<?xml version='1.0' encoding='utf-8'?>
<!DOCTYPE rfc [
  <!ENTITY nbsp    "&#160;">
  <!ENTITY zwsp   "&#8203;">
  <!ENTITY nbhy   "&#8209;">
  <!ENTITY wj     "&#8288;">
]>
<?xml-stylesheet type="text/xsl" href="rfc2629.xslt" ?>
<!-- generated by https://github.com/cabo/kramdown-rfc version 1.7.43 (Ruby 3.4.9) -->
<rfc xmlns:xi="http://www.w3.org/2001/XInclude" ipr="trust200902" docName="draft-intra-handshake-fail-44" category="info" submissionType="IETF" tocInclude="true" sortRefs="true" symRefs="true" version="3">
  <!-- xml2rfc v2v3 conversion 3.34.1 -->
  <front>
    <title abbrev="Early Attestation Considered Harmful">Early Attestation Considered Very Harmful (CVE-2026-92701 of CVSS 9.1, CVE-2026-92702 of CVSS 9.1, CVE-2026-33697 of CVSS 7.5, and 37 other CVEs of up to expected CVSS 10.0 upcoming)</title>
    <seriesInfo name="Internet-Draft" value="draft-intra-handshake-fail-44"/>
    <author fullname="Muhammad Usama Sardar">
      <organization abbrev="TU Dresden">Technical University of Dresden</organization>
      <address>
        <postal>
          <city>Dresden</city>
          <code>01187</code>
          <country>Germany</country>
        </postal>
        <email>muhammad_usama.sardar@tu-dresden.de</email>
      </address>
    </author>
    <author fullname="Viacheslav Dubeyko">
      <organization>CoreWeave</organization>
      <address>
        <email>slava@dubeyko.com</email>
      </address>
    </author>
    <author fullname="Jean-Marie Jacquet">
      <organization>University of Namur</organization>
      <address>
        <postal>
          <city>Namur</city>
          <country>Belgium</country>
        </postal>
        <email>jean-marie.jacquet@unamur.be</email>
      </address>
    </author>
    <author fullname="Songbo Bu">
      <organization>Shanghai Guan An Information Technology Co., Ltd.</organization>
      <address>
        <postal>
          <country>China</country>
        </postal>
        <email>bluedognull@gmail.com</email>
      </address>
    </author>
    <author fullname="Chengxin Huang">
      <organization>Independent</organization>
      <address>
        <email>aurestarnull@gmail.com</email>
      </address>
    </author>
    <author fullname="Haowen Song">
      <organization>Shanghai Guan An Information Technology Co., Ltd.</organization>
      <address>
        <postal>
          <country>China</country>
        </postal>
        <email>havan12050544@gmail.com</email>
      </address>
    </author>
    <author fullname="Kaya Ercihan">
      <organization>Switch</organization>
      <address>
        <postal>
          <city>Zurich</city>
          <country>Switzerland</country>
        </postal>
        <email>kaya.ercihan@switch.ch</email>
      </address>
    </author>
    <author initials="D. K. A." surname="Küçük" fullname="Dr Kubilay Ahmet Küçük">
      <organization>DPhil Oxford University</organization>
      <address>
        <email>dr.kucuk@oxfordalumni.org</email>
      </address>
    </author>
    <author fullname="Serhii Nikolaichuk">
      <organization>The Capital Index</organization>
      <address>
        <postal>
          <city>Austin, Texas</city>
          <country>USA</country>
        </postal>
        <email>nikolaichuk.s.f@gmail.com</email>
      </address>
    </author>
    <author fullname="Sylvain Bellemare">
      <organization>Sureshot Labs</organization>
      <address>
        <postal>
          <country>Japan</country>
        </postal>
        <email>sbellem@gmail.com</email>
      </address>
    </author>
    <author initials="E. C. M." surname="Willems" fullname="Eva C. M. Willems">
      <organization>Independent</organization>
      <address>
        <postal>
          <country>Netherlands</country>
        </postal>
        <email>evac.m.willems@proton.me</email>
      </address>
    </author>
    <author fullname="Justin DESSENNES SAINTEN">
      <organization>Independent Corporate Risk Consultant</organization>
      <address>
        <postal>
          <city>Paris</city>
          <country>France</country>
        </postal>
        <email>dessennes_sainten@msn.com</email>
      </address>
    </author>
    <author fullname="Massimiliano Brighindi">
      <organization>PHI-OMEGA</organization>
      <address>
        <postal>
          <city>San Benedetto del Tronto</city>
          <country>Italy</country>
        </postal>
        <email>phiomega.runtime@gmail.com</email>
      </address>
    </author>
    <author fullname="Mikerah Quintyne-Collins">
      <organization>HashCloak Inc and Stoffel Labs Inc</organization>
      <address>
        <postal>
          <country>Canada</country>
        </postal>
        <email>mikerah@hashcloak.com</email>
      </address>
    </author>
    <author fullname="Iman Schrock">
      <organization>EMILIA Protocol, Inc.</organization>
      <address>
        <email>team@emiliaprotocol.ai</email>
      </address>
    </author>
    <date year="2026" month="September" day="25"/>
    <workgroup>SEAT</workgroup>
    <keyword>AI agents</keyword>
    <keyword>Intra-handshake attestation</keyword>
    <keyword>Early attestation</keyword>
    <keyword>CVE-2026-33697</keyword>
    <keyword>CVE-2026-92701</keyword>
    <keyword>CVE-2026-92702</keyword>
    <abstract>
      <?line 308?>

<t>The draft aims to provide technical details of <xref target="CVE-2026-33697"/>, <xref target="EUVD-2026-16488"/>, <xref target="CVE-2026-92701"/>, <xref target="EUVD-2026-83194"/>, <xref target="CVE-2026-92702"/>, <xref target="EUVD-2026-83192"/> and several GitHub Security Advisories (GHSAs) which provide substantial technical evidence of how early attestation fails in practice, even <strong>without physical access</strong> to the desired machine. Moreover, since continuous attestation is generally required <xref target="CSA-eBPF"/> <xref target="MITRE-Continuous-Attestation"/>, early attestation adds <strong>unnecessary complexity</strong>. The results are backed by the research <xref target="Intra-handshake.fail"/>, <xref target="TLS-RA"/>, <xref target="EarlyAttestationBleed"/> and the artifacts <xref target="Intra-handshake.fail-repo"/> in state-of-the-art formal analysis tool, ProVerif, under Apache-2.0 license for reproducibility, extensibility, and review, and have been acknowledged by the relevant stakeholders. Currently, there are <strong>two CVEs of CVSS 9.1, one CVE of CVSS 7.5, one GHSA of 9.0-10.0, one GHSA of CVSS 7.8, seven GHSAs of CVSS 7.4, and one GHSA of CVSS 6.3 published against the broader early attestation covering all layers of the ecosystem up to the application</strong>. The research papers on these are currently either under submission or being prepared for submission. The artifacts of these papers will be shared with the community under Apache-2.0 license for reproducibility, extensibility, and review. In our analysis, the remaining implementations of early attestation -- Edgeless Systems Contrast and Meta's AI -- remain vulnerable.</t>
    </abstract>
    <note removeInRFC="true">
      <name>About This Document</name>
      <t>
        The latest revision of this draft can be found at <eref target="https://muhammad-usama-sardar.github.io/intra-handshake-fail/draft-intra-handshake-fail.html"/>.
        Status information for this document may be found at <eref target="https://datatracker.ietf.org/doc/draft-intra-handshake-fail/"/>.
      </t>
      <t>Source for this draft and an issue tracker can be found at
        <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail"/>.</t>
    </note>
  </front>
  <middle>
    <?line 312?>

<section anchor="introduction">
      <name>Introduction</name>
      <t><xref target="Intra-handshake.fail"/> presents a general approach to analyze the intra-handshake (aka early) attestation proposals, regardless of whether they are within the scope of SEAT charter or not. From a security perspective, one of the key decision factors is the candidate binding mechanism. Some binding mechanisms are within scope of SEAT charter and others are not. The artifacts are available in <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 license for reproducibility, extensibility and further research.</t>
      <t>A <strong>complementary</strong> paper <xref target="ID-Crisis"/> presents the identity crisis in pre- and intra-handshake attestation. The formal analysis is available in <xref target="ID-Crisis-repo"/> under Apache-2.0 license for reproducibility and extensibility.</t>
      <t>Another complementary paper -- currently under submission -- performs a thorough formal analysis of the design options in intra-handshake attestation.</t>
      <section anchor="overview">
        <name>Overview</name>
        <t><xref target="Intra-handshake.fail"/> presents the formal specification and analysis of the candidate binding mechanisms for binding in intra-handshake attestation for standardization for attested TLS protocols:</t>
        <table>
          <name>Binding mechanisms, implementations and ProVerif artifacts</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Used in</th>
              <th align="left">Artifacts</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <xref target="I-D.fossati-tls-attestation-09"/>; <eref target="https://www.sns-itrust6g.com/wp-content/uploads/2025/12/Webinar-Architecting-Trust-CONFIDENTIAL6G.pdf">Cocos AI v0.8.2</eref>;  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref>; <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MarkusRudy.contrast-atls-ccc-attestation.pdf">Edgeless Systems Contrast</eref>; <eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI updated spec</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <xref target="I-D.fossati-tls-attestation-06"/></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7">binder7</eref></td>
            </tr>
          </tbody>
        </table>
        <artwork><![CDATA[
We provide a formal proof of insecurity of all the above candidate
binding mechanisms of intra-handshake attestation using the
state-of-the-art tool ProVerif and propose a mitigation for the
discovered security vulnerabilities. Our study reveals that it may
not be possible to achieve strong application-traffic (level 3)
binding using intra-handshake attestation alone. This can be exploited
for relay attacks, where an attacker makes a client accept an evidence
from a different machine. So the client cannot be sure that it connects
to its desired server.
