnerability Disclosure Timeline and Public Acknowledgements by Affected Vendors</name>
      <table>
        <name>Detailed vulnerability disclosure timeline and acknowledgements</name>
        <thead>
          <tr>
            <th align="left">Event</th>
            <th align="left">Date</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">Our initial responsible disclosure to vendor</td>
            <td align="left">07 Oct, 2025</td>
          </tr>
          <tr>
            <td align="left">Acknowledgement by vendor</td>
            <td align="left">14 Dec, 2025</td>
          </tr>
          <tr>
            <td align="left">Information to the <eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">IETF</eref></td>
            <td align="left">11 Jan, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://web.archive.org/web/20260227160554/https://www.ultraviolet.rs/blog/tee-tls-privacy/">Public announcement</eref> by vendor</td>
            <td align="left">27 Feb, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>]</td>
            <td align="left">23 March, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-33697"/> published  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-16488"/>  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/rustls/releases/tag/privasys-v0.8.1">Acknowledgment</eref> by Privasys for rustls <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">9 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/go/releases/tag/privasys-v0.5.1-go1.26.5">Acknowledgment</eref> by Privasys for go <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">10 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation</eref> declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref></td>
            <td align="left">17 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation repo</eref> archived</td>
            <td align="left">22 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable draft <xref target="I-D.fossati-tls-attestation-10"/> withdrawn by authors</td>
            <td align="left">23 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">29 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI2"/>  [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">16 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI3"/>  [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">16 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems2"/> [<strong>Severity = CRITICAL (CVSS 9.0-10.0)</strong>]</td>
            <td align="left">24 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rustls"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-go"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-eov"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-eom"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys archived early attestation in rustls and moved to post-handshake attestation</td>
            <td align="left">4 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys archived early attestation in go and moved to post-handshake attestation</td>
            <td align="left">4 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc-da"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">6 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc-tcu"/> [<strong>Severity = MEDIUM (CVSS 6.3)</strong>]</td>
            <td align="left">6 September, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-92701"/> published [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-92702"/> published [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-83194"/> [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-83192"/> [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-322v-xwfj-63cm">GHSA-322v-xwfj-63cm</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-m9p9-3hxp-4j6j">GHSA-m9p9-3hxp-4j6j</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-ppc4-fg56-x397">GHSA-ppc4-fg56-x397</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6j47-3cm6-9cg6">GHSA-6j47-3cm6-9cg6</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-4755-rh6c-694j">GHSA-4755-rh6c-694j</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6f8q-88mv-c8vr">GHSA-6f8q-88mv-c8vr</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-qqq3-6c47-684v">GHSA-qqq3-6c47-684v</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-xxr6-w252-4ggx">GHSA-xxr6-w252-4ggx</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-fmrx-fjqw-37gp</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-f96w-jjf8-xpw3</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fqrx-3wc2-4g49">GHSA-fqrx-3wc2-4g49</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-mrgr-34cc-fcg8">GHSA-mrgr-34cc-fcg8</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-wqf9-jfmm-f68v">GHSA-wqf9-jfmm-f68v</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <eref target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-376m-h37w-4rvq">GHSA-376m-h37w-4rvq</eref></td>
            <td align="left">24 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI4"/>  [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">25 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI5"/>  [<strong>Severity = MODERATE (CVSS 6.3)</strong>]</td>
            <td align="left">25 September, 2026</td>
          </tr>
        </tbody>
      </table>
      <t><strong>Neither the GHSAs nor the CVEs have any dependency whatsoever on the considered threat model with <tt>WeakHash</tt>, <tt>WeakDH</tt>, or <tt>BadElement</tt>.</strong> They hold independent of those, i.e., with <tt>StrongHash</tt> and <tt>StrongDH</tt> and all good elements within a group.</t>
    </section>
    <section anchor="eu-enisa">
      <name>EU ENISA</name>
      <t>European Union's <eref target="https://euvd.enisa.europa.eu/homepage">ENISA</eref> has independently published <xref target="EUVD-2026-16488"/> with CVSS 7.5 to acknowledge this vulnerability.</t>
    </section>
    <section anchor="sec-cvss-scores">
      <name>Comparison with Other Vulnerabilities in Confidential Computing Literature</name>
      <t>Severity is based on <eref target="https://nvd.nist.gov/vuln-metrics/cvss">NIST metrics</eref>.</t>
      <table>
        <name>Comparison with other vulnerabilities in confidential computing literature</name>
        <thead>
          <tr>
            <th align="left">Vulnerability</th>
            <th align="left">CVE</th>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <eref target="https://wiretap.fail/files/wiretap.pdf">wiretap.fail</eref></td>
            <td align="left">No CVE (<eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2025-10-28-001.html">Intel</eref> and <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3040.html">AMD</eref> announcements)</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://tee.fail/files/paper.pdf">TEE.fail</eref></td>
            <td align="left">No CVE</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://ddropattack.eu/ddrop.pdf">DDRop</eref></td>
            <td align="left">No CVE (<eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2026-08-11-001.html">Intel</eref> and <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3048.html">AMD</eref> announcements)</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://dl.acm.org/doi/10.1145/3658644.3690230">TDXdown</eref></td>
            <td align="left">
              <eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2024-10-08-001.html">Intel</eref></td>
            <td align="left">2.5</td>
            <td align="left">Low</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/staleus/staleus_usenix26.pdf">Staleus</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-54509">CVE-2025-54509</eref></td>
            <td align="left">4.0</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-6197">CVE-2025-61972</eref></td>
            <td align="left">4.2</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://badram.eu/badram.pdf">BadRAM</eref></td>
            <td align="left">
              <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3015.html">AMD</eref></td>
            <td align="left">5.3</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-61971">CVE-2025-61971</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/fabricked/fabricked_usenix26.pdf">Fabricked</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=cve-2025-54510">CVE-2025-54510</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">Intra-handshake.fail</eref></td>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">7.5</td>
            <td align="left">High</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EarlyAttestationBleed"/></td>
            <td align="left">
              <xref target="CVE-2026-92701"/></td>
            <td align="left">9.1</td>
            <td align="left">Critical</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EarlyAttestationBleed"/></td>
            <td align="left">
              <xref target="CVE-2026-92702"/></td>
            <td align="left">9.1</td>
            <td align="left">Critical</td>
          </tr>
        </tbody>
      </table>
      <t>The comparison of the above with CVSS <strong>9.1</strong> for early attestation indicates that it is not mature yet compared to the rest of the confidential computing stack, and is currently one of the weakest links in the ecosystem.</t>
    </section>
    <section anchor="more-cves">
      <name>More CVEs</name>
      <t>Further formal analysis has led to the following potential CVEs for intra-handshake (aka early) attestation (currently under review and disclosure):</t>
      <table>
        <name>Expected CVEs for intra-handshake (aka early) attestation under review and disclosure</name>
        <thead>
          <tr>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
            <th align="left">Number of CVEs</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">9.0-10.0</td>
            <td align="left">Critical</td>
            <td align="left">1 (confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">9.8</td>
            <td align="left">Critical</td>
            <td align="left">1</td>
          </tr>
          <tr>
            <td align="left">8.7</td>
            <td align="left">High</td>
            <td align="left">1</td>
          </tr>
          <tr>
            <td align="left">7.8</td>
            <td align="left">High</td>
            <td align="left">1 (confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">7.5</td>
            <td align="left">High</td>
            <td align="left">5</td>
          </tr>
          <tr>
            <td align="left">7.4</td>
            <td align="left">High</td>
            <td align="left">9 (5 confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">6.3</td>
            <td align="left">Medium</td>
            <td align="left">7</td>
          </tr>
        </tbody>
      </table>
      <t>These are preliminary estimates of scores, not final assigned score. They are still under review.</t>
    </section>
    <section anchor="vulnerable-implementations">
      <name>Vulnerable Implementations</name>
      <t>As demonstrated in <xref target="Intra-handshake.fail"/> and <xref target="Intra-handshake.fail-repo"/>, at least the following intra-handshake implementations are vulnerable:</t>
      <ul spacing="normal">
        <li>
          <t><eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI</eref>: <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
        <li>
          <t><eref target="https://github.com/edgelesssys/contrast">Edgeless Systems Contrast</eref>: <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</t>
        </li>
      </ul>
      <t>If you are aware of any other intra-handshake attestation implementation, please let us know so that we can check and responsibly disclose the vulnerabilities to them.</t>
      <section anchor="archivedmitigated-implementations">
        <name>Archived/Mitigated Implementations</name>
        <t>The following intra-handshake implementations were vulnerable and have been <strong>archived</strong> or moved to <strong>post</strong>-handshake attestation:</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref>: declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref> and <strong>archived</strong></t>
          </li>
          <li>
