<?xml version='1.0' encoding='utf-8'?>
<!DOCTYPE rfc [
  <!ENTITY nbsp    "&#160;">
  <!ENTITY zwsp   "&#8203;">
  <!ENTITY nbhy   "&#8209;">
  <!ENTITY wj     "&#8288;">
]>
<?xml-stylesheet type="text/xsl" href="rfc2629.xslt" ?>
<!-- generated by https://github.com/cabo/kramdown-rfc version 1.7.43 (Ruby 3.4.9) -->
<rfc xmlns:xi="http://www.w3.org/2001/XInclude" ipr="trust200902" docName="draft-intra-handshake-fail-33" category="info" submissionType="IETF" tocInclude="true" sortRefs="true" symRefs="true" version="3">
  <!-- xml2rfc v2v3 conversion 3.34.1 -->
  <front>
    <title abbrev="Early Attestation Considered Harmful">Early Attestation Considered Harmful (CVE-2026-92701 of CVSS 9.1, CVE-2026-92702 of CVSS 9.1, CVE-2026-33697 of CVSS 7.5, and 24 other CVEs of up to expected CVSS 10.0 upcoming)</title>
    <seriesInfo name="Internet-Draft" value="draft-intra-handshake-fail-33"/>
    <author fullname="Muhammad Usama Sardar">
      <organization>TU Dresden, Germany</organization>
      <address>
        <email>muhammad_usama.sardar@tu-dresden.de</email>
      </address>
    </author>
    <author fullname="Viacheslav Dubeyko">
      <organization>CoreWeave</organization>
      <address>
        <email>slava@dubeyko.com</email>
      </address>
    </author>
    <author fullname="Jean-Marie Jacquet">
      <organization>University of Namur, Belgium</organization>
      <address>
        <email>jean-marie.jacquet@unamur.be</email>
      </address>
    </author>
    <author fullname="Songbo Bu">
      <organization>Shanghai Guan An Information Technology Co., Ltd., China</organization>
      <address>
        <email>bluedognull@gmail.com</email>
      </address>
    </author>
    <author fullname="Chengxin Huang">
      <organization>Independent</organization>
      <address>
        <email>aurestarnull@gmail.com</email>
      </address>
    </author>
    <author fullname="Haowen Song">
      <organization>Shanghai Guan An Information Technology Co., Ltd., China</organization>
      <address>
        <email>havan12050544@gmail.com</email>
      </address>
    </author>
    <author fullname="Kaya Ercihan">
      <organization>Switch, Zurich, Switzerland</organization>
      <address>
        <email>kaya.ercihan@switch.ch</email>
      </address>
    </author>
    <author fullname="Dr Kubilay Ahmet Küçük">
      <organization>DPhil Oxford University</organization>
      <address>
        <email>dr.kucuk@oxfordalumni.org</email>
      </address>
    </author>
    <author fullname="Serhii Nikolaichuk">
      <organization>The Capital Index, Austin, Texas</organization>
      <address>
        <email>nikolaichuk.s.f@gmail.com</email>
      </address>
    </author>
    <author fullname="E. C. M. Willems">
      <organization>Independent, Netherlands</organization>
      <address>
        <email>evac.m.willems@proton.me</email>
      </address>
    </author>
    <author fullname="Massimiliano Brighindi">
      <organization>PHI-OMEGA, San Benedetto del Tronto, Italy</organization>
      <address>
        <email>phiomega.runtime@gmail.com</email>
      </address>
    </author>
    <author fullname="Mikerah Quintyne-Collins">
      <organization>HashCloak Inc and Stoffel Labs Inc, Canada</organization>
      <address>
        <email>mikerah@hashcloak.com</email>
      </address>
    </author>
    <author fullname="Iman Schrock">
      <organization>EMILIA Protocol, Inc.</organization>
      <address>
        <email>team@emiliaprotocol.ai</email>
      </address>
    </author>
    <date year="2026" month="September" day="18"/>
    <workgroup>SEAT</workgroup>
    <keyword>AI agents</keyword>
    <keyword>Intra-handshake attestation</keyword>
    <keyword>CVE-2026-33697</keyword>
    <abstract>
      <?line 256?>

<t>The draft aims to provide technical details of <xref target="CVE-2026-33697"/>, <xref target="EUVD-2026-16488"/>, <xref target="CVE-2026-92701"/>, <xref target="EUVD-2026-83194"/>, <xref target="CVE-2026-92702"/>, <xref target="EUVD-2026-83192"/> and several GitHub Security Advisories (GHSAs) which provide substantial technical evidence of how early attestation fails in practice, even <em>without physical access</em>. Moreover, since continuous attestation is generally required <xref target="CSA-eBPF"/> <xref target="MITRE-Continuous-Attestation"/>, early attestation adds <strong>unnecessary complexity</strong>. The results are backed by the research <xref target="Intra-handshake.fail"/>, <xref target="TLS-RA"/> and the artifacts <xref target="Intra-handshake.fail-repo"/> in state-of-the-art formal analysis tool, ProVerif, under Apache-2.0 license for reproducibility and review, and have been acknowledged by the relevant stakeholders. Currently, there are <strong>two CVEs of CVSS 7.5, one GHSA of 9.0-10.0, two GHSAs of CVSS 9.1, two CVEs of CVSS 9.1, one GHSA of CVSS 7.8, seven GHSAs of CVSS 7.4, and one GHSA of CVSS 6.3 published against the broader early attestation covering all layers of the ecosystem up to the application</strong>. The research papers on these are currently either under submission or being prepared for submission. The artifacts of these papers will be shared with the community under Apache-2.0 license for reproducibility and review. In our analysis, the remaining implementations of early attestation -- Edgeless Systems Contrast and Meta's AI -- remain vulnerable.</t>
    </abstract>
    <note removeInRFC="true">
      <name>About This Document</name>
      <t>
        The latest revision of this draft can be found at <eref target="https://muhammad-usama-sardar.github.io/intra-handshake-fail/draft-intra-handshake-fail.html"/>.
        Status information for this document may be found at <eref target="https://datatracker.ietf.org/doc/draft-intra-handshake-fail/"/>.
      </t>
      <t>Source for this draft and an issue tracker can be found at
        <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail"/>.</t>
    </note>
  </front>
  <middle>
    <?line 260?>

<section anchor="introduction">
      <name>Introduction</name>
      <t><xref target="Intra-handshake.fail"/> presents a general approach to analyze the intra-handshake (aka early) attestation proposals, regardless of whether they are within the scope of SEAT charter or not. From a security perspective, one of the key decision factors is the candidate binding mechanism. Some binding mechanisms are within scope of SEAT charter and others are not. The artifacts are available in <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 license for reproducibility, extensibility and further research.</t>
      <t>A <strong>complementary</strong> paper <xref target="ID-Crisis"/> presents the identity crisis in pre- and intra-handshake attestation. The formal analysis is available in <xref target="ID-Crisis-repo"/> under Apache-2.0 license for reproducibility and extensibility.</t>
      <t>Another complementary paper -- currently under submission -- performs a thorough formal analysis of the design options in intra-handshake attestation.</t>
      <section anchor="overview">
        <name>Overview</name>
        <t><xref target="Intra-handshake.fail"/> presents the formal specification and analysis of the candidate binding mechanisms for binding in intra-handshake attestation for standardization for attested TLS protocols:</t>
        <table>
          <name>Binding mechanisms, implementations and ProVerif artifacts</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Used in</th>
              <th align="left">Artifacts</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MarkusRudy.contrast-atls-ccc-attestation.pdf">Edgeless Systems Contrast</eref>; <eref target="https://www.sns-itrust6g.com/wp-content/uploads/2025/12/Webinar-Architecting-Trust-CONFIDENTIAL6G.pdf">Cocos AI v0.8.2</eref>;  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref>; <eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI updated spec</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <xref target="I-D.fossati-tls-attestation-06"/></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7">binder7</eref></td>
            </tr>
          </tbody>
        </table>
        <artwork><![CDATA[
We provide a formal proof of insecurity of all the above candidate
binding mechanisms of intra-handshake attestation using the
state-of-the-art tool ProVerif and propose a mitigation for the
discovered security vulnerabilities. Our study reveals that it may
not be possible to achieve strong application-traffic (level 3)
binding using intra-handshake attestation alone. This can be exploited
for relay attacks, where an attacker makes a client accept an evidence
from a different machine. So the client cannot be sure that it connects
to its desired server.
