<?xml version='1.0' encoding='utf-8'?>
<!DOCTYPE rfc [
  <!ENTITY nbsp    "&#160;">
  <!ENTITY zwsp   "&#8203;">
  <!ENTITY nbhy   "&#8209;">
  <!ENTITY wj     "&#8288;">
]>
<?xml-stylesheet type="text/xsl" href="rfc2629.xslt" ?>
<!-- generated by https://github.com/cabo/kramdown-rfc version 1.7.39 (Ruby 3.4.9) -->
<rfc xmlns:xi="http://www.w3.org/2001/XInclude" ipr="trust200902" docName="draft-intra-handshake-fail-10" category="info" consensus="true" submissionType="IETF" tocInclude="true" sortRefs="true" symRefs="true" version="3">
  <!-- xml2rfc v2v3 conversion 3.34.0 -->
  <front>
    <title abbrev="Intra-handshake Attestation Considered Harmful">Intra-handshake Attestation Considered Harmful (CVE-2026-33697 of CVSS 7.5 and several other CVEs of up to expected CVSS 9.8 upcoming)</title>
    <seriesInfo name="Internet-Draft" value="draft-intra-handshake-fail-10"/>
    <author fullname="Muhammad Usama Sardar">
      <organization>TU Dresden, Germany</organization>
      <address>
        <email>muhammad_usama.sardar@tu-dresden.de</email>
      </address>
    </author>
    <author fullname="Songbo Bu">
      <organization>Shanghai Guan An Information Technology Co., Ltd., China</organization>
      <address>
        <email>bluedognull@gmail.com</email>
      </address>
    </author>
    <author fullname="Chengxin Huang">
      <organization>Independent</organization>
      <address>
        <email>aurestarnull@gmail.com</email>
      </address>
    </author>
    <author fullname="Haowen Song">
      <organization>Shanghai Guan An Information Technology Co., Ltd., China</organization>
      <address>
        <email>havan12050544@gmail.com</email>
      </address>
    </author>
    <date year="2026" month="August" day="22"/>
    <workgroup>SEAT</workgroup>
    <keyword>AI agents</keyword>
    <keyword>Intra-handshake attestation</keyword>
    <keyword>CVE-2026-33697</keyword>
    <abstract>
      <?line 112?>

<t>The draft aims to provide technical details of <eref target="https://www.cve.org/CVERecord?id=CVE-2026-33697">CVE-2026-33697</eref> and <eref target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-16488">EUVD-2026-16488</eref>, which is substantial technical evidence of how <strong>intra</strong>-handshake attestation fails in practice, even <em>without physical access</em>. Moreover, since continuous attestation is generally required, <strong>intra</strong>-handshake attestation adds <strong>unnecessary complexity</strong>. The results are backed by the research <xref target="Intra-handshake.fail"/> and the artifacts <xref target="Intra-handshake.fail-repo"/> in state-of-the-art tool, ProVerif, under Apache-2.0 license for reproducibility, and have been acknowledged by the relevant stakeholders.</t>
    </abstract>
    <note removeInRFC="true">
      <name>About This Document</name>
      <t>
        The latest revision of this draft can be found at <eref target="https://muhammad-usama-sardar.github.io/intra-handshake-fail/draft-intra-handshake-fail.html"/>.
        Status information for this document may be found at <eref target="https://datatracker.ietf.org/doc/draft-intra-handshake-fail/"/>.
      </t>
      <t>Source for this draft and an issue tracker can be found at
        <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail"/>.</t>
    </note>
  </front>
  <middle>
    <?line 116?>

<section anchor="introduction">
      <name>Introduction</name>
      <t><xref target="Intra-handshake.fail"/> presents a general approach to analyze the intra-handshake attestation proposals, regardless of whether they are within the scope of SEAT charter or not. From a security perspective, one of the key decision factors is the candidate binding mechanism. Some binding mechanisms are within scope of SEAT charter and others are not. The artifacts are in <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 license for reproducibility and extensibility.</t>
      <t>A <strong>complementary</strong> paper <xref target="ID-Crisis"/> presents the identity crisis in pre- and intra-handshake attestation. The formal analysis is available in <xref target="ID-Crisis-repo"/> under Apache-2.0 license for reproducibility and extensibility.</t>
      <t>Another complementary paper -- currently under submission -- peforms a thorough formal analysis of the design options in intra-handshake attestation.</t>
      <section anchor="overview">
        <name>Overview</name>
        <t>This draft presents the formal specification and analysis of the candidate binding mechanisms for binding in intra-handshake attestation for standardization for attested TLS protocols:</t>
        <table>
          <name>Binding mechanisms, implementations and ProVerif artifacts</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Used in</th>
              <th align="left">Artifacts</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">
                <eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MarkusRudy.contrast-atls-ccc-attestation.pdf">Edgeless Systems Contrast</eref>; <eref target="https://www.sns-itrust6g.com/wp-content/uploads/2025/12/Webinar-Architecting-Trust-CONFIDENTIAL6G.pdf">Cocos AI</eref>;  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <xref target="I-D.fossati-tls-attestation-06"/></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7">binder7</eref></td>
            </tr>
          </tbody>
        </table>
        <artwork><![CDATA[
We provide a formal proof of insecurity of all the above candidate
binding mechanisms of intra-handshake attestation using the
state-of-the-art tool ProVerif and propose a mitigation for the
discovered security vulnerabilities. Our study reveals that it may
not be possible to achieve strong application-traffic (level 3)
binding using intra-handshake attestation alone. This can be exploited
for relay attacks, where an attacker makes a client accept an evidence
from a different machine. So the client cannot be sure that it connects
to its desired server.