]]></artwork>
        <t>We responsibly disclosed the vulnerability in intra-handshake attestation -- as noted in <xref target="GHSA-Cocos-AI"/> issued -- to the vendors, which resulted in  <xref target="CVE-2026-33697"/> of CVSS 7.5.</t>
      </section>
      <section anchor="modeling-other-binding-mechanisms">
        <name>Modeling Other Binding Mechanisms</name>
        <t>The artifacts are quite flexible for modification and testing of different intra-handshake attestation binding mechanisms by simply changing single <tt>rdata</tt> parameter in the Client and Server processes. Folder <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/aggregate">aggregate</eref> contains all analyzed and proposed binding mechanisms in <xref target="Intra-handshake.fail"/> to select via comment and uncomment. Other folders contain one specific binding mechanism.</t>
      </section>
      <section anchor="seat-early-attestation">
        <name>SEAT-Early-Attestation</name>
        <t>The draft <xref target="I-D.fossati-seat-early-attestation"/> is an extension of the provably vulnerable (and withdrawn) draft <xref target="I-D.fossati-tls-attestation-10"/> with the following two main changes from a formal perspective:</t>
        <ol spacing="normal" type="1"><li>
            <t>Binder has been updated</t>
          </li>
          <li>
            <t>Optional post-handshake attestation part has been added for re-attestation</t>
          </li>
        </ol>
        <t>The current binder in <xref target="I-D.fossati-seat-early-attestation"/> does not prevent relay attacks as there is no <strong>shared secret</strong> in the binder. In addition to the formal analysis in <xref target="Intra-handshake.fail"/>, see <xref target="TLS-RA"/> for arguments why shared secret is necessary to prevent relay attacks.</t>
        <t>Post-handshake attestation part may prevent relay attacks, but then the <strong>additional complexity</strong> of intra-handshake attestation is unjustified.</t>
      </section>
      <section anchor="executive-summary-of-current-status">
        <name>Executive Summary of Current Status</name>
        <t>Severity is based on <eref target="https://nvd.nist.gov/vuln-metrics/cvss">NIST metrics</eref>. Scores of 13 more GHSAs is yet to be confirmed and will be added later in this table. <strong>For TLS reference, Heartbleed was CVSS 7.5</strong>.</t>
        <table>
          <name>Published CVEs/GHSAs for intra-handshake (aka early) attestation</name>
          <thead>
            <tr>
              <th align="left">CVSS</th>
              <th align="left">Severity</th>
              <th align="left">Number of Published GHSAs</th>
              <th align="left">Number of Published CVEs</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">9.0-10.0</td>
              <td align="left">Critical</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">9.1</td>
              <td align="left">Critical</td>
              <td align="left">2</td>
              <td align="left">2</td>
            </tr>
            <tr>
              <td align="left">7.8</td>
              <td align="left">High</td>
              <td align="left">2</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">7.5</td>
              <td align="left">High</td>
              <td align="left">1</td>
              <td align="left">1</td>
            </tr>
            <tr>
              <td align="left">7.4</td>
              <td align="left">High</td>
              <td align="left">8</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">6.3</td>
              <td align="left">Medium</td>
              <td align="left">2</td>
              <td align="left">-</td>
            </tr>
          </tbody>
        </table>
      </section>
    </section>
    <section anchor="sec-credits">
      <name>Published GHSAs/CVEs</name>
      <table>
        <name>GHSAs/CVEs for intra-handshake (aka early) attestation and finders in (roughly) chronological order of publishing -- Except for the very last 3 GHSAs, CVSS scores of previous 13 GHSAs are preliminary</name>
        <thead>
          <tr>
            <th align="left">GHSA/CVE</th>
            <th align="left">CVSS</th>
            <th align="left">Finders</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI"/></td>
            <td align="left">7.8</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">7.5</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-16488"/></td>
            <td align="left">7.5</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI2"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI3"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems2"/></td>
            <td align="left">9.0-10.0</td>
            <td align="left">Markus Rudy; independently by Songbo Bu and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rustls"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-go"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-eov"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-eom"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc-da"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc-tcu"/></td>
            <td align="left">6.3</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-92701"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-92702"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-83194"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-83192"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-322v-xwfj-63cm">GHSA-322v-xwfj-63cm</eref></td>
            <td align="left">9.8</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-m9p9-3hxp-4j6j">GHSA-m9p9-3hxp-4j6j</eref></td>
            <td align="left">9.1</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-ppc4-fg56-x397">GHSA-ppc4-fg56-x397</eref></td>
            <td align="left">8.2</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6j47-3cm6-9cg6">GHSA-6j47-3cm6-9cg6</eref></td>
            <td align="left">8.1</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-4755-rh6c-694j">GHSA-4755-rh6c-694j</eref></td>
            <td align="left">8.1</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6f8q-88mv-c8vr">GHSA-6f8q-88mv-c8vr</eref></td>
            <td align="left">7.9</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-qqq3-6c47-684v">GHSA-qqq3-6c47-684v</eref></td>
            <td align="left">7.5</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-xxr6-w252-4ggx">GHSA-xxr6-w252-4ggx</eref></td>
            <td align="left">7.5</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-fmrx-fjqw-37gp</eref></td>
            <td align="left">6.5</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-f96w-jjf8-xpw3</eref></td>
            <td align="left">5.6</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fqrx-3wc2-4g49">GHSA-fqrx-3wc2-4g49</eref></td>
            <td align="left">4.4</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-mrgr-34cc-fcg8">GHSA-mrgr-34cc-fcg8</eref></td>
            <td align="left">4.2</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-wqf9-jfmm-f68v">GHSA-wqf9-jfmm-f68v</eref></td>
            <td align="left">4.2</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-376m-h37w-4rvq">GHSA-376m-h37w-4rvq</eref></td>
            <td align="left">7.8</td>
            <td align="left">Chengxin Huang, Songbo Bu, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI4"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI5"/></td>
            <td align="left">6.3</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
        </tbody>
      </table>
    </section>
    <section anchor="threat-model">
      <name>Threat Model</name>
      <t>The threat model is explained in Sec. 6.1 of <xref target="Intra-handshake.fail"/> and Sec. 4 of <xref target="ID-Crisis"/>.</t>
      <t>Beyond post-generation leakage of <tt>privEK</tt> considered in <xref target="Intra-handshake.fail"/>, the same adversary capability may arise from failures during key generation or entropy provisioning. Platform-attestation keys and workload-controlled TLS keys belong to distinct key-generation domains: for example, in AMD SEV-SNP the VCEK is derived by SNP firmware from chip-unique secrets and a TCB version, while several other platform secrets are specified as CSRNG-generated; by contrast, <tt>privEK</tt> and TLS (EC)DHE private values are typically generated by software executing inside the confidential VM using the guest OS or cryptographic-library random subsystem. Furthermore, SEV-SNP <tt>REPORT_DATA</tt> is supplied by the guest and incorporated into the signed attestation report without being interpreted by SNP firmware; consequently, valid Evidence can authenticate a binding value without attesting the entropy provenance, generation procedure, or exclusive possession of the corresponding private key. The <tt>LEK(privEK)</tt> capability should therefore also encompass predictable or repeated key generation caused by deficient entropy, cloned or rolled-back DRBG state, defective software or firmware, or malicious provisioning. <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-7055.html">CVE-2025-62626</eref> provides a concrete manufacturer-layer fault model: affected AMD Zen 5 processors could return insufficiently random values from certain <tt>RDSEED</tt> forms while incorrectly signaling success. This does not establish compromise of the AMD-SP-internal CSRNG or of a specific attested-TLS implementation, but demonstrates that ideal-randomness assumptions can fail below the protocol layer; software dependencies such as OpenSSL's <tt>--with-rand-seed=rdcpu</tt> (<eref target="https://github.com/openssl/openssl/blob/openssl-3.5.0/INSTALL.md">OpenSSL 3.5.0 INSTALL.md</eref>), which can use <tt>RDSEED</tt> or <tt>RDRAND</tt> as CSPRNG seed input, illustrate a possible propagation path from hardware entropy interfaces to workload TLS key generation.</t>
      <section anchor="low-level-mapping-of-the-system-model">
        <name>Low-Level Mapping of the System Model</name>
        <t>Figure 2 of <xref target="Intra-handshake.fail"/> provides a TEE-agnostic protocol-level
abstraction. For a low-level view, the following table maps the abstract
components to representative Intel TDX and AMD SEV-SNP implementations.</t>
        <table>
          <name>Mapping of the abstract system model to representative CC implementations</name>
          <thead>
            <tr>
              <th align="left">Fig. 2 element</th>
              <th align="left">Intel TDX</th>
              <th align="left">AMD SEV-SNP</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">
                <strong>Physical Machine</strong></td>
              <td align="left">TDX-capable Intel platform</td>
              <td align="left">SEV-SNP-capable AMD platform</td>
            </tr>
            <tr>
              <td align="left">
                <strong>CC Platform</strong></td>
              <td align="left">CPU HW + TDX Module + attestation infrastructure</td>
              <td align="left">CPU HW + AMD-SP/SNP (system) firmware + RMP/SEV machinery</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Quoting Agent</strong></td>
              <td align="left">TD QE</td>
              <td align="left">AMD-SP / SNP attestation (VM) firmware</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Confidential VM</strong></td>
              <td align="left">Trust Domain (TD)</td>
              <td align="left">Part of SNP confidential VM</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Network stack</strong></td>
              <td align="left">Part of guest OS + TLS library inside TD</td>
              <td align="left">Part of guest OS + TLS library inside SNP guest</td>
            </tr>
            <tr>
              <td align="left">
                <strong>HSM/TPM</strong></td>
              <td align="left">Secure element</td>
              <td align="left">Secure element</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privAK</tt></strong></td>
              <td align="left">Attestation key of TD Quoting Enclave</td>
              <td align="left">VCEK/VLEK signing key</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privEK</tt></strong></td>
              <td align="left">Workload/TLS-side ephemeral key</td>
              <td align="left">Workload/TLS-side ephemeral key</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privLTK</tt></strong></td>
              <td align="left">Long-term key in secure element</td>
              <td align="left">Long-term key in secure element</td>
            </tr>
          </tbody>
        </table>
        <t>The key material shown in the abstract model belongs to different implementation
and trust domains. The following table provides a corresponding low-level view.</t>
        <table>
          <name>Low-level implementation and key-generation domains</name>
          <thead>
            <tr>
              <th align="left">Component/key</th>
              <th align="left">Runs/lives where?</th>
              <th align="left">Type</th>
              <th align="left">Randomness/key source</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">TLS ECDHE</td>
              <td align="left">Inside network stack</td>
              <td align="left">Network stack</td>
              <td align="left">OS/library CSPRNG</td>
            </tr>
            <tr>
              <td align="left">
                <tt>privEK</tt></td>
              <td align="left">Inside confidential VM</td>
              <td align="left">Guest software</td>
              <td align="left">OS/library CSPRNG</td>
            </tr>
            <tr>
              <td align="left">AK</td>
              <td align="left">Quoting Agent</td>
              <td align="left">Firmware/enclave/platform key hierarchy</td>
              <td align="left">Platform-specific</td>
            </tr>
            <tr>
              <td align="left">Memory-encryption key</td>
              <td align="left">CC Platform</td>
              <td align="left">Hardware/firmware managed</td>
              <td align="left">Platform RNG/KDF</td>
            </tr>
            <tr>
              <td align="left">
                <tt>REPORT_DATA</tt></td>
              <td align="left">Created by Guest Software</td>
              <td align="left">Data binding</td>
              <td align="left">No independent entropy requirement</td>
            </tr>
          </tbody>
        </table>
        <t>Per-VM memory-encryption key is used to encrypt confidential VM's RAM.</t>
      </section>
    </section>
    <section anchor="detailed-vulnerability-disclosure-timeline-and-public-acknowledgements-by-affected-vendors">
      <name>Detailed Vulnerability Disclosure Timeline and Public Acknowledgements by Affected Vendors</name>
      <table>
        <name>Detailed vulnerability disclosure timeline and acknowledgements</name>
        <thead>
          <tr>
            <th align="left">Event</th>
            <th align="left">Date</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">Our initial responsible disclosure to vendor</td>
            <td align="left">07 Oct, 2025</td>
          </tr>
          <tr>
            <td align="left">Acknowledgement by vendor</td>
            <td align="left">14 Dec, 2025</td>
          </tr>
          <tr>
            <td align="left">Information to the <eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">IETF</eref></td>
            <td align="left">11 Jan, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://web.archive.org/web/20260227160554/https://www.ultraviolet.rs/blog/tee-tls-privacy/">Public announcement</eref> by vendor</td>
            <td align="left">27 Feb, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>]</td>
            <td align="left">23 March, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-33697"/> published  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-16488"/>  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/rustls/releases/tag/privasys-v0.8.1">Acknowledgment</eref> by Privasys for rustls <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">9 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/go/releases/tag/privasys-v0.5.1-go1.26.5">Acknowledgment</eref> by Privasys for go <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">10 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation</eref> declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref></td>
            <td align="left">17 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation repo</eref> archived</td>
            <td align="left">22 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable draft <xref target="I-D.fossati-tls-attestation-10"/> withdrawn by authors</td>
            <td align="left">23 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">29 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI2"/>  [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">16 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI3"/>  [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">16 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems2"/> [<strong>Severity = CRITICAL (CVSS 9.0-10.0)</strong>]</td>
            <td align="left">24 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rustls"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-go"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-eov"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-eom"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys archived early attestation in rustls and moved to post-handshake attestation</td>
            <td align="left">4 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys archived early attestation in go and moved to post-handshake attestation</td>
            <td align="left">4 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc-da"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">6 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc-tcu"/> [<strong>Severity = MEDIUM (CVSS 6.3)</strong>]</td>
