<?xml version='1.0' encoding='utf-8'?>
<!DOCTYPE rfc [
  <!ENTITY nbsp    "&#160;">
  <!ENTITY zwsp   "&#8203;">
  <!ENTITY nbhy   "&#8209;">
  <!ENTITY wj     "&#8288;">
]>
<?xml-stylesheet type="text/xsl" href="rfc2629.xslt" ?>
<!-- generated by https://github.com/cabo/kramdown-rfc version 1.7.43 (Ruby 3.4.9) -->
<rfc xmlns:xi="http://www.w3.org/2001/XInclude" ipr="trust200902" docName="draft-intra-handshake-fail-40" category="info" submissionType="IETF" tocInclude="true" sortRefs="true" symRefs="true" version="3">
  <!-- xml2rfc v2v3 conversion 3.34.1 -->
  <front>
    <title abbrev="Early Attestation Considered Harmful">Early Attestation Considered Very Harmful (CVE-2026-92701 of CVSS 9.1, CVE-2026-92702 of CVSS 9.1, CVE-2026-33697 of CVSS 7.5, and 37 other CVEs of up to expected CVSS 10.0 upcoming)</title>
    <seriesInfo name="Internet-Draft" value="draft-intra-handshake-fail-40"/>
    <author fullname="Muhammad Usama Sardar">
      <organization abbrev="TU Dresden">Technical University of Dresden</organization>
      <address>
        <postal>
          <city>Dresden</city>
          <code>01187</code>
          <country>Germany</country>
        </postal>
        <email>muhammad_usama.sardar@tu-dresden.de</email>
      </address>
    </author>
    <author fullname="Viacheslav Dubeyko">
      <organization>CoreWeave</organization>
      <address>
        <email>slava@dubeyko.com</email>
      </address>
    </author>
    <author fullname="Jean-Marie Jacquet">
      <organization>University of Namur</organization>
      <address>
        <postal>
          <city>Namur</city>
          <country>Belgium</country>
        </postal>
        <email>jean-marie.jacquet@unamur.be</email>
      </address>
    </author>
    <author fullname="Songbo Bu">
      <organization>Shanghai Guan An Information Technology Co., Ltd.</organization>
      <address>
        <postal>
          <country>China</country>
        </postal>
        <email>bluedognull@gmail.com</email>
      </address>
    </author>
    <author fullname="Chengxin Huang">
      <organization>Independent</organization>
      <address>
        <email>aurestarnull@gmail.com</email>
      </address>
    </author>
    <author fullname="Haowen Song">
      <organization>Shanghai Guan An Information Technology Co., Ltd.</organization>
      <address>
        <postal>
          <country>China</country>
        </postal>
        <email>havan12050544@gmail.com</email>
      </address>
    </author>
    <author fullname="Kaya Ercihan">
      <organization>Switch</organization>
      <address>
        <postal>
          <city>Zurich</city>
          <country>Switzerland</country>
        </postal>
        <email>kaya.ercihan@switch.ch</email>
      </address>
    </author>
    <author initials="D. K. A." surname="Küçük" fullname="Dr Kubilay Ahmet Küçük">
      <organization>DPhil Oxford University</organization>
      <address>
        <email>dr.kucuk@oxfordalumni.org</email>
      </address>
    </author>
    <author fullname="Serhii Nikolaichuk">
      <organization>The Capital Index</organization>
      <address>
        <postal>
          <city>Austin, Texas</city>
          <country>USA</country>
        </postal>
        <email>nikolaichuk.s.f@gmail.com</email>
      </address>
    </author>
    <author fullname="Sylvain Bellemare">
      <organization>Sureshot Labs</organization>
      <address>
        <postal>
          <country>Japan</country>
        </postal>
        <email>sbellem@gmail.com</email>
      </address>
    </author>
    <author initials="E. C. M." surname="Willems" fullname="Eva C. M. Willems">
      <organization>Independent</organization>
      <address>
        <postal>
          <country>Netherlands</country>
        </postal>
        <email>evac.m.willems@proton.me</email>
      </address>
    </author>
    <author fullname="Justin DESSENNES SAINTEN">
      <organization>Independent Corporate Risk Consultant</organization>
      <address>
        <postal>
          <city>Paris</city>
          <country>France</country>
        </postal>
        <email>dessennes_sainten@msn.com</email>
      </address>
    </author>
    <author fullname="Massimiliano Brighindi">
      <organization>PHI-OMEGA</organization>
      <address>
        <postal>
          <city>San Benedetto del Tronto</city>
          <country>Italy</country>
        </postal>
        <email>phiomega.runtime@gmail.com</email>
      </address>
    </author>
    <author fullname="Mikerah Quintyne-Collins">
      <organization>HashCloak Inc and Stoffel Labs Inc</organization>
      <address>
        <postal>
          <country>Canada</country>
        </postal>
        <email>mikerah@hashcloak.com</email>
      </address>
    </author>
    <author fullname="Iman Schrock">
      <organization>EMILIA Protocol, Inc.</organization>
      <address>
        <email>team@emiliaprotocol.ai</email>
      </address>
    </author>
    <date year="2026" month="September" day="22"/>
    <workgroup>SEAT</workgroup>
    <keyword>AI agents</keyword>
    <keyword>Intra-handshake attestation</keyword>
    <keyword>Early attestation</keyword>
    <keyword>CVE-2026-33697</keyword>
    <keyword>CVE-2026-92701</keyword>
    <keyword>CVE-2026-92702</keyword>
    <abstract>
      <?line 296?>

<t>The draft aims to provide technical details of <xref target="CVE-2026-33697"/>, <xref target="EUVD-2026-16488"/>, <xref target="CVE-2026-92701"/>, <xref target="EUVD-2026-83194"/>, <xref target="CVE-2026-92702"/>, <xref target="EUVD-2026-83192"/> and several GitHub Security Advisories (GHSAs) which provide substantial technical evidence of how early attestation fails in practice, even <strong>without physical access</strong> to the desired machine. Moreover, since continuous attestation is generally required <xref target="CSA-eBPF"/> <xref target="MITRE-Continuous-Attestation"/>, early attestation adds <strong>unnecessary complexity</strong>. The results are backed by the research <xref target="Intra-handshake.fail"/>, <xref target="TLS-RA"/>, <xref target="EarlyAttestationBleed"/> and the artifacts <xref target="Intra-handshake.fail-repo"/> in state-of-the-art formal analysis tool, ProVerif, under Apache-2.0 license for reproducibility, extensibility, and review, and have been acknowledged by the relevant stakeholders. Currently, there are <strong>two CVEs of CVSS 9.1, one CVE of CVSS 7.5, one GHSA of 9.0-10.0, one GHSA of CVSS 7.8, seven GHSAs of CVSS 7.4, and one GHSA of CVSS 6.3 published against the broader early attestation covering all layers of the ecosystem up to the application</strong>. The research papers on these are currently either under submission or being prepared for submission. The artifacts of these papers will be shared with the community under Apache-2.0 license for reproducibility, extensibility, and review. In our analysis, the remaining implementations of early attestation -- Edgeless Systems Contrast and Meta's AI -- remain vulnerable.</t>
    </abstract>
    <note removeInRFC="true">
      <name>About This Document</name>
      <t>
        The latest revision of this draft can be found at <eref target="https://muhammad-usama-sardar.github.io/intra-handshake-fail/draft-intra-handshake-fail.html"/>.
        Status information for this document may be found at <eref target="https://datatracker.ietf.org/doc/draft-intra-handshake-fail/"/>.
      </t>
      <t>Source for this draft and an issue tracker can be found at
        <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail"/>.</t>
    </note>
  </front>
  <middle>
    <?line 300?>

<section anchor="introduction">
      <name>Introduction</name>
      <t><xref target="Intra-handshake.fail"/> presents a general approach to analyze the intra-handshake (aka early) attestation proposals, regardless of whether they are within the scope of SEAT charter or not. From a security perspective, one of the key decision factors is the candidate binding mechanism. Some binding mechanisms are within scope of SEAT charter and others are not. The artifacts are available in <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 license for reproducibility, extensibility and further research.</t>
      <t>A <strong>complementary</strong> paper <xref target="ID-Crisis"/> presents the identity crisis in pre- and intra-handshake attestation. The formal analysis is available in <xref target="ID-Crisis-repo"/> under Apache-2.0 license for reproducibility and extensibility.</t>
      <t>Another complementary paper -- currently under submission -- performs a thorough formal analysis of the design options in intra-handshake attestation.</t>
      <section anchor="overview">
        <name>Overview</name>
        <t><xref target="Intra-handshake.fail"/> presents the formal specification and analysis of the candidate binding mechanisms for binding in intra-handshake attestation for standardization for attested TLS protocols:</t>
        <table>
          <name>Binding mechanisms, implementations and ProVerif artifacts</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Used in</th>
              <th align="left">Artifacts</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MarkusRudy.contrast-atls-ccc-attestation.pdf">Edgeless Systems Contrast</eref>; <eref target="https://www.sns-itrust6g.com/wp-content/uploads/2025/12/Webinar-Architecting-Trust-CONFIDENTIAL6G.pdf">Cocos AI v0.8.2</eref>;  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref>; <eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI updated spec</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <xref target="I-D.fossati-tls-attestation-06"/></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7">binder7</eref></td>
            </tr>
          </tbody>
        </table>
        <artwork><![CDATA[
We provide a formal proof of insecurity of all the above candidate
binding mechanisms of intra-handshake attestation using the
state-of-the-art tool ProVerif and propose a mitigation for the
discovered security vulnerabilities. Our study reveals that it may
not be possible to achieve strong application-traffic (level 3)
binding using intra-handshake attestation alone. This can be exploited
for relay attacks, where an attacker makes a client accept an evidence
from a different machine. So the client cannot be sure that it connects
to its desired server.