]]></artwork>
        <t>We responsibly disclosed the vulnerability in intra-handshake attestation -- as noted in <xref target="GHSA-Cocos-AI"/> issued -- to the vendors, which resulted in  <xref target="CVE-2026-33697"/> of CVSS 7.5.</t>
      </section>
      <section anchor="modeling-other-binding-mechanisms">
        <name>Modeling Other Binding Mechanisms</name>
        <t>The artifacts are quite flexible for modification and testing of different intra-handshake attestation binding mechanisms by simply changing single <tt>rdata</tt> parameter in the Client and Server processes. Folder <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/aggregate">aggregate</eref> contains all analyzed and proposed binding mechanisms in <xref target="Intra-handshake.fail"/> to select via comment and uncomment. Other folders contain one specific binding mechanism.</t>
      </section>
      <section anchor="seat-early-attestaion">
        <name>SEAT-Early-Attestaion</name>
        <t>The draft <xref target="I-D.fossati-seat-early-attestation"/> is an extension of the provably vulnerable (and withdrawn) draft <xref target="I-D.fossati-tls-attestation-10"/> with the following two main changes from a formal perspective:</t>
        <ol spacing="normal" type="1"><li>
            <t>Binder has been updated</t>
          </li>
          <li>
            <t>Post-handshake attestation part has been added for re-attestation</t>
          </li>
        </ol>
        <t>The current binder in <xref target="I-D.fossati-seat-early-attestation"/> does not prevent relay attacks as there is no <strong>shared secret</strong> in the binder.</t>
        <t>Post-handshake attestation part may prevent relay attacks, but then the <strong>additional complexity</strong> of intra-handshake attestation is unjustified.</t>
      </section>
    </section>
    <section anchor="credits">
      <name>Credits</name>
      <table>
        <name>GHSAs/CVEs and finders</name>
        <thead>
          <tr>
            <th align="left">GHSA/CVE</th>
            <th align="left">Finders</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-16488"/></td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI"/></td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems"/></td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
        </tbody>
      </table>
    </section>
    <section anchor="threat-model">
      <name>Threat Model</name>
      <t>The threat model is explained in Sec. 6.1 of <xref target="Intra-handshake.fail"/> and Sec. 4 of <xref target="ID-Crisis"/>.</t>
    </section>
    <section anchor="detailed-vulnerability-disclosure-timeline-and-public-acknowledgements-by-affected-vendors">
      <name>Detailed Vulnerability Disclosure Timeline and Public Acknowledgements by Affected Vendors</name>
      <table>
        <name>Detailed vulnerability disclosure timeline and acknowledgements</name>
        <thead>
          <tr>
            <th align="left">Event</th>
            <th align="left">Date</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">Our initial responsible disclosure to vendor</td>
            <td align="left">07 Oct, 2025</td>
          </tr>
          <tr>
            <td align="left">Acknowledgement by vendor</td>
            <td align="left">14 Dec, 2025</td>
          </tr>
          <tr>
            <td align="left">Information to the <eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">IETF</eref></td>
            <td align="left">11 Jan, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://web.archive.org/web/20260227160554/https://www.ultraviolet.rs/blog/tee-tls-privacy/">Public announcement</eref> by vendor</td>
            <td align="left">27 Feb, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>]</td>
            <td align="left">23 March, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-33697"/> published  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">ERISA published EUVD <xref target="EUVD-2026-16488"/>  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/rustls/releases/tag/privasys-v0.8.1">Acknowledgment</eref> by Privasys for rustls <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">9 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/go/releases/tag/privasys-v0.5.1-go1.26.5">Acknowledgment</eref> by Privasys for go <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">10 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation</eref> declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref></td>
            <td align="left">17 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation repo</eref> archived</td>
            <td align="left">22 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable draft <xref target="I-D.fossati-tls-attestation-10"/> withdrawn by authors</td>
            <td align="left">23 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">29 July, 2026</td>
          </tr>
        </tbody>
      </table>
      <t><strong>Neither the GHSAs nor the CVE has any dependency whatsoever on the considered threat model with <tt>WeakHash</tt>, <tt>WeakDH</tt>, or <tt>BadElement</tt>.</strong> They hold independent of those, i.e., with <tt>StrongHash</tt> and <tt>StrongDH</tt> and all good elements within a group.</t>
    </section>
    <section anchor="eu-erisa">
      <name>EU ERISA</name>
      <t>European Union's ERISA has independently published <xref target="EUVD-2026-16488"/> with CVSS 7.5 to acknowledge this vulnerability.</t>
    </section>
    <section anchor="sec-cvss-scores">
      <name>Comparison with Other Vulnerabilities in Confidential Computing Literature</name>
      <t>Severity is based on <eref target="https://nvd.nist.gov/vuln-metrics/cvss">NIST metrics</eref>.</t>
      <table>
        <name>Comparison with other vulnerabilities in confidential computing literature</name>
        <thead>
          <tr>
            <th align="left">Vulnerability</th>
            <th align="left">CVE</th>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <eref target="https://wiretap.fail/files/wiretap.pdf">wiretap.fail</eref></td>
            <td align="left">No CVE (<eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2025-10-28-001.html">Intel</eref> and <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3040.html">AMD</eref> announcements)</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://tee.fail/files/paper.pdf">TEE.fail</eref></td>
            <td align="left">No CVE</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://dl.acm.org/doi/10.1145/3658644.3690230">TDXdown</eref></td>
            <td align="left">
              <eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2024-10-08-001.html">Intel</eref></td>
            <td align="left">2.5</td>
            <td align="left">Low</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/staleus/staleus_usenix26.pdf">Staleus</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-54509">CVE-2025-54509</eref></td>
            <td align="left">4.0</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-6197">CVE-2025-61972</eref></td>
            <td align="left">4.2</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://badram.eu/badram.pdf">BadRAM</eref></td>
            <td align="left">
              <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3015.html">AMD</eref></td>
            <td align="left">5.3</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-61971">CVE-2025-61971</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/fabricked/fabricked_usenix26.pdf">Fabricked</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=cve-2025-54510">CVE-2025-54510</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">Intra-handshake.fail</eref></td>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">7.5</td>
            <td align="left">High</td>
          </tr>
        </tbody>
      </table>
      <t>The comparison of the above with CVSS <strong>7.5</strong> for <xref target="Intra-handshake.fail"/> indicates that attested TLS is not mature yet compared to the rest of the confidential computing stack, and is currently one of the weakest links in the ecosystem.</t>
    </section>
    <section anchor="more-cves">
      <name>More CVEs</name>
      <t>Further formal analysis has led to the following potential CVEs for intra-handshake attestation (currently under disclosure):</t>
      <ul spacing="normal">
        <li>
          <t>1 potential CVE of expected CVSS <strong>9.8</strong></t>
        </li>
        <li>
          <t>2 potential CVEs of expected CVSS <strong>9.1</strong></t>
        </li>
        <li>
          <t>1 potential CVE of expected CVSS <strong>8.7</strong></t>
        </li>
        <li>
          <t>2 potential CVEs of expected CVSS <strong>7.5</strong></t>
        </li>
        <li>
          <t>2 potential CVEs of expected CVSS <strong>7.4</strong></t>
        </li>
        <li>
          <t>2 potential CVEs of expected CVSS <strong>6.3</strong></t>
        </li>
      </ul>
      <t>These are preliminary estimates of scores, not final assigned score. They are still under review.</t>
    </section>
    <section anchor="vulnerable-implementations">
      <name>Vulnerable Implementations</name>
      <t>At least the following implementations are vulnerable:</t>
      <ul spacing="normal">
        <li>
          <t><eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI</eref>: <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
        <li>
          <t><eref target="https://github.com/ultravioletrs/cocos">Cocos AI</eref>: <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>], <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
        <li>
          <t><eref target="https://github.com/edgelesssys/contrast">Edgeless Systems Contrast</eref>: <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</t>
        </li>
        <li>
          <t><eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref>: declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref> and <strong>archived</strong></t>
        </li>
        <li>
          <t>Privasys rustls: <eref target="https://github.com/Privasys/rustls/releases/tag/privasys-v0.8.1">Acknowledgment</eref> of applicability of <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