            <td align="left">6 September, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-92701"/> published [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-92702"/> published [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-83194"/> [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-83192"/> [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-322v-xwfj-63cm">GHSA-322v-xwfj-63cm</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-m9p9-3hxp-4j6j">GHSA-m9p9-3hxp-4j6j</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-ppc4-fg56-x397">GHSA-ppc4-fg56-x397</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6j47-3cm6-9cg6">GHSA-6j47-3cm6-9cg6</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-4755-rh6c-694j">GHSA-4755-rh6c-694j</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6f8q-88mv-c8vr">GHSA-6f8q-88mv-c8vr</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-qqq3-6c47-684v">GHSA-qqq3-6c47-684v</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-xxr6-w252-4ggx">GHSA-xxr6-w252-4ggx</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-fmrx-fjqw-37gp</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-f96w-jjf8-xpw3</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fqrx-3wc2-4g49">GHSA-fqrx-3wc2-4g49</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-mrgr-34cc-fcg8">GHSA-mrgr-34cc-fcg8</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-wqf9-jfmm-f68v">GHSA-wqf9-jfmm-f68v</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <eref target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-376m-h37w-4rvq">GHSA-376m-h37w-4rvq</eref></td>
            <td align="left">24 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI4"/>  [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">25 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI5"/>  [<strong>Severity = MODERATE (CVSS 6.3)</strong>]</td>
            <td align="left">25 September, 2026</td>
          </tr>
        </tbody>
      </table>
      <t><strong>Neither the GHSAs nor the CVEs have any dependency whatsoever on the considered threat model with <tt>WeakHash</tt>, <tt>WeakDH</tt>, or <tt>BadElement</tt>.</strong> They hold independent of those, i.e., with <tt>StrongHash</tt> and <tt>StrongDH</tt> and all good elements within a group.</t>
    </section>
    <section anchor="eu-enisa">
      <name>EU ENISA</name>
      <t>European Union's <eref target="https://euvd.enisa.europa.eu/homepage">ENISA</eref> has independently published <xref target="EUVD-2026-16488"/> with CVSS 7.5 to acknowledge this vulnerability.</t>
    </section>
    <section anchor="sec-cvss-scores">
      <name>Comparison with Other Vulnerabilities in Confidential Computing Literature</name>
      <t>Severity is based on <eref target="https://nvd.nist.gov/vuln-metrics/cvss">NIST metrics</eref>.</t>
      <table>
        <name>Comparison with other vulnerabilities in confidential computing literature</name>
        <thead>
          <tr>
            <th align="left">Vulnerability</th>
            <th align="left">CVE</th>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <eref target="https://wiretap.fail/files/wiretap.pdf">wiretap.fail</eref></td>
            <td align="left">No CVE (<eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2025-10-28-001.html">Intel</eref> and <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3040.html">AMD</eref> announcements)</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://tee.fail/files/paper.pdf">TEE.fail</eref></td>
            <td align="left">No CVE</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://ddropattack.eu/ddrop.pdf">DDRop</eref></td>
            <td align="left">No CVE (<eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2026-08-11-001.html">Intel</eref> and <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3048.html">AMD</eref> announcements)</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://dl.acm.org/doi/10.1145/3658644.3690230">TDXdown</eref></td>
            <td align="left">
              <eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2024-10-08-001.html">Intel</eref></td>
            <td align="left">2.5</td>
            <td align="left">Low</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/staleus/staleus_usenix26.pdf">Staleus</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-54509">CVE-2025-54509</eref></td>
            <td align="left">4.0</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-6197">CVE-2025-61972</eref></td>
            <td align="left">4.2</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://badram.eu/badram.pdf">BadRAM</eref></td>
            <td align="left">
              <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3015.html">AMD</eref></td>
            <td align="left">5.3</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-61971">CVE-2025-61971</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/fabricked/fabricked_usenix26.pdf">Fabricked</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=cve-2025-54510">CVE-2025-54510</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">Intra-handshake.fail</eref></td>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">7.5</td>
            <td align="left">High</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EarlyAttestationBleed"/></td>
            <td align="left">
              <xref target="CVE-2026-92701"/></td>
            <td align="left">9.1</td>
            <td align="left">Critical</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EarlyAttestationBleed"/></td>
            <td align="left">
              <xref target="CVE-2026-92702"/></td>
            <td align="left">9.1</td>
            <td align="left">Critical</td>
          </tr>
        </tbody>
      </table>
      <t>The comparison of the above with CVSS <strong>9.1</strong> for early attestation indicates that it is not mature yet compared to the rest of the confidential computing stack, and is currently one of the weakest links in the ecosystem.</t>
    </section>
    <section anchor="more-cves">
      <name>More CVEs</name>
      <t>Further formal analysis has led to the following potential CVEs for intra-handshake (aka early) attestation (currently under review and disclosure):</t>
      <table>
        <name>Expected CVEs for intra-handshake (aka early) attestation under review and disclosure</name>
        <thead>
          <tr>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
            <th align="left">Number of CVEs</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">9.0-10.0</td>
            <td align="left">Critical</td>
            <td align="left">1 (confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">9.8</td>
            <td align="left">Critical</td>
            <td align="left">1</td>
          </tr>
          <tr>
            <td align="left">8.7</td>
            <td align="left">High</td>
            <td align="left">1</td>
          </tr>
          <tr>
            <td align="left">7.8</td>
            <td align="left">High</td>
            <td align="left">1 (confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">7.5</td>
            <td align="left">High</td>
            <td align="left">5</td>
          </tr>
          <tr>
            <td align="left">7.4</td>
            <td align="left">High</td>
            <td align="left">9 (5 confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">6.3</td>
            <td align="left">Medium</td>
            <td align="left">7</td>
          </tr>
        </tbody>
      </table>
      <t>These are preliminary estimates of scores, not final assigned score. They are still under review.</t>
    </section>
    <section anchor="vulnerable-implementations">
      <name>Vulnerable Implementations</name>
      <t>As demonstrated in <xref target="Intra-handshake.fail"/> and <xref target="Intra-handshake.fail-repo"/>, at least the following intra-handshake implementations are vulnerable:</t>
      <ul spacing="normal">
        <li>
          <t><eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI</eref>: <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
        <li>
          <t><eref target="https://github.com/edgelesssys/contrast">Edgeless Systems Contrast</eref>: <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</t>
        </li>
      </ul>
      <t>If you are aware of any other intra-handshake attestation implementation, please let us know so that we can check and responsibly disclose the vulnerabilities to them.</t>
      <section anchor="archivedmitigated-implementations">
        <name>Archived/Mitigated Implementations</name>
        <t>The following intra-handshake implementations were vulnerable and have been <strong>archived</strong> or moved to <strong>post</strong>-handshake attestation:</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref>: declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref> and <strong>archived</strong></t>
          </li>
          <li>
            <t><eref target="https://github.com/ultravioletrs/cocos">Cocos AI &lt;= v0.8.2</eref>: <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>], <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]; <strong>migrated</strong> to post-handshake attestation since v0.9.0</t>
          </li>
          <li>
            <t><eref target="https://github.com/Privasys/rustls">Privasys rustls &lt;= privasys-v0.2.0</eref>: <xref target="GHSA-Privasys-rustls"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>], <strong>archived</strong> and Privasys migrated to post-handshake attestation</t>
          </li>
          <li>
            <t><eref target="https://github.com/Privasys/go">Pirvasys go &lt;= privasys-v0.3.0-go1.26.5</eref>: <xref target="GHSA-Privasys-go"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>], <strong>archived</strong> and Privasys migrated to post-handshake attestation</t>
          </li>
        </ul>
      </section>
    </section>
    <section anchor="vulnerable-protocol-specifications">
      <name>Vulnerable Protocol Specifications</name>
      <t>At least the following protocol specifications with intra-handshake attestation <em>path</em> are vulnerable to <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/>:</t>
      <ul spacing="normal">
        <li>
          <t><xref target="I-D.fossati-tls-attestation-09"/>: symbolic proof of insecurity; <xref target="I-D.fossati-tls-attestation-10"/> <strong>withdrawn</strong> after the CVE</t>
        </li>
        <li>
          <t><xref target="I-D.fossati-seat-early-attestation"/>: symbolic and (paper-and-pen-based) computational proof of insecurity (originally done for -04 and applies also to -06)
          </t>
          <ul spacing="normal">
            <li>
              <t>As a SEAT WG participant pointed out, please note that both <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> contain a link to <xref target="GHSA-Cocos-AI"/> that contains a link to <xref target="SEAT-vulnerability-report"/> that contains the G3 property (cf. <xref target="sec-corr-goals"/>) that this draft does not satisfy.</t>
            </li>
            <li>
              <t>Some WG participants successfully reproduced the vulnerability by substituting the right value of <tt>rdata</tt> in the shared formal model <xref target="Intra-handshake.fail-repo"/> that led to the CVE.</t>
            </li>
            <li>
              <t>An informal reasoning is that binder is not <strong>directly</strong> derived from any <strong>shared secret</strong> in this draft.</t>
            </li>
            <li>
              <t><strong>Unnecessary complexity</strong> is itself a security concern</t>
            </li>
          </ul>
        </li>
        <li>
          <t><xref target="I-D.ritz-seat-facts"/>: symbolic proof of insecurity
          </t>
          <ul spacing="normal">
            <li>
              <t>violates G3 property in our analysis</t>
            </li>
            <li>
              <t>unnecessary complexity is itself a security concern</t>
            </li>
          </ul>
        </li>
      </ul>
    </section>
    <section anchor="binding-levels">
      <name>Binding Levels</name>
      <ol spacing="normal" type="1"><li>
          <t>DH shared secret (<tt>gxy</tt>) used as shared secret between client and server</t>
        </li>
        <li>
          <t>Handshake traffic key (<tt>htsc</tt>) used for encryption of handshake messages</t>
        </li>
        <li>
          <t>Application traffic key (<tt>atsc</tt>) used for encryption of application data</t>
        </li>
      </ol>
      <t>Please see Sec. 6.2 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="sec-corr-goals">
      <name>Security Properties (Correlation Goals)</name>
      <t>We consider TLS Server as RATS Attester, which is typical in confidential computing.</t>
      <ol spacing="normal" type="1"><li>
          <t>Correlation of Evidence to a DH Shared Secret (G1)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Handshake Traffic Key (G2)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Application Traffic Key (G3)</t>
        </li>
      </ol>
      <t>Please see Sec. 6.3 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="main-results">
      <name>Main Results</name>
      <ul spacing="normal">
        <li>
          <t>All analyzed binding mechanisms and the corresponding implementations of intra-handshake attestation are vulnerable to relay attacks.</t>
        </li>
        <li>
          <t>Early exporter helps achieve level 1 binding.</t>
        </li>
        <li>
          <t>Our proposed mechanism helps achieve level 2 binding.</t>
        </li>
        <li>
          <t>It may not be possible to achieve level 3 in intra-handshake attestation alone without additional assumptions.</t>
        </li>
      </ul>
      <table>
        <name>Main results</name>
        <thead>
          <tr>
            <th align="left">Property</th>
            <th align="left">Mechanism #1,2,4,6</th>
            <th align="left">Mechanism #3,5,7</th>
            <th align="left">Proposed mechanism</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">G1 : Correlation of Evidence to <tt>gxy</tt></td>
            <td align="left">❌</td>
            <td align="left">✅</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G2 : Correlation of Evidence to <tt>kch</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G3 : Correlation of Evidence to <tt>kc</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">❌</td>
          </tr>
        </tbody>
      </table>
      <t>Please see Sec. 7.1 and Figure 5 of <xref target="Intra-handshake.fail"/> for details of attacks.</t>
      <section anchor="expected-results">
        <name>Expected Results</name>
        <table>
          <name>Expected results</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Artifacts</th>
              <th align="left">Expected results</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/">binder1</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/log.txt">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/">binder2</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/log.txt">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/">binder3</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/log.txt">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/">binder4</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/log.txt">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/">binder5</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/log.txt">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/">binder6</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/log.txt">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/">binder7</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/log.txt">binder7</eref></td>
            </tr>
            <tr>
              <td align="left">8.</td>
              <td align="left">Proposed</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/">proposal</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/log.txt">proposal</eref></td>
            </tr>
          </tbody>
        </table>
      </section>
    </section>
    <section anchor="implications-of-findings">
      <name>Implications of Findings</name>
      <section anchor="implications-of-findings-for-ietf-seat-wg">
        <name>Implications of Findings for IETF SEAT WG</name>
        <ul spacing="normal">
          <li>
            <t>We believe post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>, can achieve level 3 binding.</t>
          </li>
          <li>
            <t>The research suggests that recent hybrid proposals (combination of intra-handshake attestation and post-handshake attestation) <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> may add <strong>unnecessary complexity</strong> of intra-handshake attestation without adding any security benefit compared to post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>. We are not aware of any <strong>security property</strong> that hybrid proposals can achieve that post-handshake attestation alone cannot achieve.</t>
          </li>
          <li>
            <t>As demonstrated by our symbolic analysis using ProVerif, the protocol specifications <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> remain vulnerable to CVE-2026-33697. We have also proved that <xref target="I-D.fossati-seat-early-attestation-04"/> and <xref target="I-D.fossati-seat-early-attestation"/> violate the security theorems in the computational model.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-lake-wg">
        <name>Implications of Findings for IETF LAKE WG</name>
        <ul spacing="normal">
          <li>
            <t>Similar problems occur for protocol specification <eref target="https://datatracker.ietf.org/doc/draft-ietf-lake-ra/">lake-ra</eref>.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-tls-wg">
        <name>Implications of Findings for IETF TLS WG</name>
        <ul spacing="normal">
          <li>
            <t><xref target="I-D.fossati-tls-attestation-09"/> is vulnerable to <xref target="CVE-2026-33697"/>. Thankfully, the authors have withdrawn <xref target="I-D.fossati-tls-attestation-10"/>.</t>
          </li>
          <li>
            <t>Remote attestation <em>within</em> the handshake is very dangerous, since to our knowledge, it is one of the highest scored published vulnerabilities in confidential computing literature (see <xref target="sec-cvss-scores"/>). For reference, <strong>Heartbleed</strong> was <strong>7.5 CVSS</strong>.</t>
          </li>
        </ul>
        <artwork><![CDATA[
Given the high- and critical-severity vulnerabilities, we recommend
that the developers and maintainers of intra-handshake attestation MUST
urgently move to post-handshake attestation.