]]></artwork>
        <t>We responsibly disclosed the vulnerability in intra-handshake attestation -- as noted in <xref target="GHSA-Cocos-AI"/> issued -- to the vendors, which resulted in  <xref target="CVE-2026-33697"/> of CVSS 7.5.</t>
      </section>
      <section anchor="modeling-other-binding-mechanisms">
        <name>Modeling Other Binding Mechanisms</name>
        <t>The artifacts are quite flexible for modification and testing of different intra-handshake attestation binding mechanisms by simply changing single <tt>rdata</tt> parameter in the Client and Server processes. Folder <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/aggregate">aggregate</eref> contains all analyzed and proposed binding mechanisms in <xref target="Intra-handshake.fail"/> to select via comment and uncomment. Other folders contain one specific binding mechanism.</t>
      </section>
      <section anchor="seat-early-attestation">
        <name>SEAT-Early-Attestation</name>
        <t>The draft <xref target="I-D.fossati-seat-early-attestation"/> is an extension of the provably vulnerable (and withdrawn) draft <xref target="I-D.fossati-tls-attestation-10"/> with the following two main changes from a formal perspective:</t>
        <ol spacing="normal" type="1"><li>
            <t>Binder has been updated</t>
          </li>
          <li>
            <t>Optional post-handshake attestation part has been added for re-attestation</t>
          </li>
        </ol>
        <t>The current binder in <xref target="I-D.fossati-seat-early-attestation"/> does not prevent relay attacks as there is no <strong>shared secret</strong> in the binder. In addition to the formal analysis in <xref target="Intra-handshake.fail"/>, see <xref target="TLS-RA"/> for arguments why shared secret is necessary to prevent relay attacks.</t>
        <t>Post-handshake attestation part may prevent relay attacks, but then the <strong>additional complexity</strong> of intra-handshake attestation is unjustified.</t>
      </section>
      <section anchor="executive-summary-of-current-status">
        <name>Executive Summary of Current Status</name>
        <t>Severity is based on <eref target="https://nvd.nist.gov/vuln-metrics/cvss">NIST metrics</eref>.</t>
        <table>
          <name>Published CVEs/GHSAs for intra-handshake (aka early) attestation</name>
          <thead>
            <tr>
              <th align="left">CVSS</th>
              <th align="left">Severity</th>
              <th align="left">Number of Published GHSAs</th>
              <th align="left">Number of Published CVEs</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">9.0-10.0</td>
              <td align="left">Critical</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">9.1</td>
              <td align="left">Critical</td>
              <td align="left">2</td>
              <td align="left">2</td>
            </tr>
            <tr>
              <td align="left">7.8</td>
              <td align="left">High</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">7.5</td>
              <td align="left">High</td>
              <td align="left">1</td>
              <td align="left">1</td>
            </tr>
            <tr>
              <td align="left">7.4</td>
              <td align="left">High</td>
              <td align="left">7</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">6.3</td>
              <td align="left">Medium</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
          </tbody>
        </table>
        <t><strong>For TLS reference, Heartbleed was CVSS 7.5</strong>.</t>
      </section>
    </section>
    <section anchor="sec-credits">
      <name>Published GHSAs/CVEs</name>
      <table>
        <name>GHSAs/CVEs for intra-handshake (aka early) attestation and finders in (roughly) chronological order of publishing</name>
        <thead>
          <tr>
            <th align="left">GHSA/CVE</th>
            <th align="left">CVSS</th>
            <th align="left">Finders</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI"/></td>
            <td align="left">7.8</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">7.5</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-16488"/></td>
            <td align="left">7.5</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI2"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI3"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems2"/></td>
            <td align="left">9.0-10.0</td>
            <td align="left">Markus Rudy; independently by Songbo Bu and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rustls"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-go"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-eov"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-eom"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc-da"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc-tcu"/></td>
            <td align="left">6.3</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-92701"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-92702"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-83194"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-83192"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
        </tbody>
      </table>
    </section>
    <section anchor="threat-model">
      <name>Threat Model</name>
      <t>The threat model is explained in Sec. 6.1 of <xref target="Intra-handshake.fail"/> and Sec. 4 of <xref target="ID-Crisis"/>.</t>
      <t>Beyond post-generation leakage of <tt>privEK</tt> considered in <xref target="Intra-handshake.fail"/>, the same adversary capability may arise from failures during key generation or entropy provisioning. Platform-attestation keys and workload-controlled TLS keys belong to distinct key-generation domains: for example, in AMD SEV-SNP the VCEK is derived by SNP firmware from chip-unique secrets and a TCB version, while several other platform secrets are specified as CSRNG-generated; by contrast, <tt>privEK</tt> and TLS (EC)DHE private values are typically generated by software executing inside the confidential VM using the guest OS or cryptographic-library random subsystem. Furthermore, SEV-SNP <tt>REPORT_DATA</tt> is supplied by the guest and incorporated into the signed attestation report without being interpreted by SNP firmware; consequently, valid Evidence can authenticate a binding value without attesting the entropy provenance, generation procedure, or exclusive possession of the corresponding private key. The <tt>LEK(privEK)</tt> capability should therefore also encompass predictable or repeated key generation caused by deficient entropy, cloned or rolled-back DRBG state, defective software or firmware, or malicious provisioning. <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-7055.html">CVE-2025-62626</eref> provides a concrete manufacturer-layer fault model: affected AMD Zen 5 processors could return insufficiently random values from certain <tt>RDSEED</tt> forms while incorrectly signaling success. This does not establish compromise of the AMD-SP-internal CSRNG or of a specific attested-TLS implementation, but demonstrates that ideal-randomness assumptions can fail below the protocol layer; software dependencies such as OpenSSL's <tt>--with-rand-seed=rdcpu</tt> (<eref target="https://github.com/openssl/openssl/blob/openssl-3.5.0/INSTALL.md">OpenSSL 3.5.0 INSTALL.md</eref>), which can use <tt>RDSEED</tt> or <tt>RDRAND</tt> as CSPRNG seed input, illustrate a possible propagation path from hardware entropy interfaces to workload TLS key generation.</t>
      <section anchor="low-level-mapping-of-the-system-model">
        <name>Low-Level Mapping of the System Model</name>
        <t>Figure 2 of <xref target="Intra-handshake.fail"/> provides a TEE-agnostic protocol-level
abstraction. For a low-level view, the following table maps the abstract
components to representative Intel TDX and AMD SEV-SNP implementations.</t>
        <table>
          <name>Mapping of the abstract system model to representative CC implementations</name>
          <thead>
            <tr>
              <th align="left">Fig. 2 element</th>
              <th align="left">Intel TDX</th>
              <th align="left">AMD SEV-SNP</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">
                <strong>Physical Machine</strong></td>
              <td align="left">TDX-capable Intel platform</td>
              <td align="left">SEV-SNP-capable AMD platform</td>
            </tr>
            <tr>
              <td align="left">
                <strong>CC Platform</strong></td>
              <td align="left">CPU HW + TDX Module + attestation infrastructure</td>
              <td align="left">CPU HW + AMD-SP/SNP (system) firmware + RMP/SEV machinery</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Quoting Agent</strong></td>
              <td align="left">TD QE</td>
              <td align="left">AMD-SP / SNP attestation (VM) firmware</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Confidential VM</strong></td>
              <td align="left">Trust Domain (TD)</td>
              <td align="left">Part of SNP confidential VM</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Network stack</strong></td>
              <td align="left">Part of guest OS + TLS library inside TD</td>
              <td align="left">Part of guest OS + TLS library inside SNP guest</td>
            </tr>
            <tr>
              <td align="left">
                <strong>HSM/TPM</strong></td>
              <td align="left">Secure element</td>
              <td align="left">Secure element</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privAK</tt></strong></td>
              <td align="left">Attestation key of TD Quoting Enclave</td>
              <td align="left">VCEK/VLEK signing key</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privEK</tt></strong></td>
              <td align="left">Workload/TLS-side ephemeral key</td>
              <td align="left">Workload/TLS-side ephemeral key</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privLTK</tt></strong></td>
              <td align="left">Long-term key in secure element</td>
              <td align="left">Long-term key in secure element</td>
            </tr>
          </tbody>
        </table>
        <t>The key material shown in the abstract model belongs to different implementation
and trust domains. The following table provides a corresponding low-level view.</t>
        <table>
          <name>Low-level implementation and key-generation domains</name>
          <thead>
            <tr>
              <th align="left">Component/key</th>
              <th align="left">Runs/lives where?</th>
              <th align="left">Type</th>
              <th align="left">Randomness/key source</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">TLS ECDHE</td>
              <td align="left">Inside network stack</td>
              <td align="left">Network stack</td>
              <td align="left">OS/library CSPRNG</td>
            </tr>
            <tr>
              <td align="left">
                <tt>privEK</tt></td>
              <td align="left">Inside confidential VM</td>
              <td align="left">Guest software</td>
              <td align="left">OS/library CSPRNG</td>
            </tr>
            <tr>
              <td align="left">AK</td>
              <td align="left">Quoting Agent</td>
              <td align="left">Firmware/enclave/platform key hierarchy</td>
              <td align="left">Platform-specific</td>
            </tr>
            <tr>
              <td align="left">Memory-encryption key</td>
              <td align="left">CC Platform</td>
              <td align="left">Hardware/firmware managed</td>
              <td align="left">Platform RNG/KDF</td>
            </tr>
            <tr>
              <td align="left">
                <tt>REPORT_DATA</tt></td>
              <td align="left">Created by Guest Software</td>
              <td align="left">Data binding</td>
              <td align="left">No independent entropy requirement</td>
            </tr>
          </tbody>
        </table>
        <t>Per-VM memory-encryption key is used to encrypt confidential VM's RAM.</t>
      </section>
    </section>
    <section anchor="detailed-vulnerability-disclosure-timeline-and-public-acknowledgements-by-affected-vendors">
      <name>Detailed Vulnerability Disclosure Timeline and Public Acknowledgements by Affected Vendors</name>
      <table>
        <name>Detailed vulnerability disclosure timeline and acknowledgements</name>
        <thead>
          <tr>
            <th align="left">Event</th>
            <th align="left">Date</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">Our initial responsible disclosure to vendor</td>
            <td align="left">07 Oct, 2025</td>
          </tr>
          <tr>
            <td align="left">Acknowledgement by vendor</td>
            <td align="left">14 Dec, 2025</td>
          </tr>
          <tr>
            <td align="left">Information to the <eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">IETF</eref></td>
            <td align="left">11 Jan, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://web.archive.org/web/20260227160554/https://www.ultraviolet.rs/blog/tee-tls-privacy/">Public announcement</eref> by vendor</td>
            <td align="left">27 Feb, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>]</td>
            <td align="left">23 March, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-33697"/> published  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-16488"/>  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/rustls/releases/tag/privasys-v0.8.1">Acknowledgment</eref> by Privasys for rustls <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">9 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/go/releases/tag/privasys-v0.5.1-go1.26.5">Acknowledgment</eref> by Privasys for go <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">10 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation</eref> declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref></td>
            <td align="left">17 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation repo</eref> archived</td>
            <td align="left">22 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable draft <xref target="I-D.fossati-tls-attestation-10"/> withdrawn by authors</td>
            <td align="left">23 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">29 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI2"/>  [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">16 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI3"/>  [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">16 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems2"/> [<strong>Severity = CRITICAL (CVSS 9.0-10.0)</strong>]</td>
            <td align="left">24 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rustls"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-go"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-eov"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-eom"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys archived early attestation in rustls and moved to post-handshake attestation</td>
            <td align="left">4 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys archived early attestation in go and moved to post-handshake attestation</td>
            <td align="left">4 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc-da"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">6 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc-tcu"/> [<strong>Severity = MEDIUM (CVSS 6.3)</strong>]</td>
            <td align="left">6 September, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-92701"/> published [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-92702"/> published [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-83194"/> [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-83192"/> [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
        </tbody>
      </table>
      <t><strong>Neither the GHSAs nor the CVE has any dependency whatsoever on the considered threat model with <tt>WeakHash</tt>, <tt>WeakDH</tt>, or <tt>BadElement</tt>.</strong> They hold independent of those, i.e., with <tt>StrongHash</tt> and <tt>StrongDH</tt> and all good elements within a group.</t>
    </section>
