<?xml version='1.0' encoding='utf-8'?>
<!DOCTYPE rfc [
  <!ENTITY nbsp    "&#160;">
  <!ENTITY zwsp   "&#8203;">
  <!ENTITY nbhy   "&#8209;">
  <!ENTITY wj     "&#8288;">
]>
<?xml-stylesheet type="text/xsl" href="rfc2629.xslt" ?>
<!-- generated by https://github.com/cabo/kramdown-rfc version 1.7.43 (Ruby 3.4.9) -->
<rfc xmlns:xi="http://www.w3.org/2001/XInclude" ipr="trust200902" docName="draft-intra-handshake-fail-42" category="info" submissionType="IETF" tocInclude="true" sortRefs="true" symRefs="true" version="3">
  <!-- xml2rfc v2v3 conversion 3.34.1 -->
  <front>
    <title abbrev="Early Attestation Considered Harmful">Early Attestation Considered Very Harmful (CVE-2026-92701 of CVSS 9.1, CVE-2026-92702 of CVSS 9.1, CVE-2026-33697 of CVSS 7.5, and 37 other CVEs of up to expected CVSS 10.0 upcoming)</title>
    <seriesInfo name="Internet-Draft" value="draft-intra-handshake-fail-42"/>
    <author fullname="Muhammad Usama Sardar">
      <organization abbrev="TU Dresden">Technical University of Dresden</organization>
      <address>
        <postal>
          <city>Dresden</city>
          <code>01187</code>
          <country>Germany</country>
        </postal>
        <email>muhammad_usama.sardar@tu-dresden.de</email>
      </address>
    </author>
    <author fullname="Viacheslav Dubeyko">
      <organization>CoreWeave</organization>
      <address>
        <email>slava@dubeyko.com</email>
      </address>
    </author>
    <author fullname="Jean-Marie Jacquet">
      <organization>University of Namur</organization>
      <address>
        <postal>
          <city>Namur</city>
          <country>Belgium</country>
        </postal>
        <email>jean-marie.jacquet@unamur.be</email>
      </address>
    </author>
    <author fullname="Songbo Bu">
      <organization>Shanghai Guan An Information Technology Co., Ltd.</organization>
      <address>
        <postal>
          <country>China</country>
        </postal>
        <email>bluedognull@gmail.com</email>
      </address>
    </author>
    <author fullname="Chengxin Huang">
      <organization>Independent</organization>
      <address>
        <email>aurestarnull@gmail.com</email>
      </address>
    </author>
    <author fullname="Haowen Song">
      <organization>Shanghai Guan An Information Technology Co., Ltd.</organization>
      <address>
        <postal>
          <country>China</country>
        </postal>
        <email>havan12050544@gmail.com</email>
      </address>
    </author>
    <author fullname="Kaya Ercihan">
      <organization>Switch</organization>
      <address>
        <postal>
          <city>Zurich</city>
          <country>Switzerland</country>
        </postal>
        <email>kaya.ercihan@switch.ch</email>
      </address>
    </author>
    <author initials="D. K. A." surname="Küçük" fullname="Dr Kubilay Ahmet Küçük">
      <organization>DPhil Oxford University</organization>
      <address>
        <email>dr.kucuk@oxfordalumni.org</email>
      </address>
    </author>
    <author fullname="Serhii Nikolaichuk">
      <organization>The Capital Index</organization>
      <address>
        <postal>
          <city>Austin, Texas</city>
          <country>USA</country>
        </postal>
        <email>nikolaichuk.s.f@gmail.com</email>
      </address>
    </author>
    <author fullname="Sylvain Bellemare">
      <organization>Sureshot Labs</organization>
      <address>
        <postal>
          <country>Japan</country>
        </postal>
        <email>sbellem@gmail.com</email>
      </address>
    </author>
    <author initials="E. C. M." surname="Willems" fullname="Eva C. M. Willems">
      <organization>Independent</organization>
      <address>
        <postal>
          <country>Netherlands</country>
        </postal>
        <email>evac.m.willems@proton.me</email>
      </address>
    </author>
    <author fullname="Justin DESSENNES SAINTEN">
      <organization>Independent Corporate Risk Consultant</organization>
      <address>
        <postal>
          <city>Paris</city>
          <country>France</country>
        </postal>
        <email>dessennes_sainten@msn.com</email>
      </address>
    </author>
    <author fullname="Massimiliano Brighindi">
      <organization>PHI-OMEGA</organization>
      <address>
        <postal>
          <city>San Benedetto del Tronto</city>
          <country>Italy</country>
        </postal>
        <email>phiomega.runtime@gmail.com</email>
      </address>
    </author>
    <author fullname="Mikerah Quintyne-Collins">
      <organization>HashCloak Inc and Stoffel Labs Inc</organization>
      <address>
        <postal>
          <country>Canada</country>
        </postal>
        <email>mikerah@hashcloak.com</email>
      </address>
    </author>
    <author fullname="Iman Schrock">
      <organization>EMILIA Protocol, Inc.</organization>
      <address>
        <email>team@emiliaprotocol.ai</email>
      </address>
    </author>
    <date year="2026" month="September" day="24"/>
    <workgroup>SEAT</workgroup>
    <keyword>AI agents</keyword>
    <keyword>Intra-handshake attestation</keyword>
    <keyword>Early attestation</keyword>
    <keyword>CVE-2026-33697</keyword>
    <keyword>CVE-2026-92701</keyword>
    <keyword>CVE-2026-92702</keyword>
    <abstract>
      <?line 296?>

<t>The draft aims to provide technical details of <xref target="CVE-2026-33697"/>, <xref target="EUVD-2026-16488"/>, <xref target="CVE-2026-92701"/>, <xref target="EUVD-2026-83194"/>, <xref target="CVE-2026-92702"/>, <xref target="EUVD-2026-83192"/> and several GitHub Security Advisories (GHSAs) which provide substantial technical evidence of how early attestation fails in practice, even <strong>without physical access</strong> to the desired machine. Moreover, since continuous attestation is generally required <xref target="CSA-eBPF"/> <xref target="MITRE-Continuous-Attestation"/>, early attestation adds <strong>unnecessary complexity</strong>. The results are backed by the research <xref target="Intra-handshake.fail"/>, <xref target="TLS-RA"/>, <xref target="EarlyAttestationBleed"/> and the artifacts <xref target="Intra-handshake.fail-repo"/> in state-of-the-art formal analysis tool, ProVerif, under Apache-2.0 license for reproducibility, extensibility, and review, and have been acknowledged by the relevant stakeholders. Currently, there are <strong>two CVEs of CVSS 9.1, one CVE of CVSS 7.5, one GHSA of 9.0-10.0, one GHSA of CVSS 7.8, seven GHSAs of CVSS 7.4, and one GHSA of CVSS 6.3 published against the broader early attestation covering all layers of the ecosystem up to the application</strong>. The research papers on these are currently either under submission or being prepared for submission. The artifacts of these papers will be shared with the community under Apache-2.0 license for reproducibility, extensibility, and review. In our analysis, the remaining implementations of early attestation -- Edgeless Systems Contrast and Meta's AI -- remain vulnerable.</t>
    </abstract>
    <note removeInRFC="true">
      <name>About This Document</name>
      <t>
        The latest revision of this draft can be found at <eref target="https://muhammad-usama-sardar.github.io/intra-handshake-fail/draft-intra-handshake-fail.html"/>.
        Status information for this document may be found at <eref target="https://datatracker.ietf.org/doc/draft-intra-handshake-fail/"/>.
      </t>
      <t>Source for this draft and an issue tracker can be found at
        <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail"/>.</t>
    </note>
  </front>
  <middle>
    <?line 300?>

<section anchor="introduction">
      <name>Introduction</name>
      <t><xref target="Intra-handshake.fail"/> presents a general approach to analyze the intra-handshake (aka early) attestation proposals, regardless of whether they are within the scope of SEAT charter or not. From a security perspective, one of the key decision factors is the candidate binding mechanism. Some binding mechanisms are within scope of SEAT charter and others are not. The artifacts are available in <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 license for reproducibility, extensibility and further research.</t>
      <t>A <strong>complementary</strong> paper <xref target="ID-Crisis"/> presents the identity crisis in pre- and intra-handshake attestation. The formal analysis is available in <xref target="ID-Crisis-repo"/> under Apache-2.0 license for reproducibility and extensibility.</t>
      <t>Another complementary paper -- currently under submission -- performs a thorough formal analysis of the design options in intra-handshake attestation.</t>
      <section anchor="overview">
        <name>Overview</name>
        <t><xref target="Intra-handshake.fail"/> presents the formal specification and analysis of the candidate binding mechanisms for binding in intra-handshake attestation for standardization for attested TLS protocols:</t>
        <table>
          <name>Binding mechanisms, implementations and ProVerif artifacts</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Used in</th>
              <th align="left">Artifacts</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MarkusRudy.contrast-atls-ccc-attestation.pdf">Edgeless Systems Contrast</eref>; <eref target="https://www.sns-itrust6g.com/wp-content/uploads/2025/12/Webinar-Architecting-Trust-CONFIDENTIAL6G.pdf">Cocos AI v0.8.2</eref>;  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref>; <eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI updated spec</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <xref target="I-D.fossati-tls-attestation-06"/></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7">binder7</eref></td>
            </tr>
          </tbody>
        </table>
        <artwork><![CDATA[
We provide a formal proof of insecurity of all the above candidate
binding mechanisms of intra-handshake attestation using the
state-of-the-art tool ProVerif and propose a mitigation for the
discovered security vulnerabilities. Our study reveals that it may
not be possible to achieve strong application-traffic (level 3)
binding using intra-handshake attestation alone. This can be exploited
for relay attacks, where an attacker makes a client accept an evidence
from a different machine. So the client cannot be sure that it connects
to its desired server.