]]></artwork>
      </section>
      <section anchor="implications-of-findings-for-agent2agent">
        <name>Implications of Findings for Agent2Agent</name>
        <t>The findings of published CVEs/GHSAs up to 9.1 (presented in <xref target="sec-credits"/>) show that intra-handshake attestation can introduce significant security risks for AI agents when relied upon as a security mechanism.</t>
        <t>Attestation can provide evidence about an agent’s technical state, but such evidence should not be equated with governability. For a relying party, governability also depends on whether the agent’s identity, authority and permissions remain aligned with the intended interaction, whether responsibility for its actions can be attributed, and whether meaningful intervention remains possible. The findings in this draft reinforce that distinction by showing that even the binding between attestation evidence and the intended session can fail. Successful attestation should therefore be treated as one input into governance, rather than as sufficient evidence that an AI agent remains under effective control.</t>
      </section>
    </section>
    <section anchor="technical-details">
      <name>Technical Details</name>
      <section anchor="tool">
        <name>Tool</name>
        <t>We use state-of-the-art symbolic security analysis tool <eref target="https://ieeexplore.ieee.org/document/9833653">ProVerif</eref> for the specification of the protocols.</t>
      </section>
      <section anchor="modeling">
        <name>Modeling</name>
        <t>The formal model uses the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work as the starting point to focus on relay attacks in intra-handshake attestation in this work.
The rationale is that we consider it more useful to show the added value of this contribution to the community by using the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> as the baseline, rather than showing the same diversion attacks from <xref target="ID-Crisis"/>, and the discovered CVE (<xref target="CVE-2026-33697"/>) -- which the previous analysis could not find -- practically demonstrates the added value.
This modeling choice makes it clear that even with the diversion attacks fixed, high-severity relay attacks would still remain in intra-handshake attestation.</t>
        <t>Note: Similar to the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work, we model non-PSK-based handshake.
From <xref target="ID-Crisis"/>:</t>
        <ul empty="true">
          <li>
            <t>For modeling TLS 1.3, we consider handshakes based on Diffie-Hellman over either finite fields or elliptic curves, represented as (EC)DHE. This is because we are unaware of any publicly available specification or implementation of attested TLS with PSK-based handshakes.</t>
          </li>
        </ul>
        <t>While it would be nice to model PSK-based handshake, the rationale is that the correlation properties studied in this work do not necessarily require it.</t>
        <t>Note: The artifacts consider the case of server authentication only, as client authentication is optional in TLS 1.3. No claims are made about other configurations.</t>
      </section>
      <section anchor="properties">
        <name>Properties</name>
        <t>Properties in <xref target="Intra-handshake.fail"/> are complemetary to properties in <xref target="ID-Crisis"/>. Sec. 8 of <xref target="ID-Crisis"/> mentions:</t>
        <ul empty="true">
          <li>
            <t>We emphasize that both diversion and relay attacks are orthogonal and thus the two works are complementary.</t>
          </li>
        </ul>
      </section>
      <section anchor="technical-vulnerability-report">
        <name>Technical Vulnerability Report</name>
        <t>Technical vulnerability report is available at <xref target="Intra-handshake.fail"/>. It is accepted for publication at ESORICS 2026.</t>
        <section anchor="vulnerabilities">
          <name>Vulnerabilities</name>
          <t>Sec. 7.1 of <xref target="Intra-handshake.fail"/> presents the technical details with abstract attack traces of the vulnerabilities.</t>
        </section>
        <section anchor="mitigation">
          <name>Mitigation</name>
          <t>Sec. 7.2 of <xref target="Intra-handshake.fail"/> presents the technical details of the proposed mitigation.</t>
        </section>
      </section>
      <section anchor="artifacts">
        <name>Artifacts</name>
        <t>Artifacts are available at <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 License.</t>
      </section>
    </section>
    <section anchor="sec-news">
      <name>Media Coverage</name>
      <t>Several cybersecurity and media professionals and bloggers have covered the vulnerabilities to protect the community from the harm of early attestation.</t>
      <section anchor="earlyattestationbleed">
        <name>EarlyAttestationBleed</name>
        <t><xref target="EarlyAttestationBleed"/></t>
        <ul spacing="normal">
          <li>
            <t>(German) <eref target="https://cybersecurity-news.de/cve-2026-92701-trusted-execution-environments-0-8-2/">Cybersecurity news (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t>(German) <eref target="https://cybersecurity-news.de/cve-2026-92702-cocos-ai-0-8-2/">Cybersecurity news (CVE-2026-92702)</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://www.anquan114.com/archives/7429">Security 114</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://mp.weixin.qq.com/s/31Glxqr6ofHylTyrtNsuaQ">KK says security</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="mp.weixin.qq.com/s/REtESPngXemSro0hjIZyxw">Safe Meow Station</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://mp.weixin.qq.com/s/864dwIXF5IY04q7ig4uBwg">Digital World Information</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://mp.weixin.qq.com/s/864dwIXF5IY04q7ig4uBwg">Shusei Consulting</eref></t>
          </li>
          <li>
            <t><eref target="https://freenode.net/digest/518">Freenode</eref></t>
          </li>
          <li>
            <t><eref target="https://collective.flashbots.net/t/earlyattestationbleed-paper-review/6054">Flashbots</eref></t>
          </li>
          <li>
            <t>(Japanese) <eref target="https://www.rich-wise.co.jp/cve-info/cve-2026-92701-intel-tdx%E3%81%AE%E8%84%86%E5%BC%B1%E6%80%A7%E3%81%AB%E3%82%88%E3%82%8A%E3%82%BB%E3%82%AD%E3%83%A5%E3%83%AA%E3%83%86%E3%82%A3%E5%AF%BE%E7%AD%96%E3%82%92%E8%AC%9B%E3%81%98%E3%82%8B/">Rich &amp; Wise with Socrates and Plato</eref></t>
          </li>
          <li>
            <t><eref target="https://app.opencve.io/cve/CVE-2026-92701">OpenCVE (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t><eref target="https://app.opencve.io/cve/CVE-2026-92702">OpenCVE (CVE-2026-92702)</eref></t>
          </li>
          <li>
            <t>CIRCL's <eref target="https://vulnerability.circl.lu/vuln/CVE-2026-92701">vulnerability.circl.lu (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t>CIRCL's <eref target="https://vulnerability.circl.lu/vuln/CVE-2026-92702">vulnerability.circl.lu (CVE-2026-92702)</eref></t>
          </li>
          <li>
            <t>GCVE's <eref target="https://db.gcve.eu/vuln/cve-2026-92701">db.gcve.eu (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t>GCVE's <eref target="https://db.gcve.eu/vuln/cve-2026-92702">db.gcve.eu (CVE-2026-92702)</eref></t>
          </li>
        </ul>
        <t>If you have written an article on this and would like to be added here, please send us a PR at <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail">https://github.com/muhammad-usama-sardar/intra-handshake-fail</eref> or an email with the subject "Media coverage of EarlyAttestationBleed."</t>
      </section>
      <section anchor="intra-handshakefail">
        <name>Intra-handshake.fail</name>
        <t><xref target="Intra-handshake.fail"/></t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref></t>
          </li>
          <li>
            <t>(Japanese) <eref target="https://blackhatnews.tokyo/archives/119915">BlackHatNewsTokyo</eref></t>
          </li>
          <li>
            <t>(Several languages) <eref target="https://hackernoon.com/attested-tls-was-supposed-to-be-the-last-trust-boundary-it-isnt-formal-methods-show-how">Hackernoon</eref></t>
          </li>
          <li>
            <t><eref target="https://podcasts.apple.com/eg/podcast/attested-tls-was-supposed-to-be-the-last-trust/id1698517643?i=1000776623286">Apple podcast</eref></t>
          </li>
          <li>
            <t><eref target="https://meterpreter.org/attested-tls-vulnerability-cve-2026-33697/">Information Security News</eref></t>
          </li>
          <li>
            <t><eref target="https://thenextgentechinsider.com/pulse/critical-flaw-discovered-in-confidential-computing-attestation-protocols">TheNextGenTechInsider</eref></t>
          </li>
          <li>
            <t><eref target="https://dailysecurityreview.com/resources/cve-2026-33697-attested-tls-relay-flaw-hits-whatsapp-cocos-ai/">DailySecurityReview</eref></t>
          </li>
          <li>
            <t><eref target="https://www.scworld.com/brief/confidential-computings-remote-attestation-protocol-may-have-fundamental-flaw">SC World</eref></t>
          </li>
          <li>
            <t><eref target="https://blogs.groupware.org.uk/01-Quantum-Inc/the-handshake-that-cant-keep-its-promise-why-confidential-computings-flaw-changes-the-data-sovereignty-conversation/">01 Quantum</eref></t>
          </li>
          <li>
            <t>(Russian) <eref target="https://www.securitylab.ru/news/574545.php">Security Lab</eref></t>
          </li>
          <li>
            <t>(German) <eref target="https://www.blogspan.net/confidential-computing-attestierung-relay-luecke/">blogspan</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://finance.sina.cn/tech/2026-07-04/detail-inifscxt9953361.d.html">Sina</eref></t>
          </li>
          <li>
            <t><eref target="https://data4biz.com/articles/una-falla-rompe-la-fiducia-del-confidential-computing">data4biz</eref></t>
          </li>
          <li>
            <t>(Russian) <eref target="https://www.itsec.ru/news/issledovateli-nashli-kriticheskuyu-uyazvimost-v-attested-tls">ITSec</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://post.smzdm.com/p/a82ol990/">smzdm</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://www.donews.com/news/detail/4/6621022.html">donews</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://i.ifeng.com/c/8uUfy0PMmqE">ifeng</eref></t>
          </li>
          <li>
            <t><eref target="https://www.dugganusa.com/post/confidential-computing-s-whole-pitch-is-trust-the-proof-not-the-cloud-two-years-of-formal-verifi">dugganusa</eref></t>
          </li>
          <li>
            <t><eref target="https://github.com/pduggusa/dugganusa-ietf/tree/main/cve-2026-33697-attestation">dugganusa repo</eref></t>
          </li>
          <li>
            <t><eref target="https://sploitus.com/exploit?id=92591A05-07BC-5015-BA3D-B1347B35D684">spoitus</eref></t>
          </li>
          <li>
            <t><eref target="https://news.lavx.hu/article/attested-tls-research-exposes-a-weak-link-in-confidential-computing">lavx news</eref></t>
          </li>
          <li>
            <t><eref target="https://www.sohu.com/a/1045865934_122004016">sohu</eref></t>
          </li>
          <li>
            <t>(Persian) <eref target="https://news.ditty.ir/news/attested-tls-relay-flaw-formal-methods/019f6221-26ca-7293-9ee9-5557b3c0b8f8">news.ditty</eref></t>
          </li>
          <li>
            <t>(Russian) <eref target="https://limpvpn.com/ru/news/attested-tls-whatsapp-privacy-flaw-2026">LiMP VPN</eref></t>
          </li>
          <li>
            <t><eref target="https://daily.dev/posts/kI6PoNzPx">daily.dev</eref></t>
          </li>
          <li>
            <t><eref target="https://warden.veritai.ch/news/researchers-find-attested-tls-flaws-that-weaken-confidential-computing-trust-model">warden</eref></t>
          </li>
          <li>
            <t><eref target="https://db.gcve.eu/sightings/?query=cve-2026-33697">GCVE.eu</eref></t>
          </li>
          <li>
            <t><eref target="https://vulnerability.circl.lu/vuln/CVE-2026-33697#sightings">vuln.lu</eref></t>
          </li>
          <li>
            <t><eref target="https://coderlegion.com/24087/intra-handshake-attestation-when-more-security-doesnt-mean-better-security">coderlegion</eref></t>
          </li>
          <li>
            <t><eref target="https://www.anjuna.io/blog/attested-tls-flaw-explained">Anjuna Security</eref></t>
          </li>
          <li>
            <t><eref target="https://privasys.org/blog/binding-attestation-to-the-tls-session/">Privasys</eref></t>
          </li>
          <li>
            <t><eref target="https://caution.co/blog/steve-attesting-the-session.html">Caution</eref></t>
          </li>
          <li>
            <t><eref target="https://freenode.net/digest/67">freenode</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://blog.csdn.net/weixin_42376192/category_13096766.html">csdn</eref></t>
          </li>
          <li>
            <t><eref target="https://osintsights.com/confidential-computing-flaws-expose-trust-risks">osintsights</eref></t>
          </li>
          <li>
            <t>(Turkish) <eref target="https://hardwaremania.com/haber/arastirma-attested-tls-confidential-computing-icin-zayif-kaliyor/">hardwaremania</eref></t>
          </li>
          <li>
            <t><eref target="https://akber.com/sovereignty-in-the-cloud-is-an-illusion/">akber</eref></t>
          </li>
          <li>
            <t><eref target="https://www.ad-hoc-news.de/wissenschaft/cloud-souveraenitaet-red-hat-startet-reifegrad-assessments-gegen/69691475">ad-hoc news</eref></t>
          </li>
          <li>
            <t><eref target="https://aimultiple.com/privacy-enhancing-technologies">AIMultiple</eref></t>
          </li>
        </ul>
        <section anchor="security-researchers">
          <name>Security Researchers</name>
          <t>Several credible security researchers, such as the following, have publicly attested to it.</t>
          <ul spacing="normal">
            <li>
              <t><eref target="https://www.linkedin.com/posts/michaelpak_confidential-computings-core-trust-mechanism-activity-7479415537836376064-q-A4/">Michael Pak</eref></t>
            </li>
            <li>
              <t><eref target="https://www.linkedin.com/posts/rrbranco_one-more-evidence-that-there-is-no-such-a-share-7479582122366615552-X0A5/">Rodrigo Branco</eref></t>
            </li>
            <li>
              <t><eref target="https://www.linkedin.com/posts/bart-preneel-4451412_on-the-limits-of-confidential-computing-share-7479549718294077440-wfi3/">Bart Preneel</eref></t>
            </li>
            <li>
              <t><eref target="https://www.linkedin.com/in/strufe/recent-activity/all/">Thorsten Strufe</eref></t>
            </li>
          </ul>
        </section>
        <section anchor="germanys-bsi">
          <name>Germany's BSI</name>
          <t>Germany's Federal Office for Information Security (Bundesamt für Sicherheit in der Informationstechnik) has attested to it. Carina Hilt, deputy press spokesperson at BSI, told <eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref>:</t>
          <artwork><![CDATA[
CC alone cannot satisfy the requirements for digital sovereignty.