        <li>
          <t>Pirvasys go: <eref target="https://github.com/Privasys/go/releases/tag/privasys-v0.5.1-go1.26.5">Acknowledgment</eref> of applicability of <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
      </ul>
      <t>If you are aware of any other intra-handshake attestation implementation, please let us know so that we can check and responsibly disclose the vulnerabilities to them.</t>
    </section>
    <section anchor="vulnerable-protocol-specifications">
      <name>Vulnerable Protocol Specifications</name>
      <t>At least the following protocol specifications with intra-handshake attestation <em>path</em> are vulnerable to <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/>:</t>
      <ul spacing="normal">
        <li>
          <t><xref target="I-D.fossati-tls-attestation-09"/>: symbolic proof of insecurity; <xref target="I-D.fossati-tls-attestation-10"/> <strong>withdrawn</strong> after the CVE</t>
        </li>
        <li>
          <t><xref target="I-D.fossati-seat-early-attestation"/>: symbolic and (paper-and-pen-based) computational proof of insecurity (originally done for -04 and applies also to -06)
          </t>
          <ul spacing="normal">
            <li>
              <t>As a SEAT WG participant pointed out, please note that both <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> contain a link to <xref target="GHSA-Cocos-AI"/> that contains a link to <xref target="SEAT-vulnerability-report"/> that contains the G3 property (cf. <xref target="sec-corr-goals"/>) that this draft does not satisfy.</t>
            </li>
            <li>
              <t>Some WG participants successfully reproduced the vulnerability by substituting the right value of <tt>rdata</tt> in the shared formal model <xref target="Intra-handshake.fail-repo"/> that led to the CVE.</t>
            </li>
            <li>
              <t>An informal reasoning is that binder is not <strong>directly</strong> derived from any <strong>shared secret</strong> in this draft.</t>
            </li>
            <li>
              <t><strong>Unnecessary complexity</strong> is itself a security concern</t>
            </li>
          </ul>
        </li>
        <li>
          <t><xref target="I-D.ritz-seat-facts"/>: symbolic proof of insecurity
          </t>
          <ul spacing="normal">
            <li>
              <t>violates G3 property in our analysis</t>
            </li>
            <li>
              <t>unnecessary complexity is itself a security concern</t>
            </li>
          </ul>
        </li>
      </ul>
    </section>
    <section anchor="binding-levels">
      <name>Binding Levels</name>
      <ol spacing="normal" type="1"><li>
          <t>DH shared secret (<tt>gxy</tt>) used as shared secret between client and server</t>
        </li>
        <li>
          <t>Handshake traffic key (<tt>htsc</tt>) used for encryption of handshake messages</t>
        </li>
        <li>
          <t>Application traffic key (<tt>astc</tt>) used for encryption of application data</t>
        </li>
      </ol>
      <t>Please see Sec. 6.2 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="sec-corr-goals">
      <name>Security Properties (Correlation Goals)</name>
      <t>We consider TLS Server as RATS Attester, which is typical in confidential computing.</t>
      <ol spacing="normal" type="1"><li>
          <t>Correlation of Evidence to a DH Shared Secret (G1)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Handshake Traffic Key (G2)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Application Traffic Key (G3)</t>
        </li>
      </ol>
      <t>Please see Sec. 6.3 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="main-results">
      <name>Main Results</name>
      <ul spacing="normal">
        <li>
          <t>All analyzed binding mechanisms and the corresponding implementations of intra-handshake attestation are vulnerable to relay attacks.</t>
        </li>
        <li>
          <t>Early exporter helps achieve level 1 binding.</t>
        </li>
        <li>
          <t>Our proposed mechanism helps achieve level 2 binding.</t>
        </li>
        <li>
          <t>It may not be possible to achieve level 3 in intra-handshake attestation alone without additional assumptions.</t>
        </li>
      </ul>
      <table>
        <name>Main results</name>
        <thead>
          <tr>
            <th align="left">Property</th>
            <th align="left">Mechanism #1,2,4,6</th>
            <th align="left">Mechanism #3,5,7</th>
            <th align="left">Proposed mechanism</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">G1 : Correlation of Evidence to <tt>gxy</tt></td>
            <td align="left">❌</td>
            <td align="left">✅</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G2 : Correlation of Evidence to <tt>kch</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G3 : Correlation of Evidence to <tt>kc</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">❌</td>
          </tr>
        </tbody>
      </table>
      <t>Please see Sec. 7.1 and Figure 5 of <xref target="Intra-handshake.fail"/> for details of attacks.</t>
      <section anchor="expected-results">
        <name>Expected Results</name>
        <table>
          <name>Expected results</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Artifacts</th>
              <th align="left">Expected results</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/">binder1</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/log.txt">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/">binder2</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/log.txt">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/">binder3</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/log.txt">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/">binder4</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/log.txt">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/">binder5</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/log.txt">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/">binder6</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/log.txt">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/">binder7</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/log.txt">binder7</eref></td>
            </tr>
            <tr>
              <td align="left">8.</td>
              <td align="left">Proposed</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/">proposal</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/log.txt">proposal</eref></td>
            </tr>
          </tbody>
        </table>
      </section>
    </section>
    <section anchor="implications-of-findings">
      <name>Implications of Findings</name>
      <section anchor="implications-of-findings-for-ietf-seat-wg">
        <name>Implications of Findings for IETF SEAT WG</name>
        <ul spacing="normal">
          <li>
            <t>We believe post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>, can achieve level 3 binding.</t>
          </li>
          <li>
            <t>The research suggests that recent hybrid proposals (combination of intra-handshake attestation and post-handshake attestation) <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> may add <strong>unnecessary complexity</strong> of intra-handshake attestation without adding any security benefit compared to post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>. We are not aware of any <strong>security property</strong> that hybrid proposals can achieve that post-handshake attestation alone cannot achieve.</t>
          </li>
          <li>
            <t>As demonstrated by our symbolic analysis using ProVerif, the protocol specifications <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> remain vulnerable to CVE-2026-33697. We have also proved that <xref target="I-D.fossati-seat-early-attestation-04"/> and <xref target="I-D.fossati-seat-early-attestation"/> violate the security theorems in the computational model.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-lake-wg">
        <name>Implications of Findings for IETF LAKE WG</name>
        <ul spacing="normal">
          <li>
            <t>Similar problems occur for protocol specification <eref target="https://datatracker.ietf.org/doc/draft-ietf-lake-ra/">lake-ra</eref>.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-tls-wg">
        <name>Implications of Findings for IETF TLS WG</name>
        <ul spacing="normal">
          <li>
            <t><xref target="I-D.fossati-tls-attestation-09"/> is vulnerable to <xref target="CVE-2026-33697"/>. Thankfully, the authors have withdrawn <xref target="I-D.fossati-tls-attestation-10"/>.</t>
          </li>
          <li>
            <t>Remote attestation <em>within</em> the handshake is very dangerous, since to our knowledge, it is one of the highest scored published vulnerabilities in confidential computing literature (see <xref target="sec-cvss-scores"/>).</t>
          </li>
        </ul>
        <artwork><![CDATA[
Given the high- and critical-severity vulnerabilities, we recommend
that the developers and maintainers of intra-handshake attestation MUST
urgently move to post-handshake attestation.
]]></artwork>
      </section>
      <section anchor="implications-of-findings-for-agent2agent">
        <name>Implications of Findings for Agent2Agent</name>
        <t>From a security perspective, intra-handshake attestation does more damage than protection for AI agents.</t>
      </section>
    </section>
    <section anchor="technical-details">
      <name>Technical Details</name>
      <section anchor="tool">
        <name>Tool</name>
        <t>We use state-of-the-art symbolic security analysis tool <eref target="https://ieeexplore.ieee.org/document/9833653">ProVerif</eref> for the specification of the protocols.</t>
      </section>
      <section anchor="modeling">
        <name>Modeling</name>
        <t>The formal model uses the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work as the starting point to focus on relay attacks in intra-handshake attestation in this work.