            <t><eref target="https://github.com/ultravioletrs/cocos">Cocos AI &lt;= v0.8.2</eref>: <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>], <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]; <strong>migrated</strong> to post-handshake attestation since v0.9.0</t>
          </li>
          <li>
            <t><eref target="https://github.com/Privasys/rustls">Privasys rustls &lt;= privasys-v0.2.0</eref>: <xref target="GHSA-Privasys-rustls"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>], <strong>archived</strong> and Privasys migrated to post-handshake attestation</t>
          </li>
          <li>
            <t><eref target="https://github.com/Privasys/go">Pirvasys go &lt;= privasys-v0.3.0-go1.26.5</eref>: <xref target="GHSA-Privasys-go"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>], <strong>archived</strong> and Privasys migrated to post-handshake attestation</t>
          </li>
        </ul>
      </section>
    </section>
    <section anchor="vulnerable-protocol-specifications">
      <name>Vulnerable Protocol Specifications</name>
      <t>At least the following protocol specifications with intra-handshake attestation <em>path</em> are vulnerable to <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/>:</t>
      <ul spacing="normal">
        <li>
          <t><xref target="I-D.fossati-tls-attestation-09"/>: symbolic proof of insecurity; <xref target="I-D.fossati-tls-attestation-10"/> <strong>withdrawn</strong> after the CVE</t>
        </li>
        <li>
          <t><xref target="I-D.fossati-seat-early-attestation"/>: symbolic and (paper-and-pen-based) computational proof of insecurity (originally done for -04 and applies also to -06)
          </t>
          <ul spacing="normal">
            <li>
              <t>As a SEAT WG participant pointed out, please note that both <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> contain a link to <xref target="GHSA-Cocos-AI"/> that contains a link to <xref target="SEAT-vulnerability-report"/> that contains the G3 property (cf. <xref target="sec-corr-goals"/>) that this draft does not satisfy.</t>
            </li>
            <li>
              <t>Some WG participants successfully reproduced the vulnerability by substituting the right value of <tt>rdata</tt> in the shared formal model <xref target="Intra-handshake.fail-repo"/> that led to the CVE.</t>
            </li>
            <li>
              <t>An informal reasoning is that binder is not <strong>directly</strong> derived from any <strong>shared secret</strong> in this draft.</t>
            </li>
            <li>
              <t><strong>Unnecessary complexity</strong> is itself a security concern</t>
            </li>
          </ul>
        </li>
        <li>
          <t><xref target="I-D.ritz-seat-facts"/>: symbolic proof of insecurity
          </t>
          <ul spacing="normal">
            <li>
              <t>violates G3 property in our analysis</t>
            </li>
            <li>
              <t>unnecessary complexity is itself a security concern</t>
            </li>
          </ul>
        </li>
      </ul>
    </section>
    <section anchor="binding-levels">
      <name>Binding Levels</name>
      <ol spacing="normal" type="1"><li>
          <t>DH shared secret (<tt>gxy</tt>) used as shared secret between client and server</t>
        </li>
        <li>
          <t>Handshake traffic key (<tt>htsc</tt>) used for encryption of handshake messages</t>
        </li>
        <li>
          <t>Application traffic key (<tt>atsc</tt>) used for encryption of application data</t>
        </li>
      </ol>
      <t>Please see Sec. 6.2 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="sec-corr-goals">
      <name>Security Properties (Correlation Goals)</name>
      <t>We consider TLS Server as RATS Attester, which is typical in confidential computing.</t>
      <ol spacing="normal" type="1"><li>
          <t>Correlation of Evidence to a DH Shared Secret (G1)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Handshake Traffic Key (G2)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Application Traffic Key (G3)</t>
        </li>
      </ol>
      <t>Please see Sec. 6.3 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="main-results">
      <name>Main Results</name>
      <ul spacing="normal">
        <li>
          <t>All analyzed binding mechanisms and the corresponding implementations of intra-handshake attestation are vulnerable to relay attacks.</t>
        </li>
        <li>
          <t>Early exporter helps achieve level 1 binding.</t>
        </li>
        <li>
          <t>Our proposed mechanism helps achieve level 2 binding.</t>
        </li>
        <li>
          <t>It may not be possible to achieve level 3 in intra-handshake attestation alone without additional assumptions.</t>
        </li>
      </ul>
      <table>
        <name>Main results</name>
        <thead>
          <tr>
            <th align="left">Property</th>
            <th align="left">Mechanism #1,2,4,6</th>
            <th align="left">Mechanism #3,5,7</th>
            <th align="left">Proposed mechanism</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">G1 : Correlation of Evidence to <tt>gxy</tt></td>
            <td align="left">❌</td>
            <td align="left">✅</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G2 : Correlation of Evidence to <tt>kch</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G3 : Correlation of Evidence to <tt>kc</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">❌</td>
          </tr>
        </tbody>
      </table>
      <t>Please see Sec. 7.1 and Figure 5 of <xref target="Intra-handshake.fail"/> for details of attacks.</t>
      <section anchor="expected-results">
        <name>Expected Results</name>
        <table>
          <name>Expected results</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Artifacts</th>
              <th align="left">Expected results</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/">binder1</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/log.txt">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/">binder2</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/log.txt">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/">binder3</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/log.txt">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/">binder4</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/log.txt">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/">binder5</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/log.txt">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/">binder6</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/log.txt">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/">binder7</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/log.txt">binder7</eref></td>
            </tr>
            <tr>
              <td align="left">8.</td>
              <td align="left">Proposed</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/">proposal</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/log.txt">proposal</eref></td>
            </tr>
          </tbody>
        </table>
      </section>
    </section>
    <section anchor="implications-of-findings">
      <name>Implications of Findings</name>
      <section anchor="implications-of-findings-for-ietf-seat-wg">
        <name>Implications of Findings for IETF SEAT WG</name>
        <ul spacing="normal">
          <li>
            <t>We believe post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>, can achieve level 3 binding.</t>
          </li>
          <li>
            <t>The research suggests that recent hybrid proposals (combination of intra-handshake attestation and post-handshake attestation) <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> may add <strong>unnecessary complexity</strong> of intra-handshake attestation without adding any security benefit compared to post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>. We are not aware of any <strong>security property</strong> that hybrid proposals can achieve that post-handshake attestation alone cannot achieve.</t>
          </li>
          <li>
            <t>As demonstrated by our symbolic analysis using ProVerif, the protocol specifications <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> remain vulnerable to CVE-2026-33697. We have also proved that <xref target="I-D.fossati-seat-early-attestation-04"/> and <xref target="I-D.fossati-seat-early-attestation"/> violate the security theorems in the computational model.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-lake-wg">
        <name>Implications of Findings for IETF LAKE WG</name>
        <ul spacing="normal">
          <li>
            <t>Similar problems occur for protocol specification <eref target="https://datatracker.ietf.org/doc/draft-ietf-lake-ra/">lake-ra</eref>.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-tls-wg">
        <name>Implications of Findings for IETF TLS WG</name>
        <ul spacing="normal">
          <li>
            <t><xref target="I-D.fossati-tls-attestation-09"/> is vulnerable to <xref target="CVE-2026-33697"/>. Thankfully, the authors have withdrawn <xref target="I-D.fossati-tls-attestation-10"/>.</t>
          </li>
          <li>
            <t>Remote attestation <em>within</em> the handshake is very dangerous, since to our knowledge, it is one of the highest scored published vulnerabilities in confidential computing literature (see <xref target="sec-cvss-scores"/>). For reference, <strong>Heartbleed</strong> was <strong>7.5 CVSS</strong>.</t>
          </li>
        </ul>
        <artwork><![CDATA[
Given the high- and critical-severity vulnerabilities, we recommend
that the developers and maintainers of intra-handshake attestation MUST
urgently move to post-handshake attestation.
]]></artwork>
      </section>
      <section anchor="implications-of-findings-for-agent2agent">
        <name>Implications of Findings for Agent2Agent</name>
        <t>The findings of published CVEs/GHSAs up to 9.1 (presented in <xref target="sec-credits"/>) show that intra-handshake attestation can introduce significant security risks for AI agents when relied upon as a security mechanism.</t>
        <t>Attestation can provide evidence about an agent’s technical state, but such evidence should not be equated with governability. For a relying party, governability also depends on whether the agent’s identity, authority and permissions remain aligned with the intended interaction, whether responsibility for its actions can be attributed, and whether meaningful intervention remains possible. The findings in this draft reinforce that distinction by showing that even the binding between attestation evidence and the intended session can fail. Successful attestation should therefore be treated as one input into governance, rather than as sufficient evidence that an AI agent remains under effective control.</t>
      </section>
    </section>
    <section anchor="technical-details">
      <name>Technical Details</name>
      <section anchor="tool">
        <name>Tool</name>
        <t>We use state-of-the-art symbolic security analysis tool <eref target="https://ieeexplore.ieee.org/document/9833653">ProVerif</eref> for the specification of the protocols.</t>
      </section>
      <section anchor="modeling">
        <name>Modeling</name>
        <t>The formal model uses the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work as the starting point to focus on relay attacks in intra-handshake attestation in this work.
The rationale is that we consider it more useful to show the added value of this contribution to the community by using the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> as the baseline, rather than showing the same diversion attacks from <xref target="ID-Crisis"/>, and the discovered CVE (<xref target="CVE-2026-33697"/>) -- which the previous analysis could not find -- practically demonstrates the added value.
This modeling choice makes it clear that even with the diversion attacks fixed, high-severity relay attacks would still remain in intra-handshake attestation.</t>
        <t>Note: Similar to the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work, we model non-PSK-based handshake.