]]></artwork>
          <artwork><![CDATA[
dependencies on other services, such as identity and key
management etc., are also not mitigated by CC.
]]></artwork>
          <t>CC refers to Confidential Computing, and attested TLS is the core trust mechanism of CC.</t>
        </section>
      </section>
    </section>
    <section anchor="reviews">
      <name>Reviews</name>
      <section anchor="conference-reviews">
        <name>Conference Reviews</name>
        <t><xref target="Intra-handshake.fail"/> has been peer-reviewed and accepted for publication at ESORICS 2026.</t>
      </section>
      <section anchor="ietfirtf">
        <name>IETF/IRTF</name>
        <t>Several participants of the IETF/IRTF have attested to the results by independently reproducing the results and reviewing the code. Some of the participants have independently reproduced the results by developing their own formal models and a proof-of-concept implementation of the vulnerabilities. Some of the messages are mentioned below (<strong>excluding</strong> the messages of authors of <xref target="Intra-handshake.fail"/>):</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/">https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/">https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/">https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/">https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/">https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/">https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/">https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/">https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/">https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/">https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/">https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/">https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/">https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/">https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/">https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/">https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/">https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/">https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/">https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/">https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/">https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/">https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/">https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/">https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/">https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/">https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/">https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/">https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/">https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/">https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/">https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/">https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/">https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/">https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/">https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/">https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/">https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/">https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/">https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/">https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/">https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/">https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/">https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/">https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/">https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/">https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/">https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/">https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/">https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/">https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/">https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/">https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/">https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/">https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/">https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/">https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/">https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/">https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/">https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/">https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/">https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/">https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3J3s_YFnf9IQ87Tv2c1q4f36xKQ/">https://mailarchive.ietf.org/arch/msg/seat/3J3s_YFnf9IQ87Tv2c1q4f36xKQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JWKMYY1YG1E2iS_HyQ4rDmOsDGw/">https://mailarchive.ietf.org/arch/msg/seat/JWKMYY1YG1E2iS_HyQ4rDmOsDGw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rK1nDSewAbVL_weOp98knYZcg6s/">https://mailarchive.ietf.org/arch/msg/seat/rK1nDSewAbVL_weOp98knYZcg6s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Wjuz0fIj8tjYocUmiZZXcSwwFHw/">https://mailarchive.ietf.org/arch/msg/seat/Wjuz0fIj8tjYocUmiZZXcSwwFHw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SYiV4KZNr20re6QkGmyWS3pPteA/">https://mailarchive.ietf.org/arch/msg/seat/SYiV4KZNr20re6QkGmyWS3pPteA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZYgxm1ibt6p4dL7xF1YNdl0XSpc/">https://mailarchive.ietf.org/arch/msg/seat/ZYgxm1ibt6p4dL7xF1YNdl0XSpc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/6LKgOp22YRxGTYb-i-BxiMGzMW4/">https://mailarchive.ietf.org/arch/msg/seat/6LKgOp22YRxGTYb-i-BxiMGzMW4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3oHcKPtXLfBUYCZoN1nnO6e1F-s/">https://mailarchive.ietf.org/arch/msg/seat/3oHcKPtXLfBUYCZoN1nnO6e1F-s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aSybH9ihnNjN7SjdhhY_XtxhMtc/">https://mailarchive.ietf.org/arch/msg/seat/aSybH9ihnNjN7SjdhhY_XtxhMtc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/d_G8r7LMGjA45BPexZwsfmmAtJY/">https://mailarchive.ietf.org/arch/msg/seat/d_G8r7LMGjA45BPexZwsfmmAtJY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/u-za86_YJ0spwBXBwTVQzwiOCrU/">https://mailarchive.ietf.org/arch/msg/seat/u-za86_YJ0spwBXBwTVQzwiOCrU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/P4IMdvCx8lSEKrCiJIjbpBCRr4g/">https://mailarchive.ietf.org/arch/msg/seat/P4IMdvCx8lSEKrCiJIjbpBCRr4g/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-AO9yFJoflV1wDwwch45dmqkmyo/">https://mailarchive.ietf.org/arch/msg/seat/-AO9yFJoflV1wDwwch45dmqkmyo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/H0LqHfBasQml69Y-9Zl_njfsE8s/">https://mailarchive.ietf.org/arch/msg/seat/H0LqHfBasQml69Y-9Zl_njfsE8s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3hOGlYyc_yntmvT0tjYxldlwaxM/">https://mailarchive.ietf.org/arch/msg/seat/3hOGlYyc_yntmvT0tjYxldlwaxM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JbwL9cdl6fiP0vBGgASUUDmaPy8/">https://mailarchive.ietf.org/arch/msg/seat/JbwL9cdl6fiP0vBGgASUUDmaPy8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/TtewHbMGKBQOKD2sqrgTrnpCOkI/">https://mailarchive.ietf.org/arch/msg/seat/TtewHbMGKBQOKD2sqrgTrnpCOkI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UsIj6o7wf4hX_uCL51TCTv-wFxU/">https://mailarchive.ietf.org/arch/msg/seat/UsIj6o7wf4hX_uCL51TCTv-wFxU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/a6c8D6PBDRe0x4DAqXM3t4EPc4c/">https://mailarchive.ietf.org/arch/msg/seat/a6c8D6PBDRe0x4DAqXM3t4EPc4c/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/prB537Jht2kELVCSrTRktjbp7Y4/">https://mailarchive.ietf.org/arch/msg/seat/prB537Jht2kELVCSrTRktjbp7Y4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/RPnKYfUCD_MRw3hnA00zg684yGM/">https://mailarchive.ietf.org/arch/msg/seat/RPnKYfUCD_MRw3hnA00zg684yGM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/nMH_0sLLU5MekoEnzWKJnIJmaSk/">https://mailarchive.ietf.org/arch/msg/seat/nMH_0sLLU5MekoEnzWKJnIJmaSk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/GJCA31mgAehlgFPRu_yHA10lKPI/">https://mailarchive.ietf.org/arch/msg/seat/GJCA31mgAehlgFPRu_yHA10lKPI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/9f-21JMK6s1Pdcob6mPo06rNwmQ/">https://mailarchive.ietf.org/arch/msg/seat/9f-21JMK6s1Pdcob6mPo06rNwmQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/8qq_GFT391IEbGZZQUtYMONX9U0/">https://mailarchive.ietf.org/arch/msg/seat/8qq_GFT391IEbGZZQUtYMONX9U0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xzu2UlClYMkG8gNSOClxGJgwnOI/">https://mailarchive.ietf.org/arch/msg/seat/xzu2UlClYMkG8gNSOClxGJgwnOI/</eref></t>
          </li>
          <li>
            <t>Exploit: <eref target="https://mailarchive.ietf.org/arch/msg/seat/MfxWpRtlTqPElX8vX4v8uiN65TU/">https://mailarchive.ietf.org/arch/msg/seat/MfxWpRtlTqPElX8vX4v8uiN65TU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/PkU0jW_xHAF18rZmtZJ2A2p_wHs/">https://mailarchive.ietf.org/arch/msg/seat/PkU0jW_xHAF18rZmtZJ2A2p_wHs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/jZmdYKQlfherbhowIEmZRw2HF1c/">https://mailarchive.ietf.org/arch/msg/seat/jZmdYKQlfherbhowIEmZRw2HF1c/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-0j6UpsD_CebqPPMNkDJCjySqEI/">https://mailarchive.ietf.org/arch/msg/seat/-0j6UpsD_CebqPPMNkDJCjySqEI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/ssDrZRFW4s6CSaYeA9ImH0PPQ10/">https://mailarchive.ietf.org/arch/msg/rats/ssDrZRFW4s6CSaYeA9ImH0PPQ10/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/OPBI_Wd-RoTzzdh5D0JZoWlNGI8/">https://mailarchive.ietf.org/arch/msg/rats/OPBI_Wd-RoTzzdh5D0JZoWlNGI8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/nfrdr1T9Pdp6D_kj2Et3XZk-hOY/">https://mailarchive.ietf.org/arch/msg/rats/nfrdr1T9Pdp6D_kj2Et3XZk-hOY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/gMMvtP1IXsXFfb0X5nMhRTaLLok/">https://mailarchive.ietf.org/arch/msg/rats/gMMvtP1IXsXFfb0X5nMhRTaLLok/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/yaGG4sVf4pCfJ0HNPPRv3Xg0cG8/">https://mailarchive.ietf.org/arch/msg/rats/yaGG4sVf4pCfJ0HNPPRv3Xg0cG8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/DaA1jDQNF-bdO5x-dkVbSzlHcD4/">https://mailarchive.ietf.org/arch/msg/rats/DaA1jDQNF-bdO5x-dkVbSzlHcD4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/ptkHZUDzSoYnD6R5zln6HcE1cv4/">https://mailarchive.ietf.org/arch/msg/rats/ptkHZUDzSoYnD6R5zln6HcE1cv4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/n1-mBLW1m4TKiGsQqOhOIkbNxVs/">https://mailarchive.ietf.org/arch/msg/seat/n1-mBLW1m4TKiGsQqOhOIkbNxVs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/mBHcB8YRR0HVcyihhjm11XqRhWE/">https://mailarchive.ietf.org/arch/msg/seat/mBHcB8YRR0HVcyihhjm11XqRhWE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/zY3vdP_TZKZIdK_kpcrwWQuYf8s/">https://mailarchive.ietf.org/arch/msg/seat/zY3vdP_TZKZIdK_kpcrwWQuYf8s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/QcXGunfoT1OKrBI_FRsgpNsXvn4/">https://mailarchive.ietf.org/arch/msg/seat/QcXGunfoT1OKrBI_FRsgpNsXvn4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/FSh0tTa7h1NcaeVZENqz6wg45C8/">https://mailarchive.ietf.org/arch/msg/seat/FSh0tTa7h1NcaeVZENqz6wg45C8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5uos1xo5lkLisK-9RGJWLJaAnmk/">https://mailarchive.ietf.org/arch/msg/seat/5uos1xo5lkLisK-9RGJWLJaAnmk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2Vyb3hcqRoJF4tLkJOxs2CueNuw/">https://mailarchive.ietf.org/arch/msg/seat/2Vyb3hcqRoJF4tLkJOxs2CueNuw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/9mDNq-Fv3-9726qe_te0nfYKMaM/">https://mailarchive.ietf.org/arch/msg/seat/9mDNq-Fv3-9726qe_te0nfYKMaM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/KwtGScLIYvUCW2A0HxAS5s9XMMo/">https://mailarchive.ietf.org/arch/msg/seat/KwtGScLIYvUCW2A0HxAS5s9XMMo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SpLBEi5_nMr51gSng5oqS1uTlxU/">https://mailarchive.ietf.org/arch/msg/seat/SpLBEi5_nMr51gSng5oqS1uTlxU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/b2laJbuyFQQr6Q1nUCbpKa_PNz8/">https://mailarchive.ietf.org/arch/msg/seat/b2laJbuyFQQr6Q1nUCbpKa_PNz8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/V-3QA8_dX1A5mdKxoVy-1z_8RlA/">https://mailarchive.ietf.org/arch/msg/seat/V-3QA8_dX1A5mdKxoVy-1z_8RlA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vjIo3JCMjHglRNaSSHNOqjKgDxs/">https://mailarchive.ietf.org/arch/msg/seat/vjIo3JCMjHglRNaSSHNOqjKgDxs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/pE1j3aP-qvaUgT-Q88JextCIlcc/">https://mailarchive.ietf.org/arch/msg/seat/pE1j3aP-qvaUgT-Q88JextCIlcc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/uojEp8S21Ftf2osLCJNoR8xPzKA/">https://mailarchive.ietf.org/arch/msg/seat/uojEp8S21Ftf2osLCJNoR8xPzKA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xP6PxDJhAH9bnefUjlKc0f96ak8/">https://mailarchive.ietf.org/arch/msg/seat/xP6PxDJhAH9bnefUjlKc0f96ak8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/krTrXMiNIPyYzVDvlXlJB0UvaSk/">https://mailarchive.ietf.org/arch/msg/seat/krTrXMiNIPyYzVDvlXlJB0UvaSk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5dHBv3DyUy4Fprh71i90x6pHPCY/">https://mailarchive.ietf.org/arch/msg/seat/5dHBv3DyUy4Fprh71i90x6pHPCY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/HErXLOWPTDmOK6RMVO8J0lEGCyU/">https://mailarchive.ietf.org/arch/msg/rats/HErXLOWPTDmOK6RMVO8J0lEGCyU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/QqstD1bsKrZrfQ_VQU-Z9KhYnxM/">https://mailarchive.ietf.org/arch/msg/rats/QqstD1bsKrZrfQ_VQU-Z9KhYnxM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/Oh4lBsX5wtnqPJM1cPOkt1mPOAQ/">https://mailarchive.ietf.org/arch/msg/rats/Oh4lBsX5wtnqPJM1cPOkt1mPOAQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/dMAZ-uAbZIlUxiDbO_0ZBVh4q90/">https://mailarchive.ietf.org/arch/msg/rats/dMAZ-uAbZIlUxiDbO_0ZBVh4q90/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/FRdzVOJ5OBs4M1yuFk_ntxYl1yI/">https://mailarchive.ietf.org/arch/msg/rats/FRdzVOJ5OBs4M1yuFk_ntxYl1yI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/qr4w7FinCkG1qt27aCCjJKruP5E/">https://mailarchive.ietf.org/arch/msg/rats/qr4w7FinCkG1qt27aCCjJKruP5E/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/mf_CtbtSDHPz3uMHRXele2vwYr8/">https://mailarchive.ietf.org/arch/msg/ufmrg/mf_CtbtSDHPz3uMHRXele2vwYr8/</eref></t>
          </li>
        </ul>
        <section anchor="main-questions">
          <name>Main Questions</name>
          <t>In short, five main questions have been raised by WG participants in support of our work:</t>
          <ul spacing="normal">
            <li>