]]></artwork>
        <t>We responsibly disclosed the vulnerability in intra-handshake attestation -- as noted in <xref target="GHSA-Cocos-AI"/> issued -- to the vendors, which resulted in  <xref target="CVE-2026-33697"/> of CVSS 7.5.</t>
      </section>
      <section anchor="modeling-other-binding-mechanisms">
        <name>Modeling Other Binding Mechanisms</name>
        <t>The artifacts are quite flexible for modification and testing of different intra-handshake attestation binding mechanisms by simply changing single <tt>rdata</tt> parameter in the Client and Server processes. Folder <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/aggregate">aggregate</eref> contains all analyzed and proposed binding mechanisms in <xref target="Intra-handshake.fail"/> to select via comment and uncomment. Other folders contain one specific binding mechanism.</t>
      </section>
      <section anchor="seat-early-attestation">
        <name>SEAT-Early-Attestation</name>
        <t>The draft <xref target="I-D.fossati-seat-early-attestation"/> is an extension of the provably vulnerable (and withdrawn) draft <xref target="I-D.fossati-tls-attestation-10"/> with the following two main changes from a formal perspective:</t>
        <ol spacing="normal" type="1"><li>
            <t>Binder has been updated</t>
          </li>
          <li>
            <t>Optional post-handshake attestation part has been added for re-attestation</t>
          </li>
        </ol>
        <t>The current binder in <xref target="I-D.fossati-seat-early-attestation"/> does not prevent relay attacks as there is no <strong>shared secret</strong> in the binder. In addition to the formal analysis in <xref target="Intra-handshake.fail"/>, see <xref target="TLS-RA"/> for arguments why shared secret is necessary to prevent relay attacks.</t>
        <t>Post-handshake attestation part may prevent relay attacks, but then the <strong>additional complexity</strong> of intra-handshake attestation is unjustified.</t>
      </section>
      <section anchor="executive-summary-of-current-status">
        <name>Executive Summary of Current Status</name>
        <t>Severity is based on <eref target="https://nvd.nist.gov/vuln-metrics/cvss">NIST metrics</eref>. Scores of 13 more GHSAs is yet to be confirmed and will be added later in this table. <strong>For TLS reference, Heartbleed was CVSS 7.5</strong>.</t>
        <table>
          <name>Published CVEs/GHSAs for intra-handshake (aka early) attestation</name>
          <thead>
            <tr>
              <th align="left">CVSS</th>
              <th align="left">Severity</th>
              <th align="left">Number of Published GHSAs</th>
              <th align="left">Number of Published CVEs</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">9.0-10.0</td>
              <td align="left">Critical</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">9.1</td>
              <td align="left">Critical</td>
              <td align="left">2</td>
              <td align="left">2</td>
            </tr>
            <tr>
              <td align="left">7.8</td>
              <td align="left">High</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">7.5</td>
              <td align="left">High</td>
              <td align="left">1</td>
              <td align="left">1</td>
            </tr>
            <tr>
              <td align="left">7.4</td>
              <td align="left">High</td>
              <td align="left">7</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">6.3</td>
              <td align="left">Medium</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
          </tbody>
        </table>
      </section>
    </section>
    <section anchor="sec-credits">
      <name>Published GHSAs/CVEs</name>
      <table>
        <name>GHSAs/CVEs for intra-handshake (aka early) attestation and finders in (roughly) chronological order of publishing -- CVSS of last 13 GHSAs are preliminary</name>
        <thead>
          <tr>
            <th align="left">GHSA/CVE</th>
            <th align="left">CVSS</th>
            <th align="left">Finders</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI"/></td>
            <td align="left">7.8</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">7.5</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-16488"/></td>
            <td align="left">7.5</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI2"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI3"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems2"/></td>
            <td align="left">9.0-10.0</td>
            <td align="left">Markus Rudy; independently by Songbo Bu and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rustls"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-go"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-eov"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-eom"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc-da"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc-tcu"/></td>
            <td align="left">6.3</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-92701"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-92702"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-83194"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-83192"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-322v-xwfj-63cm">GHSA-322v-xwfj-63cm</eref></td>
            <td align="left">9.8</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-m9p9-3hxp-4j6j">GHSA-m9p9-3hxp-4j6j</eref></td>
            <td align="left">9.1</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-ppc4-fg56-x397">GHSA-ppc4-fg56-x397</eref></td>
            <td align="left">8.2</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6j47-3cm6-9cg6">GHSA-6j47-3cm6-9cg6</eref></td>
            <td align="left">8.1</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-4755-rh6c-694j">GHSA-4755-rh6c-694j</eref></td>
            <td align="left">8.1</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6f8q-88mv-c8vr">GHSA-6f8q-88mv-c8vr</eref></td>
            <td align="left">7.9</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-qqq3-6c47-684v">GHSA-qqq3-6c47-684v</eref></td>
            <td align="left">7.5</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-xxr6-w252-4ggx">GHSA-xxr6-w252-4ggx</eref></td>
            <td align="left">7.5</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-fmrx-fjqw-37gp</eref></td>
            <td align="left">6.5</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-f96w-jjf8-xpw3</eref></td>
            <td align="left">5.6</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fqrx-3wc2-4g49">GHSA-fqrx-3wc2-4g49</eref></td>
            <td align="left">4.4</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-mrgr-34cc-fcg8">GHSA-mrgr-34cc-fcg8</eref></td>
            <td align="left">4.2</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-wqf9-jfmm-f68v">GHSA-wqf9-jfmm-f68v</eref></td>
            <td align="left">4.2</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">TBA</td>
            <td align="left">7.8</td>
            <td align="left">Chengxin Huang, Songbo Bu, and Muhammad Usama Sardar</td>
          </tr>
        </tbody>
      </table>
    </section>
    <section anchor="threat-model">
      <name>Threat Model</name>
      <t>The threat model is explained in Sec. 6.1 of <xref target="Intra-handshake.fail"/> and Sec. 4 of <xref target="ID-Crisis"/>.</t>
      <t>Beyond post-generation leakage of <tt>privEK</tt> considered in <xref target="Intra-handshake.fail"/>, the same adversary capability may arise from failures during key generation or entropy provisioning. Platform-attestation keys and workload-controlled TLS keys belong to distinct key-generation domains: for example, in AMD SEV-SNP the VCEK is derived by SNP firmware from chip-unique secrets and a TCB version, while several other platform secrets are specified as CSRNG-generated; by contrast, <tt>privEK</tt> and TLS (EC)DHE private values are typically generated by software executing inside the confidential VM using the guest OS or cryptographic-library random subsystem. Furthermore, SEV-SNP <tt>REPORT_DATA</tt> is supplied by the guest and incorporated into the signed attestation report without being interpreted by SNP firmware; consequently, valid Evidence can authenticate a binding value without attesting the entropy provenance, generation procedure, or exclusive possession of the corresponding private key. The <tt>LEK(privEK)</tt> capability should therefore also encompass predictable or repeated key generation caused by deficient entropy, cloned or rolled-back DRBG state, defective software or firmware, or malicious provisioning. <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-7055.html">CVE-2025-62626</eref> provides a concrete manufacturer-layer fault model: affected AMD Zen 5 processors could return insufficiently random values from certain <tt>RDSEED</tt> forms while incorrectly signaling success. This does not establish compromise of the AMD-SP-internal CSRNG or of a specific attested-TLS implementation, but demonstrates that ideal-randomness assumptions can fail below the protocol layer; software dependencies such as OpenSSL's <tt>--with-rand-seed=rdcpu</tt> (<eref target="https://github.com/openssl/openssl/blob/openssl-3.5.0/INSTALL.md">OpenSSL 3.5.0 INSTALL.md</eref>), which can use <tt>RDSEED</tt> or <tt>RDRAND</tt> as CSPRNG seed input, illustrate a possible propagation path from hardware entropy interfaces to workload TLS key generation.</t>
      <section anchor="low-level-mapping-of-the-system-model">
        <name>Low-Level Mapping of the System Model</name>
        <t>Figure 2 of <xref target="Intra-handshake.fail"/> provides a TEE-agnostic protocol-level
abstraction. For a low-level view, the following table maps the abstract
components to representative Intel TDX and AMD SEV-SNP implementations.</t>
        <table>
          <name>Mapping of the abstract system model to representative CC implementations</name>
          <thead>
            <tr>
              <th align="left">Fig. 2 element</th>
              <th align="left">Intel TDX</th>
              <th align="left">AMD SEV-SNP</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">
                <strong>Physical Machine</strong></td>
              <td align="left">TDX-capable Intel platform</td>
              <td align="left">SEV-SNP-capable AMD platform</td>
            </tr>
            <tr>
              <td align="left">
                <strong>CC Platform</strong></td>
              <td align="left">CPU HW + TDX Module + attestation infrastructure</td>
              <td align="left">CPU HW + AMD-SP/SNP (system) firmware + RMP/SEV machinery</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Quoting Agent</strong></td>
              <td align="left">TD QE</td>
              <td align="left">AMD-SP / SNP attestation (VM) firmware</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Confidential VM</strong></td>
              <td align="left">Trust Domain (TD)</td>
              <td align="left">Part of SNP confidential VM</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Network stack</strong></td>
              <td align="left">Part of guest OS + TLS library inside TD</td>
              <td align="left">Part of guest OS + TLS library inside SNP guest</td>
            </tr>
            <tr>
              <td align="left">
                <strong>HSM/TPM</strong></td>
              <td align="left">Secure element</td>
              <td align="left">Secure element</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privAK</tt></strong></td>
              <td align="left">Attestation key of TD Quoting Enclave</td>
              <td align="left">VCEK/VLEK signing key</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privEK</tt></strong></td>
              <td align="left">Workload/TLS-side ephemeral key</td>
              <td align="left">Workload/TLS-side ephemeral key</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privLTK</tt></strong></td>
              <td align="left">Long-term key in secure element</td>
              <td align="left">Long-term key in secure element</td>
            </tr>
          </tbody>
        </table>
        <t>The key material shown in the abstract model belongs to different implementation
and trust domains. The following table provides a corresponding low-level view.</t>
        <table>
          <name>Low-level implementation and key-generation domains</name>
          <thead>
            <tr>
              <th align="left">Component/key</th>
              <th align="left">Runs/lives where?</th>
              <th align="left">Type</th>
              <th align="left">Randomness/key source</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">TLS ECDHE</td>
              <td align="left">Inside network stack</td>
              <td align="left">Network stack</td>
              <td align="left">OS/library CSPRNG</td>
            </tr>
            <tr>
              <td align="left">
                <tt>privEK</tt></td>
              <td align="left">Inside confidential VM</td>
              <td align="left">Guest software</td>
              <td align="left">OS/library CSPRNG</td>
            </tr>
            <tr>
              <td align="left">AK</td>
              <td align="left">Quoting Agent</td>
              <td align="left">Firmware/enclave/platform key hierarchy</td>
              <td align="left">Platform-specific</td>
            </tr>
            <tr>
              <td align="left">Memory-encryption key</td>
              <td align="left">CC Platform</td>
              <td align="left">Hardware/firmware managed</td>
              <td align="left">Platform RNG/KDF</td>
            </tr>
            <tr>
              <td align="left">
                <tt>REPORT_DATA</tt></td>
              <td align="left">Created by Guest Software</td>
              <td align="left">Data binding</td>
              <td align="left">No independent entropy requirement</td>
            </tr>
          </tbody>
        </table>
        <t>Per-VM memory-encryption key is used to encrypt confidential VM's RAM.</t>
      </section>
    </section>
    <section anchor="detailed-vulnerability-disclosure-timeline-and-public-acknowledgements-by-affected-vendors">
      <name>Detailed Vulnerability Disclosure Timeline and Public Acknowledgements by Affected Vendors</name>
      <table>
        <name>Detailed vulnerability disclosure timeline and acknowledgements</name>
        <thead>
          <tr>
            <th align="left">Event</th>
            <th align="left">Date</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">Our initial responsible disclosure to vendor</td>
            <td align="left">07 Oct, 2025</td>
          </tr>
          <tr>
            <td align="left">Acknowledgement by vendor</td>
            <td align="left">14 Dec, 2025</td>
          </tr>
          <tr>
            <td align="left">Information to the <eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">IETF</eref></td>
            <td align="left">11 Jan, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://web.archive.org/web/20260227160554/https://www.ultraviolet.rs/blog/tee-tls-privacy/">Public announcement</eref> by vendor</td>
            <td align="left">27 Feb, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>]</td>
            <td align="left">23 March, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-33697"/> published  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-16488"/>  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/rustls/releases/tag/privasys-v0.8.1">Acknowledgment</eref> by Privasys for rustls <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">9 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/go/releases/tag/privasys-v0.5.1-go1.26.5">Acknowledgment</eref> by Privasys for go <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">10 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation</eref> declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref></td>
            <td align="left">17 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation repo</eref> archived</td>
            <td align="left">22 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable draft <xref target="I-D.fossati-tls-attestation-10"/> withdrawn by authors</td>
            <td align="left">23 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">29 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI2"/>  [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">16 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI3"/>  [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">16 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems2"/> [<strong>Severity = CRITICAL (CVSS 9.0-10.0)</strong>]</td>
            <td align="left">24 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rustls"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-go"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-eov"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-eom"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys archived early attestation in rustls and moved to post-handshake attestation</td>
            <td align="left">4 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys archived early attestation in go and moved to post-handshake attestation</td>
            <td align="left">4 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc-da"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">6 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc-tcu"/> [<strong>Severity = MEDIUM (CVSS 6.3)</strong>]</td>