    <section anchor="eu-enisa">
      <name>EU ENISA</name>
      <t>European Union's <eref target="https://euvd.enisa.europa.eu/homepage">ENISA</eref> has independently published <xref target="EUVD-2026-16488"/> with CVSS 7.5 to acknowledge this vulnerability.</t>
    </section>
    <section anchor="sec-cvss-scores">
      <name>Comparison with Other Vulnerabilities in Confidential Computing Literature</name>
      <t>Severity is based on <eref target="https://nvd.nist.gov/vuln-metrics/cvss">NIST metrics</eref>.</t>
      <table>
        <name>Comparison with other vulnerabilities in confidential computing literature</name>
        <thead>
          <tr>
            <th align="left">Vulnerability</th>
            <th align="left">CVE</th>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <eref target="https://wiretap.fail/files/wiretap.pdf">wiretap.fail</eref></td>
            <td align="left">No CVE (<eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2025-10-28-001.html">Intel</eref> and <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3040.html">AMD</eref> announcements)</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://tee.fail/files/paper.pdf">TEE.fail</eref></td>
            <td align="left">No CVE</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://ddropattack.eu/ddrop.pdf">DDRop</eref></td>
            <td align="left">No CVE (<eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2026-08-11-001.html">Intel</eref> and <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3048.html">AMD</eref> announcements)</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://dl.acm.org/doi/10.1145/3658644.3690230">TDXdown</eref></td>
            <td align="left">
              <eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2024-10-08-001.html">Intel</eref></td>
            <td align="left">2.5</td>
            <td align="left">Low</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/staleus/staleus_usenix26.pdf">Staleus</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-54509">CVE-2025-54509</eref></td>
            <td align="left">4.0</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-6197">CVE-2025-61972</eref></td>
            <td align="left">4.2</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://badram.eu/badram.pdf">BadRAM</eref></td>
            <td align="left">
              <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3015.html">AMD</eref></td>
            <td align="left">5.3</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-61971">CVE-2025-61971</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/fabricked/fabricked_usenix26.pdf">Fabricked</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=cve-2025-54510">CVE-2025-54510</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">Intra-handshake.fail</eref></td>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">7.5</td>
            <td align="left">High</td>
          </tr>
          <tr>
            <td align="left">EarlyAttestationBleed</td>
            <td align="left">
              <xref target="CVE-2026-92701"/></td>
            <td align="left">9.1</td>
            <td align="left">Critical</td>
          </tr>
          <tr>
            <td align="left">EarlyAttestationBleed</td>
            <td align="left">
              <xref target="CVE-2026-92702"/></td>
            <td align="left">9.1</td>
            <td align="left">Critical</td>
          </tr>
        </tbody>
      </table>
      <t>The comparison of the above with CVSS <strong>9.1</strong> for early attestation indicates that it is not mature yet compared to the rest of the confidential computing stack, and is currently one of the weakest links in the ecosystem.</t>
    </section>
    <section anchor="more-cves">
      <name>More CVEs</name>
      <t>Further formal analysis has led to the following potential CVEs for intra-handshake (aka early) attestation (currently under review and disclosure):</t>
      <table>
        <name>Expected CVEs for intra-handshake (aka early) attestation under review and disclosure</name>
        <thead>
          <tr>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
            <th align="left">Number of CVEs</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">9.0-10.0</td>
            <td align="left">Critical</td>
            <td align="left">1 (confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">9.8</td>
            <td align="left">Critical</td>
            <td align="left">1</td>
          </tr>
          <tr>
            <td align="left">8.7</td>
            <td align="left">High</td>
            <td align="left">1</td>
          </tr>
          <tr>
            <td align="left">7.5</td>
            <td align="left">High</td>
            <td align="left">5</td>
          </tr>
          <tr>
            <td align="left">7.4</td>
            <td align="left">High</td>
            <td align="left">9 (5 confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">6.3</td>
            <td align="left">Medium</td>
            <td align="left">7</td>
          </tr>
        </tbody>
      </table>
      <t>These are preliminary estimates of scores, not final assigned score. They are still under review.</t>
    </section>
    <section anchor="vulnerable-implementations">
      <name>Vulnerable Implementations</name>
      <t>As demonstrated in <xref target="Intra-handshake.fail"/> and <xref target="Intra-handshake.fail-repo"/>, at least the following intra-handshake implementations are vulnerable:</t>
      <ul spacing="normal">
        <li>
          <t><eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI</eref>: <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
        <li>
          <t><eref target="https://github.com/edgelesssys/contrast">Edgeless Systems Contrast</eref>: <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</t>
        </li>
      </ul>
      <t>If you are aware of any other intra-handshake attestation implementation, please let us know so that we can check and responsibly disclose the vulnerabilities to them.</t>
      <section anchor="archivedmitigated-implementations">
        <name>Archived/Mitigated Implementations</name>
        <t>The following intra-handshake implementations were vulnerable and have been <strong>archived</strong> or moved to <strong>post</strong>-handshake attestation:</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref>: declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref> and <strong>archived</strong></t>
          </li>
          <li>
            <t><eref target="https://github.com/ultravioletrs/cocos">Cocos AI &lt;= v0.8.2</eref>: <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>], <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]; <strong>migrated</strong> to post-handshake attestation since v0.9.0</t>
          </li>
          <li>
            <t><eref target="https://github.com/Privasys/rustls">Privasys rustls &lt;= privasys-v0.2.0</eref>: <xref target="GHSA-Privasys-rustls"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>], <strong>archived</strong> and Privasys migrated to post-handshake attestation</t>
          </li>
          <li>
            <t><eref target="https://github.com/Privasys/go">Pirvasys go &lt;= privasys-v0.3.0-go1.26.5</eref>: <xref target="GHSA-Privasys-go"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>], <strong>archived</strong> and Privasys migrated to post-handshake attestation</t>
          </li>
        </ul>
      </section>
    </section>
    <section anchor="vulnerable-protocol-specifications">
      <name>Vulnerable Protocol Specifications</name>
      <t>At least the following protocol specifications with intra-handshake attestation <em>path</em> are vulnerable to <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/>:</t>
      <ul spacing="normal">
        <li>
          <t><xref target="I-D.fossati-tls-attestation-09"/>: symbolic proof of insecurity; <xref target="I-D.fossati-tls-attestation-10"/> <strong>withdrawn</strong> after the CVE</t>
        </li>
        <li>
          <t><xref target="I-D.fossati-seat-early-attestation"/>: symbolic and (paper-and-pen-based) computational proof of insecurity (originally done for -04 and applies also to -06)
          </t>
          <ul spacing="normal">
            <li>
              <t>As a SEAT WG participant pointed out, please note that both <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> contain a link to <xref target="GHSA-Cocos-AI"/> that contains a link to <xref target="SEAT-vulnerability-report"/> that contains the G3 property (cf. <xref target="sec-corr-goals"/>) that this draft does not satisfy.</t>
            </li>
            <li>
              <t>Some WG participants successfully reproduced the vulnerability by substituting the right value of <tt>rdata</tt> in the shared formal model <xref target="Intra-handshake.fail-repo"/> that led to the CVE.</t>
            </li>
            <li>
              <t>An informal reasoning is that binder is not <strong>directly</strong> derived from any <strong>shared secret</strong> in this draft.</t>
            </li>
            <li>
              <t><strong>Unnecessary complexity</strong> is itself a security concern</t>
            </li>
          </ul>
        </li>
        <li>
          <t><xref target="I-D.ritz-seat-facts"/>: symbolic proof of insecurity
          </t>
          <ul spacing="normal">
            <li>
              <t>violates G3 property in our analysis</t>
            </li>
            <li>
              <t>unnecessary complexity is itself a security concern</t>
            </li>
          </ul>
        </li>
      </ul>
    </section>
    <section anchor="binding-levels">
      <name>Binding Levels</name>
      <ol spacing="normal" type="1"><li>
          <t>DH shared secret (<tt>gxy</tt>) used as shared secret between client and server</t>
        </li>
        <li>
          <t>Handshake traffic key (<tt>htsc</tt>) used for encryption of handshake messages</t>
        </li>
        <li>
          <t>Application traffic key (<tt>atsc</tt>) used for encryption of application data</t>
        </li>
      </ol>
      <t>Please see Sec. 6.2 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="sec-corr-goals">
      <name>Security Properties (Correlation Goals)</name>
      <t>We consider TLS Server as RATS Attester, which is typical in confidential computing.</t>
      <ol spacing="normal" type="1"><li>
          <t>Correlation of Evidence to a DH Shared Secret (G1)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Handshake Traffic Key (G2)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Application Traffic Key (G3)</t>
        </li>
      </ol>
      <t>Please see Sec. 6.3 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="main-results">
      <name>Main Results</name>
      <ul spacing="normal">
        <li>
          <t>All analyzed binding mechanisms and the corresponding implementations of intra-handshake attestation are vulnerable to relay attacks.</t>
        </li>
        <li>
          <t>Early exporter helps achieve level 1 binding.</t>
        </li>
        <li>
          <t>Our proposed mechanism helps achieve level 2 binding.</t>
        </li>
        <li>
          <t>It may not be possible to achieve level 3 in intra-handshake attestation alone without additional assumptions.</t>
        </li>
      </ul>
      <table>
        <name>Main results</name>
        <thead>
          <tr>
            <th align="left">Property</th>
            <th align="left">Mechanism #1,2,4,6</th>
            <th align="left">Mechanism #3,5,7</th>
            <th align="left">Proposed mechanism</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">G1 : Correlation of Evidence to <tt>gxy</tt></td>
            <td align="left">❌</td>
            <td align="left">✅</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G2 : Correlation of Evidence to <tt>kch</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G3 : Correlation of Evidence to <tt>kc</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">❌</td>
          </tr>
        </tbody>
      </table>
      <t>Please see Sec. 7.1 and Figure 5 of <xref target="Intra-handshake.fail"/> for details of attacks.</t>
      <section anchor="expected-results">
        <name>Expected Results</name>
        <table>
          <name>Expected results</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Artifacts</th>
              <th align="left">Expected results</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/">binder1</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/log.txt">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/">binder2</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/log.txt">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/">binder3</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/log.txt">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/">binder4</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/log.txt">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/">binder5</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/log.txt">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/">binder6</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/log.txt">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/">binder7</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/log.txt">binder7</eref></td>
            </tr>
            <tr>
              <td align="left">8.</td>
              <td align="left">Proposed</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/">proposal</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/log.txt">proposal</eref></td>
            </tr>
          </tbody>
        </table>
      </section>
    </section>
    <section anchor="implications-of-findings">
      <name>Implications of Findings</name>
      <section anchor="implications-of-findings-for-ietf-seat-wg">
        <name>Implications of Findings for IETF SEAT WG</name>
        <ul spacing="normal">
          <li>
            <t>We believe post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>, can achieve level 3 binding.</t>
          </li>
          <li>
            <t>The research suggests that recent hybrid proposals (combination of intra-handshake attestation and post-handshake attestation) <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> may add <strong>unnecessary complexity</strong> of intra-handshake attestation without adding any security benefit compared to post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>. We are not aware of any <strong>security property</strong> that hybrid proposals can achieve that post-handshake attestation alone cannot achieve.</t>
          </li>
          <li>
            <t>As demonstrated by our symbolic analysis using ProVerif, the protocol specifications <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> remain vulnerable to CVE-2026-33697. We have also proved that <xref target="I-D.fossati-seat-early-attestation-04"/> and <xref target="I-D.fossati-seat-early-attestation"/> violate the security theorems in the computational model.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-lake-wg">
        <name>Implications of Findings for IETF LAKE WG</name>
        <ul spacing="normal">
          <li>
            <t>Similar problems occur for protocol specification <eref target="https://datatracker.ietf.org/doc/draft-ietf-lake-ra/">lake-ra</eref>.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-tls-wg">
        <name>Implications of Findings for IETF TLS WG</name>
        <ul spacing="normal">
          <li>
            <t><xref target="I-D.fossati-tls-attestation-09"/> is vulnerable to <xref target="CVE-2026-33697"/>. Thankfully, the authors have withdrawn <xref target="I-D.fossati-tls-attestation-10"/>.</t>
          </li>
          <li>
            <t>Remote attestation <em>within</em> the handshake is very dangerous, since to our knowledge, it is one of the highest scored published vulnerabilities in confidential computing literature (see <xref target="sec-cvss-scores"/>). For reference, <strong>Heartbleed</strong> was <strong>7.5 CVSS</strong>.</t>
          </li>
        </ul>
        <artwork><![CDATA[
Given the high- and critical-severity vulnerabilities, we recommend
that the developers and maintainers of intra-handshake attestation MUST
urgently move to post-handshake attestation.