]]></artwork>
        <t>We responsibly disclosed the vulnerability in intra-handshake attestation -- as noted in <xref target="GHSA-Cocos-AI"/> issued -- to the vendors, which resulted in  <xref target="CVE-2026-33697"/> of CVSS 7.5.</t>
      </section>
      <section anchor="modeling-other-binding-mechanisms">
        <name>Modeling Other Binding Mechanisms</name>
        <t>The artifacts are quite flexible for modification and testing of different intra-handshake attestation binding mechanisms by simply changing single <tt>rdata</tt> parameter in the Client and Server processes. Folder <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/aggregate">aggregate</eref> contains all analyzed and proposed binding mechanisms in <xref target="Intra-handshake.fail"/> to select via comment and uncomment. Other folders contain one specific binding mechanism.</t>
      </section>
      <section anchor="seat-early-attestation">
        <name>SEAT-Early-Attestation</name>
        <t>The draft <xref target="I-D.fossati-seat-early-attestation"/> is an extension of the provably vulnerable (and withdrawn) draft <xref target="I-D.fossati-tls-attestation-10"/> with the following two main changes from a formal perspective:</t>
        <ol spacing="normal" type="1"><li>
            <t>Binder has been updated</t>
          </li>
          <li>
            <t>Optional post-handshake attestation part has been added for re-attestation</t>
          </li>
        </ol>
        <t>The current binder in <xref target="I-D.fossati-seat-early-attestation"/> does not prevent relay attacks as there is no <strong>shared secret</strong> in the binder. In addition to the formal analysis in <xref target="Intra-handshake.fail"/>, see <xref target="TLS-RA"/> for arguments why shared secret is necessary to prevent relay attacks.</t>
        <t>Post-handshake attestation part may prevent relay attacks, but then the <strong>additional complexity</strong> of intra-handshake attestation is unjustified.</t>
      </section>
      <section anchor="executive-summary-of-current-status">
        <name>Executive Summary of Current Status</name>
        <t>Severity is based on <eref target="https://nvd.nist.gov/vuln-metrics/cvss">NIST metrics</eref>. Scores of 13 more GHSAs is yet to be confirmed and will be added later in this table. <strong>For TLS reference, Heartbleed was CVSS 7.5</strong>.</t>
        <table>
          <name>Published CVEs/GHSAs for intra-handshake (aka early) attestation</name>
          <thead>
            <tr>
              <th align="left">CVSS</th>
              <th align="left">Severity</th>
              <th align="left">Number of Published GHSAs</th>
              <th align="left">Number of Published CVEs</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">9.0-10.0</td>
              <td align="left">Critical</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">9.1</td>
              <td align="left">Critical</td>
              <td align="left">2</td>
              <td align="left">2</td>
            </tr>
            <tr>
              <td align="left">7.8</td>
              <td align="left">High</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">7.5</td>
              <td align="left">High</td>
              <td align="left">1</td>
              <td align="left">1</td>
            </tr>
            <tr>
              <td align="left">7.4</td>
              <td align="left">High</td>
              <td align="left">7</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">6.3</td>
              <td align="left">Medium</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
          </tbody>
        </table>
      </section>
    </section>
    <section anchor="sec-credits">
      <name>Published GHSAs/CVEs</name>
      <table>
        <name>GHSAs/CVEs for intra-handshake (aka early) attestation and finders in (roughly) chronological order of publishing -- CVSS of last 14 GHSAs are preliminary</name>
        <thead>
          <tr>
            <th align="left">GHSA/CVE</th>
            <th align="left">CVSS</th>
            <th align="left">Finders</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI"/></td>
            <td align="left">7.8</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">7.5</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-16488"/></td>
            <td align="left">7.5</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI2"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI3"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems2"/></td>
            <td align="left">9.0-10.0</td>
            <td align="left">Markus Rudy; independently by Songbo Bu and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rustls"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-go"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-eov"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-eom"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc-da"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc-tcu"/></td>
            <td align="left">6.3</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-92701"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-92702"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-83194"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-83192"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-322v-xwfj-63cm">GHSA-322v-xwfj-63cm</eref></td>
            <td align="left">9.8</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-m9p9-3hxp-4j6j">GHSA-m9p9-3hxp-4j6j</eref></td>
            <td align="left">9.1</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-ppc4-fg56-x397">GHSA-ppc4-fg56-x397</eref></td>
            <td align="left">8.2</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6j47-3cm6-9cg6">GHSA-6j47-3cm6-9cg6</eref></td>
            <td align="left">8.1</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-4755-rh6c-694j">GHSA-4755-rh6c-694j</eref></td>
            <td align="left">8.1</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6f8q-88mv-c8vr">GHSA-6f8q-88mv-c8vr</eref></td>
            <td align="left">7.9</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-qqq3-6c47-684v">GHSA-qqq3-6c47-684v</eref></td>
            <td align="left">7.5</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-xxr6-w252-4ggx">GHSA-xxr6-w252-4ggx</eref></td>
            <td align="left">7.5</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-fmrx-fjqw-37gp</eref></td>
            <td align="left">6.5</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-f96w-jjf8-xpw3</eref></td>
            <td align="left">5.6</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fqrx-3wc2-4g49">GHSA-fqrx-3wc2-4g49</eref></td>
            <td align="left">4.4</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-mrgr-34cc-fcg8">GHSA-mrgr-34cc-fcg8</eref></td>
            <td align="left">4.2</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-wqf9-jfmm-f68v">GHSA-wqf9-jfmm-f68v</eref></td>
            <td align="left">4.2</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">TBA</td>
            <td align="left">7.8</td>
            <td align="left">Chengxin Huang, Songbo Bu, and Muhammad Usama Sardar</td>
          </tr>
        </tbody>
      </table>
    </section>
    <section anchor="threat-model">
      <name>Threat Model</name>
      <t>The threat model is explained in Sec. 6.1 of <xref target="Intra-handshake.fail"/> and Sec. 4 of <xref target="ID-Crisis"/>.</t>
      <t>Beyond post-generation leakage of <tt>privEK</tt> considered in <xref target="Intra-handshake.fail"/>, the same adversary capability may arise from failures during key generation or entropy provisioning. Platform-attestation keys and workload-controlled TLS keys belong to distinct key-generation domains: for example, in AMD SEV-SNP the VCEK is derived by SNP firmware from chip-unique secrets and a TCB version, while several other platform secrets are specified as CSRNG-generated; by contrast, <tt>privEK</tt> and TLS (EC)DHE private values are typically generated by software executing inside the confidential VM using the guest OS or cryptographic-library random subsystem. Furthermore, SEV-SNP <tt>REPORT_DATA</tt> is supplied by the guest and incorporated into the signed attestation report without being interpreted by SNP firmware; consequently, valid Evidence can authenticate a binding value without attesting the entropy provenance, generation procedure, or exclusive possession of the corresponding private key. The <tt>LEK(privEK)</tt> capability should therefore also encompass predictable or repeated key generation caused by deficient entropy, cloned or rolled-back DRBG state, defective software or firmware, or malicious provisioning. <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-7055.html">CVE-2025-62626</eref> provides a concrete manufacturer-layer fault model: affected AMD Zen 5 processors could return insufficiently random values from certain <tt>RDSEED</tt> forms while incorrectly signaling success. This does not establish compromise of the AMD-SP-internal CSRNG or of a specific attested-TLS implementation, but demonstrates that ideal-randomness assumptions can fail below the protocol layer; software dependencies such as OpenSSL's <tt>--with-rand-seed=rdcpu</tt> (<eref target="https://github.com/openssl/openssl/blob/openssl-3.5.0/INSTALL.md">OpenSSL 3.5.0 INSTALL.md</eref>), which can use <tt>RDSEED</tt> or <tt>RDRAND</tt> as CSPRNG seed input, illustrate a possible propagation path from hardware entropy interfaces to workload TLS key generation.</t>
      <section anchor="low-level-mapping-of-the-system-model">
        <name>Low-Level Mapping of the System Model</name>
        <t>Figure 2 of <xref target="Intra-handshake.fail"/> provides a TEE-agnostic protocol-level
abstraction. For a low-level view, the following table maps the abstract
components to representative Intel TDX and AMD SEV-SNP implementations.</t>
        <table>
          <name>Mapping of the abstract system model to representative CC implementations</name>
          <thead>
            <tr>
              <th align="left">Fig. 2 element</th>
              <th align="left">Intel TDX</th>
              <th align="left">AMD SEV-SNP</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">
                <strong>Physical Machine</strong></td>
              <td align="left">TDX-capable Intel platform</td>
              <td align="left">SEV-SNP-capable AMD platform</td>
            </tr>
            <tr>
              <td align="left">
                <strong>CC Platform</strong></td>
              <td align="left">CPU HW + TDX Module + attestation infrastructure</td>
              <td align="left">CPU HW + AMD-SP/SNP (system) firmware + RMP/SEV machinery</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Quoting Agent</strong></td>
              <td align="left">TD QE</td>
              <td align="left">AMD-SP / SNP attestation (VM) firmware</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Confidential VM</strong></td>
              <td align="left">Trust Domain (TD)</td>
              <td align="left">Part of SNP confidential VM</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Network stack</strong></td>
              <td align="left">Part of guest OS + TLS library inside TD</td>
              <td align="left">Part of guest OS + TLS library inside SNP guest</td>
            </tr>
            <tr>
              <td align="left">
                <strong>HSM/TPM</strong></td>
              <td align="left">Secure element</td>
              <td align="left">Secure element</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privAK</tt></strong></td>
              <td align="left">Attestation key of TD Quoting Enclave</td>
              <td align="left">VCEK/VLEK signing key</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privEK</tt></strong></td>
              <td align="left">Workload/TLS-side ephemeral key</td>
              <td align="left">Workload/TLS-side ephemeral key</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privLTK</tt></strong></td>
              <td align="left">Long-term key in secure element</td>
              <td align="left">Long-term key in secure element</td>
            </tr>
          </tbody>
        </table>
        <t>The key material shown in the abstract model belongs to different implementation
and trust domains. The following table provides a corresponding low-level view.</t>
        <table>
          <name>Low-level implementation and key-generation domains</name>
          <thead>
            <tr>
              <th align="left">Component/key</th>