From <xref target="ID-Crisis"/>:</t>
        <ul empty="true">
          <li>
            <t>For modeling TLS 1.3, we consider handshakes based on Diffie-Hellman over either finite fields or elliptic curves, represented as (EC)DHE. This is because we are unaware of any publicly available specification or implementation of attested TLS with PSK-based handshakes.</t>
          </li>
        </ul>
        <t>While it would be nice to model PSK-based handshake, the rationale is that the correlation properties studied in this work do not necessarily require it.</t>
        <t>Note: The artifacts consider the case of server authentication only, as client authentication is optional in TLS 1.3. No claims are made about other configurations.</t>
      </section>
      <section anchor="properties">
        <name>Properties</name>
        <t>Properties in <xref target="Intra-handshake.fail"/> are complemetary to properties in <xref target="ID-Crisis"/>. Sec. 8 of <xref target="ID-Crisis"/> mentions:</t>
        <ul empty="true">
          <li>
            <t>We emphasize that both diversion and relay attacks are orthogonal and thus the two works are complementary.</t>
          </li>
        </ul>
      </section>
      <section anchor="technical-vulnerability-report">
        <name>Technical Vulnerability Report</name>
        <t>Technical vulnerability report is available at <xref target="Intra-handshake.fail"/>. It is accepted for publication at ESORICS 2026.</t>
        <section anchor="vulnerabilities">
          <name>Vulnerabilities</name>
          <t>Sec. 7.1 of <xref target="Intra-handshake.fail"/> presents the technical details with abstract attack traces of the vulnerabilities.</t>
        </section>
        <section anchor="mitigation">
          <name>Mitigation</name>
          <t>Sec. 7.2 of <xref target="Intra-handshake.fail"/> presents the technical details of the proposed mitigation.</t>
        </section>
      </section>
      <section anchor="artifacts">
        <name>Artifacts</name>
        <t>Artifacts are available at <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 License.</t>
      </section>
    </section>
    <section anchor="sec-news">
      <name>Media Coverage</name>
      <t>Several cybersecurity and media professionals and bloggers have covered the vulnerabilities to protect the community from the harm of early attestation.</t>
      <section anchor="earlyattestationbleed">
        <name>EarlyAttestationBleed</name>
        <t><xref target="EarlyAttestationBleed"/></t>
        <ul spacing="normal">
          <li>
            <t>(German) <eref target="https://cybersecurity-news.de/cve-2026-92701-trusted-execution-environments-0-8-2/">Cybersecurity news (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t>(German) <eref target="https://cybersecurity-news.de/cve-2026-92702-cocos-ai-0-8-2/">Cybersecurity news (CVE-2026-92702)</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://www.anquan114.com/archives/7429">Security 114</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://mp.weixin.qq.com/s/31Glxqr6ofHylTyrtNsuaQ">KK says security</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="mp.weixin.qq.com/s/REtESPngXemSro0hjIZyxw">Safe Meow Station</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://mp.weixin.qq.com/s/864dwIXF5IY04q7ig4uBwg">Digital World Information</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://mp.weixin.qq.com/s/864dwIXF5IY04q7ig4uBwg">Shusei Consulting</eref></t>
          </li>
          <li>
            <t><eref target="https://freenode.net/digest/518">Freenode</eref></t>
          </li>
          <li>
            <t><eref target="https://collective.flashbots.net/t/earlyattestationbleed-paper-review/6054">Flashbots</eref></t>
          </li>
          <li>
            <t>(Japanese) <eref target="https://www.rich-wise.co.jp/cve-info/cve-2026-92701-intel-tdx%E3%81%AE%E8%84%86%E5%BC%B1%E6%80%A7%E3%81%AB%E3%82%88%E3%82%8A%E3%82%BB%E3%82%AD%E3%83%A5%E3%83%AA%E3%83%86%E3%82%A3%E5%AF%BE%E7%AD%96%E3%82%92%E8%AC%9B%E3%81%98%E3%82%8B/">Rich &amp; Wise with Socrates and Plato</eref></t>
          </li>
          <li>
            <t><eref target="https://app.opencve.io/cve/CVE-2026-92701">OpenCVE (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t><eref target="https://app.opencve.io/cve/CVE-2026-92702">OpenCVE (CVE-2026-92702)</eref></t>
          </li>
          <li>
            <t>CIRCL's <eref target="https://vulnerability.circl.lu/vuln/CVE-2026-92701">vulnerability.circl.lu (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t>CIRCL's <eref target="https://vulnerability.circl.lu/vuln/CVE-2026-92702">vulnerability.circl.lu (CVE-2026-92702)</eref></t>
          </li>
          <li>
            <t>GCVE's <eref target="https://db.gcve.eu/vuln/cve-2026-92701">db.gcve.eu (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t>GCVE's <eref target="https://db.gcve.eu/vuln/cve-2026-92702">db.gcve.eu (CVE-2026-92702)</eref></t>
          </li>
        </ul>
        <t>If you have written an article on this and would like to be added here, please send us a PR at <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail">https://github.com/muhammad-usama-sardar/intra-handshake-fail</eref> or an email with the subject "Media coverage of EarlyAttestationBleed."</t>
      </section>
      <section anchor="intra-handshakefail">
        <name>Intra-handshake.fail</name>
        <t><xref target="Intra-handshake.fail"/></t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref></t>
          </li>
          <li>
            <t>(Japanese) <eref target="https://blackhatnews.tokyo/archives/119915">BlackHatNewsTokyo</eref></t>
          </li>
          <li>
            <t>(Several languages) <eref target="https://hackernoon.com/attested-tls-was-supposed-to-be-the-last-trust-boundary-it-isnt-formal-methods-show-how">Hackernoon</eref></t>
          </li>
          <li>
            <t><eref target="https://podcasts.apple.com/eg/podcast/attested-tls-was-supposed-to-be-the-last-trust/id1698517643?i=1000776623286">Apple podcast</eref></t>
          </li>
          <li>
            <t><eref target="https://meterpreter.org/attested-tls-vulnerability-cve-2026-33697/">Information Security News</eref></t>
          </li>
          <li>
            <t><eref target="https://thenextgentechinsider.com/pulse/critical-flaw-discovered-in-confidential-computing-attestation-protocols">TheNextGenTechInsider</eref></t>
          </li>
          <li>
            <t><eref target="https://dailysecurityreview.com/resources/cve-2026-33697-attested-tls-relay-flaw-hits-whatsapp-cocos-ai/">DailySecurityReview</eref></t>
          </li>
          <li>
            <t><eref target="https://www.scworld.com/brief/confidential-computings-remote-attestation-protocol-may-have-fundamental-flaw">SC World</eref></t>
          </li>
          <li>
            <t><eref target="https://blogs.groupware.org.uk/01-Quantum-Inc/the-handshake-that-cant-keep-its-promise-why-confidential-computings-flaw-changes-the-data-sovereignty-conversation/">01 Quantum</eref></t>
          </li>
          <li>
            <t>(Russian) <eref target="https://www.securitylab.ru/news/574545.php">Security Lab</eref></t>
          </li>
          <li>
            <t>(German) <eref target="https://www.blogspan.net/confidential-computing-attestierung-relay-luecke/">blogspan</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://finance.sina.cn/tech/2026-07-04/detail-inifscxt9953361.d.html">Sina</eref></t>
          </li>
          <li>
            <t><eref target="https://data4biz.com/articles/una-falla-rompe-la-fiducia-del-confidential-computing">data4biz</eref></t>
          </li>
          <li>
            <t>(Russian) <eref target="https://www.itsec.ru/news/issledovateli-nashli-kriticheskuyu-uyazvimost-v-attested-tls">ITSec</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://post.smzdm.com/p/a82ol990/">smzdm</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://www.donews.com/news/detail/4/6621022.html">donews</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://i.ifeng.com/c/8uUfy0PMmqE">ifeng</eref></t>
          </li>
          <li>
            <t><eref target="https://www.dugganusa.com/post/confidential-computing-s-whole-pitch-is-trust-the-proof-not-the-cloud-two-years-of-formal-verifi">dugganusa</eref></t>
          </li>
          <li>
            <t><eref target="https://github.com/pduggusa/dugganusa-ietf/tree/main/cve-2026-33697-attestation">dugganusa repo</eref></t>
          </li>
          <li>
            <t><eref target="https://sploitus.com/exploit?id=92591A05-07BC-5015-BA3D-B1347B35D684">spoitus</eref></t>
          </li>
          <li>
            <t><eref target="https://news.lavx.hu/article/attested-tls-research-exposes-a-weak-link-in-confidential-computing">lavx news</eref></t>
          </li>
          <li>
            <t><eref target="https://www.sohu.com/a/1045865934_122004016">sohu</eref></t>
          </li>
          <li>
            <t>(Persian) <eref target="https://news.ditty.ir/news/attested-tls-relay-flaw-formal-methods/019f6221-26ca-7293-9ee9-5557b3c0b8f8">news.ditty</eref></t>
          </li>
          <li>
            <t>(Russian) <eref target="https://limpvpn.com/ru/news/attested-tls-whatsapp-privacy-flaw-2026">LiMP VPN</eref></t>
          </li>
          <li>
            <t><eref target="https://daily.dev/posts/kI6PoNzPx">daily.dev</eref></t>
          </li>
          <li>
            <t><eref target="https://warden.veritai.ch/news/researchers-find-attested-tls-flaws-that-weaken-confidential-computing-trust-model">warden</eref></t>
          </li>
          <li>
            <t><eref target="https://db.gcve.eu/sightings/?query=cve-2026-33697">GCVE.eu</eref></t>
          </li>
          <li>
            <t><eref target="https://vulnerability.circl.lu/vuln/CVE-2026-33697#sightings">vuln.lu</eref></t>
          </li>
          <li>
            <t><eref target="https://coderlegion.com/24087/intra-handshake-attestation-when-more-security-doesnt-mean-better-security">coderlegion</eref></t>
          </li>
          <li>
            <t><eref target="https://www.anjuna.io/blog/attested-tls-flaw-explained">Anjuna Security</eref></t>
          </li>
          <li>
            <t><eref target="https://privasys.org/blog/binding-attestation-to-the-tls-session/">Privasys</eref></t>
          </li>
          <li>
            <t><eref target="https://caution.co/blog/steve-attesting-the-session.html">Caution</eref></t>
          </li>
          <li>
            <t><eref target="https://freenode.net/digest/67">freenode</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://blog.csdn.net/weixin_42376192/category_13096766.html">csdn</eref></t>
          </li>
          <li>
            <t><eref target="https://osintsights.com/confidential-computing-flaws-expose-trust-risks">osintsights</eref></t>
          </li>
          <li>
            <t>(Turkish) <eref target="https://hardwaremania.com/haber/arastirma-attested-tls-confidential-computing-icin-zayif-kaliyor/">hardwaremania</eref></t>
          </li>
          <li>
            <t><eref target="https://akber.com/sovereignty-in-the-cloud-is-an-illusion/">akber</eref></t>
          </li>
          <li>
            <t><eref target="https://www.ad-hoc-news.de/wissenschaft/cloud-souveraenitaet-red-hat-startet-reifegrad-assessments-gegen/69691475">ad-hoc news</eref></t>
          </li>
          <li>
            <t><eref target="https://aimultiple.com/privacy-enhancing-technologies">AIMultiple</eref></t>
          </li>
        </ul>
        <section anchor="security-researchers">
          <name>Security Researchers</name>
          <t>Several credible security researchers, such as the following, have publicly attested to it.</t>
          <ul spacing="normal">
            <li>
              <t><eref target="https://www.linkedin.com/posts/michaelpak_confidential-computings-core-trust-mechanism-activity-7479415537836376064-q-A4/">Michael Pak</eref></t>
            </li>
            <li>
              <t><eref target="https://www.linkedin.com/posts/rrbranco_one-more-evidence-that-there-is-no-such-a-share-7479582122366615552-X0A5/">Rodrigo Branco</eref></t>
            </li>
            <li>
              <t><eref target="https://www.linkedin.com/posts/bart-preneel-4451412_on-the-limits-of-confidential-computing-share-7479549718294077440-wfi3/">Bart Preneel</eref></t>
            </li>
            <li>
              <t><eref target="https://www.linkedin.com/in/strufe/recent-activity/all/">Thorsten Strufe</eref></t>
            </li>
          </ul>
        </section>
        <section anchor="germanys-bsi">
          <name>Germany's BSI</name>
          <t>Germany's Federal Office for Information Security (Bundesamt für Sicherheit in der Informationstechnik) has attested to it. Carina Hilt, deputy press spokesperson at BSI, told <eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref>:</t>
          <artwork><![CDATA[
CC alone cannot satisfy the requirements for digital sovereignty.