            <td align="left">6 September, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-92701"/> published [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-92702"/> published [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-83194"/> [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-83192"/> [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-322v-xwfj-63cm">GHSA-322v-xwfj-63cm</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-m9p9-3hxp-4j6j">GHSA-m9p9-3hxp-4j6j</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-ppc4-fg56-x397">GHSA-ppc4-fg56-x397</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6j47-3cm6-9cg6">GHSA-6j47-3cm6-9cg6</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-4755-rh6c-694j">GHSA-4755-rh6c-694j</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6f8q-88mv-c8vr">GHSA-6f8q-88mv-c8vr</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-qqq3-6c47-684v">GHSA-qqq3-6c47-684v</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-xxr6-w252-4ggx">GHSA-xxr6-w252-4ggx</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-fmrx-fjqw-37gp</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-f96w-jjf8-xpw3</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fqrx-3wc2-4g49">GHSA-fqrx-3wc2-4g49</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-mrgr-34cc-fcg8">GHSA-mrgr-34cc-fcg8</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-wqf9-jfmm-f68v">GHSA-wqf9-jfmm-f68v</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
        </tbody>
      </table>
      <t><strong>Neither the GHSAs nor the CVEs have any dependency whatsoever on the considered threat model with <tt>WeakHash</tt>, <tt>WeakDH</tt>, or <tt>BadElement</tt>.</strong> They hold independent of those, i.e., with <tt>StrongHash</tt> and <tt>StrongDH</tt> and all good elements within a group.</t>
    </section>
    <section anchor="eu-enisa">
      <name>EU ENISA</name>
      <t>European Union's <eref target="https://euvd.enisa.europa.eu/homepage">ENISA</eref> has independently published <xref target="EUVD-2026-16488"/> with CVSS 7.5 to acknowledge this vulnerability.</t>
    </section>
    <section anchor="sec-cvss-scores">
      <name>Comparison with Other Vulnerabilities in Confidential Computing Literature</name>
      <t>Severity is based on <eref target="https://nvd.nist.gov/vuln-metrics/cvss">NIST metrics</eref>.</t>
      <table>
        <name>Comparison with other vulnerabilities in confidential computing literature</name>
        <thead>
          <tr>
            <th align="left">Vulnerability</th>
            <th align="left">CVE</th>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <eref target="https://wiretap.fail/files/wiretap.pdf">wiretap.fail</eref></td>
            <td align="left">No CVE (<eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2025-10-28-001.html">Intel</eref> and <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3040.html">AMD</eref> announcements)</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://tee.fail/files/paper.pdf">TEE.fail</eref></td>
            <td align="left">No CVE</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://ddropattack.eu/ddrop.pdf">DDRop</eref></td>
            <td align="left">No CVE (<eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2026-08-11-001.html">Intel</eref> and <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3048.html">AMD</eref> announcements)</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://dl.acm.org/doi/10.1145/3658644.3690230">TDXdown</eref></td>
            <td align="left">
              <eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2024-10-08-001.html">Intel</eref></td>
            <td align="left">2.5</td>
            <td align="left">Low</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/staleus/staleus_usenix26.pdf">Staleus</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-54509">CVE-2025-54509</eref></td>
            <td align="left">4.0</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-6197">CVE-2025-61972</eref></td>
            <td align="left">4.2</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://badram.eu/badram.pdf">BadRAM</eref></td>
            <td align="left">
              <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3015.html">AMD</eref></td>
            <td align="left">5.3</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-61971">CVE-2025-61971</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/fabricked/fabricked_usenix26.pdf">Fabricked</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=cve-2025-54510">CVE-2025-54510</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">Intra-handshake.fail</eref></td>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">7.5</td>
            <td align="left">High</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EarlyAttestationBleed"/></td>
            <td align="left">
              <xref target="CVE-2026-92701"/></td>
            <td align="left">9.1</td>
            <td align="left">Critical</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EarlyAttestationBleed"/></td>
            <td align="left">
              <xref target="CVE-2026-92702"/></td>
            <td align="left">9.1</td>
            <td align="left">Critical</td>
          </tr>
        </tbody>
      </table>
      <t>The comparison of the above with CVSS <strong>9.1</strong> for early attestation indicates that it is not mature yet compared to the rest of the confidential computing stack, and is currently one of the weakest links in the ecosystem.</t>
    </section>
    <section anchor="more-cves">
      <name>More CVEs</name>
      <t>Further formal analysis has led to the following potential CVEs for intra-handshake (aka early) attestation (currently under review and disclosure):</t>
      <table>
        <name>Expected CVEs for intra-handshake (aka early) attestation under review and disclosure</name>
        <thead>
          <tr>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
            <th align="left">Number of CVEs</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">9.0-10.0</td>
            <td align="left">Critical</td>
            <td align="left">1 (confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">9.8</td>
            <td align="left">Critical</td>
            <td align="left">1</td>
          </tr>
          <tr>
            <td align="left">8.7</td>
            <td align="left">High</td>
            <td align="left">1</td>
          </tr>
          <tr>
            <td align="left">7.8</td>
            <td align="left">High</td>
            <td align="left">1 (confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">7.5</td>
            <td align="left">High</td>
            <td align="left">5</td>
          </tr>
          <tr>
            <td align="left">7.4</td>
            <td align="left">High</td>
            <td align="left">9 (5 confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">6.3</td>
            <td align="left">Medium</td>
            <td align="left">7</td>
          </tr>
        </tbody>
      </table>
      <t>These are preliminary estimates of scores, not final assigned score. They are still under review.</t>
    </section>
    <section anchor="vulnerable-implementations">
      <name>Vulnerable Implementations</name>
      <t>As demonstrated in <xref target="Intra-handshake.fail"/> and <xref target="Intra-handshake.fail-repo"/>, at least the following intra-handshake implementations are vulnerable:</t>
      <ul spacing="normal">
        <li>
          <t><eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI</eref>: <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
        <li>
          <t><eref target="https://github.com/edgelesssys/contrast">Edgeless Systems Contrast</eref>: <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</t>
        </li>
      </ul>
      <t>If you are aware of any other intra-handshake attestation implementation, please let us know so that we can check and responsibly disclose the vulnerabilities to them.</t>
      <section anchor="archivedmitigated-implementations">
        <name>Archived/Mitigated Implementations</name>
        <t>The following intra-handshake implementations were vulnerable and have been <strong>archived</strong> or moved to <strong>post</strong>-handshake attestation:</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref>: declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref> and <strong>archived</strong></t>
          </li>
          <li>
            <t><eref target="https://github.com/ultravioletrs/cocos">Cocos AI &lt;= v0.8.2</eref>: <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>], <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]; <strong>migrated</strong> to post-handshake attestation since v0.9.0</t>
          </li>
          <li>
            <t><eref target="https://github.com/Privasys/rustls">Privasys rustls &lt;= privasys-v0.2.0</eref>: <xref target="GHSA-Privasys-rustls"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>], <strong>archived</strong> and Privasys migrated to post-handshake attestation</t>
          </li>
          <li>
            <t><eref target="https://github.com/Privasys/go">Pirvasys go &lt;= privasys-v0.3.0-go1.26.5</eref>: <xref target="GHSA-Privasys-go"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>], <strong>archived</strong> and Privasys migrated to post-handshake attestation</t>
          </li>
        </ul>
      </section>
    </section>
    <section anchor="vulnerable-protocol-specifications">
      <name>Vulnerable Protocol Specifications</name>
      <t>At least the following protocol specifications with intra-handshake attestation <em>path</em> are vulnerable to <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/>:</t>
      <ul spacing="normal">
        <li>
          <t><xref target="I-D.fossati-tls-attestation-09"/>: symbolic proof of insecurity; <xref target="I-D.fossati-tls-attestation-10"/> <strong>withdrawn</strong> after the CVE</t>
        </li>
        <li>
          <t><xref target="I-D.fossati-seat-early-attestation"/>: symbolic and (paper-and-pen-based) computational proof of insecurity (originally done for -04 and applies also to -06)
          </t>
          <ul spacing="normal">
            <li>
              <t>As a SEAT WG participant pointed out, please note that both <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> contain a link to <xref target="GHSA-Cocos-AI"/> that contains a link to <xref target="SEAT-vulnerability-report"/> that contains the G3 property (cf. <xref target="sec-corr-goals"/>) that this draft does not satisfy.</t>
            </li>
            <li>
              <t>Some WG participants successfully reproduced the vulnerability by substituting the right value of <tt>rdata</tt> in the shared formal model <xref target="Intra-handshake.fail-repo"/> that led to the CVE.</t>
            </li>
            <li>
              <t>An informal reasoning is that binder is not <strong>directly</strong> derived from any <strong>shared secret</strong> in this draft.</t>
            </li>
            <li>
              <t><strong>Unnecessary complexity</strong> is itself a security concern</t>
            </li>
          </ul>
        </li>
        <li>
          <t><xref target="I-D.ritz-seat-facts"/>: symbolic proof of insecurity
          </t>
          <ul spacing="normal">
            <li>
              <t>violates G3 property in our analysis</t>
            </li>
            <li>
              <t>unnecessary complexity is itself a security concern</t>
            </li>
          </ul>
        </li>
      </ul>
    </section>
    <section anchor="binding-levels">
      <name>Binding Levels</name>
      <ol spacing="normal" type="1"><li>
          <t>DH shared secret (<tt>gxy</tt>) used as shared secret between client and server</t>
        </li>
        <li>
          <t>Handshake traffic key (<tt>htsc</tt>) used for encryption of handshake messages</t>
        </li>
        <li>
          <t>Application traffic key (<tt>atsc</tt>) used for encryption of application data</t>
        </li>
      </ol>
      <t>Please see Sec. 6.2 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="sec-corr-goals">
      <name>Security Properties (Correlation Goals)</name>
      <t>We consider TLS Server as RATS Attester, which is typical in confidential computing.</t>
      <ol spacing="normal" type="1"><li>
          <t>Correlation of Evidence to a DH Shared Secret (G1)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Handshake Traffic Key (G2)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Application Traffic Key (G3)</t>
        </li>
      </ol>
      <t>Please see Sec. 6.3 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="main-results">
      <name>Main Results</name>
      <ul spacing="normal">
        <li>
          <t>All analyzed binding mechanisms and the corresponding implementations of intra-handshake attestation are vulnerable to relay attacks.</t>
        </li>
        <li>
          <t>Early exporter helps achieve level 1 binding.</t>
        </li>
        <li>
          <t>Our proposed mechanism helps achieve level 2 binding.</t>
        </li>
        <li>
          <t>It may not be possible to achieve level 3 in intra-handshake attestation alone without additional assumptions.</t>
        </li>
      </ul>
      <table>
        <name>Main results</name>
        <thead>
          <tr>
            <th align="left">Property</th>
            <th align="left">Mechanism #1,2,4,6</th>
            <th align="left">Mechanism #3,5,7</th>
            <th align="left">Proposed mechanism</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">G1 : Correlation of Evidence to <tt>gxy</tt></td>
            <td align="left">❌</td>
            <td align="left">✅</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G2 : Correlation of Evidence to <tt>kch</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G3 : Correlation of Evidence to <tt>kc</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">❌</td>
          </tr>
        </tbody>
      </table>
      <t>Please see Sec. 7.1 and Figure 5 of <xref target="Intra-handshake.fail"/> for details of attacks.</t>
      <section anchor="expected-results">
        <name>Expected Results</name>
        <table>
          <name>Expected results</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Artifacts</th>
              <th align="left">Expected results</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/">binder1</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/log.txt">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/">binder2</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/log.txt">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/">binder3</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/log.txt">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/">binder4</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/log.txt">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/">binder5</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/log.txt">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/">binder6</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/log.txt">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/">binder7</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/log.txt">binder7</eref></td>
            </tr>
            <tr>
              <td align="left">8.</td>
              <td align="left">Proposed</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/">proposal</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/log.txt">proposal</eref></td>
            </tr>
          </tbody>
        </table>
      </section>
    </section>
    <section anchor="implications-of-findings">
      <name>Implications of Findings</name>
      <section anchor="implications-of-findings-for-ietf-seat-wg">
        <name>Implications of Findings for IETF SEAT WG</name>
        <ul spacing="normal">
          <li>
            <t>We believe post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>, can achieve level 3 binding.</t>
          </li>
          <li>
            <t>The research suggests that recent hybrid proposals (combination of intra-handshake attestation and post-handshake attestation) <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> may add <strong>unnecessary complexity</strong> of intra-handshake attestation without adding any security benefit compared to post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>. We are not aware of any <strong>security property</strong> that hybrid proposals can achieve that post-handshake attestation alone cannot achieve.</t>
          </li>
          <li>
            <t>As demonstrated by our symbolic analysis using ProVerif, the protocol specifications <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> remain vulnerable to CVE-2026-33697. We have also proved that <xref target="I-D.fossati-seat-early-attestation-04"/> and <xref target="I-D.fossati-seat-early-attestation"/> violate the security theorems in the computational model.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-lake-wg">
        <name>Implications of Findings for IETF LAKE WG</name>
        <ul spacing="normal">
          <li>
            <t>Similar problems occur for protocol specification <eref target="https://datatracker.ietf.org/doc/draft-ietf-lake-ra/">lake-ra</eref>.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-tls-wg">
        <name>Implications of Findings for IETF TLS WG</name>
        <ul spacing="normal">
          <li>
            <t><xref target="I-D.fossati-tls-attestation-09"/> is vulnerable to <xref target="CVE-2026-33697"/>. Thankfully, the authors have withdrawn <xref target="I-D.fossati-tls-attestation-10"/>.</t>
          </li>
          <li>
            <t>Remote attestation <em>within</em> the handshake is very dangerous, since to our knowledge, it is one of the highest scored published vulnerabilities in confidential computing literature (see <xref target="sec-cvss-scores"/>). For reference, <strong>Heartbleed</strong> was <strong>7.5 CVSS</strong>.</t>
          </li>
        </ul>
        <artwork><![CDATA[
Given the high- and critical-severity vulnerabilities, we recommend
that the developers and maintainers of intra-handshake attestation MUST
urgently move to post-handshake attestation.