              <t>What <strong>security property</strong> hybrid (intra- + post-handshake attestation) provides that post-handshake attestation alone cannot provide?</t>
            </li>
            <li>
              <t>Since continuous attestation is required in most use cases <xref target="CSA-eBPF"/> <xref target="MITRE-Continuous-Attestation"/>, how is <strong>additional complexity</strong> of <strong>intra</strong>-handshake attestation justified? Use cases with one-time attestation can be covered by doing attestation round immediately after Connection Establishment Time: see <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-6-2">reference</eref>.</t>
            </li>
            <li>
              <t>What is the benefit of doing <strong>signatures</strong> of remote attestation <strong>within</strong> the handshake (as this latency can be exploited)? We add that <strong>verification</strong> of signatures is also time consuming, which can be exploited too. See <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-4.2.4">reference</eref>.</t>
            </li>
            <li>
              <t>How evidence is bound to the secure channel without involving any <strong>shared secret</strong>? See <xref target="TLS-RA"/>.</t>
            </li>
            <li>
              <t>How does a verifying relying party get the legitimate PIIDs and CHIP_IDs?</t>
            </li>
          </ul>
        </section>
        <section anchor="guidance-text">
          <name>Guidance Text</name>
          <ul spacing="normal">
            <li>
              <t>Evidence MUST be bound to the secure channel. Failure to do so results in
relay attacks <xref target="CVE-2026-33697"/>, <xref target="EUVD-2026-16488"/>, <xref target="GHSA-Cocos-AI"/>.</t>
            </li>
            <li>
              <t>Verifier MUST have access to legitimate hardware identifiers of the
Attester. Failure to do so results in relay attacks <xref target="GHSA-Edgeless-Systems"/>.</t>
            </li>
            <li>
              <t>Verifier MUST carefully check the binding. Failure to do so results in
relay attacks <xref target="GHSA-Cocos-AI2"/>, <xref target="GHSA-Cocos-AI3"/>.</t>
            </li>
            <li>
              <t>Binder MUST contain shared secrets. Failure to do so results in relay
attacks <xref target="GHSA-Privasys-rustls"/>, <xref target="GHSA-Privasys-go"/>, <xref target="GHSA-Privasys-eov"/>, <xref target="GHSA-Privasys-eom"/>, <xref target="GHSA-Privasys-rtc"/>, <xref target="GHSA-Privasys-rtc-da"/>, <xref target="GHSA-Privasys-rtc-tcu"/>.</t>
            </li>
          </ul>
        </section>
      </section>
      <section anchor="researchers-outside-of-ietfirtf">
        <name>Researchers outside of IETF/IRTF</name>
        <t>Some researchers have approached us confirming the proof-of-concept of the vulnerabilities in intra-handshake attestation. More information will be added once their pre-prints/papers are public.</t>
      </section>
    </section>
    <section anchor="security-considerations">
      <name>Security Considerations</name>
      <t>All of this document is about the <strong>insecurity</strong> of <strong>intra</strong>-handshake (aka early) attestation.</t>
      <t>By no means should the vendors mentioned in this draft be considered less secure than any other vendors implementing intra-handshake attestation solutions. In particular, those who have closed-source implementations are most likely more vulnerable than the open-source ones, since the former cannot easily be reviewed by the security community. Even extensive security reviews -- of closed-source implementations -- by cybersecurity firms often do not perform formal analysis, and thus such reviews may miss corner cases and subtle vulnerabilities.</t>
    </section>
    <section anchor="ethical-considerations">
      <name>Ethical Considerations</name>
      <t>We (i.e., the super set of all authors involved in this research, including but not limited to Muhammad Usama Sardar, Mariam Moustafa, Tuomas Aura, Viacheslav Dubeyko, Jean-Marie Jacquet, Songbo Bu, Chengxin Huang, Haowen Song, Kaya Ercihan, Dr. Kubilay Ahmet Küçük, Serhii Nikolaichuk, Sylvain Bellemare, Eva C. M. Willems, Justin DESSENNES SAINTEN, Massimiliano Brighindi, Mikerah Quintyne-Collins, and Iman Schrock) are ethical researchers aiming to protect the community from the potential harm caused by the exploitability of the vulnerabilities in early attestation. We have <strong>responsibly disclosed</strong> the vulnerabilities to the respective developers and maintainers following their respective disclosure processes and provided them our proposed mitigations and requested them to take rapid action.</t>
      <t>We have released only the formal analysis for published CVE-2026-33697. To minimize exploit in the wild, we have not publicly released the proof-of-concept exploit code.</t>
      <t>We have not retrieved any real data from any real system. We have not released any key to any public forum or to any person.</t>
      <section anchor="evidence-of-explanation-of-vulnerabilities-to-the-authors-of-vulnerable-drafts">
        <name>Evidence of Explanation of Vulnerabilities to the Authors of Vulnerable Drafts</name>
        <t>To the best of our abilities, knowledge, and understanding, we have tried to explain the vulnerabilities to the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> first privately in several meetings and then later on publicly for at least half a year at several forums, including but not limited to CCC Attestation SIG and IETF/IRTF. Please see the (non-exhaustive list of) recordings <xref target="sec-recordings"/> and the archives <xref target="sec-archives"/> below. We sincerely thank the authors of <xref target="I-D.fossati-tls-attestation-10"/> for withdrawing their draft to protect further exploits mentioned in <xref target="sec-news"/>.</t>
        <section anchor="sec-recordings">
          <name>Recordings</name>
          <table>
            <name>Evidence of several explanations of vulnerabilities to the authors of vulnerable drafts</name>
            <thead>
              <tr>
                <th align="left">Event/Host</th>
                <th align="left">Venue</th>
                <th align="left">Date(s)</th>
                <th align="left">Evidence</th>
              </tr>
            </thead>
            <tbody>
              <tr>
                <td align="left">System Boot and Security MC @ <eref target="https://lpc.events/event/20/">Linux Plumbers Conference 2026</eref></td>
                <td align="left">Prague, Czechia</td>
                <td align="left">5 Oct, 2026</td>
                <td align="left">
                  <eref target="https://lpc.events/event/20/contributions/2585/">abstract</eref>, slides, video</td>
              </tr>
              <tr>
                <td align="left">BoF @ <eref target="https://lpc.events/event/20/">Linux Plumbers Conference 2026</eref></td>
                <td align="left">Prague, Czechia</td>
                <td align="left">5 Oct, 2026</td>
                <td align="left">
                  <eref target="https://lpc.events/event/20/contributions/2640/">abstract</eref>, slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ga4gh.org/event/14th-plenary/">GA4GH 14th Plenary Meeting</eref></td>
                <td align="left">Singapore</td>
                <td align="left">28 Sept-2 Oct, 2026</td>
                <td align="left">slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fg-pet.gi.de/veranstaltung/16th-privacy-enhancing-techniques-convention">PET-CON 2026.2: 16th Privacy Enhancing Techniques Convention</eref></td>
                <td align="left">Lübeck, Germany</td>
                <td align="left">28-29 Sept, 2026</td>
                <td align="left">slides</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://sites.google.com/di.uniroma1.it/esorics2026/">ESORICS 2026</eref></td>
                <td align="left">Rome, Italy</td>
                <td align="left">14-18 Sept, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/414416257_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">slides</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/session/rats">IETF RATS Interim meeting</eref></td>
                <td align="left">Virtual</td>
                <td align="left">14 Sept, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/materials/slides-interim-2026-rats-03-sessa-protecting-the-rats-ecosystem-from-critical-severity-vulnerabilities-00">slides</eref>, <eref target="https://youtu.be/y5_SR0-DzH0?t=255">video</eref></td>
              </tr>
              <tr>
                <td align="left">Hackathon @ <eref target="https://summit.riot-os.org/2026/">RIOT Summit 2026</eref></td>
                <td align="left">Grenoble, France</td>
                <td align="left">4 September, 2026</td>
                <td align="left">
                  <eref target="https://notes.inria.fr/2ppogr2fTSKusRog3RXbPQ?view#topic-security-analysis-of-attested-tls-and-attested-edhoc">topic synopsis</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://summit.riot-os.org/2026/">RIOT Summit 2026</eref></td>
                <td align="left">Grenoble, France</td>
                <td align="left">2-4 September, 2026</td>
                <td align="left">
                  <eref target="https://summit.riot-os.org/2026/blog/speakers/muhammad-usama-sardar/">abstract</eref>, <eref target="https://www.researchgate.net/publication/413988306_Security_Analysis_of_Attested_TLS_and_Attested_EDHOC">slides</eref>, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ga4gh.org/work_stream/data-security/">Data Security Work Stream (DSWS)</eref> at the <eref target="https://www.ga4gh.org/">Global Alliance for Genomics and Health (GA4GH)</eref></td>
                <td align="left">Virtual</td>
                <td align="left">24 Aug, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/413569575_High-Severity_Vulnerabilities_in_Former_GIF_Design_for_Attested_TLS_draft-fossati-seat-early-attestation">slides</eref>, <eref target="https://us02web.zoom.us/rec/share/UAn381deia-aMNmjGHhMqxocc1HcyF7ksLlaeeKefxO4bSC2mHPzwPQPYGe2dnZR.zfleYCmmtiteo_NS">video</eref></td>
              </tr>
              <tr>
                <td align="left">Confidential AI Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">21 July, 2026</td>
                <td align="left">
                  <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/odgd_xmhjQXiR_aLYdqtVvDJeF4/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">21 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-seat-binding-properties-of-expat-00.pdf">slides</eref>, <eref target="https://youtu.be/Fb5Hzh1mp1E?t=4189">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">IETF 126 Hackdemo Happy Hour</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">20 July, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">demo</eref></td>
              </tr>
              <tr>
                <td align="left">Confidential Computing Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">20 July, 2026</td>
                <td align="left">
                  <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hotrfc-sessa-15-confidential-computing-and-digital-sovereignty-00">slides</eref>, <eref target="https://youtu.be/FDHWRijxKso?t=3285">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ietf.org/meeting/hackathons/126-hackathon/">IETF 126 Hackathon</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hackathon-sessd-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/GRqyrDIEgEw?t=1340">video</eref></td>
              </tr>
              <tr>
                <td align="left">IEPG @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/g8q_u19vXzk?t=4404">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">Workshop</eref> @ <eref target="https://www.wissenschaftsnacht-dresden.de/en/">Dresden Science Night 2026</eref></td>
                <td align="left">Dresden</td>
                <td align="left">26 June, 2026</td>
                <td align="left">
                  <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">demo</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://output-dd.de/">Output 2026</eref></td>
                <td align="left">Dresden</td>
                <td align="left">25 June, 2026</td>
                <td align="left">
                  <eref target="https://output-dd.de/projekte/relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems/">demo</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://events.linuxfoundation.org/confidential-computing-summit/">Confidential Computing Summit 2026</eref> (presented by Jens Albers)</td>
                <td align="left">San Francisco, USA</td>
                <td align="left">23-24 June, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411851358_Standardization_of_Attested_TLS">poster</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://confidentialcontainers.org/">Confidential Containers Community Meeting</eref> @ <eref target="https://www.cncf.io/">Cloud Native Computing Foundation</eref></td>
                <td align="left">Virtual</td>
                <td align="left">30 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411849492_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref>, <eref target="https://zoom.us/rec/share/3thZhsRi-BZJL-GqjnwGzh7inbltuKIlpVjqMlWp6WRdMTZ66Z8p-8YjaaeOfbhX.CoH6YBukaKua0gkt">video</eref> around timestamp 00:27:00</td>
              </tr>
              <tr>
                <td align="left">GIF Project showcase @ <eref target="https://www.ga4gh.org/event/april-connect-2026/">GA4GH April Connect 2026</eref></td>
                <td align="left">Montreal, Canada (virtual)</td>
                <td align="left">17 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/412136610_Trusted_Research_Environment_TRE_Open_Suite">slides</eref>, <eref target="https://youtu.be/Kr9oxp1fdn0?t=1083">video</eref>, <eref target="https://www.ga4gh.org/document/arpril-connect-2026-meeting-report/">report</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://sos-vo.org/group/hotsos/">NSA Symposium on Hot Topics in the Science of Security (HotSoS) 2026</eref></td>
                <td align="left">Virtual</td>
                <td align="left">16 April, 2026</td>
                <td align="left">
                  <eref target="https://sos-vo.org/group/hotsos/2026/sardar">abstract</eref>, <eref target="https://sos-vo.org/system/files/2026-04/20260416_HotSoS%20%281%29.pdf">slides</eref>, <eref target="https://sos-vo.org/group/hotsos/2026/sardar">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fg-pet.gi.de/veranstaltung/15th-privacy-enhancing-techniques-convention">PET-CON 2026.1: 15th Privacy Enhancing Techniques Convention</eref></td>