              <th align="left">Runs/lives where?</th>
              <th align="left">Type</th>
              <th align="left">Randomness/key source</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">TLS ECDHE</td>
              <td align="left">Inside network stack</td>
              <td align="left">Network stack</td>
              <td align="left">OS/library CSPRNG</td>
            </tr>
            <tr>
              <td align="left">
                <tt>privEK</tt></td>
              <td align="left">Inside confidential VM</td>
              <td align="left">Guest software</td>
              <td align="left">OS/library CSPRNG</td>
            </tr>
            <tr>
              <td align="left">AK</td>
              <td align="left">Quoting Agent</td>
              <td align="left">Firmware/enclave/platform key hierarchy</td>
              <td align="left">Platform-specific</td>
            </tr>
            <tr>
              <td align="left">Memory-encryption key</td>
              <td align="left">CC Platform</td>
              <td align="left">Hardware/firmware managed</td>
              <td align="left">Platform RNG/KDF</td>
            </tr>
            <tr>
              <td align="left">
                <tt>REPORT_DATA</tt></td>
              <td align="left">Created by Guest Software</td>
              <td align="left">Data binding</td>
              <td align="left">No independent entropy requirement</td>
            </tr>
          </tbody>
        </table>
        <t>Per-VM memory-encryption key is used to encrypt confidential VM's RAM.</t>
      </section>
    </section>
    <section anchor="detailed-vulnerability-disclosure-timeline-and-public-acknowledgements-by-affected-vendors">
      <name>Detailed Vulnerability Disclosure Timeline and Public Acknowledgements by Affected Vendors</name>
      <table>
        <name>Detailed vulnerability disclosure timeline and acknowledgements</name>
        <thead>
          <tr>
            <th align="left">Event</th>
            <th align="left">Date</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">Our initial responsible disclosure to vendor</td>
            <td align="left">07 Oct, 2025</td>
          </tr>
          <tr>
            <td align="left">Acknowledgement by vendor</td>
            <td align="left">14 Dec, 2025</td>
          </tr>
          <tr>
            <td align="left">Information to the <eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">IETF</eref></td>
            <td align="left">11 Jan, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://web.archive.org/web/20260227160554/https://www.ultraviolet.rs/blog/tee-tls-privacy/">Public announcement</eref> by vendor</td>
            <td align="left">27 Feb, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>]</td>
            <td align="left">23 March, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-33697"/> published  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-16488"/>  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/rustls/releases/tag/privasys-v0.8.1">Acknowledgment</eref> by Privasys for rustls <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">9 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/go/releases/tag/privasys-v0.5.1-go1.26.5">Acknowledgment</eref> by Privasys for go <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">10 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation</eref> declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref></td>
            <td align="left">17 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation repo</eref> archived</td>
            <td align="left">22 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable draft <xref target="I-D.fossati-tls-attestation-10"/> withdrawn by authors</td>
            <td align="left">23 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">29 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI2"/>  [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">16 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI3"/>  [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">16 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems2"/> [<strong>Severity = CRITICAL (CVSS 9.0-10.0)</strong>]</td>
            <td align="left">24 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rustls"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-go"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-eov"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-eom"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys archived early attestation in rustls and moved to post-handshake attestation</td>
            <td align="left">4 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys archived early attestation in go and moved to post-handshake attestation</td>
            <td align="left">4 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc-da"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">6 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc-tcu"/> [<strong>Severity = MEDIUM (CVSS 6.3)</strong>]</td>
            <td align="left">6 September, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-92701"/> published [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-92702"/> published [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-83194"/> [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-83192"/> [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-322v-xwfj-63cm">GHSA-322v-xwfj-63cm</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-m9p9-3hxp-4j6j">GHSA-m9p9-3hxp-4j6j</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-ppc4-fg56-x397">GHSA-ppc4-fg56-x397</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6j47-3cm6-9cg6">GHSA-6j47-3cm6-9cg6</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-4755-rh6c-694j">GHSA-4755-rh6c-694j</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6f8q-88mv-c8vr">GHSA-6f8q-88mv-c8vr</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-qqq3-6c47-684v">GHSA-qqq3-6c47-684v</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-xxr6-w252-4ggx">GHSA-xxr6-w252-4ggx</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-fmrx-fjqw-37gp</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-f96w-jjf8-xpw3</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fqrx-3wc2-4g49">GHSA-fqrx-3wc2-4g49</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-mrgr-34cc-fcg8">GHSA-mrgr-34cc-fcg8</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-wqf9-jfmm-f68v">GHSA-wqf9-jfmm-f68v</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
        </tbody>
      </table>
      <t><strong>Neither the GHSAs nor the CVEs have any dependency whatsoever on the considered threat model with <tt>WeakHash</tt>, <tt>WeakDH</tt>, or <tt>BadElement</tt>.</strong> They hold independent of those, i.e., with <tt>StrongHash</tt> and <tt>StrongDH</tt> and all good elements within a group.</t>
    </section>
    <section anchor="eu-enisa">
      <name>EU ENISA</name>
      <t>European Union's <eref target="https://euvd.enisa.europa.eu/homepage">ENISA</eref> has independently published <xref target="EUVD-2026-16488"/> with CVSS 7.5 to acknowledge this vulnerability.</t>
    </section>
    <section anchor="sec-cvss-scores">
      <name>Comparison with Other Vulnerabilities in Confidential Computing Literature</name>
      <t>Severity is based on <eref target="https://nvd.nist.gov/vuln-metrics/cvss">NIST metrics</eref>.</t>
      <table>
        <name>Comparison with other vulnerabilities in confidential computing literature</name>
        <thead>
          <tr>
            <th align="left">Vulnerability</th>
            <th align="left">CVE</th>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <eref target="https://wiretap.fail/files/wiretap.pdf">wiretap.fail</eref></td>
            <td align="left">No CVE (<eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2025-10-28-001.html">Intel</eref> and <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3040.html">AMD</eref> announcements)</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://tee.fail/files/paper.pdf">TEE.fail</eref></td>
            <td align="left">No CVE</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://ddropattack.eu/ddrop.pdf">DDRop</eref></td>
            <td align="left">No CVE (<eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2026-08-11-001.html">Intel</eref> and <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3048.html">AMD</eref> announcements)</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://dl.acm.org/doi/10.1145/3658644.3690230">TDXdown</eref></td>
            <td align="left">
              <eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2024-10-08-001.html">Intel</eref></td>
            <td align="left">2.5</td>
            <td align="left">Low</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/staleus/staleus_usenix26.pdf">Staleus</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-54509">CVE-2025-54509</eref></td>
            <td align="left">4.0</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-6197">CVE-2025-61972</eref></td>
            <td align="left">4.2</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://badram.eu/badram.pdf">BadRAM</eref></td>
            <td align="left">
              <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3015.html">AMD</eref></td>
            <td align="left">5.3</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-61971">CVE-2025-61971</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/fabricked/fabricked_usenix26.pdf">Fabricked</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=cve-2025-54510">CVE-2025-54510</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">Intra-handshake.fail</eref></td>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">7.5</td>
            <td align="left">High</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EarlyAttestationBleed"/></td>
            <td align="left">
              <xref target="CVE-2026-92701"/></td>
            <td align="left">9.1</td>
            <td align="left">Critical</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EarlyAttestationBleed"/></td>
            <td align="left">
              <xref target="CVE-2026-92702"/></td>
            <td align="left">9.1</td>
            <td align="left">Critical</td>
          </tr>
        </tbody>
      </table>
      <t>The comparison of the above with CVSS <strong>9.1</strong> for early attestation indicates that it is not mature yet compared to the rest of the confidential computing stack, and is currently one of the weakest links in the ecosystem.</t>
    </section>
    <section anchor="more-cves">
      <name>More CVEs</name>
      <t>Further formal analysis has led to the following potential CVEs for intra-handshake (aka early) attestation (currently under review and disclosure):</t>
      <table>
        <name>Expected CVEs for intra-handshake (aka early) attestation under review and disclosure</name>
        <thead>
          <tr>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
            <th align="left">Number of CVEs</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">9.0-10.0</td>
            <td align="left">Critical</td>
            <td align="left">1 (confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">9.8</td>
            <td align="left">Critical</td>
            <td align="left">1</td>
          </tr>
          <tr>
            <td align="left">8.7</td>
            <td align="left">High</td>
            <td align="left">1</td>
          </tr>
          <tr>
            <td align="left">7.8</td>
            <td align="left">High</td>
            <td align="left">1 (confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">7.5</td>
            <td align="left">High</td>
            <td align="left">5</td>
          </tr>
          <tr>
            <td align="left">7.4</td>
            <td align="left">High</td>
            <td align="left">9 (5 confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">6.3</td>
            <td align="left">Medium</td>
            <td align="left">7</td>
          </tr>
        </tbody>
      </table>
      <t>These are preliminary estimates of scores, not final assigned score. They are still under review.</t>
    </section>
    <section anchor="vulnerable-implementations">
      <name>Vulnerable Implementations</name>
      <t>As demonstrated in <xref target="Intra-handshake.fail"/> and <xref target="Intra-handshake.fail-repo"/>, at least the following intra-handshake implementations are vulnerable:</t>
      <ul spacing="normal">