]]></artwork>
      </section>
      <section anchor="implications-of-findings-for-agent2agent">
        <name>Implications of Findings for Agent2Agent</name>
        <t>The findings of published CVEs/GHSAs up to 9.1 (presented in <xref target="sec-credits"/>) show that intra-handshake attestation can introduce significant security risks for AI agents when relied upon as a security mechanism.</t>
        <t>Attestation can provide evidence about an agent’s technical state, but such evidence should not be equated with governability. For a relying party, governability also depends on whether the agent’s identity, authority and permissions remain aligned with the intended interaction, whether responsibility for its actions can be attributed, and whether meaningful intervention remains possible. The findings in this draft reinforce that distinction by showing that even the binding between attestation evidence and the intended session can fail. Successful attestation should therefore be treated as one input into governance, rather than as sufficient evidence that an AI agent remains under effective control.</t>
      </section>
    </section>
    <section anchor="technical-details">
      <name>Technical Details</name>
      <section anchor="tool">
        <name>Tool</name>
        <t>We use state-of-the-art symbolic security analysis tool <eref target="https://ieeexplore.ieee.org/document/9833653">ProVerif</eref> for the specification of the protocols.</t>
      </section>
      <section anchor="modeling">
        <name>Modeling</name>
        <t>The formal model uses the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work as the starting point to focus on relay attacks in intra-handshake attestation in this work.
The rationale is that we consider it more useful to show the added value of this contribution to the community by using the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> as the baseline, rather than showing the same diversion attacks from <xref target="ID-Crisis"/>, and the discovered CVE (<xref target="CVE-2026-33697"/>) -- which the previous analysis could not find -- practically demonstrates the added value.
This modeling choice makes it clear that even with the diversion attacks fixed, high-severity relay attacks would still remain in intra-handshake attestation.</t>
        <t>Note: Similar to the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work, we model non-PSK-based handshake.
From <xref target="ID-Crisis"/>:</t>
        <ul empty="true">
          <li>
            <t>For modeling TLS 1.3, we consider handshakes based on Diffie-Hellman over either finite fields or elliptic curves, represented as (EC)DHE. This is because we are unaware of any publicly available specification or implementation of attested TLS with PSK-based handshakes.</t>
          </li>
        </ul>
        <t>While it would be nice to model PSK-based handshake, the rationale is that the correlation properties studied in this work do not necessarily require it.</t>
        <t>Note: The artifacts consider the case of server authentication only, as client authentication is optional in TLS 1.3. No claims are made about other configurations.</t>
      </section>
      <section anchor="properties">
        <name>Properties</name>
        <t>Properties in <xref target="Intra-handshake.fail"/> are complemetary to properties in <xref target="ID-Crisis"/>. Sec. 8 of <xref target="ID-Crisis"/> mentions:</t>
        <ul empty="true">
          <li>
            <t>We emphasize that both diversion and relay attacks are orthogonal and thus the two works are complementary.</t>
          </li>
        </ul>
      </section>
      <section anchor="technical-vulnerability-report">
        <name>Technical Vulnerability Report</name>
        <t>Technical vulnerability report is available at <xref target="Intra-handshake.fail"/>. It is accepted for publication at ESORICS 2026.</t>
        <section anchor="vulnerabilities">
          <name>Vulnerabilities</name>
          <t>Sec. 7.1 of <xref target="Intra-handshake.fail"/> presents the technical details with abstract attack traces of the vulnerabilities.</t>
        </section>
        <section anchor="mitigation">
          <name>Mitigation</name>
          <t>Sec. 7.2 of <xref target="Intra-handshake.fail"/> presents the technical details of the proposed mitigation.</t>
        </section>
      </section>
      <section anchor="artifacts">
        <name>Artifacts</name>
        <t>Artifacts are available at <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 License.</t>
      </section>
    </section>
    <section anchor="sec-news">
      <name>Media Coverage</name>
      <t>Several cybersecurity and media professionals and bloggers have covered the vulnerabilities to protect the community from the harm of early attestation.</t>
      <t><strong>EarlyAttestationBleed</strong> <xref target="EarlyAttestationBleed"/></t>
      <ul spacing="normal">
        <li>
          <t>(German) <eref target="https://cybersecurity-news.de/cve-2026-92701-trusted-execution-environments-0-8-2/">Cybersecurity news (CVE-2026-92701)</eref></t>
        </li>
        <li>
          <t>(German) <eref target="https://cybersecurity-news.de/cve-2026-92702-cocos-ai-0-8-2/">Cybersecurity news (CVE-2026-92702)</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://www.anquan114.com/archives/7429">Security 114</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://mp.weixin.qq.com/s/31Glxqr6ofHylTyrtNsuaQ">OWASP</eref></t>
        </li>
      </ul>
      <t>If you have written an article on this and would like to be added here, please send us a PR at <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail">https://github.com/muhammad-usama-sardar/intra-handshake-fail</eref> or an email with the subject "Media coverage of EarlyAttestationBleed."</t>
      <t><strong>Intra-handshake.fail</strong> <xref target="Intra-handshake.fail"/></t>
      <ul spacing="normal">
        <li>
          <t><eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref></t>
        </li>
        <li>
          <t>(Japanese) <eref target="https://blackhatnews.tokyo/archives/119915">BlackHatNewsTokyo</eref></t>
        </li>
        <li>
          <t>(Several languages) <eref target="https://hackernoon.com/attested-tls-was-supposed-to-be-the-last-trust-boundary-it-isnt-formal-methods-show-how">Hackernoon</eref></t>
        </li>
        <li>
          <t><eref target="https://podcasts.apple.com/eg/podcast/attested-tls-was-supposed-to-be-the-last-trust/id1698517643?i=1000776623286">Apple podcast</eref></t>
        </li>
        <li>
          <t><eref target="https://meterpreter.org/attested-tls-vulnerability-cve-2026-33697/">Information Security News</eref></t>
        </li>
        <li>
          <t><eref target="https://thenextgentechinsider.com/pulse/critical-flaw-discovered-in-confidential-computing-attestation-protocols">TheNextGenTechInsider</eref></t>
        </li>
        <li>
          <t><eref target="https://dailysecurityreview.com/resources/cve-2026-33697-attested-tls-relay-flaw-hits-whatsapp-cocos-ai/">DailySecurityReview</eref></t>
        </li>
        <li>
          <t><eref target="https://www.scworld.com/brief/confidential-computings-remote-attestation-protocol-may-have-fundamental-flaw">SC World</eref></t>
        </li>
        <li>
          <t><eref target="https://blogs.groupware.org.uk/01-Quantum-Inc/the-handshake-that-cant-keep-its-promise-why-confidential-computings-flaw-changes-the-data-sovereignty-conversation/">01 Quantum</eref></t>
        </li>
        <li>
          <t>(Russian) <eref target="https://www.securitylab.ru/news/574545.php">Security Lab</eref></t>
        </li>
        <li>
          <t>(German) <eref target="https://www.blogspan.net/confidential-computing-attestierung-relay-luecke/">blogspan</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://finance.sina.cn/tech/2026-07-04/detail-inifscxt9953361.d.html">Sina</eref></t>
        </li>
        <li>
          <t><eref target="https://data4biz.com/articles/una-falla-rompe-la-fiducia-del-confidential-computing">data4biz</eref></t>
        </li>
        <li>
          <t>(Russian) <eref target="https://www.itsec.ru/news/issledovateli-nashli-kriticheskuyu-uyazvimost-v-attested-tls">ITSec</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://post.smzdm.com/p/a82ol990/">smzdm</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://www.donews.com/news/detail/4/6621022.html">donews</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://i.ifeng.com/c/8uUfy0PMmqE">ifeng</eref></t>
        </li>
        <li>
          <t><eref target="https://www.dugganusa.com/post/confidential-computing-s-whole-pitch-is-trust-the-proof-not-the-cloud-two-years-of-formal-verifi">dugganusa</eref></t>
        </li>
        <li>
          <t><eref target="https://github.com/pduggusa/dugganusa-ietf/tree/main/cve-2026-33697-attestation">dugganusa repo</eref></t>
        </li>
        <li>
          <t><eref target="https://sploitus.com/exploit?id=92591A05-07BC-5015-BA3D-B1347B35D684">spoitus</eref></t>
        </li>
        <li>
          <t><eref target="https://news.lavx.hu/article/attested-tls-research-exposes-a-weak-link-in-confidential-computing">lavx news</eref></t>
        </li>
        <li>
          <t><eref target="https://www.sohu.com/a/1045865934_122004016">sohu</eref></t>
        </li>
        <li>
          <t>(Persian) <eref target="https://news.ditty.ir/news/attested-tls-relay-flaw-formal-methods/019f6221-26ca-7293-9ee9-5557b3c0b8f8">news.ditty</eref></t>
        </li>
        <li>
          <t>(Russian) <eref target="https://limpvpn.com/ru/news/attested-tls-whatsapp-privacy-flaw-2026">LiMP VPN</eref></t>
        </li>
        <li>
          <t><eref target="https://daily.dev/posts/kI6PoNzPx">daily.dev</eref></t>
        </li>
        <li>
          <t><eref target="https://warden.veritai.ch/news/researchers-find-attested-tls-flaws-that-weaken-confidential-computing-trust-model">warden</eref></t>
        </li>
        <li>
          <t><eref target="https://db.gcve.eu/sightings/?query=cve-2026-33697">GCVE.eu</eref></t>
        </li>
        <li>
          <t><eref target="https://vulnerability.circl.lu/vuln/CVE-2026-33697#sightings">vuln.lu</eref></t>
        </li>
        <li>
          <t><eref target="https://coderlegion.com/24087/intra-handshake-attestation-when-more-security-doesnt-mean-better-security">coderlegion</eref></t>
        </li>
        <li>
          <t><eref target="https://www.anjuna.io/blog/attested-tls-flaw-explained">Anjuna Security</eref></t>
        </li>
        <li>
          <t><eref target="https://privasys.org/blog/binding-attestation-to-the-tls-session/">Privasys</eref></t>
        </li>
        <li>
          <t><eref target="https://caution.co/blog/steve-attesting-the-session.html">Caution</eref></t>
        </li>
        <li>
          <t><eref target="https://freenode.net/digest/67">freenode</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://blog.csdn.net/weixin_42376192/category_13096766.html">csdn</eref></t>
        </li>
        <li>
          <t><eref target="https://osintsights.com/confidential-computing-flaws-expose-trust-risks">osintsights</eref></t>
        </li>
        <li>
          <t>(Turkish) <eref target="https://hardwaremania.com/haber/arastirma-attested-tls-confidential-computing-icin-zayif-kaliyor/">hardwaremania</eref></t>
        </li>
        <li>
          <t><eref target="https://akber.com/sovereignty-in-the-cloud-is-an-illusion/">akber</eref></t>
        </li>
        <li>
          <t><eref target="https://www.ad-hoc-news.de/wissenschaft/cloud-souveraenitaet-red-hat-startet-reifegrad-assessments-gegen/69691475">ad-hoc news</eref></t>
        </li>
        <li>
          <t><eref target="https://aimultiple.com/privacy-enhancing-technologies">AIMultiple</eref></t>
        </li>
      </ul>
      <section anchor="security-researchers">
        <name>Security Researchers</name>
        <t>Several credible security researchers, such as the following, have publicly attested to it.</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://www.linkedin.com/posts/michaelpak_confidential-computings-core-trust-mechanism-activity-7479415537836376064-q-A4/">Michael Pak</eref></t>
          </li>
          <li>
            <t><eref target="https://www.linkedin.com/posts/rrbranco_one-more-evidence-that-there-is-no-such-a-share-7479582122366615552-X0A5/">Rodrigo Branco</eref></t>
          </li>
          <li>
            <t><eref target="https://www.linkedin.com/posts/bart-preneel-4451412_on-the-limits-of-confidential-computing-share-7479549718294077440-wfi3/">Bart Preneel</eref></t>
          </li>
          <li>
            <t><eref target="https://www.linkedin.com/in/strufe/recent-activity/all/">Thorsten Strufe</eref></t>
          </li>
        </ul>
      </section>
      <section anchor="germanys-bsi">
        <name>Germany's BSI</name>
        <t>Germany's Federal Office for Information Security (Bundesamt für Sicherheit in der Informationstechnik) has attested to it. Carina Hilt, deputy press spokesperson at BSI, told <eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref>:</t>
        <artwork><![CDATA[
CC alone cannot satisfy the requirements for digital sovereignty.