                <td align="left">Karlsruhe, Germany</td>
                <td align="left">16-17 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411849502_Formal_Analysis_of_Attested_TLS">slides</eref>, <eref target="https://www.researchgate.net/publication/411852738_Formal_Analysis_of_Attested_TLS_and_Standardization_in_the_IETF">poster</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://gtmfs2026.sciencesconf.org/program?lang=en">GTMFS 2026: Annual Meeting of the WG "Formal Methods in Security"</eref></td>
                <td align="left">Luz-Saint-Sauveur, France</td>
                <td align="left">24-26 Mar, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411853715_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref></td>
              </tr>
              <tr>
                <td align="left">CFRG @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">19 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-cfrg-relay-attacks-00">slides</eref>, <eref target="https://youtu.be/IfKgbO74Lt4?t=6054">video</eref></td>
              </tr>
              <tr>
                <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref> (relay)</td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">17 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-seat-security-analysis-00">slides</eref>, <eref target="https://youtu.be/hX7genEkN7w?t=676">video</eref></td>
              </tr>
              <tr>
                <td align="left">Side meeting @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">16 Mar, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/403474373_Proposed_RG_Confidential_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">LAKE @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">16 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-lake-formal-analysis-of-attested-edhoc-00">slides</eref>, <eref target="https://youtu.be/JzfLpbnhl0A?t=3117">video</eref></td>
              </tr>
              <tr>
                <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">15 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hotrfc-sessa-formal-proof-of-insecurity-of-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/OtOo7Nogisw?t=3514">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ietf.org/meeting/hackathons/125-hackathon/">IETF 125 Hackathon</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">14-15 Mar, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/125/hackathon#relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hackathon-sessd-relay-attacks-in-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/62A58qH19MI?t=2270">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">10 Feb, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksGen_20260210.pdf">slides</eref>; <eref target="https://www.youtube.com/watch?v=idqwb0hFlhs&amp;list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1061s">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/session/rats">IETF RATS Interim meeting</eref></td>
                <td align="left">Virtual</td>
                <td align="left">9 Feb, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/materials/slides-interim-2026-rats-01-sessa-relayattacks-00.pdf">slides</eref>, <eref target="https://youtu.be/gURY61dViPw?t=1474">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fosdem.org/2026/schedule/track/confidential-computing/">Confidential Computing</eref> devroom at <eref target="https://fosdem.org/2026/">FOSDEM 2026</eref></td>
                <td align="left">Brussels, Belgium</td>
                <td align="left">31 Jan-1 Feb, 2026</td>
                <td align="left">
                  <eref target="https://fosdem.org/2026/schedule/event/GHGFBM-attestedtls/">abstract</eref>, <eref target="https://fosdem.org/2026/events/attachments/GHGFBM-attestedtls/slides/267432/20260201_60u9e0n.pdf">slides</eref>, <eref target="https://video.fosdem.org/2026/ud6215/GHGFBM-attestedtls.av1.webm">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">27 Jan, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksProposal_20260127.pdf">slides</eref>; <eref target="https://youtu.be/P04tLJcSxfM?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=434">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">13 Jan, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacks_20260113.pdf">slides</eref>; <eref target="https://youtu.be/cSrCZNyo7_g?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1083">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">16 Dec, 2025</td>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MuhammadUsamaSardar_Binding_Properties_20251216.pdf">slides</eref>; <eref target="https://youtu.be/w_MrjMeHyP8?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=593">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">2 Dec, 2025</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_Open_Questions_20251202.pdf">slides</eref>; <eref target="https://youtu.be/16aGZ-oZidg?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=2920">video</eref></td>
              </tr>
            </tbody>
          </table>
        </section>
        <section anchor="sec-archives">
          <name>Archives</name>
          <t>Since January, we have publicly informed the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> and shared our results with the community for review and to raise awareness on high-severity vulnerabilities and apply appropriate mitigations for the safety of their users:</t>
          <section anchor="intra-handshakefail-1">
            <name>Intra-handshake.fail</name>
            <section anchor="ietfhttpswwwietforg">
              <name><eref target="https://www.ietf.org/">IETF</eref></name>
              <ul spacing="normal">
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">SEAT WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">RATS WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/tls/8lyqHh9y7_Lv6b1iXhpUqYrp0M0/">TLS WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/lake/Tovtl7wgvzwJWT2I2ZwnhoIOnYQ/">LAKE WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/saag/jBZVk7YySwpaFqydAfxW33kNZPY/">SAAG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/practical-cybersecurity/d65WPaC0WbZRwxTBclnTkf7SmRs/">Practical Cybersecurity list</eref></t>
                </li>
                <li>
                  <t>Agent2agent list <eref target="https://mailarchive.ietf.org/arch/msg/agent2agent/ubz7uXCs--YzuSWyXNNsmWf_tSQ/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/agent2agent/xHhjA94fzed6ONIvPRgwTT-WRmA/">thread2</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/dmsc/QC2adIcYkxiTlniEcc7ggk86BAY/">DSMC list</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/hackathon/PIrJ2O_QqcNUAnMIn_Vh22ImWMc/">Hackathon</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">126attendees</eref></t>
                </li>
              </ul>
            </section>
            <section anchor="irtfhttpswwwirtforg">
              <name><eref target="https://www.irtf.org/">IRTF</eref></name>
              <ul spacing="normal">
                <li>
                  <t>UFMRG: <eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZWK0uMM92OdwlPbgXBvQApDpe5Q/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZRhR7o1HrWxfGDfgRJMR65RBkDE/">thread2</eref></t>
                </li>
                <li>
                  <t>CFRG <eref target="https://mailarchive.ietf.org/arch/msg/cfrg/NbxHIw9H_xpSYbgfO_n7lVIFeWs/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">thread2</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/din/_8LE3Ru1xX16hgGJwryMTRwRoaA/">DINRG</eref></t>
                </li>
              </ul>
            </section>
            <section anchor="ccchttpsconfidentialcomputingio">
              <name><eref target="https://confidentialcomputing.io/">CCC</eref></name>
              <ul spacing="normal">
                <li>
                  <t>Attestation SIG: <eref target="https://lists.confidentialcomputing.io/g/attestation/topic/117207133">thread1</eref> and <eref target="https://lists.confidentialcomputing.io/g/attestation/message/334">thread2</eref></t>
                </li>
                <li>
                  <t>TAC: <eref target="https://lists.confidentialcomputing.io/g/tac/topic/117932193">thread1</eref> and <eref target="https://lists.confidentialcomputing.io/g/tac/topic/120068850">thread2</eref></t>
                </li>
              </ul>
            </section>
            <section anchor="ocphttpswwwopencomputeorg">
              <name><eref target="https://www.opencompute.org/">OCP</eref></name>
              <ul spacing="normal">
                <li>
                  <t>OCP Security: <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/117932716">message1</eref>, <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120069056">message2</eref>, <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120483814">message3</eref> and <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120524635">message4</eref></t>
                </li>
              </ul>
            </section>
          </section>
          <section anchor="earlyattestationbleed-1">
            <name>EarlyAttestationBleed</name>
            <ul spacing="normal">
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZQKdp07P4UeTushAC1q9eBBtp0s/">IRTF UFMRG</eref></t>
              </li>
              <li>
                <t><eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/materials/slides-interim-2026-rats-03-sessa-protecting-the-rats-ecosystem-from-critical-severity-vulnerabilities-00">IETF RATS</eref></t>
              </li>
              <li>
                <t><eref target="https://ocp-all.groups.io/g/OCP-Security/message/1263">OCP Security</eref></t>
              </li>
              <li>
                <t><eref target="https://sympa.inria.fr/sympa/arc/proverif/2026-09/msg00000.html">ProVerif</eref></t>
              </li>
            </ul>
            <t>If you know any other relevant mailing list that we should inform for protection of users, please let us know.</t>
          </section>
        </section>
      </section>
    </section>
    <section anchor="contributions">
      <name>Contributions</name>
      <t>Contributions to the draft are welcome at <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail">https://github.com/muhammad-usama-sardar/intra-handshake-fail</eref>.</t>
      <t>Wenn Sie nur Deutsch sprechen, können Sie sich gerne per E-Mail an den Erstautor wenden. Wir haben Mitglieder, die Ihnen bei der Übersetzung Ihres Beitrags helfen können.</t>
      <t>如果您只会说中文，非常欢迎您通过电子邮件联系第四位作者。我们有成员可以协助翻译您的投稿。</t>
    </section>
    <section anchor="iana-considerations">
      <name>IANA Considerations</name>
      <t>This document has no IANA actions.</t>
    </section>
  </middle>
  <back>
    <references anchor="sec-combined-references">
      <name>References</name>
      <references anchor="sec-normative-references">
        <name>Normative References</name>
        <reference anchor="Intra-handshake.fail" target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="June"/>
          </front>
        </reference>
        <reference anchor="Intra-handshake.fail-repo" target="https://github.com/muhammad-usama-sardar/intra-handshake.fail">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="July"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-33697" target="https://www.cve.org/CVERecord?id=CVE-2026-33697">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-16488" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-16488">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-92701" target="https://www.cve.org/CVERecord?id=CVE-2026-92701">
          <front>
            <title>Cocos AI Intra-handshake attested TLS implementation is vulnerable to session-misbinding attacks for Intel TDX verifier path</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-92702" target="https://www.cve.org/CVERecord?id=CVE-2026-92702">
          <front>
            <title>Cocos AI Intra-handshake attested TLS implementation can accept Evidence with nil, empty, or omitted reportData in the AMD SEV-SNP path</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-83194" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-83194">
          <front>
            <title>EUVD-2026-83194</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-83192" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-83192">
          <front>
            <title>EUVD-2026-83192</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-vfgg-mvxx-mgg7">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI2" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-4px3-wj2x-xx47">
          <front>
            <title>Cocos AI intra-handshake attested TLS implementation is vulnerable to session-misbinding attacks for Intel TDX verifier path</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI3" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-4r6g-mp48-j2rw">
          <front>
            <title>Cocos AI intra-handshake attested TLS implementation can accept Evidence with nil, empty, or omitted reportData in the AMD SEV-SNP path</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-hjgc-jc5v-fw7h">
          <front>
            <title>Remote attestation is susceptible to relay attacks</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems2" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-m2qg-wrxv-h898">
          <front>
            <title>Generated policies don't detect all image substitutions</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="SEAT-vulnerability-report" target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">
          <front>
            <title>Relay Attacks in Intra-handshake Attestation for Confidential Agentic AI Systems</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <date year="2026" month="January"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rustls" target="https://github.com/Privasys/rustls/security/advisories/GHSA-j6qv-435v-r492">
          <front>
            <title>Privasys RA-TLS challenge mode did not bind attestation evidence to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-go" target="https://github.com/Privasys/go/security/advisories/GHSA-7jfw-53rm-phh2">
          <front>
            <title>Privasys Go fork: RA-TLS challenge mode did not bind attestation evidence to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-eov" target="https://github.com/Privasys/enclave-os-virtual/security/advisories/GHSA-p5fp-g94g-g9m9">
          <front>