]]></artwork>
      </section>
      <section anchor="implications-of-findings-for-agent2agent">
        <name>Implications of Findings for Agent2Agent</name>
        <t>The findings of published CVEs/GHSAs up to 9.1 (presented in <xref target="sec-credits"/>) show that intra-handshake attestation can introduce significant security risks for AI agents when relied upon as a security mechanism.</t>
        <t>Attestation can provide evidence about an agent’s technical state, but such evidence should not be equated with governability. For a relying party, governability also depends on whether the agent’s identity, authority and permissions remain aligned with the intended interaction, whether responsibility for its actions can be attributed, and whether meaningful intervention remains possible. The findings in this draft reinforce that distinction by showing that even the binding between attestation evidence and the intended session can fail. Successful attestation should therefore be treated as one input into governance, rather than as sufficient evidence that an AI agent remains under effective control.</t>
      </section>
    </section>
    <section anchor="technical-details">
      <name>Technical Details</name>
      <section anchor="tool">
        <name>Tool</name>
        <t>We use state-of-the-art symbolic security analysis tool <eref target="https://ieeexplore.ieee.org/document/9833653">ProVerif</eref> for the specification of the protocols.</t>
      </section>
      <section anchor="modeling">
        <name>Modeling</name>
        <t>The formal model uses the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work as the starting point to focus on relay attacks in intra-handshake attestation in this work.
The rationale is that we consider it more useful to show the added value of this contribution to the community by using the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> as the baseline, rather than showing the same diversion attacks from <xref target="ID-Crisis"/>, and the discovered CVE (<xref target="CVE-2026-33697"/>) -- which the previous analysis could not find -- practically demonstrates the added value.
This modeling choice makes it clear that even with the diversion attacks fixed, high-severity relay attacks would still remain in intra-handshake attestation.</t>
        <t>Note: Similar to the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work, we model non-PSK-based handshake.
From <xref target="ID-Crisis"/>:</t>
        <ul empty="true">
          <li>
            <t>For modeling TLS 1.3, we consider handshakes based on Diffie-Hellman over either finite fields or elliptic curves, represented as (EC)DHE. This is because we are unaware of any publicly available specification or implementation of attested TLS with PSK-based handshakes.</t>
          </li>
        </ul>
        <t>While it would be nice to model PSK-based handshake, the rationale is that the correlation properties studied in this work do not necessarily require it.</t>
        <t>Note: The artifacts consider the case of server authentication only, as client authentication is optional in TLS 1.3. No claims are made about other configurations.</t>
      </section>
      <section anchor="properties">
        <name>Properties</name>
        <t>Properties in <xref target="Intra-handshake.fail"/> are complemetary to properties in <xref target="ID-Crisis"/>. Sec. 8 of <xref target="ID-Crisis"/> mentions:</t>
        <ul empty="true">
          <li>
            <t>We emphasize that both diversion and relay attacks are orthogonal and thus the two works are complementary.</t>
          </li>
        </ul>
      </section>
      <section anchor="technical-vulnerability-report">
        <name>Technical Vulnerability Report</name>
        <t>Technical vulnerability report is available at <xref target="Intra-handshake.fail"/>. It is accepted for publication at ESORICS 2026.</t>
        <section anchor="vulnerabilities">
          <name>Vulnerabilities</name>
          <t>Sec. 7.1 of <xref target="Intra-handshake.fail"/> presents the technical details with abstract attack traces of the vulnerabilities.</t>
        </section>
        <section anchor="mitigation">
          <name>Mitigation</name>
          <t>Sec. 7.2 of <xref target="Intra-handshake.fail"/> presents the technical details of the proposed mitigation.</t>
        </section>
      </section>
      <section anchor="artifacts">
        <name>Artifacts</name>
        <t>Artifacts are available at <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 License.</t>
      </section>
    </section>
    <section anchor="sec-news">
      <name>Media Coverage</name>
      <t>Several media professionals and bloggers have covered the vulnerabilities to protect the community from the harm of intra-handshake attestation.</t>
      <ul spacing="normal">
        <li>
          <t><eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref></t>
        </li>
        <li>
          <t>(Japanese) <eref target="https://blackhatnews.tokyo/archives/119915">BlackHatNewsTokyo</eref></t>
        </li>
        <li>
          <t>(Several languages) <eref target="https://hackernoon.com/attested-tls-was-supposed-to-be-the-last-trust-boundary-it-isnt-formal-methods-show-how">Hackernoon</eref></t>
        </li>
        <li>
          <t><eref target="https://podcasts.apple.com/eg/podcast/attested-tls-was-supposed-to-be-the-last-trust/id1698517643?i=1000776623286">Apple podcast</eref></t>
        </li>
        <li>
          <t><eref target="https://meterpreter.org/attested-tls-vulnerability-cve-2026-33697/">Information Security News</eref></t>
        </li>
        <li>
          <t><eref target="https://thenextgentechinsider.com/pulse/critical-flaw-discovered-in-confidential-computing-attestation-protocols">TheNextGenTechInsider</eref></t>
        </li>
        <li>
          <t><eref target="https://dailysecurityreview.com/resources/cve-2026-33697-attested-tls-relay-flaw-hits-whatsapp-cocos-ai/">DailySecurityReview</eref></t>
        </li>
        <li>
          <t><eref target="https://www.scworld.com/brief/confidential-computings-remote-attestation-protocol-may-have-fundamental-flaw">SC World</eref></t>
        </li>
        <li>
          <t><eref target="https://blogs.groupware.org.uk/01-Quantum-Inc/the-handshake-that-cant-keep-its-promise-why-confidential-computings-flaw-changes-the-data-sovereignty-conversation/">01 Quantum</eref></t>
        </li>
        <li>
          <t>(Russian) <eref target="https://www.securitylab.ru/news/574545.php">Security Lab</eref></t>
        </li>
        <li>
          <t>(German) <eref target="https://www.blogspan.net/confidential-computing-attestierung-relay-luecke/">blogspan</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://finance.sina.cn/tech/2026-07-04/detail-inifscxt9953361.d.html">Sina</eref></t>
        </li>
        <li>
          <t><eref target="https://data4biz.com/articles/una-falla-rompe-la-fiducia-del-confidential-computing">data4biz</eref></t>
        </li>
        <li>
          <t>(Russian) <eref target="https://www.itsec.ru/news/issledovateli-nashli-kriticheskuyu-uyazvimost-v-attested-tls">ITSec</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://post.smzdm.com/p/a82ol990/">smzdm</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://www.donews.com/news/detail/4/6621022.html">donews</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://i.ifeng.com/c/8uUfy0PMmqE">ifeng</eref></t>
        </li>
        <li>
          <t><eref target="https://www.dugganusa.com/post/confidential-computing-s-whole-pitch-is-trust-the-proof-not-the-cloud-two-years-of-formal-verifi">dugganusa</eref></t>
        </li>
        <li>
          <t><eref target="https://github.com/pduggusa/dugganusa-ietf/tree/main/cve-2026-33697-attestation">dugganusa repo</eref></t>
        </li>
        <li>
          <t><eref target="https://sploitus.com/exploit?id=92591A05-07BC-5015-BA3D-B1347B35D684">spoitus</eref></t>
        </li>
        <li>
          <t><eref target="https://news.lavx.hu/article/attested-tls-research-exposes-a-weak-link-in-confidential-computing">lavx news</eref></t>
        </li>
        <li>
          <t><eref target="https://www.sohu.com/a/1045865934_122004016">sohu</eref></t>
        </li>
        <li>
          <t>(Persian) <eref target="https://news.ditty.ir/news/attested-tls-relay-flaw-formal-methods/019f6221-26ca-7293-9ee9-5557b3c0b8f8">news.ditty</eref></t>
        </li>
        <li>
          <t>(Russian) <eref target="https://limpvpn.com/ru/news/attested-tls-whatsapp-privacy-flaw-2026">LiMP VPN</eref></t>
        </li>
        <li>
          <t><eref target="https://daily.dev/posts/kI6PoNzPx">daily.dev</eref></t>
        </li>
        <li>
          <t><eref target="https://warden.veritai.ch/news/researchers-find-attested-tls-flaws-that-weaken-confidential-computing-trust-model">warden</eref></t>
        </li>
        <li>
          <t><eref target="https://db.gcve.eu/sightings/?query=cve-2026-33697">GCVE.eu</eref></t>
        </li>
        <li>
          <t><eref target="https://vulnerability.circl.lu/vuln/CVE-2026-33697#sightings">vuln.lu</eref></t>
        </li>
        <li>
          <t><eref target="https://coderlegion.com/24087/intra-handshake-attestation-when-more-security-doesnt-mean-better-security">coderlegion</eref></t>
        </li>
        <li>
          <t><eref target="https://www.anjuna.io/blog/attested-tls-flaw-explained">Anjuna Security</eref></t>
        </li>
        <li>
          <t><eref target="https://privasys.org/blog/binding-attestation-to-the-tls-session/">Privasys</eref></t>
        </li>
        <li>
          <t><eref target="https://caution.co/blog/steve-attesting-the-session.html">Caution</eref></t>
        </li>
        <li>
          <t><eref target="https://freenode.net/digest/67">freenode</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://blog.csdn.net/weixin_42376192/category_13096766.html">csdn</eref></t>
        </li>
        <li>
          <t><eref target="https://osintsights.com/confidential-computing-flaws-expose-trust-risks">osintsights</eref></t>
        </li>
        <li>
          <t>(Turkish) <eref target="https://hardwaremania.com/haber/arastirma-attested-tls-confidential-computing-icin-zayif-kaliyor/">hardwaremania</eref></t>
        </li>
        <li>
          <t><eref target="https://akber.com/sovereignty-in-the-cloud-is-an-illusion/">akber</eref></t>
        </li>
        <li>
          <t><eref target="https://www.ad-hoc-news.de/wissenschaft/cloud-souveraenitaet-red-hat-startet-reifegrad-assessments-gegen/69691475">ad-hoc news</eref></t>
        </li>
        <li>
          <t><eref target="https://aimultiple.com/privacy-enhancing-technologies">AIMultiple</eref></t>
        </li>
      </ul>
      <section anchor="security-researchers">
        <name>Security Researchers</name>
        <t>Several credible security researchers, such as the following, have publicly attested to it.</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://www.linkedin.com/posts/michaelpak_confidential-computings-core-trust-mechanism-activity-7479415537836376064-q-A4/">Michael Pak</eref></t>
          </li>
          <li>
            <t><eref target="https://www.linkedin.com/posts/rrbranco_one-more-evidence-that-there-is-no-such-a-share-7479582122366615552-X0A5/">Rodrigo Branco</eref></t>
          </li>
          <li>
            <t><eref target="https://www.linkedin.com/posts/bart-preneel-4451412_on-the-limits-of-confidential-computing-share-7479549718294077440-wfi3/">Bart Preneel</eref></t>
          </li>
          <li>
            <t><eref target="https://www.linkedin.com/in/strufe/recent-activity/all/">Thorsten Strufe</eref></t>
          </li>
        </ul>
      </section>
      <section anchor="germanys-bsi">
        <name>Germany's BSI</name>
        <t>Germany's Federal Office for Information Security (Bundesamt für Sicherheit in der Informationstechnik) has attested to it. Carina Hilt, deputy press spokesperson at BSI, told <eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref>:</t>
        <artwork><![CDATA[
CC alone cannot satisfy the requirements for digital sovereignty.