        <li>
          <t><eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI</eref>: <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
        <li>
          <t><eref target="https://github.com/edgelesssys/contrast">Edgeless Systems Contrast</eref>: <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</t>
        </li>
      </ul>
      <t>If you are aware of any other intra-handshake attestation implementation, please let us know so that we can check and responsibly disclose the vulnerabilities to them.</t>
      <section anchor="archivedmitigated-implementations">
        <name>Archived/Mitigated Implementations</name>
        <t>The following intra-handshake implementations were vulnerable and have been <strong>archived</strong> or moved to <strong>post</strong>-handshake attestation:</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref>: declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref> and <strong>archived</strong></t>
          </li>
          <li>
            <t><eref target="https://github.com/ultravioletrs/cocos">Cocos AI &lt;= v0.8.2</eref>: <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>], <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]; <strong>migrated</strong> to post-handshake attestation since v0.9.0</t>
          </li>
          <li>
            <t><eref target="https://github.com/Privasys/rustls">Privasys rustls &lt;= privasys-v0.2.0</eref>: <xref target="GHSA-Privasys-rustls"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>], <strong>archived</strong> and Privasys migrated to post-handshake attestation</t>
          </li>
          <li>
            <t><eref target="https://github.com/Privasys/go">Pirvasys go &lt;= privasys-v0.3.0-go1.26.5</eref>: <xref target="GHSA-Privasys-go"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>], <strong>archived</strong> and Privasys migrated to post-handshake attestation</t>
          </li>
        </ul>
      </section>
    </section>
    <section anchor="vulnerable-protocol-specifications">
      <name>Vulnerable Protocol Specifications</name>
      <t>At least the following protocol specifications with intra-handshake attestation <em>path</em> are vulnerable to <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/>:</t>
      <ul spacing="normal">
        <li>
          <t><xref target="I-D.fossati-tls-attestation-09"/>: symbolic proof of insecurity; <xref target="I-D.fossati-tls-attestation-10"/> <strong>withdrawn</strong> after the CVE</t>
        </li>
        <li>
          <t><xref target="I-D.fossati-seat-early-attestation"/>: symbolic and (paper-and-pen-based) computational proof of insecurity (originally done for -04 and applies also to -06)
          </t>
          <ul spacing="normal">
            <li>
              <t>As a SEAT WG participant pointed out, please note that both <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> contain a link to <xref target="GHSA-Cocos-AI"/> that contains a link to <xref target="SEAT-vulnerability-report"/> that contains the G3 property (cf. <xref target="sec-corr-goals"/>) that this draft does not satisfy.</t>
            </li>
            <li>
              <t>Some WG participants successfully reproduced the vulnerability by substituting the right value of <tt>rdata</tt> in the shared formal model <xref target="Intra-handshake.fail-repo"/> that led to the CVE.</t>
            </li>
            <li>
              <t>An informal reasoning is that binder is not <strong>directly</strong> derived from any <strong>shared secret</strong> in this draft.</t>
            </li>
            <li>
              <t><strong>Unnecessary complexity</strong> is itself a security concern</t>
            </li>
          </ul>
        </li>
        <li>
          <t><xref target="I-D.ritz-seat-facts"/>: symbolic proof of insecurity
          </t>
          <ul spacing="normal">
            <li>
              <t>violates G3 property in our analysis</t>
            </li>
            <li>
              <t>unnecessary complexity is itself a security concern</t>
            </li>
          </ul>
        </li>
      </ul>
    </section>
    <section anchor="binding-levels">
      <name>Binding Levels</name>
      <ol spacing="normal" type="1"><li>
          <t>DH shared secret (<tt>gxy</tt>) used as shared secret between client and server</t>
        </li>
        <li>
          <t>Handshake traffic key (<tt>htsc</tt>) used for encryption of handshake messages</t>
        </li>
        <li>
          <t>Application traffic key (<tt>atsc</tt>) used for encryption of application data</t>
        </li>
      </ol>
      <t>Please see Sec. 6.2 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="sec-corr-goals">
      <name>Security Properties (Correlation Goals)</name>
      <t>We consider TLS Server as RATS Attester, which is typical in confidential computing.</t>
      <ol spacing="normal" type="1"><li>
          <t>Correlation of Evidence to a DH Shared Secret (G1)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Handshake Traffic Key (G2)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Application Traffic Key (G3)</t>
        </li>
      </ol>
      <t>Please see Sec. 6.3 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="main-results">
      <name>Main Results</name>
      <ul spacing="normal">
        <li>
          <t>All analyzed binding mechanisms and the corresponding implementations of intra-handshake attestation are vulnerable to relay attacks.</t>
        </li>
        <li>
          <t>Early exporter helps achieve level 1 binding.</t>
        </li>
        <li>
          <t>Our proposed mechanism helps achieve level 2 binding.</t>
        </li>
        <li>
          <t>It may not be possible to achieve level 3 in intra-handshake attestation alone without additional assumptions.</t>
        </li>
      </ul>
      <table>
        <name>Main results</name>
        <thead>
          <tr>
            <th align="left">Property</th>
            <th align="left">Mechanism #1,2,4,6</th>
            <th align="left">Mechanism #3,5,7</th>
            <th align="left">Proposed mechanism</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">G1 : Correlation of Evidence to <tt>gxy</tt></td>
            <td align="left">❌</td>
            <td align="left">✅</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G2 : Correlation of Evidence to <tt>kch</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G3 : Correlation of Evidence to <tt>kc</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">❌</td>
          </tr>
        </tbody>
      </table>
      <t>Please see Sec. 7.1 and Figure 5 of <xref target="Intra-handshake.fail"/> for details of attacks.</t>
      <section anchor="expected-results">
        <name>Expected Results</name>
        <table>
          <name>Expected results</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Artifacts</th>
              <th align="left">Expected results</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/">binder1</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/log.txt">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/">binder2</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/log.txt">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/">binder3</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/log.txt">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/">binder4</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/log.txt">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/">binder5</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/log.txt">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/">binder6</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/log.txt">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/">binder7</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/log.txt">binder7</eref></td>
            </tr>
            <tr>
              <td align="left">8.</td>
              <td align="left">Proposed</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/">proposal</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/log.txt">proposal</eref></td>
            </tr>
          </tbody>
        </table>
      </section>
    </section>
    <section anchor="implications-of-findings">
      <name>Implications of Findings</name>
      <section anchor="implications-of-findings-for-ietf-seat-wg">
        <name>Implications of Findings for IETF SEAT WG</name>
        <ul spacing="normal">
          <li>
            <t>We believe post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>, can achieve level 3 binding.</t>
          </li>
          <li>
            <t>The research suggests that recent hybrid proposals (combination of intra-handshake attestation and post-handshake attestation) <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> may add <strong>unnecessary complexity</strong> of intra-handshake attestation without adding any security benefit compared to post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>. We are not aware of any <strong>security property</strong> that hybrid proposals can achieve that post-handshake attestation alone cannot achieve.</t>
          </li>
          <li>
            <t>As demonstrated by our symbolic analysis using ProVerif, the protocol specifications <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> remain vulnerable to CVE-2026-33697. We have also proved that <xref target="I-D.fossati-seat-early-attestation-04"/> and <xref target="I-D.fossati-seat-early-attestation"/> violate the security theorems in the computational model.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-lake-wg">
        <name>Implications of Findings for IETF LAKE WG</name>
        <ul spacing="normal">
          <li>
            <t>Similar problems occur for protocol specification <eref target="https://datatracker.ietf.org/doc/draft-ietf-lake-ra/">lake-ra</eref>.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-tls-wg">
        <name>Implications of Findings for IETF TLS WG</name>
        <ul spacing="normal">
          <li>
            <t><xref target="I-D.fossati-tls-attestation-09"/> is vulnerable to <xref target="CVE-2026-33697"/>. Thankfully, the authors have withdrawn <xref target="I-D.fossati-tls-attestation-10"/>.</t>
          </li>
          <li>
            <t>Remote attestation <em>within</em> the handshake is very dangerous, since to our knowledge, it is one of the highest scored published vulnerabilities in confidential computing literature (see <xref target="sec-cvss-scores"/>). For reference, <strong>Heartbleed</strong> was <strong>7.5 CVSS</strong>.</t>
          </li>
        </ul>
        <artwork><![CDATA[
Given the high- and critical-severity vulnerabilities, we recommend
that the developers and maintainers of intra-handshake attestation MUST
urgently move to post-handshake attestation.
]]></artwork>
      </section>
      <section anchor="implications-of-findings-for-agent2agent">
        <name>Implications of Findings for Agent2Agent</name>
        <t>The findings of published CVEs/GHSAs up to 9.1 (presented in <xref target="sec-credits"/>) show that intra-handshake attestation can introduce significant security risks for AI agents when relied upon as a security mechanism.</t>
        <t>Attestation can provide evidence about an agent’s technical state, but such evidence should not be equated with governability. For a relying party, governability also depends on whether the agent’s identity, authority and permissions remain aligned with the intended interaction, whether responsibility for its actions can be attributed, and whether meaningful intervention remains possible. The findings in this draft reinforce that distinction by showing that even the binding between attestation evidence and the intended session can fail. Successful attestation should therefore be treated as one input into governance, rather than as sufficient evidence that an AI agent remains under effective control.</t>
      </section>
    </section>
    <section anchor="technical-details">
      <name>Technical Details</name>
      <section anchor="tool">
        <name>Tool</name>
        <t>We use state-of-the-art symbolic security analysis tool <eref target="https://ieeexplore.ieee.org/document/9833653">ProVerif</eref> for the specification of the protocols.</t>
      </section>
      <section anchor="modeling">
        <name>Modeling</name>
        <t>The formal model uses the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work as the starting point to focus on relay attacks in intra-handshake attestation in this work.