            <title>enclave-os-virtual: RA-TLS challenge certificates were not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-eom" target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-49qm-4pj3-w2c6">
          <front>
            <title>enclave-os-mini: RA-TLS challenge certificates were not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-5qrc-v874-mxvx">
          <front>
            <title>ra-tls-clients: RA-TLS challenge verifier accepted quotes not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc-da" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-pj2x-5wqv-fh57">
          <front>
            <title>Privasys Intra-handshake attested TLS implementation is vulnerable to Diversion Attacks</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc-tcu" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-gg8q-mfhh-wrrc">
          <front>
            <title>Privasys Intra-handshake attested TLS implementation is vulnerable to TOCTOU Attacks</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI4" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-v5m8-5wxc-vjgp">
          <front>
            <title>Cocos Intra-handshake attested TLS implementation is vulnerable to Diversion Attacks</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI5" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-ghwv-vrp2-2975">
          <front>
            <title>Cocos AI Intra-handshake attested TLS implementation is vulnerable to TOCTOU Attacks</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="ID-Crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author fullname="Muhammad Usama Sardar" initials="M." surname="Sardar">
              <organization>TU Dresden, Dresden, Germany</organization>
            </author>
            <author fullname="Mariam Moustafa" initials="M." surname="Moustafa">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <author fullname="Tuomas Aura" initials="T." surname="Aura">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <date month="June" year="2026"/>
          </front>
          <seriesInfo name="Proceedings of the ACM Asia Conference on Computer and Communications Security" value="pp. 547-560"/>
          <seriesInfo name="DOI" value="10.1145/3779208.3785387"/>
          <refcontent>ACM</refcontent>
        </reference>
        <reference anchor="ID-Crisis-repo" target="https://github.com/CCC-Attestation/formal-spec-id-crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="M." surname="Moustafa">
              <organization/>
            </author>
            <author initials="T." surname="Aura">
              <organization/>
            </author>
            <date year="2025" month="November"/>
          </front>
        </reference>
        <reference anchor="refTLS">
          <front>
            <title>Verified Models and Reference Implementations for the TLS 1.3 Standard Candidate</title>
            <author fullname="Karthikeyan Bhargavan" initials="K." surname="Bhargavan">
              <organization/>
            </author>
            <author fullname="Bruno Blanchet" initials="B." surname="Blanchet">
              <organization/>
            </author>
            <author fullname="Nadim Kobeissi" initials="N." surname="Kobeissi">
              <organization/>
            </author>
            <date month="May" year="2017"/>
          </front>
          <seriesInfo name="2017 IEEE Symposium on Security and Privacy (SP)" value="pp. 483-502"/>
          <seriesInfo name="DOI" value="10.1109/sp.2017.26"/>
          <refcontent>IEEE</refcontent>
        </reference>
        <reference anchor="TLS-RA" target="https://www.usenix.org/conference/atc25/presentation/weinhold">
          <front>
            <title>Separate but together: integrating remote attestation into TLS</title>
            <author initials="" surname="Carsten Weinhold">
              <organization/>
            </author>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="" surname="Ionuț Mihalcea">
              <organization/>
            </author>
            <author initials="" surname="Yogesh Deshpande">
              <organization/>
            </author>
            <author initials="" surname="Hannes Tschofenig">
              <organization/>
            </author>
            <author initials="" surname="Yaron Sheffer">
              <organization/>
            </author>
            <author initials="" surname="Thomas Fossati">
              <organization/>
            </author>
            <author initials="" surname="Michael Roitzsch">
              <organization/>
            </author>
            <date year="2025" month="July"/>
          </front>
        </reference>
        <reference anchor="CSA-eBPF" target="https://cloudsecurityalliance.org/blog/2026/09/09/mitre-s-new-framework-securing-the-ebpf-layer-your-ai-depends-on">
          <front>
            <title>MITRE's New Framework: Securing the eBPF Layer Your AI Depends On</title>
            <author initials="" surname="Cloud Security Alliance">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="MITRE-Continuous-Attestation" target="https://www.mitre.org/news-insights/publication/framework-continuous-remote-attestation">
          <front>
            <title>Framework for Continuous Remote Attestation</title>
            <author initials="" surname="MITRE's Confidential Computing Layered Attestation Working Group">
              <organization/>
            </author>
            <date year="2026" month="July"/>
          </front>
        </reference>
        <reference anchor="EarlyAttestationBleed" target="https://www.researchgate.net/publication/414529199_EarlyAttestationBleed_Three_Critical-severity_Vulnerabilities_of_CVSS_90_in_Confidential_Computing">
          <front>
            <title>EarlyAttestationBleed: Three Critical-severity Vulnerabilities of CVSS ≥ 9.0 in Confidential Computing</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="" surname="Songbo Bu">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
      </references>
      <references anchor="sec-informative-references">
        <name>Informative References</name>
        <reference anchor="I-D.fossati-seat-early-attestation">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="20" month="September" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a TLS extension that
   enables the negotiation and binding of the TLS authentication key to
   a remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   This extension has been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-07"/>
        </reference>
        <reference anchor="I-D.fossati-seat-early-attestation-04">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="27" month="May" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a series of TLS
   extensions that enable the binding of the TLS authentication key to a
   remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   These extensions have been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-04"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-06">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="19" month="March" year="2024"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-06"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-09">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="30" month="April" year="2025"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-09"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-10">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="23" month="July" year="2026"/>
            <abstract>
              <t>   This draft has been withdrawn.

About This Document

   This note is to be removed before publishing as an RFC.

   Status information for this document may be found at
   https://datatracker.ietf.org/doc/draft-fossati-tls-attestation/.

   Source for this draft and an issue tracker can be found at
   https://github.com/yaronf/draft-tls-attestation.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-10"/>
        </reference>
        <reference anchor="I-D.ritz-seat-facts">
          <front>
            <title>Factor-based Attestation and Credential Transport Scheme (FACTS) over TLS 1.3</title>
            <author fullname="Nathanael Ritz" initials="N." surname="Ritz">
              <organization>Independent</organization>
            </author>
            <date day="1" month="March" year="2026"/>
            <abstract>
              <t>   This document describes FACTS (Factor-based Attestation and
   Credential Transport Scheme) over TLS 1.3.  Conceptually acting as
   "multi-factor authentication" for machine identities, factor-based
   attestation derives session trust from multiple independent
   cryptographic inputs rather than a single point of failure.
   Specifically, it utilizes a dual-key scheme that binds identity to
   attestation evidence through the use of key encapsulation material
   keys (KEM) and traditional identity signing keys (IK), establishing
   per-session freshness.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ritz-seat-facts-00"/>
        </reference>
      </references>
    </references>
    <?line 1068?>

<section numbered="false" anchor="acknowledgments">
      <name>Acknowledgments</name>
      <t>Acknowledgment does not necessarily imply attestation. It implies that the authors found the feedback and discussion useful in improving the formal analysis, the corresponding paper, or this draft.</t>
      <t>This draft benefits from several years of research on attested TLS, in particular some of the recent works mentioned below:</t>
      <t><strong>EarlyAttestationBleed</strong> <xref target="EarlyAttestationBleed"/></t>
      <t>We wish to express our sincere appreciation to the following for their review:</t>
      <ul spacing="normal">
        <li>
          <t>Sammy Kerata Oina</t>
        </li>
        <li>
          <t>Drasko Draskovic</t>
        </li>
        <li>
          <t>Markus Rudy</t>
        </li>
        <li>
          <t>Kaya Ercihan</t>
        </li>
        <li>
          <t>Peg Jones</t>
        </li>
        <li>
          <t>Bertrand Foing</t>
        </li>
        <li>
          <t>Rebekah Overdorf</t>
        </li>
        <li>
          <t>Tobias Pulls</t>
        </li>
      </ul>
      <t><strong>Intra-handshake.fail</strong> <xref target="Intra-handshake.fail"/></t>
      <t>We gratefully acknowledge the following for insightful discussions and helpful reviews on <xref target="Intra-handshake.fail"/>:</t>
      <ul spacing="normal">
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Juho Forsén</t>
        </li>
        <li>
          <t>Markus Rudy</t>
        </li>
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Steve Kremer</t>
        </li>
        <li>
          <t>Tjaden Hess</t>
        </li>
        <li>
          <t>Martin Thomson</t>
        </li>
        <li>
          <t>Yuning Jiang</t>
        </li>
        <li>
          <t>Pavel Nikonorov</t>
        </li>
        <li>
          <t>Casey Wilson</t>
        </li>
        <li>
          <t>Anonymous ESORICS 2026 reviewers</t>
        </li>
        <li>
          <t>Marco Anisetti (ESORICS 2026 shepherd)</t>
        </li>
        <li>
          <t>Danko Miladinovic</t>
        </li>
        <li>
          <t>Rongkuan He</t>
        </li>
        <li>
          <t>Peeter Laud</t>
        </li>
        <li>
          <t>Stephen Holmes</t>
        </li>
        <li>
          <t>Ammara Gul</t>
        </li>
        <li>
          <t>Atul Prakash</t>
        </li>
        <li>
          <t>Paul Syverson</t>
        </li>
        <li>
          <t>Jan Tobias Muehlberg</t>
        </li>
        <li>
          <t>John Preuß Mattsson</t>
        </li>
        <li>
          <t>Britta Hale</t>
        </li>
        <li>
          <t>Werner Staub</t>
        </li>
        <li>
          <t>Songbo Bu</t>
        </li>
        <li>
          <t>Haowen Song</t>
        </li>
        <li>
          <t>Chengxin Huang</t>
        </li>
        <li>
          <t>Steve Luo</t>
        </li>
        <li>
          <t>Andrew Miller</t>
        </li>
        <li>
          <t>Kubilay Ahmet Küçük</t>
        </li>
        <li>
          <t>Iman Schrock</t>
        </li>
        <li>
          <t>Sophie Schmieg</t>
        </li>
        <li>
          <t>Davyd Okaianchenko</t>
        </li>
        <li>
          <t>Alistair Woodman</t>
        </li>
        <li>
          <t>Göran Selander</t>
        </li>
        <li>
          <t>Tom Sato</t>
        </li>
        <li>
          <t>Jakub Maria Plutowski</t>
        </li>
        <li>
          <t>Martin Friedrich</t>
        </li>
        <li>
          <t>Patrick Duggan</t>
        </li>
        <li>
          <t>Deb Cooley</t>
        </li>
      </ul>
      <t><strong>Identity Crisis</strong> <xref target="ID-Crisis"/></t>
      <t>We would like to thank our co-authors of paper <xref target="ID-Crisis"/> for their valuable contributions:</t>
      <ul spacing="normal">
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Tuomas Aura</t>
        </li>
      </ul>
      <t>We also gratefully acknowledge the following for insightful discussions and helpful feedback:</t>
      <ul spacing="normal">
        <li>
          <t>Ionut Mihalcea</t>
        </li>
        <li>
          <t>Jean-Marie Jacquet</t>
        </li>
        <li>
          <t>Thomas Fossati</t>
        </li>
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Hannes Tschofenig</t>
        </li>
        <li>
          <t>Yaron Sheffer</t>
        </li>
        <li>
          <t>Laurence Lundblade</t>
        </li>
        <li>
          <t>Giridhar Mandyam</t>
        </li>
        <li>
          <t>Christopher Patton</t>
        </li>
        <li>
          <t>Jonathan Hoyland</t>
        </li>
        <li>
          <t>Richard Barnes</t>
        </li>
      </ul>
      <t><strong>refTLS</strong> <xref target="refTLS"/></t>
      <t>We sincerely thank the following for the foundational formal model of draft 20 of TLS 1.3 in their work <xref target="refTLS"/> that we have used as the foundation of all of this work:</t>
      <ul spacing="normal">
        <li>
          <t>Karthikeyan Bhargavan</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Nadim Kobeissi</t>
        </li>
      </ul>
      <t><strong>General</strong></t>
      <t>Several others at the IETF, IRTF, CCC, and GA4GH have contributed by providing feedback over the years. A non-exhaustive list of contributors is <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00#page=17">here</eref>.</t>
      <t>Muhammad Usama Sardar is funded by German Research Foundation ("Deutsche Forschungsgemeinschaft.")</t>
    </section>
  </back>
  <!-- ##markdown-source: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-->

</rfc>