]]></artwork>
        <artwork><![CDATA[
dependencies on other services, such as identity and key
management etc., are also not mitigated by CC.
]]></artwork>
        <t>CC refers to Confidential Computing, and attested TLS is the core trust mechanism of CC.</t>
      </section>
    </section>
    <section anchor="reviews">
      <name>Reviews</name>
      <section anchor="conference-reviews">
        <name>Conference Reviews</name>
        <t><xref target="Intra-handshake.fail"/> has been peer-reviewed and accepted for publication at ESORICS 2026.</t>
      </section>
      <section anchor="ietfirtf">
        <name>IETF/IRTF</name>
        <t>Several participants of the IETF/IRTF have attested to the results by independently reproducing the results and reviewing the code. Some of the participants have independently reproduced the results by developing their own formal models and a proof-of-concept implementation of the vulnerabilities. Some of the messages are mentioned below (<strong>excluding</strong> the messages of authors of <xref target="Intra-handshake.fail"/>):</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/">https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/">https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/">https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/">https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/">https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/">https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/">https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/">https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/">https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/">https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/">https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/">https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/">https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/">https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/">https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/">https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/">https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/">https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/">https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/">https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/">https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/">https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/">https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/">https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/">https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/">https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/">https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/">https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/">https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/">https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/">https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/">https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/">https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/">https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/">https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/">https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/">https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/">https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/">https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/">https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/">https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/">https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/">https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/">https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/">https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/">https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/">https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/">https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/">https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/">https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/">https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/">https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/">https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/">https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/">https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/">https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/">https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/">https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/">https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/">https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/">https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/">https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3J3s_YFnf9IQ87Tv2c1q4f36xKQ/">https://mailarchive.ietf.org/arch/msg/seat/3J3s_YFnf9IQ87Tv2c1q4f36xKQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JWKMYY1YG1E2iS_HyQ4rDmOsDGw/">https://mailarchive.ietf.org/arch/msg/seat/JWKMYY1YG1E2iS_HyQ4rDmOsDGw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rK1nDSewAbVL_weOp98knYZcg6s/">https://mailarchive.ietf.org/arch/msg/seat/rK1nDSewAbVL_weOp98knYZcg6s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Wjuz0fIj8tjYocUmiZZXcSwwFHw/">https://mailarchive.ietf.org/arch/msg/seat/Wjuz0fIj8tjYocUmiZZXcSwwFHw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SYiV4KZNr20re6QkGmyWS3pPteA/">https://mailarchive.ietf.org/arch/msg/seat/SYiV4KZNr20re6QkGmyWS3pPteA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZYgxm1ibt6p4dL7xF1YNdl0XSpc/">https://mailarchive.ietf.org/arch/msg/seat/ZYgxm1ibt6p4dL7xF1YNdl0XSpc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/6LKgOp22YRxGTYb-i-BxiMGzMW4/">https://mailarchive.ietf.org/arch/msg/seat/6LKgOp22YRxGTYb-i-BxiMGzMW4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3oHcKPtXLfBUYCZoN1nnO6e1F-s/">https://mailarchive.ietf.org/arch/msg/seat/3oHcKPtXLfBUYCZoN1nnO6e1F-s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aSybH9ihnNjN7SjdhhY_XtxhMtc/">https://mailarchive.ietf.org/arch/msg/seat/aSybH9ihnNjN7SjdhhY_XtxhMtc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/d_G8r7LMGjA45BPexZwsfmmAtJY/">https://mailarchive.ietf.org/arch/msg/seat/d_G8r7LMGjA45BPexZwsfmmAtJY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/u-za86_YJ0spwBXBwTVQzwiOCrU/">https://mailarchive.ietf.org/arch/msg/seat/u-za86_YJ0spwBXBwTVQzwiOCrU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/P4IMdvCx8lSEKrCiJIjbpBCRr4g/">https://mailarchive.ietf.org/arch/msg/seat/P4IMdvCx8lSEKrCiJIjbpBCRr4g/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-AO9yFJoflV1wDwwch45dmqkmyo/">https://mailarchive.ietf.org/arch/msg/seat/-AO9yFJoflV1wDwwch45dmqkmyo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/H0LqHfBasQml69Y-9Zl_njfsE8s/">https://mailarchive.ietf.org/arch/msg/seat/H0LqHfBasQml69Y-9Zl_njfsE8s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3hOGlYyc_yntmvT0tjYxldlwaxM/">https://mailarchive.ietf.org/arch/msg/seat/3hOGlYyc_yntmvT0tjYxldlwaxM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JbwL9cdl6fiP0vBGgASUUDmaPy8/">https://mailarchive.ietf.org/arch/msg/seat/JbwL9cdl6fiP0vBGgASUUDmaPy8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/TtewHbMGKBQOKD2sqrgTrnpCOkI/">https://mailarchive.ietf.org/arch/msg/seat/TtewHbMGKBQOKD2sqrgTrnpCOkI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UsIj6o7wf4hX_uCL51TCTv-wFxU/">https://mailarchive.ietf.org/arch/msg/seat/UsIj6o7wf4hX_uCL51TCTv-wFxU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/a6c8D6PBDRe0x4DAqXM3t4EPc4c/">https://mailarchive.ietf.org/arch/msg/seat/a6c8D6PBDRe0x4DAqXM3t4EPc4c/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/prB537Jht2kELVCSrTRktjbp7Y4/">https://mailarchive.ietf.org/arch/msg/seat/prB537Jht2kELVCSrTRktjbp7Y4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/RPnKYfUCD_MRw3hnA00zg684yGM/">https://mailarchive.ietf.org/arch/msg/seat/RPnKYfUCD_MRw3hnA00zg684yGM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/nMH_0sLLU5MekoEnzWKJnIJmaSk/">https://mailarchive.ietf.org/arch/msg/seat/nMH_0sLLU5MekoEnzWKJnIJmaSk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/GJCA31mgAehlgFPRu_yHA10lKPI/">https://mailarchive.ietf.org/arch/msg/seat/GJCA31mgAehlgFPRu_yHA10lKPI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/9f-21JMK6s1Pdcob6mPo06rNwmQ/">https://mailarchive.ietf.org/arch/msg/seat/9f-21JMK6s1Pdcob6mPo06rNwmQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/8qq_GFT391IEbGZZQUtYMONX9U0/">https://mailarchive.ietf.org/arch/msg/seat/8qq_GFT391IEbGZZQUtYMONX9U0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xzu2UlClYMkG8gNSOClxGJgwnOI/">https://mailarchive.ietf.org/arch/msg/seat/xzu2UlClYMkG8gNSOClxGJgwnOI/</eref></t>
          </li>
          <li>
            <t>Exploit: <eref target="https://mailarchive.ietf.org/arch/msg/seat/MfxWpRtlTqPElX8vX4v8uiN65TU/">https://mailarchive.ietf.org/arch/msg/seat/MfxWpRtlTqPElX8vX4v8uiN65TU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/PkU0jW_xHAF18rZmtZJ2A2p_wHs/">https://mailarchive.ietf.org/arch/msg/seat/PkU0jW_xHAF18rZmtZJ2A2p_wHs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/jZmdYKQlfherbhowIEmZRw2HF1c/">https://mailarchive.ietf.org/arch/msg/seat/jZmdYKQlfherbhowIEmZRw2HF1c/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-0j6UpsD_CebqPPMNkDJCjySqEI/">https://mailarchive.ietf.org/arch/msg/seat/-0j6UpsD_CebqPPMNkDJCjySqEI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/ssDrZRFW4s6CSaYeA9ImH0PPQ10/">https://mailarchive.ietf.org/arch/msg/rats/ssDrZRFW4s6CSaYeA9ImH0PPQ10/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/OPBI_Wd-RoTzzdh5D0JZoWlNGI8/">https://mailarchive.ietf.org/arch/msg/rats/OPBI_Wd-RoTzzdh5D0JZoWlNGI8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/nfrdr1T9Pdp6D_kj2Et3XZk-hOY/">https://mailarchive.ietf.org/arch/msg/rats/nfrdr1T9Pdp6D_kj2Et3XZk-hOY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/gMMvtP1IXsXFfb0X5nMhRTaLLok/">https://mailarchive.ietf.org/arch/msg/rats/gMMvtP1IXsXFfb0X5nMhRTaLLok/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/yaGG4sVf4pCfJ0HNPPRv3Xg0cG8/">https://mailarchive.ietf.org/arch/msg/rats/yaGG4sVf4pCfJ0HNPPRv3Xg0cG8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/DaA1jDQNF-bdO5x-dkVbSzlHcD4/">https://mailarchive.ietf.org/arch/msg/rats/DaA1jDQNF-bdO5x-dkVbSzlHcD4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/ptkHZUDzSoYnD6R5zln6HcE1cv4/">https://mailarchive.ietf.org/arch/msg/rats/ptkHZUDzSoYnD6R5zln6HcE1cv4/</eref></t>
          </li>
        </ul>
        <section anchor="main-questions">
          <name>Main Questions</name>
          <t>In short, five main questions have been raised by WG participants in support of our work:</t>
          <ul spacing="normal">
            <li>
              <t>What <strong>security property</strong> hybrid (intra- + post-handshake attestation) provides that post-handshake attestation alone cannot provide?</t>
            </li>
            <li>
              <t>Since continuous attestation is required in most use cases <xref target="CSA-eBPF"/> <xref target="MITRE-Continuous-Attestation"/>, how is <strong>additional complexity</strong> of <strong>intra</strong>-handshake attestation justified? Use cases with one-time attestation can be covered by doing attestation round immediately after Connection Establishment Time: see <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-6-2">reference</eref>.</t>
            </li>
            <li>
              <t>What is the benefit of doing <strong>signatures</strong> of remote attestation <strong>within</strong> the handshake (as this latency can be exploited)? We add that <strong>verification</strong> of signatures is also time consuming, which can be exploited too. See <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-4.2.4">reference</eref>.</t>
            </li>
            <li>
              <t>How evidence is bound to the secure channel without involving any <strong>shared secret</strong>? See <xref target="TLS-RA"/>.</t>
            </li>
            <li>
              <t>How does a verifying relying party get the legitimate PIIDs and CHIP_IDs?</t>
            </li>
          </ul>
        </section>
        <section anchor="guidance-text">
          <name>Guidance Text</name>
          <ul spacing="normal">
            <li>
              <t>Evidence MUST be bound to the secure channel. Failure to do so results in
relay attacks <xref target="CVE-2026-33697"/>, <xref target="EUVD-2026-16488"/>, <xref target="GHSA-Cocos-AI"/>.</t>
            </li>
            <li>
              <t>Verifier MUST have access to legitimate hardware identifiers of the
Attester. Failure to do so results in relay attacks <xref target="GHSA-Edgeless-Systems"/>.</t>
            </li>
            <li>
              <t>Verifier MUST carefully check the binding. Failure to do so results in
relay attacks <xref target="GHSA-Cocos-AI2"/>, <xref target="GHSA-Cocos-AI3"/>.</t>
            </li>
            <li>
              <t>Binder MUST contain shared secrets. Failure to do so results in relay
attacks <xref target="GHSA-Privasys-rustls"/>, <xref target="GHSA-Privasys-go"/>, <xref target="GHSA-Privasys-eov"/>, <xref target="GHSA-Privasys-eom"/>, <xref target="GHSA-Privasys-rtc"/>, <xref target="GHSA-Privasys-rtc-da"/>, <xref target="GHSA-Privasys-rtc-tcu"/>.</t>
            </li>
          </ul>
        </section>
      </section>
      <section anchor="researchers-outside-of-ietfirtf">