]]></artwork>
        <artwork><![CDATA[
dependencies on other services, such as identity and key
management etc., are also not mitigated by CC.
]]></artwork>
        <t>CC refers to Confidential Computing, and attested TLS is the core trust mechanism of CC.</t>
      </section>
    </section>
    <section anchor="reviews">
      <name>Reviews</name>
      <section anchor="conference-reviews">
        <name>Conference Reviews</name>
        <t><xref target="Intra-handshake.fail"/> has been peer-reviewed and accepted for publication at ESORICS 2026.</t>
      </section>
      <section anchor="ietfirtf">
        <name>IETF/IRTF</name>
        <t>Several participants of the IETF/IRTF have attested to the results by independently reproducing the results and reviewing the code. Some of the participants have independently reproduced the results by developing their own formal models and a proof-of-concept implementation of the vulnerabilities. Some of the messages are mentioned below (<strong>excluding</strong> the messages of authors of <xref target="Intra-handshake.fail"/>):</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/">https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/">https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/">https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/">https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/">https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/">https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/">https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/">https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/">https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/">https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/">https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/">https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/">https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/">https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/">https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/">https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/">https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/">https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/">https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/">https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/">https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/">https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/">https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/">https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/">https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/">https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/">https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/">https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/">https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/">https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/">https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/">https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/">https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/">https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/">https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/">https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/">https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/">https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/">https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/">https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/">https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/">https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/">https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/">https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/">https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/">https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/">https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/">https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/">https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/">https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/">https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/">https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/">https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/">https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/">https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/">https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/">https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/">https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/">https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/">https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/">https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/">https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3J3s_YFnf9IQ87Tv2c1q4f36xKQ/">https://mailarchive.ietf.org/arch/msg/seat/3J3s_YFnf9IQ87Tv2c1q4f36xKQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JWKMYY1YG1E2iS_HyQ4rDmOsDGw/">https://mailarchive.ietf.org/arch/msg/seat/JWKMYY1YG1E2iS_HyQ4rDmOsDGw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rK1nDSewAbVL_weOp98knYZcg6s/">https://mailarchive.ietf.org/arch/msg/seat/rK1nDSewAbVL_weOp98knYZcg6s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Wjuz0fIj8tjYocUmiZZXcSwwFHw/">https://mailarchive.ietf.org/arch/msg/seat/Wjuz0fIj8tjYocUmiZZXcSwwFHw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SYiV4KZNr20re6QkGmyWS3pPteA/">https://mailarchive.ietf.org/arch/msg/seat/SYiV4KZNr20re6QkGmyWS3pPteA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZYgxm1ibt6p4dL7xF1YNdl0XSpc/">https://mailarchive.ietf.org/arch/msg/seat/ZYgxm1ibt6p4dL7xF1YNdl0XSpc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/6LKgOp22YRxGTYb-i-BxiMGzMW4/">https://mailarchive.ietf.org/arch/msg/seat/6LKgOp22YRxGTYb-i-BxiMGzMW4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3oHcKPtXLfBUYCZoN1nnO6e1F-s/">https://mailarchive.ietf.org/arch/msg/seat/3oHcKPtXLfBUYCZoN1nnO6e1F-s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aSybH9ihnNjN7SjdhhY_XtxhMtc/">https://mailarchive.ietf.org/arch/msg/seat/aSybH9ihnNjN7SjdhhY_XtxhMtc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/d_G8r7LMGjA45BPexZwsfmmAtJY/">https://mailarchive.ietf.org/arch/msg/seat/d_G8r7LMGjA45BPexZwsfmmAtJY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/u-za86_YJ0spwBXBwTVQzwiOCrU/">https://mailarchive.ietf.org/arch/msg/seat/u-za86_YJ0spwBXBwTVQzwiOCrU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/P4IMdvCx8lSEKrCiJIjbpBCRr4g/">https://mailarchive.ietf.org/arch/msg/seat/P4IMdvCx8lSEKrCiJIjbpBCRr4g/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-AO9yFJoflV1wDwwch45dmqkmyo/">https://mailarchive.ietf.org/arch/msg/seat/-AO9yFJoflV1wDwwch45dmqkmyo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/H0LqHfBasQml69Y-9Zl_njfsE8s/">https://mailarchive.ietf.org/arch/msg/seat/H0LqHfBasQml69Y-9Zl_njfsE8s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3hOGlYyc_yntmvT0tjYxldlwaxM/">https://mailarchive.ietf.org/arch/msg/seat/3hOGlYyc_yntmvT0tjYxldlwaxM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JbwL9cdl6fiP0vBGgASUUDmaPy8/">https://mailarchive.ietf.org/arch/msg/seat/JbwL9cdl6fiP0vBGgASUUDmaPy8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/TtewHbMGKBQOKD2sqrgTrnpCOkI/">https://mailarchive.ietf.org/arch/msg/seat/TtewHbMGKBQOKD2sqrgTrnpCOkI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UsIj6o7wf4hX_uCL51TCTv-wFxU/">https://mailarchive.ietf.org/arch/msg/seat/UsIj6o7wf4hX_uCL51TCTv-wFxU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/a6c8D6PBDRe0x4DAqXM3t4EPc4c/">https://mailarchive.ietf.org/arch/msg/seat/a6c8D6PBDRe0x4DAqXM3t4EPc4c/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/prB537Jht2kELVCSrTRktjbp7Y4/">https://mailarchive.ietf.org/arch/msg/seat/prB537Jht2kELVCSrTRktjbp7Y4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/RPnKYfUCD_MRw3hnA00zg684yGM/">https://mailarchive.ietf.org/arch/msg/seat/RPnKYfUCD_MRw3hnA00zg684yGM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/nMH_0sLLU5MekoEnzWKJnIJmaSk/">https://mailarchive.ietf.org/arch/msg/seat/nMH_0sLLU5MekoEnzWKJnIJmaSk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/GJCA31mgAehlgFPRu_yHA10lKPI/">https://mailarchive.ietf.org/arch/msg/seat/GJCA31mgAehlgFPRu_yHA10lKPI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/9f-21JMK6s1Pdcob6mPo06rNwmQ/">https://mailarchive.ietf.org/arch/msg/seat/9f-21JMK6s1Pdcob6mPo06rNwmQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/8qq_GFT391IEbGZZQUtYMONX9U0/">https://mailarchive.ietf.org/arch/msg/seat/8qq_GFT391IEbGZZQUtYMONX9U0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xzu2UlClYMkG8gNSOClxGJgwnOI/">https://mailarchive.ietf.org/arch/msg/seat/xzu2UlClYMkG8gNSOClxGJgwnOI/</eref></t>
          </li>
          <li>
            <t>Exploit: <eref target="https://mailarchive.ietf.org/arch/msg/seat/MfxWpRtlTqPElX8vX4v8uiN65TU/">https://mailarchive.ietf.org/arch/msg/seat/MfxWpRtlTqPElX8vX4v8uiN65TU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/PkU0jW_xHAF18rZmtZJ2A2p_wHs/">https://mailarchive.ietf.org/arch/msg/seat/PkU0jW_xHAF18rZmtZJ2A2p_wHs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/jZmdYKQlfherbhowIEmZRw2HF1c/">https://mailarchive.ietf.org/arch/msg/seat/jZmdYKQlfherbhowIEmZRw2HF1c/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-0j6UpsD_CebqPPMNkDJCjySqEI/">https://mailarchive.ietf.org/arch/msg/seat/-0j6UpsD_CebqPPMNkDJCjySqEI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/ssDrZRFW4s6CSaYeA9ImH0PPQ10/">https://mailarchive.ietf.org/arch/msg/rats/ssDrZRFW4s6CSaYeA9ImH0PPQ10/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/OPBI_Wd-RoTzzdh5D0JZoWlNGI8/">https://mailarchive.ietf.org/arch/msg/rats/OPBI_Wd-RoTzzdh5D0JZoWlNGI8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/nfrdr1T9Pdp6D_kj2Et3XZk-hOY/">https://mailarchive.ietf.org/arch/msg/rats/nfrdr1T9Pdp6D_kj2Et3XZk-hOY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/gMMvtP1IXsXFfb0X5nMhRTaLLok/">https://mailarchive.ietf.org/arch/msg/rats/gMMvtP1IXsXFfb0X5nMhRTaLLok/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/yaGG4sVf4pCfJ0HNPPRv3Xg0cG8/">https://mailarchive.ietf.org/arch/msg/rats/yaGG4sVf4pCfJ0HNPPRv3Xg0cG8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/DaA1jDQNF-bdO5x-dkVbSzlHcD4/">https://mailarchive.ietf.org/arch/msg/rats/DaA1jDQNF-bdO5x-dkVbSzlHcD4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/ptkHZUDzSoYnD6R5zln6HcE1cv4/">https://mailarchive.ietf.org/arch/msg/rats/ptkHZUDzSoYnD6R5zln6HcE1cv4/</eref></t>
          </li>
        </ul>
        <section anchor="main-questions">
          <name>Main Questions</name>
          <t>In short, five main questions have been raised by WG participants in support of our work:</t>
          <ul spacing="normal">
            <li>
              <t>What <strong>security property</strong> hybrid (intra- + post-handshake attestation) provides that post-handshake attestation alone cannot provide?</t>
            </li>
            <li>
              <t>Since continuous attestation is required in most use cases <xref target="CSA-eBPF"/> <xref target="MITRE-Continuous-Attestation"/>, how is <strong>additional complexity</strong> of <strong>intra</strong>-handshake attestation justified? Use cases with one-time attestation can be covered by doing attestation round immediately after Connection Establishment Time: see <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-6-2">reference</eref>.</t>
            </li>
            <li>
              <t>What is the benefit of doing <strong>signatures</strong> of remote attestation <strong>within</strong> the handshake (as this latency can be exploited)? We add that <strong>verification</strong> of signatures is also time consuming, which can be exploited too. See <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-4.2.4">reference</eref>.</t>
            </li>
            <li>
              <t>How evidence is bound to the secure channel without involving any <strong>shared secret</strong>? See <xref target="TLS-RA"/>.</t>
            </li>
            <li>
              <t>How does a verifying relying party get the legitimate PIIDs and CHIP_IDs?</t>
            </li>
          </ul>
        </section>
        <section anchor="guidance-text">
          <name>Guidance Text</name>
          <ul spacing="normal">
            <li>
              <t>Evidence MUST be bound to the secure channel. Failure to do so results in
relay attacks <xref target="CVE-2026-33697"/>, <xref target="EUVD-2026-16488"/>, <xref target="GHSA-Cocos-AI"/>.</t>
            </li>
            <li>
              <t>Verifier MUST have access to legitimate hardware identifiers of the
Attester. Failure to do so results in relay attacks <xref target="GHSA-Edgeless-Systems"/>.</t>
            </li>
            <li>
              <t>Verifier MUST carefully check the binding. Failure to do so results in