]]></artwork>
          <artwork><![CDATA[
dependencies on other services, such as identity and key
management etc., are also not mitigated by CC.
]]></artwork>
          <t>CC refers to Confidential Computing, and attested TLS is the core trust mechanism of CC.</t>
        </section>
      </section>
    </section>
    <section anchor="reviews">
      <name>Reviews</name>
      <section anchor="conference-reviews">
        <name>Conference Reviews</name>
        <t><xref target="Intra-handshake.fail"/> has been peer-reviewed and accepted for publication at ESORICS 2026.</t>
      </section>
      <section anchor="ietfirtf">
        <name>IETF/IRTF</name>
        <t>Several participants of the IETF/IRTF have attested to the results by independently reproducing the results and reviewing the code. Some of the participants have independently reproduced the results by developing their own formal models and a proof-of-concept implementation of the vulnerabilities. Some of the messages are mentioned below (<strong>excluding</strong> the messages of authors of <xref target="Intra-handshake.fail"/>):</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/">https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/">https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/">https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/">https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/">https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/">https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/">https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/">https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/">https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/">https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/">https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/">https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/">https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/">https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/">https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/">https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/">https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/">https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/">https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/">https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/">https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/">https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/">https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/">https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/">https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/">https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/">https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/">https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/">https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/">https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/">https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/">https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/">https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/">https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/">https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/">https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/">https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/">https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/">https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/">https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/">https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/">https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/">https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/">https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/">https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/">https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/">https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/">https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/">https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/">https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/">https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/">https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/">https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/">https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/">https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/">https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/">https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/">https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/">https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/">https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/">https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/">https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3J3s_YFnf9IQ87Tv2c1q4f36xKQ/">https://mailarchive.ietf.org/arch/msg/seat/3J3s_YFnf9IQ87Tv2c1q4f36xKQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JWKMYY1YG1E2iS_HyQ4rDmOsDGw/">https://mailarchive.ietf.org/arch/msg/seat/JWKMYY1YG1E2iS_HyQ4rDmOsDGw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rK1nDSewAbVL_weOp98knYZcg6s/">https://mailarchive.ietf.org/arch/msg/seat/rK1nDSewAbVL_weOp98knYZcg6s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Wjuz0fIj8tjYocUmiZZXcSwwFHw/">https://mailarchive.ietf.org/arch/msg/seat/Wjuz0fIj8tjYocUmiZZXcSwwFHw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SYiV4KZNr20re6QkGmyWS3pPteA/">https://mailarchive.ietf.org/arch/msg/seat/SYiV4KZNr20re6QkGmyWS3pPteA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZYgxm1ibt6p4dL7xF1YNdl0XSpc/">https://mailarchive.ietf.org/arch/msg/seat/ZYgxm1ibt6p4dL7xF1YNdl0XSpc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/6LKgOp22YRxGTYb-i-BxiMGzMW4/">https://mailarchive.ietf.org/arch/msg/seat/6LKgOp22YRxGTYb-i-BxiMGzMW4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3oHcKPtXLfBUYCZoN1nnO6e1F-s/">https://mailarchive.ietf.org/arch/msg/seat/3oHcKPtXLfBUYCZoN1nnO6e1F-s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aSybH9ihnNjN7SjdhhY_XtxhMtc/">https://mailarchive.ietf.org/arch/msg/seat/aSybH9ihnNjN7SjdhhY_XtxhMtc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/d_G8r7LMGjA45BPexZwsfmmAtJY/">https://mailarchive.ietf.org/arch/msg/seat/d_G8r7LMGjA45BPexZwsfmmAtJY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/u-za86_YJ0spwBXBwTVQzwiOCrU/">https://mailarchive.ietf.org/arch/msg/seat/u-za86_YJ0spwBXBwTVQzwiOCrU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/P4IMdvCx8lSEKrCiJIjbpBCRr4g/">https://mailarchive.ietf.org/arch/msg/seat/P4IMdvCx8lSEKrCiJIjbpBCRr4g/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-AO9yFJoflV1wDwwch45dmqkmyo/">https://mailarchive.ietf.org/arch/msg/seat/-AO9yFJoflV1wDwwch45dmqkmyo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/H0LqHfBasQml69Y-9Zl_njfsE8s/">https://mailarchive.ietf.org/arch/msg/seat/H0LqHfBasQml69Y-9Zl_njfsE8s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3hOGlYyc_yntmvT0tjYxldlwaxM/">https://mailarchive.ietf.org/arch/msg/seat/3hOGlYyc_yntmvT0tjYxldlwaxM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JbwL9cdl6fiP0vBGgASUUDmaPy8/">https://mailarchive.ietf.org/arch/msg/seat/JbwL9cdl6fiP0vBGgASUUDmaPy8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/TtewHbMGKBQOKD2sqrgTrnpCOkI/">https://mailarchive.ietf.org/arch/msg/seat/TtewHbMGKBQOKD2sqrgTrnpCOkI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UsIj6o7wf4hX_uCL51TCTv-wFxU/">https://mailarchive.ietf.org/arch/msg/seat/UsIj6o7wf4hX_uCL51TCTv-wFxU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/a6c8D6PBDRe0x4DAqXM3t4EPc4c/">https://mailarchive.ietf.org/arch/msg/seat/a6c8D6PBDRe0x4DAqXM3t4EPc4c/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/prB537Jht2kELVCSrTRktjbp7Y4/">https://mailarchive.ietf.org/arch/msg/seat/prB537Jht2kELVCSrTRktjbp7Y4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/RPnKYfUCD_MRw3hnA00zg684yGM/">https://mailarchive.ietf.org/arch/msg/seat/RPnKYfUCD_MRw3hnA00zg684yGM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/nMH_0sLLU5MekoEnzWKJnIJmaSk/">https://mailarchive.ietf.org/arch/msg/seat/nMH_0sLLU5MekoEnzWKJnIJmaSk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/GJCA31mgAehlgFPRu_yHA10lKPI/">https://mailarchive.ietf.org/arch/msg/seat/GJCA31mgAehlgFPRu_yHA10lKPI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/9f-21JMK6s1Pdcob6mPo06rNwmQ/">https://mailarchive.ietf.org/arch/msg/seat/9f-21JMK6s1Pdcob6mPo06rNwmQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/8qq_GFT391IEbGZZQUtYMONX9U0/">https://mailarchive.ietf.org/arch/msg/seat/8qq_GFT391IEbGZZQUtYMONX9U0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xzu2UlClYMkG8gNSOClxGJgwnOI/">https://mailarchive.ietf.org/arch/msg/seat/xzu2UlClYMkG8gNSOClxGJgwnOI/</eref></t>
          </li>
          <li>
            <t>Exploit: <eref target="https://mailarchive.ietf.org/arch/msg/seat/MfxWpRtlTqPElX8vX4v8uiN65TU/">https://mailarchive.ietf.org/arch/msg/seat/MfxWpRtlTqPElX8vX4v8uiN65TU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/PkU0jW_xHAF18rZmtZJ2A2p_wHs/">https://mailarchive.ietf.org/arch/msg/seat/PkU0jW_xHAF18rZmtZJ2A2p_wHs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/jZmdYKQlfherbhowIEmZRw2HF1c/">https://mailarchive.ietf.org/arch/msg/seat/jZmdYKQlfherbhowIEmZRw2HF1c/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-0j6UpsD_CebqPPMNkDJCjySqEI/">https://mailarchive.ietf.org/arch/msg/seat/-0j6UpsD_CebqPPMNkDJCjySqEI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/ssDrZRFW4s6CSaYeA9ImH0PPQ10/">https://mailarchive.ietf.org/arch/msg/rats/ssDrZRFW4s6CSaYeA9ImH0PPQ10/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/OPBI_Wd-RoTzzdh5D0JZoWlNGI8/">https://mailarchive.ietf.org/arch/msg/rats/OPBI_Wd-RoTzzdh5D0JZoWlNGI8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/nfrdr1T9Pdp6D_kj2Et3XZk-hOY/">https://mailarchive.ietf.org/arch/msg/rats/nfrdr1T9Pdp6D_kj2Et3XZk-hOY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/gMMvtP1IXsXFfb0X5nMhRTaLLok/">https://mailarchive.ietf.org/arch/msg/rats/gMMvtP1IXsXFfb0X5nMhRTaLLok/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/yaGG4sVf4pCfJ0HNPPRv3Xg0cG8/">https://mailarchive.ietf.org/arch/msg/rats/yaGG4sVf4pCfJ0HNPPRv3Xg0cG8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/DaA1jDQNF-bdO5x-dkVbSzlHcD4/">https://mailarchive.ietf.org/arch/msg/rats/DaA1jDQNF-bdO5x-dkVbSzlHcD4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/ptkHZUDzSoYnD6R5zln6HcE1cv4/">https://mailarchive.ietf.org/arch/msg/rats/ptkHZUDzSoYnD6R5zln6HcE1cv4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/n1-mBLW1m4TKiGsQqOhOIkbNxVs/">https://mailarchive.ietf.org/arch/msg/seat/n1-mBLW1m4TKiGsQqOhOIkbNxVs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/mBHcB8YRR0HVcyihhjm11XqRhWE/">https://mailarchive.ietf.org/arch/msg/seat/mBHcB8YRR0HVcyihhjm11XqRhWE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/zY3vdP_TZKZIdK_kpcrwWQuYf8s/">https://mailarchive.ietf.org/arch/msg/seat/zY3vdP_TZKZIdK_kpcrwWQuYf8s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/QcXGunfoT1OKrBI_FRsgpNsXvn4/">https://mailarchive.ietf.org/arch/msg/seat/QcXGunfoT1OKrBI_FRsgpNsXvn4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/FSh0tTa7h1NcaeVZENqz6wg45C8/">https://mailarchive.ietf.org/arch/msg/seat/FSh0tTa7h1NcaeVZENqz6wg45C8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5uos1xo5lkLisK-9RGJWLJaAnmk/">https://mailarchive.ietf.org/arch/msg/seat/5uos1xo5lkLisK-9RGJWLJaAnmk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2Vyb3hcqRoJF4tLkJOxs2CueNuw/">https://mailarchive.ietf.org/arch/msg/seat/2Vyb3hcqRoJF4tLkJOxs2CueNuw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/9mDNq-Fv3-9726qe_te0nfYKMaM/">https://mailarchive.ietf.org