The rationale is that we consider it more useful to show the added value of this contribution to the community by using the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> as the baseline, rather than showing the same diversion attacks from <xref target="ID-Crisis"/>, and the discovered CVE (<xref target="CVE-2026-33697"/>) -- which the previous analysis could not find -- practically demonstrates the added value.
This modeling choice makes it clear that even with the diversion attacks fixed, high-severity relay attacks would still remain in intra-handshake attestation.</t>
        <t>Note: Similar to the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work, we model non-PSK-based handshake.
From <xref target="ID-Crisis"/>:</t>
        <ul empty="true">
          <li>
            <t>For modeling TLS 1.3, we consider handshakes based on Diffie-Hellman over either finite fields or elliptic curves, represented as (EC)DHE. This is because we are unaware of any publicly available specification or implementation of attested TLS with PSK-based handshakes.</t>
          </li>
        </ul>
        <t>While it would be nice to model PSK-based handshake, the rationale is that the correlation properties studied in this work do not necessarily require it.</t>
        <t>Note: The artifacts consider the case of server authentication only, as client authentication is optional in TLS 1.3. No claims are made about other configurations.</t>
      </section>
      <section anchor="properties">
        <name>Properties</name>
        <t>Properties in <xref target="Intra-handshake.fail"/> are complemetary to properties in <xref target="ID-Crisis"/>. Sec. 8 of <xref target="ID-Crisis"/> mentions:</t>
        <ul empty="true">
          <li>
            <t>We emphasize that both diversion and relay attacks are orthogonal and thus the two works are complementary.</t>
          </li>
        </ul>
      </section>
      <section anchor="technical-vulnerability-report">
        <name>Technical Vulnerability Report</name>
        <t>Technical vulnerability report is available at <xref target="Intra-handshake.fail"/>. It is accepted for publication at ESORICS 2026.</t>
        <section anchor="vulnerabilities">
          <name>Vulnerabilities</name>
          <t>Sec. 7.1 of <xref target="Intra-handshake.fail"/> presents the technical details with abstract attack traces of the vulnerabilities.</t>
        </section>
        <section anchor="mitigation">
          <name>Mitigation</name>
          <t>Sec. 7.2 of <xref target="Intra-handshake.fail"/> presents the technical details of the proposed mitigation.</t>
        </section>
      </section>
      <section anchor="artifacts">
        <name>Artifacts</name>
        <t>Artifacts are available at <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 License.</t>
      </section>
    </section>
    <section anchor="sec-news">
      <name>Media Coverage</name>
      <t>Several media professionals and bloggers have covered the vulnerabilities to protect the community from the harm of intra-handshake attestation.</t>
      <ul spacing="normal">
        <li>
          <t><eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref></t>
        </li>
        <li>
          <t>(Japanese) <eref target="https://blackhatnews.tokyo/archives/119915">BlackHatNewsTokyo</eref></t>
        </li>
        <li>
          <t>(Several languages) <eref target="https://hackernoon.com/attested-tls-was-supposed-to-be-the-last-trust-boundary-it-isnt-formal-methods-show-how">Hackernoon</eref></t>
        </li>
        <li>
          <t><eref target="https://podcasts.apple.com/eg/podcast/attested-tls-was-supposed-to-be-the-last-trust/id1698517643?i=1000776623286">Apple podcast</eref></t>
        </li>
        <li>
          <t><eref target="https://meterpreter.org/attested-tls-vulnerability-cve-2026-33697/">Information Security News</eref></t>
        </li>
        <li>
          <t><eref target="https://thenextgentechinsider.com/pulse/critical-flaw-discovered-in-confidential-computing-attestation-protocols">TheNextGenTechInsider</eref></t>
        </li>
        <li>
          <t><eref target="https://dailysecurityreview.com/resources/cve-2026-33697-attested-tls-relay-flaw-hits-whatsapp-cocos-ai/">DailySecurityReview</eref></t>
        </li>
        <li>
          <t><eref target="https://www.scworld.com/brief/confidential-computings-remote-attestation-protocol-may-have-fundamental-flaw">SC World</eref></t>
        </li>
        <li>
          <t><eref target="https://blogs.groupware.org.uk/01-Quantum-Inc/the-handshake-that-cant-keep-its-promise-why-confidential-computings-flaw-changes-the-data-sovereignty-conversation/">01 Quantum</eref></t>
        </li>
        <li>
          <t>(Russian) <eref target="https://www.securitylab.ru/news/574545.php">Security Lab</eref></t>
        </li>
        <li>
          <t>(German) <eref target="https://www.blogspan.net/confidential-computing-attestierung-relay-luecke/">blogspan</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://finance.sina.cn/tech/2026-07-04/detail-inifscxt9953361.d.html">Sina</eref></t>
        </li>
        <li>
          <t><eref target="https://data4biz.com/articles/una-falla-rompe-la-fiducia-del-confidential-computing">data4biz</eref></t>
        </li>
        <li>
          <t>(Russian) <eref target="https://www.itsec.ru/news/issledovateli-nashli-kriticheskuyu-uyazvimost-v-attested-tls">ITSec</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://post.smzdm.com/p/a82ol990/">smzdm</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://www.donews.com/news/detail/4/6621022.html">donews</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://i.ifeng.com/c/8uUfy0PMmqE">ifeng</eref></t>
        </li>
        <li>
          <t><eref target="https://www.dugganusa.com/post/confidential-computing-s-whole-pitch-is-trust-the-proof-not-the-cloud-two-years-of-formal-verifi">dugganusa</eref></t>
        </li>
        <li>
          <t><eref target="https://github.com/pduggusa/dugganusa-ietf/tree/main/cve-2026-33697-attestation">dugganusa repo</eref></t>
        </li>
        <li>
          <t><eref target="https://sploitus.com/exploit?id=92591A05-07BC-5015-BA3D-B1347B35D684">spoitus</eref></t>
        </li>
        <li>
          <t><eref target="https://news.lavx.hu/article/attested-tls-research-exposes-a-weak-link-in-confidential-computing">lavx news</eref></t>
        </li>
        <li>
          <t><eref target="https://www.sohu.com/a/1045865934_122004016">sohu</eref></t>
        </li>
        <li>
          <t>(Persian) <eref target="https://news.ditty.ir/news/attested-tls-relay-flaw-formal-methods/019f6221-26ca-7293-9ee9-5557b3c0b8f8">news.ditty</eref></t>
        </li>
        <li>
          <t>(Russian) <eref target="https://limpvpn.com/ru/news/attested-tls-whatsapp-privacy-flaw-2026">LiMP VPN</eref></t>
        </li>
        <li>
          <t><eref target="https://daily.dev/posts/kI6PoNzPx">daily.dev</eref></t>
        </li>
        <li>
          <t><eref target="https://warden.veritai.ch/news/researchers-find-attested-tls-flaws-that-weaken-confidential-computing-trust-model">warden</eref></t>
        </li>
        <li>
          <t><eref target="https://db.gcve.eu/sightings/?query=cve-2026-33697">GCVE.eu</eref></t>
        </li>
        <li>
          <t><eref target="https://coderlegion.com/24087/intra-handshake-attestation-when-more-security-doesnt-mean-better-security">coderlegion</eref></t>
        </li>
        <li>
          <t><eref target="https://www.anjuna.io/blog/attested-tls-flaw-explained">Anjuna Security</eref></t>
        </li>
        <li>
          <t><eref target="https://freenode.net/digest/67">freenode</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://blog.csdn.net/weixin_42376192/category_13096766.html">csdn</eref></t>
        </li>
        <li>
          <t><eref target="https://osintsights.com/confidential-computing-flaws-expose-trust-risks">osintsights</eref></t>
        </li>
        <li>
          <t>(Turkish) <eref target="https://hardwaremania.com/haber/arastirma-attested-tls-confidential-computing-icin-zayif-kaliyor/">hardwaremania</eref></t>
        </li>
        <li>
          <t><eref target="https://akber.com/sovereignty-in-the-cloud-is-an-illusion/">akber</eref></t>
        </li>
        <li>
          <t><eref target="https://www.ad-hoc-news.de/wissenschaft/cloud-souveraenitaet-red-hat-startet-reifegrad-assessments-gegen/69691475">ad-hoc news</eref></t>
        </li>
        <li>
          <t><eref target="https://aimultiple.com/privacy-enhancing-technologies">AIMultiple</eref></t>
        </li>
      </ul>
      <section anchor="security-researchers">
        <name>Security Researchers</name>
        <t>Several credible security researchers, such as the following, have publicly attested to it.</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://www.linkedin.com/posts/michaelpak_confidential-computings-core-trust-mechanism-activity-7479415537836376064-q-A4/">Michael Pak</eref></t>
          </li>
          <li>
            <t><eref target="https://www.linkedin.com/posts/rrbranco_one-more-evidence-that-there-is-no-such-a-share-7479582122366615552-X0A5/">Rodrigo Branco</eref></t>
          </li>
          <li>
            <t><eref target="https://www.linkedin.com/posts/bart-preneel-4451412_on-the-limits-of-confidential-computing-share-7479549718294077440-wfi3/">Bart Preneel</eref></t>
          </li>
          <li>
            <t><eref target="https://www.linkedin.com/in/strufe/recent-activity/all/">Thorsten Strufe</eref></t>
          </li>
        </ul>
      </section>
      <section anchor="germanys-bsi">
        <name>Germany's BSI</name>
        <t>Germany's Federal Office for Information Security (Bundesamt für Sicherheit in der Informationstechnik) has attested to it. Carina Hilt, deputy press spokesperson at BSI, told <eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref>:</t>