The rationale is that we consider it more useful to show the added value of this contribution to the community by using the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> as the baseline, rather than showing the same diversion attacks from <xref target="ID-Crisis"/>, and the discovered CVE (<xref target="CVE-2026-33697"/>) -- which the previous analysis could not find -- practically demonstrates the added value.
This modeling choice makes it clear that even with the diversion attacks fixed, high-severity relay attacks would still remain in intra-handshake attestation.</t>
        <t>Note: Similar to the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work, we model non-PSK-based handshake.
From <xref target="ID-Crisis"/>:</t>
        <ul empty="true">
          <li>
            <t>For modeling TLS 1.3, we consider handshakes based on Diffie-Hellman over either finite fields or elliptic curves, represented as (EC)DHE. This is because we are unaware of any publicly available specification or implementation of attested TLS with PSK-based handshakes.</t>
          </li>
        </ul>
        <t>While it would be nice to model PSK-based handshake, the rationale is that the correlation properties studied in this work do not necessarily require it.</t>
        <t>Note: The artifacts consider the case of server authentication only, as client authentication is optional in TLS 1.3. No claims are made about other configurations.</t>
      </section>
      <section anchor="properties">
        <name>Properties</name>
        <t>Properties in <xref target="Intra-handshake.fail"/> are complemetary to properties in <xref target="ID-Crisis"/>. Sec. 8 of <xref target="ID-Crisis"/> mentions:</t>
        <ul empty="true">
          <li>
            <t>We emphasize that both diversion and relay attacks are orthogonal and thus the two works are complementary.</t>
          </li>
        </ul>
      </section>
      <section anchor="technical-vulnerability-report">
        <name>Technical Vulnerability Report</name>
        <t>Technical vulnerability report is available at <xref target="Intra-handshake.fail"/>. It is accepted for publication at ESORICS 2026.</t>
        <section anchor="vulnerabilities">
          <name>Vulnerabilities</name>
          <t>Sec. 7.1 of <xref target="Intra-handshake.fail"/> presents the technical details with abstract attack traces of the vulnerabilities.</t>
        </section>
        <section anchor="mitigation">
          <name>Mitigation</name>
          <t>Sec. 7.2 of <xref target="Intra-handshake.fail"/> presents the technical details of the proposed mitigation.</t>
        </section>
      </section>
      <section anchor="artifacts">
        <name>Artifacts</name>
        <t>Artifacts are available at <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 License.</t>
      </section>
    </section>
    <section anchor="sec-news">
      <name>Media Coverage</name>
      <t>Several cybersecurity and media professionals and bloggers have covered the vulnerabilities to protect the community from the harm of early attestation.</t>
      <section anchor="earlyattestationbleed">
        <name>EarlyAttestationBleed</name>
        <t><xref target="EarlyAttestationBleed"/></t>
        <ul spacing="normal">
          <li>
            <t>(German) <eref target="https://cybersecurity-news.de/cve-2026-92701-trusted-execution-environments-0-8-2/">Cybersecurity news (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t>(German) <eref target="https://cybersecurity-news.de/cve-2026-92702-cocos-ai-0-8-2/">Cybersecurity news (CVE-2026-92702)</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://www.anquan114.com/archives/7429">Security 114</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://mp.weixin.qq.com/s/31Glxqr6ofHylTyrtNsuaQ">KK says security</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="mp.weixin.qq.com/s/REtESPngXemSro0hjIZyxw">Safe Meow Station</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://mp.weixin.qq.com/s/864dwIXF5IY04q7ig4uBwg">Digital World Information</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://mp.weixin.qq.com/s/864dwIXF5IY04q7ig4uBwg">Shusei Consulting</eref></t>
          </li>
          <li>
            <t><eref target="https://freenode.net/digest/518">Freenode</eref></t>
          </li>
          <li>
            <t><eref target="https://collective.flashbots.net/t/earlyattestationbleed-paper-review/6054">Flashbots</eref></t>
          </li>
          <li>
            <t>(Japanese) <eref target="https://www.rich-wise.co.jp/cve-info/cve-2026-92701-intel-tdx%E3%81%AE%E8%84%86%E5%BC%B1%E6%80%A7%E3%81%AB%E3%82%88%E3%82%8A%E3%82%BB%E3%82%AD%E3%83%A5%E3%83%AA%E3%83%86%E3%82%A3%E5%AF%BE%E7%AD%96%E3%82%92%E8%AC%9B%E3%81%98%E3%82%8B/">Rich &amp; Wise with Socrates and Plato</eref></t>
          </li>
          <li>
            <t><eref target="https://app.opencve.io/cve/CVE-2026-92701">OpenCVE (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t><eref target="https://app.opencve.io/cve/CVE-2026-92702">OpenCVE (CVE-2026-92702)</eref></t>
          </li>
          <li>
            <t>CIRCL's <eref target="https://vulnerability.circl.lu/vuln/CVE-2026-92701">vulnerability.circl.lu (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t>CIRCL's <eref target="https://vulnerability.circl.lu/vuln/CVE-2026-92702">vulnerability.circl.lu (CVE-2026-92702)</eref></t>
          </li>
          <li>
            <t>GCVE's <eref target="https://db.gcve.eu/vuln/cve-2026-92701">db.gcve.eu (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t>GCVE's <eref target="https://db.gcve.eu/vuln/cve-2026-92702">db.gcve.eu (CVE-2026-92702)</eref></t>
          </li>
        </ul>
        <t>If you have written an article on this and would like to be added here, please send us a PR at <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail">https://github.com/muhammad-usama-sardar/intra-handshake-fail</eref> or an email with the subject "Media coverage of EarlyAttestationBleed."</t>
      </section>
      <section anchor="intra-handshakefail">
        <name>Intra-handshake.fail</name>
        <t><xref target="Intra-handshake.fail"/></t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref></t>
          </li>
          <li>
            <t>(Japanese) <eref target="https://blackhatnews.tokyo/archives/119915">BlackHatNewsTokyo</eref></t>
          </li>
          <li>
            <t>(Several languages) <eref target="https://hackernoon.com/attested-tls-was-supposed-to-be-the-last-trust-boundary-it-isnt-formal-methods-show-how">Hackernoon</eref></t>
          </li>
          <li>
            <t><eref target="https://podcasts.apple.com/eg/podcast/attested-tls-was-supposed-to-be-the-last-trust/id1698517643?i=1000776623286">Apple podcast</eref></t>
          </li>
          <li>
            <t><eref target="https://meterpreter.org/attested-tls-vulnerability-cve-2026-33697/">Information Security News</eref></t>
          </li>
          <li>
            <t><eref target="https://thenextgentechinsider.com/pulse/critical-flaw-discovered-in-confidential-computing-attestation-protocols">TheNextGenTechInsider</eref></t>
          </li>
          <li>
            <t><eref target="https://dailysecurityreview.com/resources/cve-2026-33697-attested-tls-relay-flaw-hits-whatsapp-cocos-ai/">DailySecurityReview</eref></t>
          </li>
          <li>
            <t><eref target="https://www.scworld.com/brief/confidential-computings-remote-attestation-protocol-may-have-fundamental-flaw">SC World</eref></t>
          </li>
          <li>
            <t><eref target="https://blogs.groupware.org.uk/01-Quantum-Inc/the-handshake-that-cant-keep-its-promise-why-confidential-computings-flaw-changes-the-data-sovereignty-conversation/">01 Quantum</eref></t>
          </li>
          <li>
            <t>(Russian) <eref target="https://www.securitylab.ru/news/574545.php">Security Lab</eref></t>
          </li>
          <li>
            <t>(German) <eref target="https://www.blogspan.net/confidential-computing-attestierung-relay-luecke/">blogspan</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://finance.sina.cn/tech/2026-07-04/detail-inifscxt9953361.d.html">Sina</eref></t>
          </li>
          <li>
            <t><eref target="https://data4biz.com/articles/una-falla-rompe-la-fiducia-del-confidential-computing">data4biz</eref></t>
          </li>
          <li>
            <t>(Russian) <eref target="https://www.itsec.ru/news/issledovateli-nashli-kriticheskuyu-uyazvimost-v-attested-tls">ITSec</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://post.smzdm.com/p/a82ol990/">smzdm</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://www.donews.com/news/detail/4/6621022.html">donews</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://i.ifeng.com/c/8uUfy0PMmqE">ifeng</eref></t>
          </li>
          <li>
            <t><eref target="https://www.dugganusa.com/post/confidential-computing-s-whole-pitch-is-trust-the-proof-not-the-cloud-two-years-of-formal-verifi">dugganusa</eref></t>
          </li>
          <li>
            <t><eref target="https://github.com/pduggusa/dugganusa-ietf/tree/main/cve-2026-33697-attestation">dugganusa repo</eref></t>
          </li>
          <li>
            <t><eref target="https://sploitus.com/exploit?id=92591A05-07BC-5015-BA3D-B1347B35D684">spoitus</eref></t>
          </li>
          <li>
            <t><eref target="https://news.lavx.hu/article/attested-tls-research-exposes-a-weak-link-in-confidential-computing">lavx news</eref></t>
          </li>
          <li>
            <t><eref target="https://www.sohu.com/a/1045865934_122004016">sohu</eref></t>
          </li>
          <li>
            <t>(Persian) <eref target="https://news.ditty.ir/news/attested-tls-relay-flaw-formal-methods/019f6221-26ca-7293-9ee9-5557b3c0b8f8">news.ditty</eref></t>
          </li>
          <li>
            <t>(Russian) <eref target="https://limpvpn.com/ru/news/attested-tls-whatsapp-privacy-flaw-2026">LiMP VPN</eref></t>
          </li>
          <li>
            <t><eref target="https://daily.dev/posts/kI6PoNzPx">daily.dev</eref></t>
          </li>
          <li>