/arch/msg/seat/9mDNq-Fv3-9726qe_te0nfYKMaM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/KwtGScLIYvUCW2A0HxAS5s9XMMo/">https://mailarchive.ietf.org/arch/msg/seat/KwtGScLIYvUCW2A0HxAS5s9XMMo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SpLBEi5_nMr51gSng5oqS1uTlxU/">https://mailarchive.ietf.org/arch/msg/seat/SpLBEi5_nMr51gSng5oqS1uTlxU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/b2laJbuyFQQr6Q1nUCbpKa_PNz8/">https://mailarchive.ietf.org/arch/msg/seat/b2laJbuyFQQr6Q1nUCbpKa_PNz8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/V-3QA8_dX1A5mdKxoVy-1z_8RlA/">https://mailarchive.ietf.org/arch/msg/seat/V-3QA8_dX1A5mdKxoVy-1z_8RlA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vjIo3JCMjHglRNaSSHNOqjKgDxs/">https://mailarchive.ietf.org/arch/msg/seat/vjIo3JCMjHglRNaSSHNOqjKgDxs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/pE1j3aP-qvaUgT-Q88JextCIlcc/">https://mailarchive.ietf.org/arch/msg/seat/pE1j3aP-qvaUgT-Q88JextCIlcc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/uojEp8S21Ftf2osLCJNoR8xPzKA/">https://mailarchive.ietf.org/arch/msg/seat/uojEp8S21Ftf2osLCJNoR8xPzKA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xP6PxDJhAH9bnefUjlKc0f96ak8/">https://mailarchive.ietf.org/arch/msg/seat/xP6PxDJhAH9bnefUjlKc0f96ak8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/krTrXMiNIPyYzVDvlXlJB0UvaSk/">https://mailarchive.ietf.org/arch/msg/seat/krTrXMiNIPyYzVDvlXlJB0UvaSk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5dHBv3DyUy4Fprh71i90x6pHPCY/">https://mailarchive.ietf.org/arch/msg/seat/5dHBv3DyUy4Fprh71i90x6pHPCY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/HErXLOWPTDmOK6RMVO8J0lEGCyU/">https://mailarchive.ietf.org/arch/msg/rats/HErXLOWPTDmOK6RMVO8J0lEGCyU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/QqstD1bsKrZrfQ_VQU-Z9KhYnxM/">https://mailarchive.ietf.org/arch/msg/rats/QqstD1bsKrZrfQ_VQU-Z9KhYnxM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/Oh4lBsX5wtnqPJM1cPOkt1mPOAQ/">https://mailarchive.ietf.org/arch/msg/rats/Oh4lBsX5wtnqPJM1cPOkt1mPOAQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/dMAZ-uAbZIlUxiDbO_0ZBVh4q90/">https://mailarchive.ietf.org/arch/msg/rats/dMAZ-uAbZIlUxiDbO_0ZBVh4q90/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/FRdzVOJ5OBs4M1yuFk_ntxYl1yI/">https://mailarchive.ietf.org/arch/msg/rats/FRdzVOJ5OBs4M1yuFk_ntxYl1yI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/qr4w7FinCkG1qt27aCCjJKruP5E/">https://mailarchive.ietf.org/arch/msg/rats/qr4w7FinCkG1qt27aCCjJKruP5E/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/mf_CtbtSDHPz3uMHRXele2vwYr8/">https://mailarchive.ietf.org/arch/msg/ufmrg/mf_CtbtSDHPz3uMHRXele2vwYr8/</eref></t>
          </li>
        </ul>
        <section anchor="main-questions">
          <name>Main Questions</name>
          <t>In short, five main questions have been raised by WG participants in support of our work:</t>
          <ul spacing="normal">
            <li>
              <t>What <strong>security property</strong> hybrid (intra- + post-handshake attestation) provides that post-handshake attestation alone cannot provide?</t>
            </li>
            <li>
              <t>Since continuous attestation is required in most use cases <xref target="CSA-eBPF"/> <xref target="MITRE-Continuous-Attestation"/>, how is <strong>additional complexity</strong> of <strong>intra</strong>-handshake attestation justified? Use cases with one-time attestation can be covered by doing attestation round immediately after Connection Establishment Time: see <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-6-2">reference</eref>.</t>
            </li>
            <li>
              <t>What is the benefit of doing <strong>signatures</strong> of remote attestation <strong>within</strong> the handshake (as this latency can be exploited)? We add that <strong>verification</strong> of signatures is also time consuming, which can be exploited too. See <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-4.2.4">reference</eref>.</t>
            </li>
            <li>
              <t>How evidence is bound to the secure channel without involving any <strong>shared secret</strong>? See <xref target="TLS-RA"/>.</t>
            </li>
            <li>
              <t>How does a verifying relying party get the legitimate PIIDs and CHIP_IDs?</t>
            </li>
          </ul>
        </section>
        <section anchor="guidance-text">
          <name>Guidance Text</name>
          <ul spacing="normal">
            <li>
              <t>Evidence MUST be bound to the secure channel. Failure to do so results in
relay attacks <xref target="CVE-2026-33697"/>, <xref target="EUVD-2026-16488"/>, <xref target="GHSA-Cocos-AI"/>.</t>
            </li>
            <li>
              <t>Verifier MUST have access to legitimate hardware identifiers of the
Attester. Failure to do so results in relay attacks <xref target="GHSA-Edgeless-Systems"/>.</t>
            </li>
            <li>
              <t>Verifier MUST carefully check the binding. Failure to do so results in
relay attacks <xref target="GHSA-Cocos-AI2"/>, <xref target="GHSA-Cocos-AI3"/>.</t>
            </li>
            <li>
              <t>Binder MUST contain shared secrets. Failure to do so results in relay
attacks <xref target="GHSA-Privasys-rustls"/>, <xref target="GHSA-Privasys-go"/>, <xref target="GHSA-Privasys-eov"/>, <xref target="GHSA-Privasys-eom"/>, <xref target="GHSA-Privasys-rtc"/>, <xref target="GHSA-Privasys-rtc-da"/>, <xref target="GHSA-Privasys-rtc-tcu"/>.</t>
            </li>
          </ul>
        </section>
      </section>
      <section anchor="researchers-outside-of-ietfirtf">
        <name>Researchers outside of IETF/IRTF</name>
        <t>Some researchers have approached us confirming the proof-of-concept of the vulnerabilities in intra-handshake attestation. More information will be added once their pre-prints/papers are public.</t>
      </section>
    </section>
    <section anchor="security-considerations">
      <name>Security Considerations</name>
      <t>All of this document is about the <strong>insecurity</strong> of <strong>intra</strong>-handshake (aka early) attestation.</t>
      <t>By no means should the vendors mentioned in this draft be considered less secure than any other vendors implementing intra-handshake attestation solutions. In particular, those who have closed-source implementations are most likely more vulnerable than the open-source ones, since the former cannot easily be reviewed by the security community. Even extensive security reviews -- of closed-source implementations -- by cybersecurity firms often do not perform formal analysis, and thus such reviews may miss corner cases and subtle vulnerabilities.</t>
    </section>
    <section anchor="ethical-considerations">
      <name>Ethical Considerations</name>
      <t>We (i.e., the super set of all authors involved in this research, including but not limited to Muhammad Usama Sardar, Mariam Moustafa, Tuomas Aura, Viacheslav Dubeyko, Jean-Marie Jacquet, Songbo Bu, Chengxin Huang, Haowen Song, Kaya Ercihan, Dr. Kubilay Ahmet Küçük, Sylvain Bellemare, Eva C. M. Willems, Justin DESSENNES SAINTEN, Massimiliano Brighindi, Mikerah Quintyne-Collins, and Iman Schrock) are ethical researchers aiming to protect the community from the potential harm caused by the exploitability of the vulnerabilities in early attestation. We have <strong>responsibly disclosed</strong> the vulnerabilities to the respective developers and maintainers following their respective disclosure processes and provided them our proposed mitigations and requested them to take rapid action.</t>
      <t>We have released only the formal analysis for published CVE-2026-33697. To minimize exploit in the wild, we have not publicly released the proof-of-concept exploit code.</t>
      <t>We have not retrieved any real data from any real system. We have not released any key to any public forum or to any person.</t>
      <section anchor="evidence-of-explanation-of-vulnerabilities-to-the-authors-of-vulnerable-drafts">
        <name>Evidence of Explanation of Vulnerabilities to the Authors of Vulnerable Drafts</name>
        <t>To the best of our abilities, knowledge, and understanding, we have tried to explain the vulnerabilities to the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> first privately in several meetings and then later on publicly for at least half a year at several forums, including but not limited to CCC Attestation SIG and IETF/IRTF. Please see the (non-exhaustive list of) recordings <xref target="sec-recordings"/> and the archives <xref target="sec-archives"/> below. We sincerely thank the authors of <xref target="I-D.fossati-tls-attestation-10"/> for withdrawing their draft to protect further exploits mentioned in <xref target="sec-news"/>.</t>
        <section anchor="sec-recordings">
          <name>Recordings</name>
          <table>
            <name>Evidence of several explanations of vulnerabilities to the authors of vulnerable drafts</name>
            <thead>
              <tr>
                <th align="left">Event/Host</th>
                <th align="left">Venue</th>
                <th align="left">Date(s)</th>
                <th align="left">Evidence</th>
              </tr>
            </thead>
            <tbody>
              <tr>
                <td align="left">System Boot and Security MC @ <eref target="https://lpc.events/event/20/">Linux Plumbers Conference 2026</eref></td>
                <td align="left">Prague, Czechia</td>
                <td align="left">5 Oct, 2026</td>
                <td align="left">
                  <eref target="https://lpc.events/event/20/contributions/2585/">abstract</eref>, slides, video</td>
              </tr>
              <tr>
                <td align="left">BoF @ <eref target="https://lpc.events/event/20/">Linux Plumbers Conference 2026</eref></td>
                <td align="left">Prague, Czechia</td>
                <td align="left">5 Oct, 2026</td>
                <td align="left">
                  <eref target="https://lpc.events/event/20/contributions/2640/">abstract</eref>, slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ga4gh.org/event/14th-plenary/">GA4GH 14th Plenary Meeting</eref></td>
                <td align="left">Singapore</td>
                <td align="left">28 Sept-2 Oct, 2026</td>
                <td align="left">slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fg-pet.gi.de/veranstaltung/16th-privacy-enhancing-techniques-convention">PET-CON 2026.2: 16th Privacy Enhancing Techniques Convention</eref></td>
                <td align="left">Lübeck, Germany</td>
                <td align="left">28-29 Sept, 2026</td>
                <td align="left">slides</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://sites.google.com/di.uniroma1.it/esorics2026/">ESORICS 2026</eref></td>
                <td align="left">Rome, Italy</td>
                <td align="left">14-18 Sept, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/414416257_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">slides</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/session/rats">IETF RATS Interim meeting</eref></td>
                <td align="left">Virtual</td>
                <td align="left">14 Sept, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/materials/slides-interim-2026-rats-03-sessa-protecting-the-rats-ecosystem-from-critical-severity-vulnerabilities-00">slides</eref>, <eref target="https://youtu.be/y5_SR0-DzH0?t=255">video</eref></td>
              </tr>
              <tr>
                <td align="left">Hackathon @ <eref target="https://summit.riot-os.org/2026/">RIOT Summit 2026</eref></td>
                <td align="left">Grenoble, France</td>
                <td align="left">4 September, 2026</td>