        <name>Researchers outside of IETF/IRTF</name>
        <t>Some researchers have approached us confirming the proof-of-concept of the vulnerabilities in intra-handshake attestation. More information will be added once their pre-prints/papers are public.</t>
      </section>
    </section>
    <section anchor="security-considerations">
      <name>Security Considerations</name>
      <t>All of this document is about the <strong>insecurity</strong> of <strong>intra</strong>-handshake (aka early) attestation.</t>
      <t>By no means should the vendors mentioned in this draft be considered less secure than any other vendors implementing intra-handshake attestation solutions. In particular, those who have closed-source implementations are most likely more vulnerable than the open-source ones, since the former cannot easily be reviewed by the security community. Even extensive security reviews -- of closed-source implementations -- by cybersecurity firms often do not perform formal analysis, and thus such reviews may miss corner cases and subtle vulnerabilities.</t>
    </section>
    <section anchor="ethical-considerations">
      <name>Ethical Considerations</name>
      <t>We (i.e., the super set of all authors involved in this research, including but not limited to Muhammad Usama Sardar, Mariam Moustafa, Tuomas Aura, Viacheslav Dubeyko, Jean-Marie Jacquet, Songbo Bu, Chengxin Huang, Haowen Song, Kaya Ercihan, Massimiliano Brighindi, and Iman Schrock) are ethical researchers aiming to protect the community from the potential harm caused by the exploitability of the vulnerabilities in intra-handshake attestation. We have responsibly disclosed the vulnerabilities to the respective developers and maintainers following their respective disclosure processes and provided them our proposed mitigations and requested them to take rapid action.</t>
      <t>We have released only the formal analysis for published CVE-2026-33697. To minimize exploit in the wild, we have not publicly released the proof-of-concept exploit code.</t>
      <t>We have not retrieved any real data from any real system. We have not released any key to any public forum or to any person.</t>
      <section anchor="evidence-of-explanation-of-vulnerabilities-to-the-authors-of-vulnerable-drafts">
        <name>Evidence of Explanation of Vulnerabilities to the Authors of Vulnerable Drafts</name>
        <t>To the best of our abilities, knowledge, and understanding, we have tried to explain the vulnerabilities to the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> first privately in several meetings and then later on publicly for at least half a year at several forums, including but not limited to CCC Attestation SIG and IETF/IRTF. Please see the (non-exhaustive list of) recordings <xref target="sec-recordings"/> and the archives <xref target="sec-archives"/> below. We sincerely thank the authors of <xref target="I-D.fossati-tls-attestation-10"/> for withdrawing their draft to protect further exploits mentioned in <xref target="sec-news"/>.</t>
        <section anchor="sec-recordings">
          <name>Recordings</name>
          <table>
            <name>Evidence of several explanations of vulnerabilities to the authors of vulnerable drafts</name>
            <thead>
              <tr>
                <th align="left">Event/Host</th>
                <th align="left">Venue</th>
                <th align="left">Date(s)</th>
                <th align="left">Evidence</th>
              </tr>
            </thead>
            <tbody>
              <tr>
                <td align="left">System Boot and Security MC @ <eref target="https://lpc.events/event/20/">Linux Plumbers Conference 2026</eref></td>
                <td align="left">Prague, Czechia</td>
                <td align="left">5 Oct, 2026</td>
                <td align="left">
                  <eref target="https://lpc.events/event/20/contributions/2585/">abstract</eref>, slides, video</td>
              </tr>
              <tr>
                <td align="left">BoF @ <eref target="https://lpc.events/event/20/">Linux Plumbers Conference 2026</eref></td>
                <td align="left">Prague, Czechia</td>
                <td align="left">5 Oct, 2026</td>
                <td align="left">
                  <eref target="https://lpc.events/event/20/contributions/2640/">abstract</eref>, slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ga4gh.org/event/14th-plenary/">GA4GH 14th Plenary Meeting</eref></td>
                <td align="left">Singapore</td>
                <td align="left">28 Sept-2 Oct, 2026</td>
                <td align="left">slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fg-pet.gi.de/veranstaltung/16th-privacy-enhancing-techniques-convention">PET-CON 2026.2: 16th Privacy Enhancing Techniques Convention</eref></td>
                <td align="left">Lübeck, Germany</td>
                <td align="left">28-29 Sept, 2026</td>
                <td align="left">slides</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://sites.google.com/di.uniroma1.it/esorics2026/">ESORICS 2026</eref></td>
                <td align="left">Rome, Italy</td>
                <td align="left">14-18 Sept, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/414416257_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">slides</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/session/rats">IETF RATS Interim meeting</eref></td>
                <td align="left">Virtual</td>
                <td align="left">14 Sept, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/materials/slides-interim-2026-rats-03-sessa-protecting-the-rats-ecosystem-from-critical-severity-vulnerabilities-00">slides</eref>, <eref target="https://youtu.be/y5_SR0-DzH0?t=255">video</eref></td>
              </tr>
              <tr>
                <td align="left">Hackathon @ <eref target="https://summit.riot-os.org/2026/">RIOT Summit 2026</eref></td>
                <td align="left">Grenoble, France</td>
                <td align="left">4 September, 2026</td>
                <td align="left">
                  <eref target="https://notes.inria.fr/2ppogr2fTSKusRog3RXbPQ?view#topic-security-analysis-of-attested-tls-and-attested-edhoc">topic synopsis</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://summit.riot-os.org/2026/">RIOT Summit 2026</eref></td>
                <td align="left">Grenoble, France</td>
                <td align="left">2-4 September, 2026</td>
                <td align="left">
                  <eref target="https://summit.riot-os.org/2026/blog/speakers/muhammad-usama-sardar/">abstract</eref>, <eref target="https://www.researchgate.net/publication/413988306_Security_Analysis_of_Attested_TLS_and_Attested_EDHOC">slides</eref>, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ga4gh.org/work_stream/data-security/">Data Security Work Stream (DSWS)</eref> at the <eref target="https://www.ga4gh.org/">Global Alliance for Genomics and Health (GA4GH)</eref></td>
                <td align="left">Virtual</td>
                <td align="left">24 Aug, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/413569575_High-Severity_Vulnerabilities_in_Former_GIF_Design_for_Attested_TLS_draft-fossati-seat-early-attestation">slides</eref>, <eref target="https://us02web.zoom.us/rec/share/UAn381deia-aMNmjGHhMqxocc1HcyF7ksLlaeeKefxO4bSC2mHPzwPQPYGe2dnZR.zfleYCmmtiteo_NS">video</eref></td>
              </tr>
              <tr>
                <td align="left">Confidential AI Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">21 July, 2026</td>
                <td align="left">
                  <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/odgd_xmhjQXiR_aLYdqtVvDJeF4/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">21 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-seat-binding-properties-of-expat-00.pdf">slides</eref>, <eref target="https://youtu.be/Fb5Hzh1mp1E?t=4189">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">IETF 126 Hackdemo Happy Hour</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">20 July, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">demo</eref></td>
              </tr>
              <tr>
                <td align="left">Confidential Computing Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">20 July, 2026</td>
                <td align="left">
                  <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hotrfc-sessa-15-confidential-computing-and-digital-sovereignty-00">slides</eref>, <eref target="https://youtu.be/FDHWRijxKso?t=3285">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ietf.org/meeting/hackathons/126-hackathon/">IETF 126 Hackathon</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hackathon-sessd-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/GRqyrDIEgEw?t=1340">video</eref></td>
              </tr>
              <tr>
                <td align="left">IEPG @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/g8q_u19vXzk?t=4404">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">Workshop</eref> @ <eref target="https://www.wissenschaftsnacht-dresden.de/en/">Dresden Science Night 2026</eref></td>
                <td align="left">Dresden</td>
                <td align="left">26 June, 2026</td>
                <td align="left">
                  <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">demo</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://output-dd.de/">Output 2026</eref></td>
                <td align="left">Dresden</td>
                <td align="left">25 June, 2026</td>
                <td align="left">
                  <eref target="https://output-dd.de/projekte/relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems/">demo</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://events.linuxfoundation.org/confidential-computing-summit/">Confidential Computing Summit 2026</eref> (presented by Jens Albers)</td>
                <td align="left">San Francisco, USA</td>
                <td align="left">23-24 June, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411851358_Standardization_of_Attested_TLS">poster</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://confidentialcontainers.org/">Confidential Containers Community Meeting</eref> @ <eref target="https://www.cncf.io/">Cloud Native Computing Foundation</eref></td>
                <td align="left">Virtual</td>
                <td align="left">30 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411849492_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref>, <eref target="https://zoom.us/rec/share/3thZhsRi-BZJL-GqjnwGzh7inbltuKIlpVjqMlWp6WRdMTZ66Z8p-8YjaaeOfbhX.CoH6YBukaKua0gkt">video</eref> around timestamp 00:27:00</td>
              </tr>
              <tr>
                <td align="left">GIF Project showcase @ <eref target="https://www.ga4gh.org/event/april-connect-2026/">GA4GH April Connect 2026</eref></td>
                <td align="left">Montreal, Canada (virtual)</td>
                <td align="left">17 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/412136610_Trusted_Research_Environment_TRE_Open_Suite">slides</eref>, <eref target="https://youtu.be/Kr9oxp1fdn0?t=1083">video</eref>, <eref target="https://www.ga4gh.org/document/arpril-connect-2026-meeting-report/">report</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://sos-vo.org/group/hotsos/">NSA Symposium on Hot Topics in the Science of Security (HotSoS) 2026</eref></td>
                <td align="left">Virtual</td>
                <td align="left">16 April, 2026</td>
                <td align="left">
                  <eref target="https://sos-vo.org/group/hotsos/2026/sardar">abstract</eref>, <eref target="https://sos-vo.org/system/files/2026-04/20260416_HotSoS%20%281%29.pdf">slides</eref>, <eref target="https://sos-vo.org/group/hotsos/2026/sardar">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fg-pet.gi.de/veranstaltung/15th-privacy-enhancing-techniques-convention">PET-CON 2026.1: 15th Privacy Enhancing Techniques Convention</eref></td>
                <td align="left">Karlsruhe, Germany</td>
                <td align="left">16-17 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411849502_Formal_Analysis_of_Attested_TLS">slides</eref>, <eref target="https://www.researchgate.net/publication/411852738_Formal_Analysis_of_Attested_TLS_and_Standardization_in_the_IETF">poster</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://gtmfs2026.sciencesconf.org/program?lang=en">GTMFS 2026: Annual Meeting of the WG "Formal Methods in Security"</eref></td>
                <td align="left">Luz-Saint-Sauveur, France</td>
                <td align="left">24-26 Mar, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411853715_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref></td>
              </tr>
              <tr>
                <td align="left">CFRG @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">19 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-cfrg-relay-attacks-00">slides</eref>, <eref target="https://youtu.be/IfKgbO74Lt4?t=6054">video</eref></td>
              </tr>
              <tr>
                <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref> (relay)</td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">17 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-seat-security-analysis-00">slides</eref>, <eref target="https://youtu.be/hX7genEkN7w?t=676">video</eref></td>
              </tr>
              <tr>