        <artwork><![CDATA[
CC alone cannot satisfy the requirements for digital sovereignty.
]]></artwork>
        <artwork><![CDATA[
dependencies on other services, such as identity and key
management etc., are also not mitigated by CC.
]]></artwork>
        <t>CC refers to Confidential Computing, and attested TLS is the core trust mechanism of CC.</t>
      </section>
    </section>
    <section anchor="reviews">
      <name>Reviews</name>
      <section anchor="conference-reviews">
        <name>Conference Reviews</name>
        <t><xref target="Intra-handshake.fail"/> has been peer-reviewed and accepted for publication at ESORICS 2026.</t>
      </section>
      <section anchor="ietfirtf">
        <name>IETF/IRTF</name>
        <t>Several participants of the IETF/IRTF have attested to the results by independently reproducing the results and reviewing the code. Some of the participants have independently reproduced the results by developing their own formal models and a proof-of-concept implementation of the vulnerabilities. Some of the messages are mentioned below (<strong>excluding</strong> the messages of <em>paper</em> authors):</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/">https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/">https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/">https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/">https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/">https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/">https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/">https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/">https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/">https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/">https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/">https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/">https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/">https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/">https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/">https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/">https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/">https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/">https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/">https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/">https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/">https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/">https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/">https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/">https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/">https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/">https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/">https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/">https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/">https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/">https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/">https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/">https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/">https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/">https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/">https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/">https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/">https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/">https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/">https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/">https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/">https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/">https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/">https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/">https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/">https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/">https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/">https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/">https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/">https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/">https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/">https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/">https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/">https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/">https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/">https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/">https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/">https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/">https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/">https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/">https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/">https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/">https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/</eref></t>
          </li>
        </ul>
        <section anchor="main-questions">
          <name>Main Questions</name>
          <t>In short, four main questions have been raised by WG participants in support of our work:</t>
          <ul spacing="normal">
            <li>
              <t>What <strong>security property</strong> hybrid (intra- + post-handshake attestation) provides that post-handshake attestation alone cannot provide?</t>
            </li>
            <li>
              <t>Since continuous attestation is required in most use cases, how is <strong>additional complexity</strong> of <strong>intra</strong>-handshake attestation justified? Use cases with one-time attestation can be covered by doing attestation round immediately after Connection Establishment Time: see <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-6-2">reference</eref>.</t>
            </li>
            <li>
              <t>What is the benefit of doing <strong>signatures</strong> of remote attestation <strong>within</strong> the handshake (as this latency can be exploited)? We add that <strong>verification</strong> of signatures is also time consuming, which can be exploited too. See <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-4.2.4">reference</eref>.</t>
            </li>
            <li>
              <t>How evidence is bound to the secure channel without involving any <strong>shared secret</strong>?</t>
            </li>
          </ul>
        </section>
      </section>
      <section anchor="researchers-outside-of-ietfirtf">
        <name>Researchers outside of IETF/IRTF</name>
        <t>Some researchers have approached us confirming the proof-of-concept of the vulnerabilities in intra-handshake attestation. More information will be added once their pre-prints/papers are public.</t>
      </section>
    </section>
    <section anchor="security-considerations">
      <name>Security Considerations</name>
      <t>All of this document is about the <strong>insecurity</strong> of <strong>intra</strong>-handshake attestation.</t>
      <t>By no means should the vendors mentioned in this draft be considered less secure than any other vendors implementing intra-handshake attestation solutions. In particular, those who have closed-source implementations are most likely more vulnerable than the open-source ones, since the former cannot easily be reviewed by the security community. Even extensive security reviews -- of closed-source implementations -- by cybersecurity firms often do not perform formal analysis, and thus such reviews may miss corner cases and subtle vulnerabilities.</t>
    </section>
    <section anchor="ethical-considerations">
      <name>Ethical Considerations</name>
      <t>We (i.e., the super set of all authors involved in this research, including but not limited to Muhammad Usama Sardar, Mariam Moustafa, Tuomas Aura, Viacheslav Dubeyko, Jean-Marie Jacquet, Songbo Bu, Chengxin Huang, and Haowen Song) are ethical researchers aiming to protect the community from the potential harm caused by the exploitability of the vulnerabilities in intra-handshake attestation. We have responsibly disclosed the vulnerabilities to the respective developers and maintainers following their respective disclosure processes and provided them our proposed mitigations and requested them to take rapid action.</t>
      <t>We have released only the formal analysis for published CVE. To minimize exploit in the wild, we have not publicly released the proof-of-concept exploit code.</t>
      <t>We have not retrieved any real data from any real system. We have not released any key to any public forum or to any person.</t>
      <section anchor="evidence-of-explanation-of-vulnerabilities-to-the-authors">
        <name>Evidence of explanation of vulnerabilities to the authors</name>
        <t>To the best of our abilities, knowledge, and understanding, we have tried to explain the vulnerabilities to the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> for at least half a year at several forums, including but not limited to CCC Attestation SIG and IETF/IRTF. Please see the (non-exhaustive list of) recordings below and the <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail#community-service">archives</eref>. We sincerely thank the authors of <xref target="I-D.fossati-tls-attestation-10"/> for withdrawing their draft to protect further exploits mentioned in <xref target="sec-news"/>.</t>
        <table>
          <name>Evidence of several explanations of vulnerabilities to the authors of vulnerable drafts</name>
          <thead>
            <tr>
              <th align="left">Event/Host</th>
              <th align="left">Venue</th>
              <th align="left">Date(s)</th>
              <th align="left">Evidence</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">