                <td align="left">
                  <eref target="https://notes.inria.fr/2ppogr2fTSKusRog3RXbPQ?view#topic-security-analysis-of-attested-tls-and-attested-edhoc">topic synopsis</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://summit.riot-os.org/2026/">RIOT Summit 2026</eref></td>
                <td align="left">Grenoble, France</td>
                <td align="left">2-4 September, 2026</td>
                <td align="left">
                  <eref target="https://summit.riot-os.org/2026/blog/speakers/muhammad-usama-sardar/">abstract</eref>, <eref target="https://www.researchgate.net/publication/413988306_Security_Analysis_of_Attested_TLS_and_Attested_EDHOC">slides</eref>, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ga4gh.org/work_stream/data-security/">Data Security Work Stream (DSWS)</eref> at the <eref target="https://www.ga4gh.org/">Global Alliance for Genomics and Health (GA4GH)</eref></td>
                <td align="left">Virtual</td>
                <td align="left">24 Aug, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/413569575_High-Severity_Vulnerabilities_in_Former_GIF_Design_for_Attested_TLS_draft-fossati-seat-early-attestation">slides</eref>, <eref target="https://us02web.zoom.us/rec/share/UAn381deia-aMNmjGHhMqxocc1HcyF7ksLlaeeKefxO4bSC2mHPzwPQPYGe2dnZR.zfleYCmmtiteo_NS">video</eref></td>
              </tr>
              <tr>
                <td align="left">Confidential AI Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">21 July, 2026</td>
                <td align="left">
                  <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/odgd_xmhjQXiR_aLYdqtVvDJeF4/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">21 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-seat-binding-properties-of-expat-00.pdf">slides</eref>, <eref target="https://youtu.be/Fb5Hzh1mp1E?t=4189">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">IETF 126 Hackdemo Happy Hour</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">20 July, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">demo</eref></td>
              </tr>
              <tr>
                <td align="left">Confidential Computing Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">20 July, 2026</td>
                <td align="left">
                  <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hotrfc-sessa-15-confidential-computing-and-digital-sovereignty-00">slides</eref>, <eref target="https://youtu.be/FDHWRijxKso?t=3285">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ietf.org/meeting/hackathons/126-hackathon/">IETF 126 Hackathon</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hackathon-sessd-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/GRqyrDIEgEw?t=1340">video</eref></td>
              </tr>
              <tr>
                <td align="left">IEPG @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/g8q_u19vXzk?t=4404">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">Workshop</eref> @ <eref target="https://www.wissenschaftsnacht-dresden.de/en/">Dresden Science Night 2026</eref></td>
                <td align="left">Dresden</td>
                <td align="left">26 June, 2026</td>
                <td align="left">
                  <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">demo</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://output-dd.de/">Output 2026</eref></td>
                <td align="left">Dresden</td>
                <td align="left">25 June, 2026</td>
                <td align="left">
                  <eref target="https://output-dd.de/projekte/relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems/">demo</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://events.linuxfoundation.org/confidential-computing-summit/">Confidential Computing Summit 2026</eref> (presented by Jens Albers)</td>
                <td align="left">San Francisco, USA</td>
                <td align="left">23-24 June, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411851358_Standardization_of_Attested_TLS">poster</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://confidentialcontainers.org/">Confidential Containers Community Meeting</eref> @ <eref target="https://www.cncf.io/">Cloud Native Computing Foundation</eref></td>
                <td align="left">Virtual</td>
                <td align="left">30 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411849492_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref>, <eref target="https://zoom.us/rec/share/3thZhsRi-BZJL-GqjnwGzh7inbltuKIlpVjqMlWp6WRdMTZ66Z8p-8YjaaeOfbhX.CoH6YBukaKua0gkt">video</eref> around timestamp 00:27:00</td>
              </tr>
              <tr>
                <td align="left">GIF Project showcase @ <eref target="https://www.ga4gh.org/event/april-connect-2026/">GA4GH April Connect 2026</eref></td>
                <td align="left">Montreal, Canada (virtual)</td>
                <td align="left">17 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/412136610_Trusted_Research_Environment_TRE_Open_Suite">slides</eref>, <eref target="https://youtu.be/Kr9oxp1fdn0?t=1083">video</eref>, <eref target="https://www.ga4gh.org/document/arpril-connect-2026-meeting-report/">report</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://sos-vo.org/group/hotsos/">NSA Symposium on Hot Topics in the Science of Security (HotSoS) 2026</eref></td>
                <td align="left">Virtual</td>
                <td align="left">16 April, 2026</td>
                <td align="left">
                  <eref target="https://sos-vo.org/group/hotsos/2026/sardar">abstract</eref>, <eref target="https://sos-vo.org/system/files/2026-04/20260416_HotSoS%20%281%29.pdf">slides</eref>, <eref target="https://sos-vo.org/group/hotsos/2026/sardar">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fg-pet.gi.de/veranstaltung/15th-privacy-enhancing-techniques-convention">PET-CON 2026.1: 15th Privacy Enhancing Techniques Convention</eref></td>
                <td align="left">Karlsruhe, Germany</td>
                <td align="left">16-17 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411849502_Formal_Analysis_of_Attested_TLS">slides</eref>, <eref target="https://www.researchgate.net/publication/411852738_Formal_Analysis_of_Attested_TLS_and_Standardization_in_the_IETF">poster</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://gtmfs2026.sciencesconf.org/program?lang=en">GTMFS 2026: Annual Meeting of the WG "Formal Methods in Security"</eref></td>
                <td align="left">Luz-Saint-Sauveur, France</td>
                <td align="left">24-26 Mar, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411853715_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref></td>
              </tr>
              <tr>
                <td align="left">CFRG @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">19 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-cfrg-relay-attacks-00">slides</eref>, <eref target="https://youtu.be/IfKgbO74Lt4?t=6054">video</eref></td>
              </tr>
              <tr>
                <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref> (relay)</td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">17 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-seat-security-analysis-00">slides</eref>, <eref target="https://youtu.be/hX7genEkN7w?t=676">video</eref></td>
              </tr>
              <tr>
                <td align="left">Side meeting @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">16 Mar, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/403474373_Proposed_RG_Confidential_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">LAKE @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">16 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-lake-formal-analysis-of-attested-edhoc-00">slides</eref>, <eref target="https://youtu.be/JzfLpbnhl0A?t=3117">video</eref></td>
              </tr>
              <tr>
                <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">15 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hotrfc-sessa-formal-proof-of-insecurity-of-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/OtOo7Nogisw?t=3514">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ietf.org/meeting/hackathons/125-hackathon/">IETF 125 Hackathon</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">14-15 Mar, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/125/hackathon#relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hackathon-sessd-relay-attacks-in-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/62A58qH19MI?t=2270">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">10 Feb, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksGen_20260210.pdf">slides</eref>; <eref target="https://www.youtube.com/watch?v=idqwb0hFlhs&amp;list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1061s">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/session/rats">IETF RATS Interim meeting</eref></td>
                <td align="left">Virtual</td>
                <td align="left">9 Feb, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/materials/slides-interim-2026-rats-01-sessa-relayattacks-00.pdf">slides</eref>, <eref target="https://youtu.be/gURY61dViPw?t=1474">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fosdem.org/2026/schedule/track/confidential-computing/">Confidential Computing</eref> devroom at <eref target="https://fosdem.org/2026/">FOSDEM 2026</eref></td>
                <td align="left">Brussels, Belgium</td>
                <td align="left">31 Jan-1 Feb, 2026</td>
                <td align="left">
                  <eref target="https://fosdem.org/2026/schedule/event/GHGFBM-attestedtls/">abstract</eref>, <eref target="https://fosdem.org/2026/events/attachments/GHGFBM-attestedtls/slides/267432/20260201_60u9e0n.pdf">slides</eref>, <eref target="https://video.fosdem.org/2026/ud6215/GHGFBM-attestedtls.av1.webm">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">27 Jan, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksProposal_20260127.pdf">slides</eref>; <eref target="https://youtu.be/P04tLJcSxfM?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=434">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">13 Jan, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacks_20260113.pdf">slides</eref>; <eref target="https://youtu.be/cSrCZNyo7_g?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1083">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">16 Dec, 2025</td>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MuhammadUsamaSardar_Binding_Properties_20251216.pdf">slides</eref>; <eref target="https://youtu.be/w_MrjMeHyP8?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=593">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">2 Dec, 2025</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_Open_Questions_20251202.pdf">slides</eref>; <eref target="https://youtu.be/16aGZ-oZidg?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=2920">video</eref></td>
              </tr>
            </tbody>
          </table>
        </section>
        <section anchor="sec-archives">
          <name>Archives</name>
          <t>Since January, we have publicly informed the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> and shared our results with the community for review and to raise awareness on high-severity vulnerabilities and apply appropriate mitigations for the safety of their users:</t>
          <section anchor="intra-handshakefail-1">
            <name>Intra-handshake.fail</name>
            <section anchor="ietfhttpswwwietforg">
              <name><eref target="https://www.ietf.org/">IETF</eref></name>
              <ul spacing="normal">