                <td align="left">Side meeting @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">16 Mar, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/403474373_Proposed_RG_Confidential_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">LAKE @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">16 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-lake-formal-analysis-of-attested-edhoc-00">slides</eref>, <eref target="https://youtu.be/JzfLpbnhl0A?t=3117">video</eref></td>
              </tr>
              <tr>
                <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">15 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hotrfc-sessa-formal-proof-of-insecurity-of-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/OtOo7Nogisw?t=3514">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ietf.org/meeting/hackathons/125-hackathon/">IETF 125 Hackathon</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">14-15 Mar, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/125/hackathon#relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hackathon-sessd-relay-attacks-in-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/62A58qH19MI?t=2270">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">10 Feb, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksGen_20260210.pdf">slides</eref>; <eref target="https://www.youtube.com/watch?v=idqwb0hFlhs&amp;list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1061s">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/session/rats">IETF RATS Interim meeting</eref></td>
                <td align="left">Virtual</td>
                <td align="left">9 Feb, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/materials/slides-interim-2026-rats-01-sessa-relayattacks-00.pdf">slides</eref>, <eref target="https://youtu.be/gURY61dViPw?t=1474">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fosdem.org/2026/schedule/track/confidential-computing/">Confidential Computing</eref> devroom at <eref target="https://fosdem.org/2026/">FOSDEM 2026</eref></td>
                <td align="left">Brussels, Belgium</td>
                <td align="left">31 Jan-1 Feb, 2026</td>
                <td align="left">
                  <eref target="https://fosdem.org/2026/schedule/event/GHGFBM-attestedtls/">abstract</eref>, <eref target="https://fosdem.org/2026/events/attachments/GHGFBM-attestedtls/slides/267432/20260201_60u9e0n.pdf">slides</eref>, <eref target="https://video.fosdem.org/2026/ud6215/GHGFBM-attestedtls.av1.webm">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">27 Jan, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksProposal_20260127.pdf">slides</eref>; <eref target="https://youtu.be/P04tLJcSxfM?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=434">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">13 Jan, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacks_20260113.pdf">slides</eref>; <eref target="https://youtu.be/cSrCZNyo7_g?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1083">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">16 Dec, 2025</td>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MuhammadUsamaSardar_Binding_Properties_20251216.pdf">slides</eref>; <eref target="https://youtu.be/w_MrjMeHyP8?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=593">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">2 Dec, 2025</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_Open_Questions_20251202.pdf">slides</eref>; <eref target="https://youtu.be/16aGZ-oZidg?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=2920">video</eref></td>
              </tr>
            </tbody>
          </table>
        </section>
        <section anchor="sec-archives">
          <name>Archives</name>
          <t>Since January, we have publicly informed the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> and shared our results with the community for review and to raise awareness on high-severity vulnerabilities and apply appropriate mitigations for the safety of their users:</t>
          <section anchor="intra-handshakefail">
            <name>Intra-handshake.fail</name>
            <section anchor="ietfhttpswwwietforg">
              <name><eref target="https://www.ietf.org/">IETF</eref></name>
              <ul spacing="normal">
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">SEAT WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">RATS WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/tls/8lyqHh9y7_Lv6b1iXhpUqYrp0M0/">TLS WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/lake/Tovtl7wgvzwJWT2I2ZwnhoIOnYQ/">LAKE WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/saag/jBZVk7YySwpaFqydAfxW33kNZPY/">SAAG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/practical-cybersecurity/d65WPaC0WbZRwxTBclnTkf7SmRs/">Practical Cybersecurity list</eref></t>
                </li>
                <li>
                  <t>Agent2agent list <eref target="https://mailarchive.ietf.org/arch/msg/agent2agent/ubz7uXCs--YzuSWyXNNsmWf_tSQ/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/agent2agent/xHhjA94fzed6ONIvPRgwTT-WRmA/">thread2</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/dmsc/QC2adIcYkxiTlniEcc7ggk86BAY/">DSMC list</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/hackathon/PIrJ2O_QqcNUAnMIn_Vh22ImWMc/">Hackathon</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">126attendees</eref></t>
                </li>
              </ul>
            </section>
            <section anchor="irtfhttpswwwirtforg">
              <name><eref target="https://www.irtf.org/">IRTF</eref></name>
              <ul spacing="normal">
                <li>
                  <t>UFMRG: <eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZWK0uMM92OdwlPbgXBvQApDpe5Q/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZRhR7o1HrWxfGDfgRJMR65RBkDE/">thread2</eref></t>
                </li>
                <li>
                  <t>CFRG <eref target="https://mailarchive.ietf.org/arch/msg/cfrg/NbxHIw9H_xpSYbgfO_n7lVIFeWs/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">thread2</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/din/_8LE3Ru1xX16hgGJwryMTRwRoaA/">DINRG</eref></t>
                </li>
              </ul>
            </section>
            <section anchor="ccchttpsconfidentialcomputingio">
              <name><eref target="https://confidentialcomputing.io/">CCC</eref></name>
              <ul spacing="normal">
                <li>
                  <t>Attestation SIG: <eref target="https://lists.confidentialcomputing.io/g/attestation/topic/117207133">thread1</eref> and <eref target="https://lists.confidentialcomputing.io/g/attestation/message/334">thread2</eref></t>
                </li>
                <li>
                  <t>TAC: <eref target="https://lists.confidentialcomputing.io/g/tac/topic/117932193">thread1</eref> and <eref target="https://lists.confidentialcomputing.io/g/tac/topic/120068850">thread2</eref></t>
                </li>
              </ul>
            </section>
            <section anchor="ocphttpswwwopencomputeorg">
              <name><eref target="https://www.opencompute.org/">OCP</eref></name>
              <ul spacing="normal">
                <li>
                  <t>OCP Security: <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/117932716">message1</eref>, <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120069056">message2</eref>, <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120483814">message3</eref> and <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120524635">message4</eref></t>
                </li>
              </ul>
              <t>If you know any other relevant mailing list that we should inform for protection of users, please let us know.</t>
            </section>
          </section>
          <section anchor="earlyattestationbleed">
            <name>EarlyAttestationBleed</name>
            <ul spacing="normal">
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZQKdp07P4UeTushAC1q9eBBtp0s/">IRTF UFMRG</eref></t>
              </li>
              <li>
                <t><eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/materials/slides-interim-2026-rats-03-sessa-protecting-the-rats-ecosystem-from-critical-severity-vulnerabilities-00">IETF RATS</eref></t>
              </li>
              <li>
                <t><eref target="https://ocp-all.groups.io/g/OCP-Security/message/1263">OCP Security</eref></t>
              </li>
              <li>
                <t><eref target="https://sympa.inria.fr/sympa/arc/proverif/2026-09/msg00000.html">ProVerif</eref></t>
              </li>
            </ul>
          </section>
        </section>
      </section>
    </section>
    <section anchor="contributions">
      <name>Contributions</name>
      <t>Contributions to the draft are welcome at <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail">https://github.com/muhammad-usama-sardar/intra-handshake-fail</eref>.</t>
      <t>Wenn Sie nur Deutsch sprechen, können Sie sich gerne per E-Mail an den Erstautor wenden. Wir haben Mitglieder, die Ihnen bei der Übersetzung Ihres Beitrags helfen können.</t>
    </section>
    <section anchor="iana-considerations">
      <name>IANA Considerations</name>
      <t>This document has no IANA actions.</t>
    </section>
  </middle>
  <back>
    <references anchor="sec-combined-references">
      <name>References</name>
      <references anchor="sec-normative-references">
        <name>Normative References</name>
        <reference anchor="Intra-handshake.fail" target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="June"/>
          </front>
        </reference>
        <reference anchor="Intra-handshake.fail-repo" target="https://github.com/muhammad-usama-sardar/intra-handshake.fail">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="July"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-33697" target="https://www.cve.org/CVERecord?id=CVE-2026-33697">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-16488" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-16488">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-92701" target="https://www.cve.org/CVERecord?id=CVE-2026-92701">
          <front>
            <title>Cocos AI Intra-handshake attested TLS implementation is vulnerable to session-misbinding attacks for Intel TDX verifier path</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-92702" target="https://www.cve.org/CVERecord?id=CVE-2026-92702">
          <front>
            <title>Cocos AI Intra-handshake attested TLS implementation can accept Evidence with nil, empty, or omitted reportData in the AMD SEV-SNP path</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-83194" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-83194">
          <front>
            <title>EUVD-2026-83194</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-83192" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-83192">
          <front>
            <title>EUVD-2026-83192</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-vfgg-mvxx-mgg7">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI2" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-4px3-wj2x-xx47">
          <front>
            <title>Cocos AI intra-handshake attested TLS implementation is vulnerable to session-misbinding attacks for Intel TDX verifier path</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI3" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-4r6g-mp48-j2rw">
          <front>
            <title>Cocos AI intra-handshake attested TLS implementation can accept Evidence with nil, empty, or omitted reportData in the AMD SEV-SNP path</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-hjgc-jc5v-fw7h">
          <front>
            <title>Remote attestation is susceptible to relay attacks</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems2" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-m2qg-wrxv-h898">
          <front>
            <title>Generated policies don't detect all image substitutions</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="SEAT-vulnerability-report" target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">
          <front>
            <title>Relay Attacks in Intra-handshake Attestation for Confidential Agentic AI Systems</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <date year="2026" month="January"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rustls" target="https://github.com/Privasys/rustls/security/advisories/GHSA-j6qv-435v-r492">
          <front>
            <title>Privasys RA-TLS challenge mode did not bind attestation evidence to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-go" target="https://github.com/Privasys/go/security/advisories/GHSA-7jfw-53rm-phh2">
          <front>
            <title>Privasys Go fork: RA-TLS challenge mode did not bind attestation evidence to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-eov" target="https://github.com/Privasys/enclave-os-virtual/security/advisories/GHSA-p5fp-g94g-g9m9">
          <front>
            <title>enclave-os-virtual: RA-TLS challenge certificates were not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-eom" target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-49qm-4pj3-w2c6">
          <front>
            <title>enclave-os-mini: RA-TLS challenge certificates were not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-5qrc-v874-mxvx">
          <front>
            <title>ra-tls-clients: RA-TLS challenge verifier accepted quotes not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc-da" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-pj2x-5wqv-fh57">
          <front>