                <eref target="https://lpc.events/event/20/">Linux Plumbers Conference 2026</eref></td>
              <td align="left">Prague, Czechia</td>
              <td align="left">5-7 Oct, 2026</td>
              <td align="left">slides, video</td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://www.ga4gh.org/event/14th-plenary/">GA4GH 14th Plenary Meeting</eref></td>
              <td align="left">Singapore</td>
              <td align="left">28 Sept-2 Oct, 2026</td>
              <td align="left">slides, video</td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://sites.google.com/di.uniroma1.it/esorics2026/">ESORICS 2026</eref></td>
              <td align="left">Rome, Italy</td>
              <td align="left">14-18 Sept, 2026</td>
              <td align="left">slides</td>
            </tr>
            <tr>
              <td align="left">IETF RATS Interim meeting</td>
              <td align="left">Virtual</td>
              <td align="left">TBA Sept, 2026</td>
              <td align="left">slides, video</td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://summit.riot-os.org/2026/">RIOT Summit 2026</eref></td>
              <td align="left">Grenoble, France</td>
              <td align="left">2-4 September, 2026</td>
              <td align="left">
                <eref target="https://summit.riot-os.org/2026/blog/speakers/muhammad-usama-sardar/">abstract</eref>, slides, video</td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://www.ga4gh.org/work_stream/data-security/">Data Security Work Stream (DSWS)</eref> at the <eref target="https://www.ga4gh.org/">Global Alliance for Genomics and Health (GA4GH)</eref></td>
              <td align="left">Virtual</td>
              <td align="left">24 Aug, 2026</td>
              <td align="left">slides, video</td>
            </tr>
            <tr>
              <td align="left">Confidential AI Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
              <td align="left">Vienna, Austria</td>
              <td align="left">21 July, 2026</td>
              <td align="left">
                <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/odgd_xmhjQXiR_aLYdqtVvDJeF4/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
            </tr>
            <tr>
              <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
              <td align="left">Vienna, Austria</td>
              <td align="left">21 July, 2026</td>
              <td align="left">
                <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-seat-binding-properties-of-expat-00.pdf">slides</eref>, <eref target="https://youtu.be/Fb5Hzh1mp1E?t=4189">video</eref></td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">IETF 126 Hackdemo Happy Hour</eref></td>
              <td align="left">Vienna, Austria</td>
              <td align="left">20 July, 2026</td>
              <td align="left">
                <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">demo</eref></td>
            </tr>
            <tr>
              <td align="left">Confidential Computing Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
              <td align="left">Vienna, Austria</td>
              <td align="left">20 July, 2026</td>
              <td align="left">
                <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
            </tr>
            <tr>
              <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
              <td align="left">Vienna, Austria</td>
              <td align="left">19 July, 2026</td>
              <td align="left">
                <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hotrfc-sessa-15-confidential-computing-and-digital-sovereignty-00">slides</eref>, <eref target="https://youtu.be/FDHWRijxKso?t=3285">video</eref></td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://www.ietf.org/meeting/hackathons/126-hackathon/">IETF 126 Hackathon</eref></td>
              <td align="left">Vienna, Austria</td>
              <td align="left">19 July, 2026</td>
              <td align="left">
                <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hackathon-sessd-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/GRqyrDIEgEw?t=1340">video</eref></td>
            </tr>
            <tr>
              <td align="left">IEPG @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
              <td align="left">Vienna, Austria</td>
              <td align="left">19 July, 2026</td>
              <td align="left">
                <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/g8q_u19vXzk?t=4404">video</eref></td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">Workshop</eref> @ <eref target="https://www.wissenschaftsnacht-dresden.de/en/">Dresden Science Night 2026</eref></td>
              <td align="left">Dresden</td>
              <td align="left">26 June, 2026</td>
              <td align="left">
                <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">demo</eref></td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://output-dd.de/">Output 2026</eref></td>
              <td align="left">Dresden</td>
              <td align="left">25 June, 2026</td>
              <td align="left">
                <eref target="https://output-dd.de/projekte/relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems/">demo</eref></td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://events.linuxfoundation.org/confidential-computing-summit/">Confidential Computing Summit 2026</eref> (presented by Jens Albers)</td>
              <td align="left">San Francisco, USA</td>
              <td align="left">23-24 June, 2026</td>
              <td align="left">
                <eref target="https://www.researchgate.net/publication/411851358_Standardization_of_Attested_TLS">poster</eref>, video</td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://confidentialcontainers.org/">Confidential Containers Community Meeting</eref> @ <eref target="https://www.cncf.io/">Cloud Native Computing Foundation</eref></td>
              <td align="left">Virtual</td>
              <td align="left">30 April, 2026</td>
              <td align="left">
                <eref target="https://www.researchgate.net/publication/411849492_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref>, <eref target="https://zoom.us/rec/share/3thZhsRi-BZJL-GqjnwGzh7inbltuKIlpVjqMlWp6WRdMTZ66Z8p-8YjaaeOfbhX.CoH6YBukaKua0gkt">video</eref> around timestamp 00:27:00</td>
            </tr>
            <tr>
              <td align="left">GIF Project showcase @ <eref target="https://www.ga4gh.org/event/april-connect-2026/">GA4GH April Connect 2026</eref></td>
              <td align="left">Montreal, Canada (virtual)</td>
              <td align="left">17 April, 2026</td>
              <td align="left">
                <eref target="https://www.researchgate.net/publication/412136610_Trusted_Research_Environment_TRE_Open_Suite">slides</eref>, <eref target="https://youtu.be/Kr9oxp1fdn0?t=1083">video</eref>, <eref target="https://www.ga4gh.org/document/arpril-connect-2026-meeting-report/">report</eref></td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://sos-vo.org/group/hotsos/">NSA Symposium on Hot Topics in the Science of Security (HotSoS) 2026</eref></td>
              <td align="left">Virtual</td>
              <td align="left">16 April, 2026</td>
              <td align="left">
                <eref target="https://sos-vo.org/group/hotsos/2026/sardar">abstract</eref>, <eref target="https://sos-vo.org/system/files/2026-04/20260416_HotSoS%20%281%29.pdf">slides</eref>, <eref target="https://sos-vo.org/group/hotsos/2026/sardar">video</eref></td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://fg-pet.gi.de/veranstaltung/15th-privacy-enhancing-techniques-convention">PET-CON 2026.1: 15th Privacy Enhancing Techniques Convention</eref></td>
              <td align="left">Karlsruhe, Germany</td>
              <td align="left">16-17 April, 2026</td>
              <td align="left">
                <eref target="https://www.researchgate.net/publication/411849502_Formal_Analysis_of_Attested_TLS">slides</eref>, <eref target="https://www.researchgate.net/publication/411852738_Formal_Analysis_of_Attested_TLS_and_Standardization_in_the_IETF">poster</eref></td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://gtmfs2026.sciencesconf.org/program?lang=en">GTMFS 2026: Annual Meeting of the WG "Formal Methods in Security"</eref></td>
              <td align="left">Luz-Saint-Sauveur, France</td>
              <td align="left">24-26 Mar, 2026</td>
              <td align="left">
                <eref target="https://www.researchgate.net/publication/411853715_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref></td>
            </tr>
            <tr>
              <td align="left">CFRG @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
              <td align="left">Shenzhen, China (virtual)</td>
              <td align="left">19 Mar, 2026</td>
              <td align="left">
                <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-cfrg-relay-attacks-00">slides</eref>, <eref target="https://youtu.be/IfKgbO74Lt4?t=6054">video</eref></td>
            </tr>
            <tr>
              <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref> (relay)</td>
              <td align="left">Shenzhen, China (virtual)</td>
              <td align="left">17 Mar, 2026</td>
              <td align="left">
                <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-seat-security-analysis-00">slides</eref>, <eref target="https://youtu.be/hX7genEkN7w?t=676">video</eref></td>
            </tr>
            <tr>
              <td align="left">Side meeting @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
              <td align="left">Shenzhen, China (virtual)</td>
              <td align="left">16 Mar, 2026</td>
              <td align="left">