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">SEAT WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">RATS WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/tls/8lyqHh9y7_Lv6b1iXhpUqYrp0M0/">TLS WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/lake/Tovtl7wgvzwJWT2I2ZwnhoIOnYQ/">LAKE WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/saag/jBZVk7YySwpaFqydAfxW33kNZPY/">SAAG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/practical-cybersecurity/d65WPaC0WbZRwxTBclnTkf7SmRs/">Practical Cybersecurity list</eref></t>
                </li>
                <li>
                  <t>Agent2agent list <eref target="https://mailarchive.ietf.org/arch/msg/agent2agent/ubz7uXCs--YzuSWyXNNsmWf_tSQ/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/agent2agent/xHhjA94fzed6ONIvPRgwTT-WRmA/">thread2</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/dmsc/QC2adIcYkxiTlniEcc7ggk86BAY/">DSMC list</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/hackathon/PIrJ2O_QqcNUAnMIn_Vh22ImWMc/">Hackathon</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">126attendees</eref></t>
                </li>
              </ul>
            </section>
            <section anchor="irtfhttpswwwirtforg">
              <name><eref target="https://www.irtf.org/">IRTF</eref></name>
              <ul spacing="normal">
                <li>
                  <t>UFMRG: <eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZWK0uMM92OdwlPbgXBvQApDpe5Q/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZRhR7o1HrWxfGDfgRJMR65RBkDE/">thread2</eref></t>
                </li>
                <li>
                  <t>CFRG <eref target="https://mailarchive.ietf.org/arch/msg/cfrg/NbxHIw9H_xpSYbgfO_n7lVIFeWs/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">thread2</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/din/_8LE3Ru1xX16hgGJwryMTRwRoaA/">DINRG</eref></t>
                </li>
              </ul>
            </section>
            <section anchor="ccchttpsconfidentialcomputingio">
              <name><eref target="https://confidentialcomputing.io/">CCC</eref></name>
              <ul spacing="normal">
                <li>
                  <t>Attestation SIG: <eref target="https://lists.confidentialcomputing.io/g/attestation/topic/117207133">thread1</eref> and <eref target="https://lists.confidentialcomputing.io/g/attestation/message/334">thread2</eref></t>
                </li>
                <li>
                  <t>TAC: <eref target="https://lists.confidentialcomputing.io/g/tac/topic/117932193">thread1</eref> and <eref target="https://lists.confidentialcomputing.io/g/tac/topic/120068850">thread2</eref></t>
                </li>
              </ul>
            </section>
            <section anchor="ocphttpswwwopencomputeorg">
              <name><eref target="https://www.opencompute.org/">OCP</eref></name>
              <ul spacing="normal">
                <li>
                  <t>OCP Security: <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/117932716">message1</eref>, <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120069056">message2</eref>, <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120483814">message3</eref> and <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120524635">message4</eref></t>
                </li>
              </ul>
            </section>
          </section>
          <section anchor="earlyattestationbleed-1">
            <name>EarlyAttestationBleed</name>
            <ul spacing="normal">
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZQKdp07P4UeTushAC1q9eBBtp0s/">IRTF UFMRG</eref></t>
              </li>
              <li>
                <t><eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/materials/slides-interim-2026-rats-03-sessa-protecting-the-rats-ecosystem-from-critical-severity-vulnerabilities-00">IETF RATS</eref></t>
              </li>
              <li>
                <t><eref target="https://ocp-all.groups.io/g/OCP-Security/message/1263">OCP Security</eref></t>
              </li>
              <li>
                <t><eref target="https://sympa.inria.fr/sympa/arc/proverif/2026-09/msg00000.html">ProVerif</eref></t>
              </li>
            </ul>
            <t>If you know any other relevant mailing list that we should inform for protection of users, please let us know.</t>
          </section>
        </section>
      </section>
    </section>
    <section anchor="contributions">
      <name>Contributions</name>
      <t>Contributions to the draft are welcome at <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail">https://github.com/muhammad-usama-sardar/intra-handshake-fail</eref>.</t>
      <t>Wenn Sie nur Deutsch sprechen, können Sie sich gerne per E-Mail an den Erstautor wenden. Wir haben Mitglieder, die Ihnen bei der Übersetzung Ihres Beitrags helfen können.</t>
      <t>如果您只会说中文，非常欢迎您通过电子邮件联系第四位作者。我们有成员可以协助翻译您的投稿。</t>
    </section>
    <section anchor="iana-considerations">
      <name>IANA Considerations</name>
      <t>This document has no IANA actions.</t>
    </section>
  </middle>
  <back>
    <references anchor="sec-combined-references">
      <name>References</name>
      <references anchor="sec-normative-references">
        <name>Normative References</name>
        <reference anchor="Intra-handshake.fail" target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="June"/>
          </front>
        </reference>
        <reference anchor="Intra-handshake.fail-repo" target="https://github.com/muhammad-usama-sardar/intra-handshake.fail">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="July"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-33697" target="https://www.cve.org/CVERecord?id=CVE-2026-33697">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-16488" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-16488">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-92701" target="https://www.cve.org/CVERecord?id=CVE-2026-92701">
          <front>
            <title>Cocos AI Intra-handshake attested TLS implementation is vulnerable to session-misbinding attacks for Intel TDX verifier path</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-92702" target="https://www.cve.org/CVERecord?id=CVE-2026-92702">
          <front>
            <title>Cocos AI Intra-handshake attested TLS implementation can accept Evidence with nil, empty, or omitted reportData in the AMD SEV-SNP path</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-83194" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-83194">
          <front>
            <title>EUVD-2026-83194</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-83192" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-83192">
          <front>
            <title>EUVD-2026-83192</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-vfgg-mvxx-mgg7">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI2" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-4px3-wj2x-xx47">
          <front>
            <title>Cocos AI intra-handshake attested TLS implementation is vulnerable to session-misbinding attacks for Intel TDX verifier path</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI3" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-4r6g-mp48-j2rw">
          <front>
            <title>Cocos AI intra-handshake attested TLS implementation can accept Evidence with nil, empty, or omitted reportData in the AMD SEV-SNP path</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-hjgc-jc5v-fw7h">
          <front>
            <title>Remote attestation is susceptible to relay attacks</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems2" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-m2qg-wrxv-h898">
          <front>
            <title>Generated policies don't detect all image substitutions</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="SEAT-vulnerability-report" target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">
          <front>
            <title>Relay Attacks in Intra-handshake Attestation for Confidential Agentic AI Systems</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <date year="2026" month="January"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rustls" target="https://github.com/Privasys/rustls/security/advisories/GHSA-j6qv-435v-r492">
          <front>
            <title>Privasys RA-TLS challenge mode did not bind attestation evidence to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-go" target="https://github.com/Privasys/go/security/advisories/GHSA-7jfw-53rm-phh2">
          <front>
            <title>Privasys Go fork: RA-TLS challenge mode did not bind attestation evidence to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-eov" target="https://github.com/Privasys/enclave-os-virtual/security/advisories/GHSA-p5fp-g94g-g9m9">
          <front>
            <title>enclave-os-virtual: RA-TLS challenge certificates were not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-eom" target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-49qm-4pj3-w2c6">
          <front>
            <title>enclave-os-mini: RA-TLS challenge certificates were not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-5qrc-v874-mxvx">
          <front>
            <title>ra-tls-clients: RA-TLS challenge verifier accepted quotes not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc-da" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-pj2x-5wqv-fh57">
          <front>
            <title>Privasys Intra-handshake attested TLS implementation is vulnerable to Diversion Attacks</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc-tcu" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-gg8q-mfhh-wrrc">
          <front>
            <title>Privasys Intra-handshake attested TLS implementation is vulnerable to TOCTOU Attacks</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI4" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-v5m8-5wxc-vjgp">
          <front>
            <title>Cocos Intra-handshake attested TLS implementation is vulnerable to Diversion Attacks</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI5" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-ghwv-vrp2-2975">
          <front>
            <title>Cocos AI Intra-handshake attested TLS implementation is vulnerable to TOCTOU Attacks</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="ID-Crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author fullname="Muhammad Usama Sardar" initials="M." surname="Sardar">
              <organization>TU Dresden, Dresden, Germany</organization>
            </author>
            <author fullname="Mariam Moustafa" initials="M." surname="Moustafa">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <author fullname="Tuomas Aura" initials="T." surname="Aura">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <date month="June" year="2026"/>
          </front>
          <seriesInfo name="Proceedings of the ACM Asia Conference on Computer and Communications Security" value="pp. 547-560"/>
          <seriesInfo name="DOI" value="10.1145/3779208.3785387"/>
          <refcontent>ACM</refcontent>
        </reference>
        <reference anchor="ID-Crisis-repo" target="https://github.com/CCC-Attestation/formal-spec-id-crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="M." surname="Moustafa">
              <organization/>
            </author>
            <author initials="T." surname="Aura">
              <organization/>
            </author>
            <date year="2025" month="November"/>
          </front>
        </reference>
        <reference anchor="refTLS">
          <front>
            <title>Verified Models and Reference Implementations for the TLS 1.3 Standard Candidate</title>
            <author fullname="Karthikeyan Bhargavan" initials="K." surname="Bhargavan">
              <organization/>
            </author>
            <author fullname="Bruno Blanchet" initials="B." surname="Blanchet">