            <t><eref target="https://warden.veritai.ch/news/researchers-find-attested-tls-flaws-that-weaken-confidential-computing-trust-model">warden</eref></t>
          </li>
          <li>
            <t><eref target="https://db.gcve.eu/sightings/?query=cve-2026-33697">GCVE.eu</eref></t>
          </li>
          <li>
            <t><eref target="https://vulnerability.circl.lu/vuln/CVE-2026-33697#sightings">vuln.lu</eref></t>
          </li>
          <li>
            <t><eref target="https://coderlegion.com/24087/intra-handshake-attestation-when-more-security-doesnt-mean-better-security">coderlegion</eref></t>
          </li>
          <li>
            <t><eref target="https://www.anjuna.io/blog/attested-tls-flaw-explained">Anjuna Security</eref></t>
          </li>
          <li>
            <t><eref target="https://privasys.org/blog/binding-attestation-to-the-tls-session/">Privasys</eref></t>
          </li>
          <li>
            <t><eref target="https://caution.co/blog/steve-attesting-the-session.html">Caution</eref></t>
          </li>
          <li>
            <t><eref target="https://freenode.net/digest/67">freenode</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://blog.csdn.net/weixin_42376192/category_13096766.html">csdn</eref></t>
          </li>
          <li>
            <t><eref target="https://osintsights.com/confidential-computing-flaws-expose-trust-risks">osintsights</eref></t>
          </li>
          <li>
            <t>(Turkish) <eref target="https://hardwaremania.com/haber/arastirma-attested-tls-confidential-computing-icin-zayif-kaliyor/">hardwaremania</eref></t>
          </li>
          <li>
            <t><eref target="https://akber.com/sovereignty-in-the-cloud-is-an-illusion/">akber</eref></t>
          </li>
          <li>
            <t><eref target="https://www.ad-hoc-news.de/wissenschaft/cloud-souveraenitaet-red-hat-startet-reifegrad-assessments-gegen/69691475">ad-hoc news</eref></t>
          </li>
          <li>
            <t><eref target="https://aimultiple.com/privacy-enhancing-technologies">AIMultiple</eref></t>
          </li>
        </ul>
        <section anchor="security-researchers">
          <name>Security Researchers</name>
          <t>Several credible security researchers, such as the following, have publicly attested to it.</t>
          <ul spacing="normal">
            <li>
              <t><eref target="https://www.linkedin.com/posts/michaelpak_confidential-computings-core-trust-mechanism-activity-7479415537836376064-q-A4/">Michael Pak</eref></t>
            </li>
            <li>
              <t><eref target="https://www.linkedin.com/posts/rrbranco_one-more-evidence-that-there-is-no-such-a-share-7479582122366615552-X0A5/">Rodrigo Branco</eref></t>
            </li>
            <li>
              <t><eref target="https://www.linkedin.com/posts/bart-preneel-4451412_on-the-limits-of-confidential-computing-share-7479549718294077440-wfi3/">Bart Preneel</eref></t>
            </li>
            <li>
              <t><eref target="https://www.linkedin.com/in/strufe/recent-activity/all/">Thorsten Strufe</eref></t>
            </li>
          </ul>
        </section>
        <section anchor="germanys-bsi">
          <name>Germany's BSI</name>
          <t>Germany's Federal Office for Information Security (Bundesamt für Sicherheit in der Informationstechnik) has attested to it. Carina Hilt, deputy press spokesperson at BSI, told <eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref>:</t>
          <artwork><![CDATA[
CC alone cannot satisfy the requirements for digital sovereignty.
]]></artwork>
          <artwork><![CDATA[
dependencies on other services, such as identity and key
management etc., are also not mitigated by CC.
]]></artwork>
          <t>CC refers to Confidential Computing, and attested TLS is the core trust mechanism of CC.</t>
        </section>
      </section>
    </section>
    <section anchor="reviews">
      <name>Reviews</name>
      <section anchor="conference-reviews">
        <name>Conference Reviews</name>
        <t><xref target="Intra-handshake.fail"/> has been peer-reviewed and accepted for publication at ESORICS 2026.</t>
      </section>
      <section anchor="ietfirtf">
        <name>IETF/IRTF</name>
        <t>Several participants of the IETF/IRTF have attested to the results by independently reproducing the results and reviewing the code. Some of the participants have independently reproduced the results by developing their own formal models and a proof-of-concept implementation of the vulnerabilities. Some of the messages are mentioned below (<strong>excluding</strong> the messages of authors of <xref target="Intra-handshake.fail"/>):</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/">https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/">https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/">https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/">https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/">https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/">https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/">https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/">https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/">https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/">https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/">https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/">https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/">https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/">https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/">https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/">https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/">https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/">https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/">https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/">https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/">https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/">https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/">https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/">https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/">https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/">https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/">https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/">https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/">https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/">https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/">https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/">https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/">https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/">https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/">https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/">https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/">https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/">https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/">https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/">https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/">https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/">https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/">https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/">https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/">https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/">https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/">https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/">https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/">https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/">https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/">https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/">https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/">https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/">https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/">https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/">https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/">https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/">https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/">https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/">https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/">https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/">https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3J3s_YFnf9IQ87Tv2c1q4f36xKQ/">https://mailarchive.ietf.org/arch/msg/seat/3J3s_YFnf9IQ87Tv2c1q4f36xKQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JWKMYY1YG1E2iS_HyQ4rDmOsDGw/">https://mailarchive.ietf.org/arch/msg/seat/JWKMYY1YG1E2iS_HyQ4rDmOsDGw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rK1nDSewAbVL_weOp98knYZcg6s/">https://mailarchive.ietf.org/arch/msg/seat/rK1nDSewAbVL_weOp98knYZcg6s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Wjuz0fIj8tjYocUmiZZXcSwwFHw/">https://mailarchive.ietf.org/arch/msg/seat/Wjuz0fIj8tjYocUmiZZXcSwwFHw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SYiV4KZNr20re6QkGmyWS3pPteA/">https://mailarchive.ietf.org/arch/msg/seat/SYiV4KZNr20re6QkGmyWS3pPteA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZYgxm1ibt6p4dL7xF1YNdl0XSpc/">https://mailarchive.ietf.org/arch/msg/seat/ZYgxm1ibt6p4dL7xF1YNdl0XSpc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/6LKgOp22YRxGTYb-i-BxiMGzMW4/">https://mailarchive.ietf.org/arch/msg/seat/6LKgOp22YRxGTYb-i-BxiMGzMW4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3oHcKPtXLfBUYCZoN1nnO6e1F-s/">https://mailarchive.ietf.org/arch/msg/seat/3oHcKPtXLfBUYCZoN1nnO6e1F-s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aSybH9ihnNjN7SjdhhY_XtxhMtc/">https://mailarchive.ietf.org/arch/msg/seat/aSybH9ihnNjN7SjdhhY_XtxhMtc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/d_G8r7LMGjA45BPexZwsfmmAtJY/">https://mailarchive.ietf.org/arch/msg/seat/d_G8r7LMGjA45BPexZwsfmmAtJY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/u-za86_YJ0spwBXBwTVQzwiOCrU/">https://mailarchive.ietf.org/arch/msg/seat/u-za86_YJ0spwBXBwTVQzwiOCrU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/P4IMdvCx8lSEKrCiJIjbpBCRr4g/">https://mailarchive.ietf.org/arch/msg/seat/P4IMdvCx8lSEKrCiJIjbpBCRr4g/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-AO9yFJoflV1wDwwch45dmqkmyo/">https://mailarchive.ietf.org/arch/msg/seat/-AO9yFJoflV1wDwwch45dmqkmyo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/H0LqHfBasQml69Y-9Zl_njfsE8s/">https://mailarchive.ietf.org/arch/msg/seat/H0LqHfBasQml69Y-9Zl_njfsE8s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3hOGlYyc_yntmvT0tjYxldlwaxM/">https://mailarchive.ietf.org/arch/msg/seat/3hOGlYyc_yntmvT0tjYxldlwaxM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JbwL9cdl6fiP0vBGgASUUDmaPy8/">https://mailarchive.ietf.org/arch/msg/seat/JbwL9cdl6fiP0vBGgASUUDmaPy8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/TtewHbMGKBQOKD2sqrgTrnpCOkI/">https://mailarchive.ietf.org/arch/msg/seat/TtewHbMGKBQOKD2sqrgTrnpCOkI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UsIj6o7wf4hX_uCL51TCTv-wFxU/">https://mailarchive.ietf.org/arch/msg/seat/UsIj6o7wf4hX_uCL51TCTv-wFxU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/a6c8D6PBDRe0x4DAqXM3t4EPc4c/">https://mailarchive.ietf.org/arch/msg/seat/a6c8D6PBDRe0x4DAqXM3t4EPc4c/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/prB537Jht2kELVCSrTRktjbp7Y4/">https://mailarchive.ietf.org/arch/msg/seat/prB537Jht2kELVCSrTRktjbp7Y4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/RPnKYfUCD_MRw3hnA00zg684yGM/">https://mailarchive.ietf.org/arch/msg/seat/RPnKYfUCD_MRw3hnA00zg684yGM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/nMH_0sLLU5MekoEnzWKJnIJmaSk/">https://mailarchive.ietf.org/arch/msg/seat/nMH_0sLLU5MekoEnzWKJnIJmaSk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/GJCA31mgAehlgFPRu_yHA10lKPI/">https://mailarchive.ietf.org/arch/msg/seat/GJCA31mgAehlgFPRu_yHA10lKPI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/9f-21JMK6s1Pdcob6mPo06rNwmQ/">https://mailarchive.ietf.org/arch/msg/seat/9f-21JMK6s1Pdcob6mPo06rNwmQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/8qq_GFT391IEbGZZQUtYMONX9U0/">https://mailarchive.ietf.org/arch/msg/seat/8qq_GFT391IEbGZZQUtYMONX9U0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xzu2UlClYMkG8gNSOClxGJgwnOI/">https://mailarchive.ietf.org/arch/msg/seat/xzu2UlClYMkG8gNSOClxGJgwnOI/</eref></t>
          </li>
          <li>
            <t>Exploit: <eref target="https://mailarchive.ietf.org/arch/msg/seat/MfxWpRtlTqPElX8vX4v8uiN65TU/">https://mailarchive.ietf.org/arch/msg/seat/MfxWpRtlTqPElX8vX4v8uiN65TU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/PkU0jW_xHAF18rZmtZJ2A2p_wHs/">https://mailarchive.ietf.org/arch/msg/seat/PkU0jW_xHAF18rZmtZJ2A2p_wHs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/jZmdYKQlfherbhowIEmZRw2HF1c/">https://mailarchive.ietf.org/arch/msg/seat/jZmdYKQlfherbhowIEmZRw2HF1c/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-0j6UpsD_CebqPPMNkDJCjySqEI/">https://mailarchive.ietf.org/arch/msg/seat/-0j6UpsD_CebqPPMNkDJCjySqEI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/ssDrZRFW4s6CSaYeA9ImH0PPQ10/">https://mailarchive.ietf.org/arch/msg/rats/ssDrZRFW4s6CSaYeA9ImH0PPQ10/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/OPBI_Wd-RoTzzdh5D0JZoWlNGI8/">https://mailarchive.ietf.org/arch/msg/rats/OPBI_Wd-RoTzzdh5D0JZoWlNGI8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/nfrdr1T9Pdp6D_kj2Et3XZk-hOY/">https://mailarchive.ietf.org/arch/msg/rats/nfrdr1T9Pdp6D_kj2Et3XZk-hOY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/gMMvtP1IXsXFfb0X5nMhRTaLLok/">https://mailarchive.ietf.org/arch/msg/rats/gMMvtP1IXsXFfb0X5nMhRTaLLok/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/yaGG4sVf4pCfJ0HNPPRv3Xg0cG8/">https://mailarchive.ietf.org/arch/msg/rats/yaGG4sVf4pCfJ0HNPPRv3Xg0cG8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/DaA1jDQNF-bdO5x-dkVbSzlHcD4/">https://mailarchive.ietf.org/arch/msg/rats/DaA1jDQNF-bdO5x-dkVbSzlHcD4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/ptkHZUDzSoYnD6R5zln6HcE1cv4/">https://mailarchive.ietf.org/arch/msg/rats/ptkHZUDzSoYnD6R5zln6HcE1cv4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/n1-mBLW1m4TKiGsQqOhOIkbNxVs/">https://mailarchive.ietf.org/arch/msg/seat/n1-mBLW1m4TKiGsQqOhOIkbNxVs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/mBHcB8YRR0HVcyihhjm11XqRhWE/">https://mailarchive.ietf.org/arch/msg/seat/mBHcB8YRR0HVcyihhjm11XqRhWE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/zY3vdP_TZKZIdK_kpcrwWQuYf8s/">https://mailarchive.ietf.org/arch/msg/seat/zY3vdP_TZKZIdK_kpcrwWQuYf8s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/QcXGunfoT1OKrBI_FRsgpNsXvn4/">https://mailarchive.ietf.org/arch/msg/seat/QcXGunfoT1OKrBI_FRsgpNsXvn4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/FSh0tTa7h1NcaeVZENqz6wg45C8/">https://mailarchive.ietf.org/arch/msg/seat/FSh0tTa7h1NcaeVZENqz6wg45C8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5uos1xo5lkLisK-9RGJWLJaAnmk/">https://mailarchive.ietf.org/arch/msg/seat/5uos1xo5lkLisK-9RGJWLJaAnmk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2Vyb3hcqRoJF4tLkJOxs2CueNuw/">https://mailarchive.ietf.org/arch/msg/seat/2Vyb3hcqRoJF4tLkJOxs2CueNuw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/9mDNq-Fv3-9726qe_te0nfYKMaM/">https://mailarchive.ietf.org/arch/msg/seat/9mDNq-Fv3-9726qe_te0nfYKMaM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/KwtGScLIYvUCW2A0HxAS5s9XMMo/">https://mailarchive.ietf.org/arch/msg/seat/KwtGScLIYvUCW2A0HxAS5s9XMMo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SpLBEi5_nMr51gSng5oqS1uTlxU/">https://mailarchive.ietf.org/arch/msg/seat/SpLBEi5_nMr51gSng5oqS1uTlxU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/b2laJbuyFQQr6Q1nUCbpKa_PNz8/">https://mailarchive.ietf.org/arch/msg/seat/b2laJbuyFQQr6Q1nUCbpKa_PNz8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/V-3QA8_dX1A5mdKxoVy-1z_8RlA/">https://mailarchive.ietf.org/arch/msg/seat/V-3QA8_dX1A5mdKxoVy-1z_8RlA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vjIo3JCMjHglRNaSSHNOqjKgDxs/">https://mailarchive.ietf.org/arch/msg/seat/vjIo3JCMjHglRNaSSHNOqjKgDxs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/pE1j3aP-qvaUgT-Q88JextCIlcc/">https://mailarchive.ietf.org/arch/msg/seat/pE1j3aP-qvaUgT-Q88JextCIlcc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/uojEp8S21Ftf2osLCJNoR8xPzKA/">https://mailarchive.ietf.org/arch/msg/seat/uojEp8S21Ftf2osLCJNoR8xPzKA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xP6PxDJhAH9bnefUjlKc0f96ak8/">https://mailarchive.ietf.org/arch/msg/seat/xP6PxDJhAH9bnefUjlKc0f96ak8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/krTrXMiNIPyYzVDvlXlJB0UvaSk/">https://mailarchive.ietf.org/arch/msg/seat/krTrXMiNIPyYzVDvlXlJB0UvaSk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5dHBv3DyUy4Fprh71i90x6pHPCY/">https://mailarchive.ietf.org/arch/msg/seat/5dHBv3DyUy4Fprh71i90x6pHPCY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/HErXLOWPTDmOK6RMVO8J0lEGCyU/">https://mailarchive.ietf.org/arch/msg/rats/HErXLOWPTDmOK6RMVO8J0lEGCyU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/QqstD1bsKrZrfQ_VQU-Z9KhYnxM/">https://mailarchive.ietf.org/arch/msg/rats/QqstD1bsKrZrfQ_VQU-Z9KhYnxM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/Oh4lBsX5wtnqPJM1cPOkt1mPOAQ/">https://mailarchive.ietf.org/arch/msg/rats/Oh4lBsX5wtnqPJM1cPOkt1mPOAQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/dMAZ-uAbZIlUxiDbO_0ZBVh4q90/">https://mailarchive.ietf.org/arch/msg/rats/dMAZ-uAbZIlUxiDbO_0ZBVh4q90/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/FRdzVOJ5OBs4M1yuFk_ntxYl1yI/">https://mailarchive.ietf.org/arch/msg/rats/FRdzVOJ5OBs4M1yuFk_ntxYl1yI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/qr4w7FinCkG1qt27aCCjJKruP5E/">https://mailarchive.ietf.org/arch/msg/rats/qr4w7FinCkG1qt27aCCjJKruP5E/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/mf_CtbtSDHPz3uMHRXele2vwYr8/">https://mailarchive.ietf.org/arch/msg/ufmrg/mf_CtbtSDHPz3uMHRXele2vwYr8/</eref></t>
          </li>
        </ul>
        <section anchor="main-questions">
          <name>Main Questions</name>
          <t>In short, five main questions have been raised by WG participants in support of our work:</t>
          <ul spacing="normal">
            <li>
              <t>What <strong>security property</strong> hybrid (intra- + post-handshake attestation) provides that post-handshake attestation alone cannot provide?</t>
            </li>
            <li>
              <t>Since continuous attestation is required in most use cases <xref target="CSA-eBPF"/> <xref target="MITRE-Continuous-Attestation"/>, how is <strong>additional complexity</strong> of <strong>intra</strong>-handshake attestation justified? Use cases with one-time attestation can be covered by doing attestation round immediately after Connection Establishment Time: see <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-6-2">reference</eref>.</t>
            </li>
            <li>
              <t>What is the benefit of doing <strong>signatures</strong> of remote attestation <strong>within</strong> the handshake (as this latency can be exploited)? We add that <strong>verification</strong> of signatures is also time consuming, which can be exploited too. See <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-4.2.4">reference</eref>.</t>
            </li>
            <li>
              <t>How evidence is bound to the secure channel without involving any <strong>shared secret</strong>? See <xref target="TLS-RA"/>.</t>
            </li>
            <li>
              <t>How does a verifying relying party get the legitimate PIIDs and CHIP_IDs?</t>
            </li>
          </ul>
        </section>
        <section anchor="guidance-text">
          <name>Guidance Text</name>
          <ul spacing="normal">
            <li>
              <t>Evidence MUST be bound to the secure channel. Failure to do so results in
relay attacks <xref target="CVE-2026-33697"/>, <xref target="EUVD-2026-16488"/>, <xref target="GHSA-Cocos-AI"/>.</t>
            </li>
            <li>
              <t>Verifier MUST have access to legitimate hardware identifiers of the
Attester. Failure to do so results in relay attacks <xref target="GHSA-Edgeless-Systems"/>.</t>
            </li>
            <li>
              <t>Verifier MUST carefully check the binding. Failure to do so results in
relay attacks <xref target="GHSA-Cocos-AI2"/>, <xref target="GHSA-Cocos-AI3"/>.</t>
            </li>