            <title>Privasys Intra-handshake attested TLS implementation is vulnerable to Diversion Attacks</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc-tcu" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-gg8q-mfhh-wrrc">
          <front>
            <title>Privasys Intra-handshake attested TLS implementation is vulnerable to TOCTOU Attacks</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="ID-Crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author fullname="Muhammad Usama Sardar" initials="M." surname="Sardar">
              <organization>TU Dresden, Dresden, Germany</organization>
            </author>
            <author fullname="Mariam Moustafa" initials="M." surname="Moustafa">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <author fullname="Tuomas Aura" initials="T." surname="Aura">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <date month="June" year="2026"/>
          </front>
          <seriesInfo name="Proceedings of the ACM Asia Conference on Computer and Communications Security" value="pp. 547-560"/>
          <seriesInfo name="DOI" value="10.1145/3779208.3785387"/>
          <refcontent>ACM</refcontent>
        </reference>
        <reference anchor="ID-Crisis-repo" target="https://github.com/CCC-Attestation/formal-spec-id-crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="M." surname="Moustafa">
              <organization/>
            </author>
            <author initials="T." surname="Aura">
              <organization/>
            </author>
            <date year="2025" month="November"/>
          </front>
        </reference>
        <reference anchor="refTLS">
          <front>
            <title>Verified Models and Reference Implementations for the TLS 1.3 Standard Candidate</title>
            <author fullname="Karthikeyan Bhargavan" initials="K." surname="Bhargavan">
              <organization/>
            </author>
            <author fullname="Bruno Blanchet" initials="B." surname="Blanchet">
              <organization/>
            </author>
            <author fullname="Nadim Kobeissi" initials="N." surname="Kobeissi">
              <organization/>
            </author>
            <date month="May" year="2017"/>
          </front>
          <seriesInfo name="2017 IEEE Symposium on Security and Privacy (SP)" value="pp. 483-502"/>
          <seriesInfo name="DOI" value="10.1109/sp.2017.26"/>
          <refcontent>IEEE</refcontent>
        </reference>
        <reference anchor="TLS-RA" target="https://www.usenix.org/conference/atc25/presentation/weinhold">
          <front>
            <title>Separate but together: integrating remote attestation into TLS</title>
            <author initials="" surname="Carsten Weinhold">
              <organization/>
            </author>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="" surname="Ionuț Mihalcea">
              <organization/>
            </author>
            <author initials="" surname="Yogesh Deshpande">
              <organization/>
            </author>
            <author initials="" surname="Hannes Tschofenig">
              <organization/>
            </author>
            <author initials="" surname="Yaron Sheffer">
              <organization/>
            </author>
            <author initials="" surname="Thomas Fossati">
              <organization/>
            </author>
            <author initials="" surname="Michael Roitzsch">
              <organization/>
            </author>
            <date year="2025" month="July"/>
          </front>
        </reference>
        <reference anchor="CSA-eBPF" target="https://cloudsecurityalliance.org/blog/2026/09/09/mitre-s-new-framework-securing-the-ebpf-layer-your-ai-depends-on">
          <front>
            <title>MITRE's New Framework: Securing the eBPF Layer Your AI Depends On</title>
            <author initials="" surname="Cloud Security Alliance">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="MITRE-Continuous-Attestation" target="https://www.mitre.org/news-insights/publication/framework-continuous-remote-attestation">
          <front>
            <title>Framework for Continuous Remote Attestation</title>
            <author initials="" surname="MITRE's Confidential Computing Layered Attestation Working Group">
              <organization/>
            </author>
            <date year="2026" month="July"/>
          </front>
        </reference>
        <reference anchor="EarlyAttestationBleed" target="https://www.researchgate.net/publication/414529199_EarlyAttestationBleed_Three_Critical-severity_Vulnerabilities_of_CVSS_90_in_Confidential_Computing">
          <front>
            <title>EarlyAttestationBleed: Three Critical-severity Vulnerabilities of CVSS ≥ 9.0 in Confidential Computing</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="" surname="Songbo Bu">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
      </references>
      <references anchor="sec-informative-references">
        <name>Informative References</name>
        <reference anchor="I-D.fossati-seat-early-attestation">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="20" month="September" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a TLS extension that
   enables the negotiation and binding of the TLS authentication key to
   a remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   This extension has been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-07"/>
        </reference>
        <reference anchor="I-D.fossati-seat-early-attestation-04">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="27" month="May" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a series of TLS
   extensions that enable the binding of the TLS authentication key to a
   remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   These extensions have been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-04"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-06">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="19" month="March" year="2024"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-06"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-09">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="30" month="April" year="2025"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-09"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-10">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="23" month="July" year="2026"/>
            <abstract>
              <t>   This draft has been withdrawn.

About This Document

   This note is to be removed before publishing as an RFC.

   Status information for this document may be found at
   https://datatracker.ietf.org/doc/draft-fossati-tls-attestation/.

   Source for this draft and an issue tracker can be found at
   https://github.com/yaronf/draft-tls-attestation.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-10"/>
        </reference>
        <reference anchor="I-D.ritz-seat-facts">
          <front>
            <title>Factor-based Attestation and Credential Transport Scheme (FACTS) over TLS 1.3</title>
            <author fullname="Nathanael Ritz" initials="N." surname="Ritz">
              <organization>Independent</organization>
            </author>
            <date day="1" month="March" year="2026"/>
            <abstract>
              <t>   This document describes FACTS (Factor-based Attestation and
   Credential Transport Scheme) over TLS 1.3.  Conceptually acting as
   "multi-factor authentication" for machine identities, factor-based
   attestation derives session trust from multiple independent
   cryptographic inputs rather than a single point of failure.
   Specifically, it utilizes a dual-key scheme that binds identity to
   attestation evidence through the use of key encapsulation material
   keys (KEM) and traditional identity signing keys (IK), establishing
   per-session freshness.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ritz-seat-facts-00"/>
        </reference>
      </references>
    </references>
    <?line 1008?>

<section numbered="false" anchor="acknowledgments">
      <name>Acknowledgments</name>
      <t>Acknowledgment does not necessarily imply attestation. It implies that the authors found the feedback and discussion useful in improving the formal analysis, the corresponding paper, or this draft.</t>
      <t>This draft benefits from several years of research on attested TLS, in particular some of the recent works mentioned below:</t>
      <t><strong>EarlyAttestationBleed</strong> <xref target="EarlyAttestationBleed"/></t>
      <t>We wish to express our sincere appreciation to the following for their review:</t>
      <ul spacing="normal">
        <li>
          <t>Sammy Kerata Oina</t>
        </li>
        <li>
          <t>Drasko Draskovic</t>
        </li>
        <li>
          <t>Markus Rudy</t>
        </li>
        <li>
          <t>Bertrand Foing</t>
        </li>
        <li>
          <t>Peg Jones</t>
        </li>
        <li>
          <t>Rebekah Overdorf</t>
        </li>
        <li>
          <t>Tobias Pulls</t>
        </li>
      </ul>
      <t><strong>Intra-handshake.fail</strong> <xref target="Intra-handshake.fail"/></t>
      <t>We gratefully acknowledge the following for insightful discussions and helpful reviews on <xref target="Intra-handshake.fail"/>:</t>
      <ul spacing="normal">
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Juho Forsén</t>
        </li>
        <li>
          <t>Markus Rudy</t>
        </li>
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Steve Kremer</t>
        </li>
        <li>
          <t>Tjaden Hess</t>
        </li>
        <li>
          <t>Martin Thomson</t>
        </li>
        <li>
          <t>Yuning Jiang</t>
        </li>
        <li>
          <t>Pavel Nikonorov</t>
        </li>
        <li>
          <t>Casey Wilson</t>
        </li>
        <li>
          <t>Anonymous ESORICS 2026 reviewers</t>
        </li>
        <li>
          <t>Marco Anisetti (ESORICS 2026 shepherd)</t>
        </li>
        <li>
          <t>Danko Miladinovic</t>
        </li>
        <li>
          <t>Rongkuan He</t>
        </li>
        <li>
          <t>Peeter Laud</t>
        </li>
        <li>
          <t>Stephen Holmes</t>
        </li>
        <li>
          <t>Ammara Gul</t>
        </li>
        <li>
          <t>Atul Prakash</t>
        </li>
        <li>
          <t>Paul Syverson</t>
        </li>
        <li>
          <t>Jan Tobias Muehlberg</t>
        </li>
        <li>
          <t>John Preuß Mattsson</t>
        </li>
        <li>
          <t>Britta Hale</t>
        </li>
        <li>
          <t>Werner Staub</t>
        </li>
        <li>
          <t>Songbo Bu</t>
        </li>
        <li>
          <t>Haowen Song</t>
        </li>
        <li>
          <t>Chengxin Huang</t>
        </li>
        <li>
          <t>Steve Luo</t>
        </li>
        <li>
          <t>Andrew Miller</t>
        </li>
        <li>
          <t>Kubilay Ahmet Küçük</t>
        </li>
        <li>
          <t>Iman Schrock</t>
        </li>
        <li>
          <t>Sophie Schmieg</t>
        </li>
        <li>
          <t>Davyd Okaianchenko</t>
        </li>
        <li>
          <t>Alistair Woodman</t>
        </li>
        <li>
          <t>Göran Selander</t>
        </li>
        <li>
          <t>Tom Sato</t>
        </li>
        <li>
          <t>Jakub Maria Plutowski</t>
        </li>
        <li>
          <t>Martin Friedrich</t>
        </li>
        <li>
          <t>Patrick Duggan</t>
        </li>
        <li>
          <t>Deb Cooley</t>
        </li>
      </ul>
      <t><strong>Identity Crisis</strong> <xref target="ID-Crisis"/></t>
      <t>We would like to thank our co-authors of paper <xref target="ID-Crisis"/> for their valuable contributions:</t>
      <ul spacing="normal">
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Tuomas Aura</t>
        </li>
      </ul>
      <t>We also gratefully acknowledge the following for insightful discussions and helpful feedback:</t>
      <ul spacing="normal">
        <li>
          <t>Ionut Mihalcea</t>
        </li>
        <li>
          <t>Jean-Marie Jacquet</t>
        </li>
        <li>
          <t>Thomas Fossati</t>
        </li>
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Hannes Tschofenig</t>
        </li>
        <li>
          <t>Yaron Sheffer</t>
        </li>
        <li>
          <t>Laurence Lundblade</t>
        </li>
        <li>
          <t>Giridhar Mandyam</t>
        </li>
        <li>
          <t>Christopher Patton</t>
        </li>
        <li>
          <t>Jonathan Hoyland</t>
        </li>
        <li>
          <t>Richard Barnes</t>
        </li>
      </ul>
      <t><strong>refTLS</strong> <xref target="refTLS"/></t>
      <t>We sincerely thank the following for the foundational formal model of draft 20 of TLS 1.3 in their work <xref target="refTLS"/> that we have used as the foundation of all of this work:</t>
      <ul spacing="normal">
        <li>
          <t>Karthikeyan Bhargavan</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Nadim Kobeissi</t>
        </li>
      </ul>
      <t><strong>General</strong></t>
      <t>Several others at the IETF, IRTF, CCC, and GA4GH have contributed by providing feedback over the years. A non-exhaustive list of contributors is <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00#page=17">here</eref>.</t>
      <t>Muhammad Usama Sardar is funded by German Research Foundation ("Deutsche Forschungsgemeinschaft.")</t>
    </section>
  </back>
  <!-- ##markdown-source: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-->

</rfc>