              <organization/>
            </author>
            <author fullname="Nadim Kobeissi" initials="N." surname="Kobeissi">
              <organization/>
            </author>
            <date month="May" year="2017"/>
          </front>
          <seriesInfo name="2017 IEEE Symposium on Security and Privacy (SP)" value="pp. 483-502"/>
          <seriesInfo name="DOI" value="10.1109/sp.2017.26"/>
          <refcontent>IEEE</refcontent>
        </reference>
        <reference anchor="TLS-RA" target="https://www.usenix.org/conference/atc25/presentation/weinhold">
          <front>
            <title>Separate but together: integrating remote attestation into TLS</title>
            <author initials="" surname="Carsten Weinhold">
              <organization/>
            </author>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="" surname="Ionuț Mihalcea">
              <organization/>
            </author>
            <author initials="" surname="Yogesh Deshpande">
              <organization/>
            </author>
            <author initials="" surname="Hannes Tschofenig">
              <organization/>
            </author>
            <author initials="" surname="Yaron Sheffer">
              <organization/>
            </author>
            <author initials="" surname="Thomas Fossati">
              <organization/>
            </author>
            <author initials="" surname="Michael Roitzsch">
              <organization/>
            </author>
            <date year="2025" month="July"/>
          </front>
        </reference>
        <reference anchor="CSA-eBPF" target="https://cloudsecurityalliance.org/blog/2026/09/09/mitre-s-new-framework-securing-the-ebpf-layer-your-ai-depends-on">
          <front>
            <title>MITRE's New Framework: Securing the eBPF Layer Your AI Depends On</title>
            <author initials="" surname="Cloud Security Alliance">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="MITRE-Continuous-Attestation" target="https://www.mitre.org/news-insights/publication/framework-continuous-remote-attestation">
          <front>
            <title>Framework for Continuous Remote Attestation</title>
            <author initials="" surname="MITRE's Confidential Computing Layered Attestation Working Group">
              <organization/>
            </author>
            <date year="2026" month="July"/>
          </front>
        </reference>
        <reference anchor="EarlyAttestationBleed" target="https://www.researchgate.net/publication/414529199_EarlyAttestationBleed_Three_Critical-severity_Vulnerabilities_of_CVSS_90_in_Confidential_Computing">
          <front>
            <title>EarlyAttestationBleed: Three Critical-severity Vulnerabilities of CVSS ≥ 9.0 in Confidential Computing</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="" surname="Songbo Bu">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
      </references>
      <references anchor="sec-informative-references">
        <name>Informative References</name>
        <reference anchor="I-D.fossati-seat-early-attestation">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="20" month="September" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a TLS extension that
   enables the negotiation and binding of the TLS authentication key to
   a remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   This extension has been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-07"/>
        </reference>
        <reference anchor="I-D.fossati-seat-early-attestation-04">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="27" month="May" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a series of TLS
   extensions that enable the binding of the TLS authentication key to a
   remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   These extensions have been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-04"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-06">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="19" month="March" year="2024"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-06"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-09">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="30" month="April" year="2025"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-09"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-10">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="23" month="July" year="2026"/>
            <abstract>
              <t>   This draft has been withdrawn.

About This Document

   This note is to be removed before publishing as an RFC.

   Status information for this document may be found at
   https://datatracker.ietf.org/doc/draft-fossati-tls-attestation/.

   Source for this draft and an issue tracker can be found at
   https://github.com/yaronf/draft-tls-attestation.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-10"/>
        </reference>
        <reference anchor="I-D.ritz-seat-facts">
          <front>
            <title>Factor-based Attestation and Credential Transport Scheme (FACTS) over TLS 1.3</title>
            <author fullname="Nathanael Ritz" initials="N." surname="Ritz">
              <organization>Independent</organization>
            </author>
            <date day="1" month="March" year="2026"/>
            <abstract>
              <t>   This document describes FACTS (Factor-based Attestation and
   Credential Transport Scheme) over TLS 1.3.  Conceptually acting as
   "multi-factor authentication" for machine identities, factor-based
   attestation derives session trust from multiple independent
   cryptographic inputs rather than a single point of failure.
   Specifically, it utilizes a dual-key scheme that binds identity to
   attestation evidence through the use of key encapsulation material
   keys (KEM) and traditional identity signing keys (IK), establishing
   per-session freshness.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ritz-seat-facts-00"/>
        </reference>
      </references>
    </references>
    <?line 1062?>

<section numbered="false" anchor="acknowledgments">
      <name>Acknowledgments</name>
      <t>Acknowledgment does not necessarily imply attestation. It implies that the authors found the feedback and discussion useful in improving the formal analysis, the corresponding paper, or this draft.</t>
      <t>This draft benefits from several years of research on attested TLS, in particular some of the recent works mentioned below:</t>
      <t><strong>EarlyAttestationBleed</strong> <xref target="EarlyAttestationBleed"/></t>
      <t>We wish to express our sincere appreciation to the following for their review:</t>
      <ul spacing="normal">
        <li>
          <t>Sammy Kerata Oina</t>
        </li>
        <li>
          <t>Drasko Draskovic</t>
        </li>
        <li>
          <t>Markus Rudy</t>
        </li>
        <li>
          <t>Kaya Ercihan</t>
        </li>
        <li>
          <t>Peg Jones</t>
        </li>
        <li>
          <t>Bertrand Foing</t>
        </li>
        <li>
          <t>Rebekah Overdorf</t>
        </li>
        <li>
          <t>Tobias Pulls</t>
        </li>
      </ul>
      <t><strong>Intra-handshake.fail</strong> <xref target="Intra-handshake.fail"/></t>
      <t>We gratefully acknowledge the following for insightful discussions and helpful reviews on <xref target="Intra-handshake.fail"/>:</t>
      <ul spacing="normal">
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Juho Forsén</t>
        </li>
        <li>
          <t>Markus Rudy</t>
        </li>
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Steve Kremer</t>
        </li>
        <li>
          <t>Tjaden Hess</t>
        </li>
        <li>
          <t>Martin Thomson</t>
        </li>
        <li>
          <t>Yuning Jiang</t>
        </li>
        <li>
          <t>Pavel Nikonorov</t>
        </li>
        <li>
          <t>Casey Wilson</t>
        </li>
        <li>
          <t>Anonymous ESORICS 2026 reviewers</t>
        </li>
        <li>
          <t>Marco Anisetti (ESORICS 2026 shepherd)</t>
        </li>
        <li>
          <t>Danko Miladinovic</t>
        </li>
        <li>
          <t>Rongkuan He</t>
        </li>
        <li>
          <t>Peeter Laud</t>
        </li>
        <li>
          <t>Stephen Holmes</t>
        </li>
        <li>
          <t>Ammara Gul</t>
        </li>
        <li>
          <t>Atul Prakash</t>
        </li>
        <li>
          <t>Paul Syverson</t>
        </li>
        <li>
          <t>Jan Tobias Muehlberg</t>
        </li>
        <li>
          <t>John Preuß Mattsson</t>
        </li>
        <li>
          <t>Britta Hale</t>
        </li>
        <li>
          <t>Werner Staub</t>
        </li>
        <li>
          <t>Songbo Bu</t>
        </li>
        <li>
          <t>Haowen Song</t>
        </li>
        <li>
          <t>Chengxin Huang</t>
        </li>
        <li>
          <t>Steve Luo</t>
        </li>
        <li>
          <t>Andrew Miller</t>
        </li>
        <li>
          <t>Kubilay Ahmet Küçük</t>
        </li>
        <li>
          <t>Iman Schrock</t>
        </li>
        <li>
          <t>Sophie Schmieg</t>
        </li>
        <li>
          <t>Davyd Okaianchenko</t>
        </li>
        <li>
          <t>Alistair Woodman</t>
        </li>
        <li>
          <t>Göran Selander</t>
        </li>
        <li>
          <t>Tom Sato</t>
        </li>
        <li>
          <t>Jakub Maria Plutowski</t>
        </li>
        <li>
          <t>Martin Friedrich</t>
        </li>
        <li>
          <t>Patrick Duggan</t>
        </li>
        <li>
          <t>Serhii Nikolaichuk</t>
        </li>
        <li>
          <t>Deb Cooley</t>
        </li>
      </ul>
      <t><strong>Identity Crisis</strong> <xref target="ID-Crisis"/></t>
      <t>We would like to thank our co-authors of paper <xref target="ID-Crisis"/> for their valuable contributions:</t>
      <ul spacing="normal">
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Tuomas Aura</t>
        </li>
      </ul>
      <t>We also gratefully acknowledge the following for insightful discussions and helpful feedback:</t>
      <ul spacing="normal">
        <li>
          <t>Ionut Mihalcea</t>
        </li>
        <li>
          <t>Jean-Marie Jacquet</t>
        </li>
        <li>
          <t>Thomas Fossati</t>
        </li>
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Hannes Tschofenig</t>
        </li>
        <li>
          <t>Yaron Sheffer</t>
        </li>
        <li>
          <t>Laurence Lundblade</t>
        </li>
        <li>
          <t>Giridhar Mandyam</t>
        </li>
        <li>
          <t>Christopher Patton</t>
        </li>
        <li>
          <t>Jonathan Hoyland</t>
        </li>
        <li>
          <t>Richard Barnes</t>
        </li>
      </ul>
      <t><strong>refTLS</strong> <xref target="refTLS"/></t>
      <t>We sincerely thank the following for the foundational formal model of draft 20 of TLS 1.3 in their work <xref target="refTLS"/> that we have used as the foundation of all of this work:</t>
      <ul spacing="normal">
        <li>
          <t>Karthikeyan Bhargavan</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Nadim Kobeissi</t>
        </li>
      </ul>
      <t><strong>General</strong></t>
      <t>Several others at the IETF, IRTF, CCC, and GA4GH have contributed by providing feedback over the years. A non-exhaustive list of contributors is <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00#page=17">here</eref>.</t>
      <t>Muhammad Usama Sardar is funded by German Research Foundation ("Deutsche Forschungsgemeinschaft.")</t>
    </section>
  </back>
  <!-- ##markdown-source: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-->

</rfc>