relay attacks <xref target="GHSA-Cocos-AI2"/>, <xref target="GHSA-Cocos-AI3"/>.</t>
            </li>
            <li>
              <t>Binder MUST contain shared secrets. Failure to do so results in relay
attacks <xref target="GHSA-Privasys-rustls"/>, <xref target="GHSA-Privasys-go"/>, <xref target="GHSA-Privasys-eov"/>, <xref target="GHSA-Privasys-eom"/>, <xref target="GHSA-Privasys-rtc"/>, <xref target="GHSA-Privasys-rtc-da"/>, <xref target="GHSA-Privasys-rtc-tcu"/>.</t>
            </li>
          </ul>
        </section>
      </section>
      <section anchor="researchers-outside-of-ietfirtf">
        <name>Researchers outside of IETF/IRTF</name>
        <t>Some researchers have approached us confirming the proof-of-concept of the vulnerabilities in intra-handshake attestation. More information will be added once their pre-prints/papers are public.</t>
      </section>
    </section>
    <section anchor="security-considerations">
      <name>Security Considerations</name>
      <t>All of this document is about the <strong>insecurity</strong> of <strong>intra</strong>-handshake (aka early) attestation.</t>
      <t>By no means should the vendors mentioned in this draft be considered less secure than any other vendors implementing intra-handshake attestation solutions. In particular, those who have closed-source implementations are most likely more vulnerable than the open-source ones, since the former cannot easily be reviewed by the security community. Even extensive security reviews -- of closed-source implementations -- by cybersecurity firms often do not perform formal analysis, and thus such reviews may miss corner cases and subtle vulnerabilities.</t>
    </section>
    <section anchor="ethical-considerations">
      <name>Ethical Considerations</name>
      <t>We (i.e., the super set of all authors involved in this research, including but not limited to Muhammad Usama Sardar, Mariam Moustafa, Tuomas Aura, Viacheslav Dubeyko, Jean-Marie Jacquet, Songbo Bu, Chengxin Huang, Haowen Song, Kaya Ercihan, Massimiliano Brighindi, and Iman Schrock) are ethical researchers aiming to protect the community from the potential harm caused by the exploitability of the vulnerabilities in intra-handshake attestation. We have responsibly disclosed the vulnerabilities to the respective developers and maintainers following their respective disclosure processes and provided them our proposed mitigations and requested them to take rapid action.</t>
      <t>We have released only the formal analysis for published CVE. To minimize exploit in the wild, we have not publicly released the proof-of-concept exploit code.</t>
      <t>We have not retrieved any real data from any real system. We have not released any key to any public forum or to any person.</t>
      <section anchor="evidence-of-explanation-of-vulnerabilities-to-the-authors-of-vulnerable-drafts">
        <name>Evidence of Explanation of Vulnerabilities to the Authors of Vulnerable Drafts</name>
        <t>To the best of our abilities, knowledge, and understanding, we have tried to explain the vulnerabilities to the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> first privately in several meetings and then later on publicly for at least half a year at several forums, including but not limited to CCC Attestation SIG and IETF/IRTF. Please see the (non-exhaustive list of) recordings <xref target="sec-recordings"/> and the archives <xref target="sec-archives"/> below. We sincerely thank the authors of <xref target="I-D.fossati-tls-attestation-10"/> for withdrawing their draft to protect further exploits mentioned in <xref target="sec-news"/>.</t>
        <section anchor="sec-recordings">
          <name>Recordings</name>
          <table>
            <name>Evidence of several explanations of vulnerabilities to the authors of vulnerable drafts</name>
            <thead>
              <tr>
                <th align="left">Event/Host</th>
                <th align="left">Venue</th>
                <th align="left">Date(s)</th>
                <th align="left">Evidence</th>
              </tr>
            </thead>
            <tbody>
              <tr>
                <td align="left">
                  <eref target="https://lpc.events/event/20/">Linux Plumbers Conference 2026</eref></td>
                <td align="left">Prague, Czechia</td>
                <td align="left">5-7 Oct, 2026</td>
                <td align="left">slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ga4gh.org/event/14th-plenary/">GA4GH 14th Plenary Meeting</eref></td>
                <td align="left">Singapore</td>
                <td align="left">28 Sept-2 Oct, 2026</td>
                <td align="left">slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://sites.google.com/di.uniroma1.it/esorics2026/">ESORICS 2026</eref></td>
                <td align="left">Rome, Italy</td>
                <td align="left">14-18 Sept, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/414416257_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">slides</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/session/rats">IETF RATS Interim meeting</eref></td>
                <td align="left">Virtual</td>
                <td align="left">14 Sept, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/materials/slides-interim-2026-rats-03-sessa-protecting-the-rats-ecosystem-from-critical-severity-vulnerabilities-00">slides</eref>, <eref target="https://youtu.be/y5_SR0-DzH0?t=255">video</eref></td>
              </tr>
              <tr>
                <td align="left">Hackathon @ <eref target="https://summit.riot-os.org/2026/">RIOT Summit 2026</eref></td>
                <td align="left">Grenoble, France</td>
                <td align="left">4 September, 2026</td>
                <td align="left">
                  <eref target="https://notes.inria.fr/2ppogr2fTSKusRog3RXbPQ?view#topic-security-analysis-of-attested-tls-and-attested-edhoc">topic synopsis</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://summit.riot-os.org/2026/">RIOT Summit 2026</eref></td>
                <td align="left">Grenoble, France</td>
                <td align="left">2-4 September, 2026</td>
                <td align="left">
                  <eref target="https://summit.riot-os.org/2026/blog/speakers/muhammad-usama-sardar/">abstract</eref>, <eref target="https://www.researchgate.net/publication/413988306_Security_Analysis_of_Attested_TLS_and_Attested_EDHOC">slides</eref>, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ga4gh.org/work_stream/data-security/">Data Security Work Stream (DSWS)</eref> at the <eref target="https://www.ga4gh.org/">Global Alliance for Genomics and Health (GA4GH)</eref></td>
                <td align="left">Virtual</td>
                <td align="left">24 Aug, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/413569575_High-Severity_Vulnerabilities_in_Former_GIF_Design_for_Attested_TLS_draft-fossati-seat-early-attestation">slides</eref>, <eref target="https://us02web.zoom.us/rec/share/UAn381deia-aMNmjGHhMqxocc1HcyF7ksLlaeeKefxO4bSC2mHPzwPQPYGe2dnZR.zfleYCmmtiteo_NS">video</eref></td>
              </tr>
              <tr>
                <td align="left">Confidential AI Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">21 July, 2026</td>
                <td align="left">
                  <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/odgd_xmhjQXiR_aLYdqtVvDJeF4/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">21 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-seat-binding-properties-of-expat-00.pdf">slides</eref>, <eref target="https://youtu.be/Fb5Hzh1mp1E?t=4189">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">IETF 126 Hackdemo Happy Hour</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">20 July, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">demo</eref></td>
              </tr>
              <tr>
                <td align="left">Confidential Computing Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">20 July, 2026</td>
                <td align="left">
                  <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hotrfc-sessa-15-confidential-computing-and-digital-sovereignty-00">slides</eref>, <eref target="https://youtu.be/FDHWRijxKso?t=3285">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ietf.org/meeting/hackathons/126-hackathon/">IETF 126 Hackathon</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hackathon-sessd-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/GRqyrDIEgEw?t=1340">video</eref></td>
              </tr>
              <tr>
                <td align="left">IEPG @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/g8q_u19vXzk?t=4404">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">Workshop</eref> @ <eref target="https://www.wissenschaftsnacht-dresden.de/en/">Dresden Science Night 2026</eref></td>
                <td align="left">Dresden</td>
                <td align="left">26 June, 2026</td>
                <td align="left">
                  <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">demo</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://output-dd.de/">Output 2026</eref></td>
                <td align="left">Dresden</td>
                <td align="left">25 June, 2026</td>
                <td align="left">
                  <eref target="https://output-dd.de/projekte/relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems/">demo</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://events.linuxfoundation.org/confidential-computing-summit/">Confidential Computing Summit 2026</eref> (presented by Jens Albers)</td>
                <td align="left">San Francisco, USA</td>
                <td align="left">23-24 June, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411851358_Standardization_of_Attested_TLS">poster</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://confidentialcontainers.org/">Confidential Containers Community Meeting</eref> @ <eref target="https://www.cncf.io/">Cloud Native Computing Foundation</eref></td>
                <td align="left">Virtual</td>
                <td align="left">30 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411849492_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref>, <eref target="https://zoom.us/rec/share/3thZhsRi-BZJL-GqjnwGzh7inbltuKIlpVjqMlWp6WRdMTZ66Z8p-8YjaaeOfbhX.CoH6YBukaKua0gkt">video</eref> around timestamp 00:27:00</td>
              </tr>
              <tr>
                <td align="left">GIF Project showcase @ <eref target="https://www.ga4gh.org/event/april-connect-2026/">GA4GH April Connect 2026</eref></td>
                <td align="left">Montreal, Canada (virtual)</td>
                <td align="left">17 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/412136610_Trusted_Research_Environment_TRE_Open_Suite">slides</eref>, <eref target="https://youtu.be/Kr9oxp1fdn0?t=1083">video</eref>, <eref target="https://www.ga4gh.org/document/arpril-connect-2026-meeting-report/">report</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://sos-vo.org/group/hotsos/">NSA Symposium on Hot Topics in the Science of Security (HotSoS) 2026</eref></td>
                <td align="left">Virtual</td>
                <td align="left">16 April, 2026</td>
                <td align="left">
                  <eref target="https://sos-vo.org/group/hotsos/2026/sardar">abstract</eref>, <eref target="https://sos-vo.org/system/files/2026-04/20260416_HotSoS%20%281%29.pdf">slides</eref>, <eref target="https://sos-vo.org/group/hotsos/2026/sardar">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fg-pet.gi.de/veranstaltung/15th-privacy-enhancing-techniques-convention">PET-CON 2026.1: 15th Privacy Enhancing Techniques Convention</eref></td>
                <td align="left">Karlsruhe, Germany</td>
                <td align="left">16-17 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411849502_Formal_Analysis_of_Attested_TLS">slides</eref>, <eref target="https://www.researchgate.net/publication/411852738_Formal_Analysis_of_Attested_TLS_and_Standardization_in_the_IETF">poster</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://gtmfs2026.sciencesconf.org/program?lang=en">GTMFS 2026: Annual Meeting of the WG "Formal Methods in Security"</eref></td>
                <td align="left">Luz-Saint-Sauveur, France</td>
                <td align="left">24-26 Mar, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411853715_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref></td>
              </tr>
              <tr>
                <td align="left">CFRG @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">19 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-cfrg-relay-attacks-00">slides</eref>, <eref target="https://youtu.be/IfKgbO74Lt4?t=6054">video</eref></td>
              </tr>
              <tr>