                <eref target="https://www.researchgate.net/publication/403474373_Proposed_RG_Confidential_AI">slides</eref></td>
            </tr>
            <tr>
              <td align="left">LAKE @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
              <td align="left">Shenzhen, China (virtual)</td>
              <td align="left">16 Mar, 2026</td>
              <td align="left">
                <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-lake-formal-analysis-of-attested-edhoc-00">slides</eref>, <eref target="https://youtu.be/JzfLpbnhl0A?t=3117">video</eref></td>
            </tr>
            <tr>
              <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
              <td align="left">Shenzhen, China (virtual)</td>
              <td align="left">15 Mar, 2026</td>
              <td align="left">
                <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hotrfc-sessa-formal-proof-of-insecurity-of-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/OtOo7Nogisw?t=3514">video</eref></td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://www.ietf.org/meeting/hackathons/125-hackathon/">IETF 125 Hackathon</eref></td>
              <td align="left">Shenzhen, China (virtual)</td>
              <td align="left">14-15 Mar, 2026</td>
              <td align="left">
                <eref target="https://wiki.ietf.org/en/meeting/125/hackathon#relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hackathon-sessd-relay-attacks-in-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/62A58qH19MI?t=2270">video</eref></td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
              <td align="left">Virtual</td>
              <td align="left">10 Feb, 2026</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksGen_20260210.pdf">slides</eref>; <eref target="https://www.youtube.com/watch?v=idqwb0hFlhs&amp;list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1061s">video</eref></td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/session/rats">IETF RATS Interim meeting</eref></td>
              <td align="left">Virtual</td>
              <td align="left">9 Feb, 2026</td>
              <td align="left">
                <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/materials/slides-interim-2026-rats-01-sessa-relayattacks-00.pdf">slides</eref>, <eref target="https://youtu.be/gURY61dViPw?t=1474">video</eref></td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://fosdem.org/2026/schedule/track/confidential-computing/">Confidential Computing</eref> devroom at <eref target="https://fosdem.org/2026/">FOSDEM 2026</eref></td>
              <td align="left">Brussels, Belgium</td>
              <td align="left">31 Jan-1 Feb, 2026</td>
              <td align="left">
                <eref target="https://fosdem.org/2026/schedule/event/GHGFBM-attestedtls/">abstract</eref>, <eref target="https://fosdem.org/2026/events/attachments/GHGFBM-attestedtls/slides/267432/20260201_60u9e0n.pdf">slides</eref>, <eref target="https://video.fosdem.org/2026/ud6215/GHGFBM-attestedtls.av1.webm">video</eref></td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
              <td align="left">Virtual</td>
              <td align="left">27 Jan, 2026</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksProposal_20260127.pdf">slides</eref>; <eref target="https://youtu.be/P04tLJcSxfM?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=434">video</eref></td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
              <td align="left">Virtual</td>
              <td align="left">13 Jan, 2026</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacks_20260113.pdf">slides</eref>; <eref target="https://youtu.be/cSrCZNyo7_g?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1083">video</eref></td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
              <td align="left">Virtual</td>
              <td align="left">16 Dec, 2025</td>
              <td align="left">
                <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MuhammadUsamaSardar_Binding_Properties_20251216.pdf">slides</eref>; <eref target="https://youtu.be/w_MrjMeHyP8?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=593">video</eref></td>
            </tr>
            <tr>
              <td align="left">
                <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
              <td align="left">Virtual</td>
              <td align="left">2 Dec, 2025</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_Open_Questions_20251202.pdf">slides</eref>; <eref target="https://youtu.be/16aGZ-oZidg?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=2920">video</eref></td>
            </tr>
          </tbody>
        </table>
      </section>
    </section>
    <section anchor="iana-considerations">
      <name>IANA Considerations</name>
      <t>This document has no IANA actions.</t>
    </section>
  </middle>
  <back>
    <references anchor="sec-combined-references">
      <name>References</name>
      <references anchor="sec-normative-references">
        <name>Normative References</name>
        <reference anchor="Intra-handshake.fail" target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="June"/>
          </front>
        </reference>
        <reference anchor="Intra-handshake.fail-repo" target="https://github.com/muhammad-usama-sardar/intra-handshake.fail">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="July"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-33697" target="https://www.cve.org/CVERecord?id=CVE-2026-33697">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-16488" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-16488">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-vfgg-mvxx-mgg7">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-hjgc-jc5v-fw7h">
          <front>
            <title>Remote attestation is susceptible to relay attacks</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="SEAT-vulnerability-report" target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">
          <front>
            <title>Relay Attacks in Intra-handshake Attestation for Confidential Agentic AI Systems</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <date year="2026" month="January"/>
          </front>
        </reference>
      </references>
      <references anchor="sec-informative-references">
        <name>Informative References</name>
        <reference anchor="ID-Crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author fullname="Muhammad Usama Sardar" initials="M." surname="Sardar">
              <organization>TU Dresden, Dresden, Germany</organization>
            </author>
            <author fullname="Mariam Moustafa" initials="M." surname="Moustafa">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <author fullname="Tuomas Aura" initials="T." surname="Aura">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <date month="June" year="2026"/>
          </front>
          <seriesInfo name="Proceedings of the ACM Asia Conference on Computer and Communications Security" value="pp. 547-560"/>
          <seriesInfo name="DOI" value="10.1145/3779208.3785387"/>
          <refcontent>ACM</refcontent>
        </reference>
        <reference anchor="ID-Crisis-repo" target="https://github.com/CCC-Attestation/formal-spec-id-crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="M." surname="Moustafa">
              <organization/>
            </author>
            <author initials="T." surname="Aura">
              <organization/>
            </author>
            <date year="2025" month="November"/>
          </front>
        </reference>
        <reference anchor="refTLS">
          <front>
            <title>Verified Models and Reference Implementations for the TLS 1.3 Standard Candidate</title>
            <author fullname="Karthikeyan Bhargavan" initials="K." surname="Bhargavan">
              <organization/>
            </author>
            <author fullname="Bruno Blanchet" initials="B." surname="Blanchet">
              <organization/>
            </author>
            <author fullname="Nadim Kobeissi" initials="N." surname="Kobeissi">
              <organization/>
            </author>
            <date month="May" year="2017"/>
          </front>
          <seriesInfo name="2017 IEEE Symposium on Security and Privacy (SP)" value="pp. 483-502"/>
          <seriesInfo name="DOI" value="10.1109/sp.2017.26"/>
          <refcontent>IEEE</refcontent>
        </reference>
        <reference anchor="I-D.fossati-seat-early-attestation">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="5" month="August" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a TLS extension that
   enables the negotiation and binding of the TLS authentication key to
   a remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   This extension has been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-06"/>
        </reference>
        <reference anchor="I-D.fossati-seat-early-attestation-04">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="27" month="May" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a series of TLS
   extensions that enable the binding of the TLS authentication key to a
   remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   These extensions have been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-04"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-06">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="19" month="March" year="2024"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-06"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-09">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="30" month="April" year="2025"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-09"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-10">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="23" month="July" year="2026"/>
            <abstract>
              <t>   This draft has been withdrawn.