                <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref> (relay)</td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">17 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-seat-security-analysis-00">slides</eref>, <eref target="https://youtu.be/hX7genEkN7w?t=676">video</eref></td>
              </tr>
              <tr>
                <td align="left">Side meeting @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">16 Mar, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/403474373_Proposed_RG_Confidential_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">LAKE @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">16 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-lake-formal-analysis-of-attested-edhoc-00">slides</eref>, <eref target="https://youtu.be/JzfLpbnhl0A?t=3117">video</eref></td>
              </tr>
              <tr>
                <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">15 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hotrfc-sessa-formal-proof-of-insecurity-of-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/OtOo7Nogisw?t=3514">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ietf.org/meeting/hackathons/125-hackathon/">IETF 125 Hackathon</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">14-15 Mar, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/125/hackathon#relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hackathon-sessd-relay-attacks-in-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/62A58qH19MI?t=2270">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">10 Feb, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksGen_20260210.pdf">slides</eref>; <eref target="https://www.youtube.com/watch?v=idqwb0hFlhs&amp;list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1061s">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/session/rats">IETF RATS Interim meeting</eref></td>
                <td align="left">Virtual</td>
                <td align="left">9 Feb, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/materials/slides-interim-2026-rats-01-sessa-relayattacks-00.pdf">slides</eref>, <eref target="https://youtu.be/gURY61dViPw?t=1474">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fosdem.org/2026/schedule/track/confidential-computing/">Confidential Computing</eref> devroom at <eref target="https://fosdem.org/2026/">FOSDEM 2026</eref></td>
                <td align="left">Brussels, Belgium</td>
                <td align="left">31 Jan-1 Feb, 2026</td>
                <td align="left">
                  <eref target="https://fosdem.org/2026/schedule/event/GHGFBM-attestedtls/">abstract</eref>, <eref target="https://fosdem.org/2026/events/attachments/GHGFBM-attestedtls/slides/267432/20260201_60u9e0n.pdf">slides</eref>, <eref target="https://video.fosdem.org/2026/ud6215/GHGFBM-attestedtls.av1.webm">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">27 Jan, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksProposal_20260127.pdf">slides</eref>; <eref target="https://youtu.be/P04tLJcSxfM?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=434">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">13 Jan, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacks_20260113.pdf">slides</eref>; <eref target="https://youtu.be/cSrCZNyo7_g?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1083">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">16 Dec, 2025</td>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MuhammadUsamaSardar_Binding_Properties_20251216.pdf">slides</eref>; <eref target="https://youtu.be/w_MrjMeHyP8?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=593">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">2 Dec, 2025</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_Open_Questions_20251202.pdf">slides</eref>; <eref target="https://youtu.be/16aGZ-oZidg?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=2920">video</eref></td>
              </tr>
            </tbody>
          </table>
        </section>
        <section anchor="sec-archives">
          <name>Archives</name>
          <t>Since January, we have publicly informed the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> and shared our results with the community for review and to raise awareness on high-severity vulnerabilities and apply appropriate mitigations for the safety of their users:</t>
          <section anchor="ietfhttpswwwietforg">
            <name><eref target="https://www.ietf.org/">IETF</eref></name>
            <ul spacing="normal">
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">SEAT WG</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">RATS WG</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/tls/8lyqHh9y7_Lv6b1iXhpUqYrp0M0/">TLS WG</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/lake/Tovtl7wgvzwJWT2I2ZwnhoIOnYQ/">LAKE WG</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/saag/jBZVk7YySwpaFqydAfxW33kNZPY/">SAAG</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/practical-cybersecurity/d65WPaC0WbZRwxTBclnTkf7SmRs/">Practical Cybersecurity list</eref></t>
              </li>
              <li>
                <t>Agent2agent list <eref target="https://mailarchive.ietf.org/arch/msg/agent2agent/ubz7uXCs--YzuSWyXNNsmWf_tSQ/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/agent2agent/xHhjA94fzed6ONIvPRgwTT-WRmA/">thread2</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/dmsc/QC2adIcYkxiTlniEcc7ggk86BAY/">DSMC list</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/hackathon/PIrJ2O_QqcNUAnMIn_Vh22ImWMc/">Hackathon</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">126attendees</eref></t>
              </li>
            </ul>
          </section>
          <section anchor="irtfhttpswwwirtforg">
            <name><eref target="https://www.irtf.org/">IRTF</eref></name>
            <ul spacing="normal">
              <li>
                <t>UFMRG: <eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZWK0uMM92OdwlPbgXBvQApDpe5Q/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZRhR7o1HrWxfGDfgRJMR65RBkDE/">thread2</eref></t>
              </li>
              <li>
                <t>CFRG <eref target="https://mailarchive.ietf.org/arch/msg/cfrg/NbxHIw9H_xpSYbgfO_n7lVIFeWs/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">thread2</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/din/_8LE3Ru1xX16hgGJwryMTRwRoaA/">DINRG</eref></t>
              </li>
            </ul>
          </section>
          <section anchor="ccchttpsconfidentialcomputingio">
            <name><eref target="https://confidentialcomputing.io/">CCC</eref></name>
            <ul spacing="normal">
              <li>
                <t>Attestation SIG: <eref target="https://lists.confidentialcomputing.io/g/attestation/topic/117207133">thread1</eref> and <eref target="https://lists.confidentialcomputing.io/g/attestation/message/334">thread2</eref></t>
              </li>
              <li>
                <t>TAC: <eref target="https://lists.confidentialcomputing.io/g/tac/topic/117932193">thread1</eref> and <eref target="https://lists.confidentialcomputing.io/g/tac/topic/120068850">thread2</eref></t>
              </li>
            </ul>
          </section>
          <section anchor="ocphttpswwwopencomputeorg">
            <name><eref target="https://www.opencompute.org/">OCP</eref></name>
            <ul spacing="normal">
              <li>
                <t>OCP Security: <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/117932716">message1</eref>, <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120069056">message2</eref>, <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120483814">message3</eref> and <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120524635">message4</eref></t>
              </li>
            </ul>
            <t>If you know any other relevant mailing list that we should inform for protection of users, please let us know.</t>
          </section>
        </section>
      </section>
    </section>
    <section anchor="contributions">
      <name>Contributions</name>
      <t>Contributions to the draft are welcome at <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail">https://github.com/muhammad-usama-sardar/intra-handshake-fail</eref>.</t>
    </section>
    <section anchor="iana-considerations">
      <name>IANA Considerations</name>
      <t>This document has no IANA actions.</t>
    </section>
  </middle>
  <back>
    <references anchor="sec-combined-references">
      <name>References</name>
      <references anchor="sec-normative-references">
        <name>Normative References</name>
        <reference anchor="Intra-handshake.fail" target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="June"/>
          </front>
        </reference>
        <reference anchor="Intra-handshake.fail-repo" target="https://github.com/muhammad-usama-sardar/intra-handshake.fail">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="July"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-33697" target="https://www.cve.org/CVERecord?id=CVE-2026-33697">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-16488" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-16488">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-92701" target="https://www.cve.org/CVERecord?id=CVE-2026-92701">
          <front>
            <title>Cocos AI Intra-handshake attested TLS implementation is vulnerable to session-misbinding attacks for Intel TDX verifier path</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-92702" target="https://www.cve.org/CVERecord?id=CVE-2026-92702">
          <front>
            <title>Cocos AI Intra-handshake attested TLS implementation can accept Evidence with nil, empty, or omitted reportData in the AMD SEV-SNP path</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-83194" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-83194">
          <front>
            <title>EUVD-2026-83194</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-83192" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-83192">
          <front>
            <title>EUVD-2026-83192</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-vfgg-mvxx-mgg7">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI2" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-4px3-wj2x-xx47">
          <front>
            <title>Cocos AI intra-handshake attested TLS implementation is vulnerable to session-misbinding attacks for Intel TDX verifier path</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI3" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-4r6g-mp48-j2rw">
          <front>
            <title>Cocos AI intra-handshake attested TLS implementation can accept Evidence with nil, empty, or omitted reportData in the AMD SEV-SNP path</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-hjgc-jc5v-fw7h">
          <front>
            <title>Remote attestation is susceptible to relay attacks</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems2" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-m2qg-wrxv-h898">
          <front>
            <title>Generated policies don't detect all image substitutions</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="SEAT-vulnerability-report" target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">
          <front>
            <title>Relay Attacks in Intra-handshake Attestation for Confidential Agentic AI Systems</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <date year="2026" month="January"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rustls" target="https://github.com/Privasys/rustls/security/advisories/GHSA-j6qv-435v-r492">
          <front>
            <title>Privasys RA-TLS challenge mode did not bind attestation evidence to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-go" target="https://github.com/Privasys/go/security/advisories/GHSA-7jfw-53rm-phh2">
          <front>
            <title>Privasys Go fork: RA-TLS challenge mode did not bind attestation evidence to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-eov" target="https://github.com/Privasys/enclave-os-virtual/security/advisories/GHSA-p5fp-g94g-g9m9">
          <front>
            <title>enclave-os-virtual: RA-TLS challenge certificates were not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-eom" target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-49qm-4pj3-w2c6">
          <front>
            <title>enclave-os-mini: RA-TLS challenge certificates were not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-5qrc-v874-mxvx">
          <front>
            <title>ra-tls-clients: RA-TLS challenge verifier accepted quotes not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc-da" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-pj2x-5wqv-fh57">
          <front>
            <title>Privasys Intra-handshake attested TLS implementation is vulnerable to Diversion Attacks</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc-tcu" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-gg8q-mfhh-wrrc">
          <front>