About This Document

   This note is to be removed before publishing as an RFC.

   Status information for this document may be found at
   https://datatracker.ietf.org/doc/draft-fossati-tls-attestation/.

   Source for this draft and an issue tracker can be found at
   https://github.com/yaronf/draft-tls-attestation.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-10"/>
        </reference>
        <reference anchor="I-D.ritz-seat-facts">
          <front>
            <title>Factor-based Attestation and Credential Transport Scheme (FACTS) over TLS 1.3</title>
            <author fullname="Nathanael Ritz" initials="N." surname="Ritz">
              <organization>Independent</organization>
            </author>
            <date day="1" month="March" year="2026"/>
            <abstract>
              <t>   This document describes FACTS (Factor-based Attestation and
   Credential Transport Scheme) over TLS 1.3.  Conceptually acting as
   "multi-factor authentication" for machine identities, factor-based
   attestation derives session trust from multiple independent
   cryptographic inputs rather than a single point of failure.
   Specifically, it utilizes a dual-key scheme that binds identity to
   attestation evidence through the use of key encapsulation material
   keys (KEM) and traditional identity signing keys (IK), establishing
   per-session freshness.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ritz-seat-facts-00"/>
        </reference>
      </references>
    </references>
    <?line 590?>

<section numbered="false" anchor="acknowledgments">
      <name>Acknowledgments</name>
      <t>Acknowledgment does not necessarily imply attestation. It implies that the authors found the feedback and discussion useful in improving the formal analysis, the corresponding paper, or this draft.</t>
      <t>This draft benefits from several years of research on attested TLS, in particular some of the recent works mentioned below:</t>
      <t>We wish to express our sincere appreciation to the following for their review of our latest work:</t>
      <ul spacing="normal">
        <li>
          <t>Sammy Kerata Oina</t>
        </li>
        <li>
          <t>Drasko Draskovic</t>
        </li>
      </ul>
      <t><strong>Intra-handshake.fail</strong> <xref target="Intra-handshake.fail"/></t>
      <t>We would like to thank our co-authors of paper <xref target="Intra-handshake.fail"/> for their valuable contributions:</t>
      <ul spacing="normal">
        <li>
          <t>Viacheslav Dubeyko</t>
        </li>
        <li>
          <t>Jean-Marie Jacquet</t>
        </li>
      </ul>
      <t>We also gratefully acknowledge the following for insightful discussions and helpful reviews on <xref target="Intra-handshake.fail"/>:</t>
      <ul spacing="normal">
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Juho Forsén</t>
        </li>
        <li>
          <t>Markus Rudy</t>
        </li>
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Steve Kremer</t>
        </li>
        <li>
          <t>Tjaden Hess</t>
        </li>
        <li>
          <t>Martin Thomson</t>
        </li>
        <li>
          <t>Yuning Jiang</t>
        </li>
        <li>
          <t>Pavel Nikonorov</t>
        </li>
        <li>
          <t>Casey Wilson</t>
        </li>
        <li>
          <t>Anonymous ESORICS 2026 reviewers</t>
        </li>
        <li>
          <t>Danko Miladinovic</t>
        </li>
        <li>
          <t>John Preuß Mattsson</t>
        </li>
        <li>
          <t>Britta Hale</t>
        </li>
        <li>
          <t>Werner Staub</t>
        </li>
        <li>
          <t>Songbo Bu</t>
        </li>
        <li>
          <t>Haowen Song</t>
        </li>
        <li>
          <t>Chengxin Huang</t>
        </li>
        <li>
          <t>Steve Luo</t>
        </li>
        <li>
          <t>Kubilay Ahmet Küçük</t>
        </li>
        <li>
          <t>Iman Schrock</t>
        </li>
        <li>
          <t>Sophie Schmieg</t>
        </li>
        <li>
          <t>Davyd Okaianchenko</t>
        </li>
        <li>
          <t>Alistair Woodman</t>
        </li>
        <li>
          <t>Göran Selander</t>
        </li>
        <li>
          <t>Tom Sato</t>
        </li>
        <li>
          <t>Jakub Maria Plutowski</t>
        </li>
        <li>
          <t>Martin Friedrich</t>
        </li>
        <li>
          <t>Patrick Duggan</t>
        </li>
        <li>
          <t>Deb Cooley</t>
        </li>
      </ul>
      <t><strong>Identity Crisis</strong> <xref target="ID-Crisis"/></t>
      <t>We would like to thank our co-authors of complementary paper <xref target="ID-Crisis"/> for their valuable contributions:</t>
      <ul spacing="normal">
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Tuomas Aura</t>
        </li>
      </ul>
      <t>We also gratefully acknowledge the following for insightful discussions and helpful feedback:</t>
      <ul spacing="normal">
        <li>
          <t>Ionut Mihalcea</t>
        </li>
        <li>
          <t>Jean-Marie Jacquet</t>
        </li>
        <li>
          <t>Thomas Fossati</t>
        </li>
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Hannes Tschofenig</t>
        </li>
        <li>
          <t>Yaron Sheffer</t>
        </li>
        <li>
          <t>Laurence Lundblade</t>
        </li>
        <li>
          <t>Giridhar Mandyam</t>
        </li>
        <li>
          <t>Christopher Patton</t>
        </li>
        <li>
          <t>Jonathan Hoyland</t>
        </li>
        <li>
          <t>Richard Barnes</t>
        </li>
      </ul>
      <t><strong>refTLS</strong> <xref target="refTLS"/></t>
      <t>We sincerely thank the following for the foundational formal model of draft 20 of TLS 1.3 in their work <xref target="refTLS"/> that we have used as the foundation of all of this work:</t>
      <ul spacing="normal">
        <li>
          <t>Karthikeyan Bhargavan</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Nadim Kobeissi</t>
        </li>
      </ul>
      <t><strong>General</strong></t>
      <t>Several others at the IETF, IRTF, CCC, and GA4GH have contributed by providing feedback. A non-exhaustive list of contributors is <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00#page=17">here</eref>.</t>
      <t>Muhammad Usama Sardar is funded by German Research Foundation ("Deutsche Forschungsgemeinschaft.")</t>
    </section>
  </back>
  <!-- ##markdown-source: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-->

</rfc>