            <title>Privasys Intra-handshake attested TLS implementation is vulnerable to TOCTOU Attacks</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="ID-Crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author fullname="Muhammad Usama Sardar" initials="M." surname="Sardar">
              <organization>TU Dresden, Dresden, Germany</organization>
            </author>
            <author fullname="Mariam Moustafa" initials="M." surname="Moustafa">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <author fullname="Tuomas Aura" initials="T." surname="Aura">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <date month="June" year="2026"/>
          </front>
          <seriesInfo name="Proceedings of the ACM Asia Conference on Computer and Communications Security" value="pp. 547-560"/>
          <seriesInfo name="DOI" value="10.1145/3779208.3785387"/>
          <refcontent>ACM</refcontent>
        </reference>
        <reference anchor="ID-Crisis-repo" target="https://github.com/CCC-Attestation/formal-spec-id-crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="M." surname="Moustafa">
              <organization/>
            </author>
            <author initials="T." surname="Aura">
              <organization/>
            </author>
            <date year="2025" month="November"/>
          </front>
        </reference>
        <reference anchor="refTLS">
          <front>
            <title>Verified Models and Reference Implementations for the TLS 1.3 Standard Candidate</title>
            <author fullname="Karthikeyan Bhargavan" initials="K." surname="Bhargavan">
              <organization/>
            </author>
            <author fullname="Bruno Blanchet" initials="B." surname="Blanchet">
              <organization/>
            </author>
            <author fullname="Nadim Kobeissi" initials="N." surname="Kobeissi">
              <organization/>
            </author>
            <date month="May" year="2017"/>
          </front>
          <seriesInfo name="2017 IEEE Symposium on Security and Privacy (SP)" value="pp. 483-502"/>
          <seriesInfo name="DOI" value="10.1109/sp.2017.26"/>
          <refcontent>IEEE</refcontent>
        </reference>
        <reference anchor="TLS-RA" target="https://www.usenix.org/conference/atc25/presentation/weinhold">
          <front>
            <title>Separate but together: integrating remote attestation into TLS</title>
            <author initials="" surname="Carsten Weinhold">
              <organization/>
            </author>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="" surname="Ionuț Mihalcea">
              <organization/>
            </author>
            <author initials="" surname="Yogesh Deshpande">
              <organization/>
            </author>
            <author initials="" surname="Hannes Tschofenig">
              <organization/>
            </author>
            <author initials="" surname="Yaron Sheffer">
              <organization/>
            </author>
            <author initials="" surname="Thomas Fossati">
              <organization/>
            </author>
            <author initials="" surname="Michael Roitzsch">
              <organization/>
            </author>
            <date year="2025" month="July"/>
          </front>
        </reference>
        <reference anchor="CSA-eBPF" target="https://cloudsecurityalliance.org/blog/2026/09/09/mitre-s-new-framework-securing-the-ebpf-layer-your-ai-depends-on">
          <front>
            <title>MITRE's New Framework: Securing the eBPF Layer Your AI Depends On</title>
            <author initials="" surname="Cloud Security Alliance">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="MITRE-Continuous-Attestation" target="https://www.mitre.org/news-insights/publication/framework-continuous-remote-attestation">
          <front>
            <title>Framework for Continuous Remote Attestation</title>
            <author initials="" surname="MITRE's Confidential Computing Layered Attestation Working Group">
              <organization/>
            </author>
            <date year="2026" month="July"/>
          </front>
        </reference>
      </references>
      <references anchor="sec-informative-references">
        <name>Informative References</name>
        <reference anchor="I-D.fossati-seat-early-attestation">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="5" month="August" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a TLS extension that
   enables the negotiation and binding of the TLS authentication key to
   a remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   This extension has been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-06"/>
        </reference>
        <reference anchor="I-D.fossati-seat-early-attestation-04">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="27" month="May" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a series of TLS
   extensions that enable the binding of the TLS authentication key to a
   remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   These extensions have been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-04"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-06">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="19" month="March" year="2024"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-06"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-09">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="30" month="April" year="2025"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-09"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-10">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="23" month="July" year="2026"/>
            <abstract>
              <t>   This draft has been withdrawn.

About This Document

   This note is to be removed before publishing as an RFC.

   Status information for this document may be found at
   https://datatracker.ietf.org/doc/draft-fossati-tls-attestation/.

   Source for this draft and an issue tracker can be found at
   https://github.com/yaronf/draft-tls-attestation.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-10"/>
        </reference>
        <reference anchor="I-D.ritz-seat-facts">
          <front>
            <title>Factor-based Attestation and Credential Transport Scheme (FACTS) over TLS 1.3</title>
            <author fullname="Nathanael Ritz" initials="N." surname="Ritz">
              <organization>Independent</organization>
            </author>
            <date day="1" month="March" year="2026"/>
            <abstract>
              <t>   This document describes FACTS (Factor-based Attestation and
   Credential Transport Scheme) over TLS 1.3.  Conceptually acting as
   "multi-factor authentication" for machine identities, factor-based
   attestation derives session trust from multiple independent
   cryptographic inputs rather than a single point of failure.
   Specifically, it utilizes a dual-key scheme that binds identity to
   attestation evidence through the use of key encapsulation material
   keys (KEM) and traditional identity signing keys (IK), establishing
   per-session freshness.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ritz-seat-facts-00"/>
        </reference>
      </references>
    </references>
    <?line 920?>

<section numbered="false" anchor="acknowledgments">
      <name>Acknowledgments</name>
      <t>Acknowledgment does not necessarily imply attestation. It implies that the authors found the feedback and discussion useful in improving the formal analysis, the corresponding paper, or this draft.</t>
      <t>This draft benefits from several years of research on attested TLS, in particular some of the recent works mentioned below:</t>
      <t>We wish to express our sincere appreciation to the following for their review of our latest work:</t>
      <ul spacing="normal">
        <li>
          <t>Bertrand Foing</t>
        </li>
        <li>
          <t>Sammy Kerata Oina</t>
        </li>
        <li>
          <t>Drasko Draskovic</t>
        </li>
        <li>
          <t>Markus Rudy</t>
        </li>
        <li>
          <t>Rebekah Overdorf</t>
        </li>
        <li>
          <t>Tobias Pulls</t>
        </li>
      </ul>
      <t><strong>Intra-handshake.fail</strong> <xref target="Intra-handshake.fail"/></t>
      <t>We would like to thank our co-author of paper <xref target="Intra-handshake.fail"/> for his valuable contributions:</t>
      <ul spacing="normal">
        <li>
          <t>Jean-Marie Jacquet</t>
        </li>
      </ul>
      <t>We also gratefully acknowledge the following for insightful discussions and helpful reviews on <xref target="Intra-handshake.fail"/>:</t>
      <ul spacing="normal">
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Juho Forsén</t>
        </li>
        <li>
          <t>Markus Rudy</t>
        </li>
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Steve Kremer</t>
        </li>
        <li>
          <t>Tjaden Hess</t>
        </li>
        <li>
          <t>Martin Thomson</t>
        </li>
        <li>
          <t>Yuning Jiang</t>
        </li>
        <li>
          <t>Pavel Nikonorov</t>
        </li>
        <li>
          <t>Casey Wilson</t>
        </li>
        <li>
          <t>Anonymous ESORICS 2026 reviewers</t>
        </li>
        <li>
          <t>Danko Miladinovic</t>
        </li>
        <li>
          <t>Rongkuan He</t>
        </li>
        <li>
          <t>Peeter Laud</t>
        </li>
        <li>
          <t>Stephen Holmes</t>
        </li>
        <li>
          <t>Ammara Gul</t>
        </li>
        <li>
          <t>Atul Prakash</t>
        </li>
        <li>
          <t>Paul Syverson</t>
        </li>
        <li>
          <t>Jan Tobias Muehlberg</t>
        </li>
        <li>
          <t>John Preuß Mattsson</t>
        </li>
        <li>
          <t>Britta Hale</t>
        </li>
        <li>
          <t>Werner Staub</t>
        </li>
        <li>
          <t>Songbo Bu</t>
        </li>
        <li>
          <t>Haowen Song</t>
        </li>
        <li>
          <t>Chengxin Huang</t>
        </li>
        <li>
          <t>Steve Luo</t>
        </li>
        <li>
          <t>Andrew Miller</t>
        </li>
        <li>
          <t>Kubilay Ahmet Küçük</t>
        </li>
        <li>
          <t>Iman Schrock</t>
        </li>
        <li>
          <t>Sophie Schmieg</t>
        </li>
        <li>
          <t>Davyd Okaianchenko</t>
        </li>
        <li>
          <t>Alistair Woodman</t>
        </li>
        <li>
          <t>Göran Selander</t>
        </li>
        <li>
          <t>Tom Sato</t>
        </li>
        <li>
          <t>Jakub Maria Plutowski</t>
        </li>
        <li>
          <t>Martin Friedrich</t>
        </li>
        <li>
          <t>Patrick Duggan</t>
        </li>
        <li>
          <t>Deb Cooley</t>
        </li>
      </ul>
      <t><strong>Identity Crisis</strong> <xref target="ID-Crisis"/></t>
      <t>We would like to thank our co-authors of complementary paper <xref target="ID-Crisis"/> for their valuable contributions:</t>
      <ul spacing="normal">
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Tuomas Aura</t>
        </li>
      </ul>
      <t>We also gratefully acknowledge the following for insightful discussions and helpful feedback:</t>
      <ul spacing="normal">
        <li>
          <t>Ionut Mihalcea</t>
        </li>
        <li>
          <t>Jean-Marie Jacquet</t>
        </li>
        <li>
          <t>Thomas Fossati</t>
        </li>
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Hannes Tschofenig</t>
        </li>
        <li>
          <t>Yaron Sheffer</t>
        </li>
        <li>
          <t>Laurence Lundblade</t>
        </li>
        <li>
          <t>Giridhar Mandyam</t>
        </li>
        <li>
          <t>Christopher Patton</t>
        </li>
        <li>
          <t>Jonathan Hoyland</t>
        </li>
        <li>
          <t>Richard Barnes</t>
        </li>
      </ul>
      <t><strong>refTLS</strong> <xref target="refTLS"/></t>
      <t>We sincerely thank the following for the foundational formal model of draft 20 of TLS 1.3 in their work <xref target="refTLS"/> that we have used as the foundation of all of this work:</t>
      <ul spacing="normal">
        <li>
          <t>Karthikeyan Bhargavan</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Nadim Kobeissi</t>
        </li>
      </ul>
      <t><strong>General</strong></t>
      <t>Several others at the IETF, IRTF, CCC, and GA4GH have contributed by providing feedback over the years. A non-exhaustive list of contributors is <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00#page=17">here</eref>.</t>
      <t>Muhammad Usama Sardar is funded by German Research Foundation ("Deutsche Forschungsgemeinschaft.")</t>
    </section>
  </back>
  <!-- ##markdown-source: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-->

</rfc>