            <li>
              <t>Binder MUST contain shared secrets. Failure to do so results in relay
attacks <xref target="GHSA-Privasys-rustls"/>, <xref target="GHSA-Privasys-go"/>, <xref target="GHSA-Privasys-eov"/>, <xref target="GHSA-Privasys-eom"/>, <xref target="GHSA-Privasys-rtc"/>, <xref target="GHSA-Privasys-rtc-da"/>, <xref target="GHSA-Privasys-rtc-tcu"/>.</t>
            </li>
          </ul>
        </section>
      </section>
      <section anchor="researchers-outside-of-ietfirtf">
        <name>Researchers outside of IETF/IRTF</name>
        <t>Some researchers have approached us confirming the proof-of-concept of the vulnerabilities in intra-handshake attestation. More information will be added once their pre-prints/papers are public.</t>
      </section>
    </section>
    <section anchor="security-considerations">
      <name>Security Considerations</name>
      <t>All of this document is about the <strong>insecurity</strong> of <strong>intra</strong>-handshake (aka early) attestation.</t>
      <t>By no means should the vendors mentioned in this draft be considered less secure than any other vendors implementing intra-handshake attestation solutions. In particular, those who have closed-source implementations are most likely more vulnerable than the open-source ones, since the former cannot easily be reviewed by the security community. Even extensive security reviews -- of closed-source implementations -- by cybersecurity firms often do not perform formal analysis, and thus such reviews may miss corner cases and subtle vulnerabilities.</t>
    </section>
    <section anchor="ethical-considerations">
      <name>Ethical Considerations</name>
      <t>We (i.e., the super set of all authors involved in this research, including but not limited to Muhammad Usama Sardar, Mariam Moustafa, Tuomas Aura, Viacheslav Dubeyko, Jean-Marie Jacquet, Songbo Bu, Chengxin Huang, Haowen Song, Kaya Ercihan, Dr. Kubilay Ahmet Küçük, Serhii Nikolaichuk, Sylvain Bellemare, Eva C. M. Willems, Justin DESSENNES SAINTEN, Massimiliano Brighindi, Mikerah Quintyne-Collins, and Iman Schrock) are ethical researchers aiming to protect the community from the potential harm caused by the exploitability of the vulnerabilities in early attestation. We have <strong>responsibly disclosed</strong> the vulnerabilities to the respective developers and maintainers following their respective disclosure processes and provided them our proposed mitigations and requested them to take rapid action.</t>
      <t>We have released only the formal analysis for published CVE-2026-33697. To minimize exploit in the wild, we have not publicly released the proof-of-concept exploit code.</t>
      <t>We have not retrieved any real data from any real system. We have not released any key to any public forum or to any person.</t>
      <section anchor="evidence-of-explanation-of-vulnerabilities-to-the-authors-of-vulnerable-drafts">
        <name>Evidence of Explanation of Vulnerabilities to the Authors of Vulnerable Drafts</name>
        <t>To the best of our abilities, knowledge, and understanding, we have tried to explain the vulnerabilities to the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> first privately in several meetings and then later on publicly for at least half a year at several forums, including but not limited to CCC Attestation SIG and IETF/IRTF. Please see the (non-exhaustive list of) recordings <xref target="sec-recordings"/> and the archives <xref target="sec-archives"/> below. We sincerely thank the authors of <xref target="I-D.fossati-tls-attestation-10"/> for withdrawing their draft to protect further exploits mentioned in <xref target="sec-news"/>.</t>
        <section anchor="sec-recordings">
          <name>Recordings</name>
          <table>
            <name>Evidence of several explanations of vulnerabilities to the authors of vulnerable drafts</name>
            <thead>
              <tr>
                <th align="left">Event/Host</th>
                <th align="left">Venue</th>
                <th align="left">Date(s)</th>
                <th align="left">Evidence</th>
              </tr>
            </thead>
            <tbody>
              <tr>
                <td align="left">System Boot and Security MC @ <eref target="https://lpc.events/event/20/">Linux Plumbers Conference 2026</eref></td>
                <td align="left">Prague, Czechia</td>
                <td align="left">5 Oct, 2026</td>
                <td align="left">
                  <eref target="https://lpc.events/event/20/contributions/2585/">abstract</eref>, slides, video</td>
              </tr>
              <tr>
                <td align="left">BoF @ <eref target="https://lpc.events/event/20/">Linux Plumbers Conference 2026</eref></td>
                <td align="left">Prague, Czechia</td>
                <td align="left">5 Oct, 2026</td>
                <td align="left">
                  <eref target="https://lpc.events/event/20/contributions/2640/">abstract</eref>, slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ga4gh.org/event/14th-plenary/">GA4GH 14th Plenary Meeting</eref></td>
                <td align="left">Singapore</td>
                <td align="left">28 Sept-2 Oct, 2026</td>
                <td align="left">slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fg-pet.gi.de/veranstaltung/16th-privacy-enhancing-techniques-convention">PET-CON 2026.2: 16th Privacy Enhancing Techniques Convention</eref></td>
                <td align="left">Lübeck, Germany</td>
                <td align="left">28-29 Sept, 2026</td>
                <td align="left">slides</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://sites.google.com/di.uniroma1.it/esorics2026/">ESORICS 2026</eref></td>
                <td align="left">Rome, Italy</td>
                <td align="left">14-18 Sept, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/414416257_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">slides</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/session/rats">IETF RATS Interim meeting</eref></td>
                <td align="left">Virtual</td>
                <td align="left">14 Sept, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/materials/slides-interim-2026-rats-03-sessa-protecting-the-rats-ecosystem-from-critical-severity-vulnerabilities-00">slides</eref>, <eref target="https://youtu.be/y5_SR0-DzH0?t=255">video</eref></td>
              </tr>
              <tr>
                <td align="left">Hackathon @ <eref target="https://summit.riot-os.org/2026/">RIOT Summit 2026</eref></td>
                <td align="left">Grenoble, France</td>
                <td align="left">4 September, 2026</td>
                <td align="left">
                  <eref target="https://notes.inria.fr/2ppogr2fTSKusRog3RXbPQ?view#topic-security-analysis-of-attested-tls-and-attested-edhoc">topic synopsis</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://summit.riot-os.org/2026/">RIOT Summit 2026</eref></td>
                <td align="left">Grenoble, France</td>
                <td align="left">2-4 September, 2026</td>
                <td align="left">
                  <eref target="https://summit.riot-os.org/2026/blog/speakers/muhammad-usama-sardar/">abstract</eref>, <eref target="https://www.researchgate.net/publication/413988306_Security_Analysis_of_Attested_TLS_and_Attested_EDHOC">slides</eref>, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ga4gh.org/work_stream/data-security/">Data Security Work Stream (DSWS)</eref> at the <eref target="https://www.ga4gh.org/">Global Alliance for Genomics and Health (GA4GH)</eref></td>
                <td align="left">Virtual</td>
                <td align="left">24 Aug, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/413569575_High-Severity_Vulnerabilities_in_Former_GIF_Design_for_Attested_TLS_draft-fossati-seat-early-attestation">slides</eref>, <eref target="https://us02web.zoom.us/rec/share/UAn381deia-aMNmjGHhMqxocc1HcyF7ksLlaeeKefxO4bSC2mHPzwPQPYGe2dnZR.zfleYCmmtiteo_NS">video</eref></td>
              </tr>
              <tr>
                <td align="left">Confidential AI Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">21 July, 2026</td>
                <td align="left">
                  <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/odgd_xmhjQXiR_aLYdqtVvDJeF4/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">21 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-seat-binding-properties-of-expat-00.pdf">slides</eref>, <eref target="https://youtu.be/Fb5Hzh1mp1E?t=4189">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">IETF 126 Hackdemo Happy Hour</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">20 July, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">demo</eref></td>
              </tr>
              <tr>
                <td align="left">Confidential Computing Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">20 July, 2026</td>
                <td align="left">
                  <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hotrfc-sessa-15-confidential-computing-and-digital-sovereignty-00">slides</eref>, <eref target="https://youtu.be/FDHWRijxKso?t=3285">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ietf.org/meeting/hackathons/126-hackathon/">IETF 126 Hackathon</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hackathon-sessd-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/GRqyrDIEgEw?t=1340">video</eref></td>
              </tr>
              <tr>
                <td align="left">IEPG @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/g8q_u19vXzk?t=4404">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">Workshop</eref> @ <eref target="https://www.wissenschaftsnacht-dresden.de/en/">Dresden Science Night 2026</eref></td>
                <td align="left">Dresden</td>
                <td align="left">26 June, 2026</td>
                <td align="left">
                  <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">demo</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://output-dd.de/">Output 2026</eref></td>
                <td align="left">Dresden</td>
                <td align="left">25 June, 2026</td>
                <td align="left">
                  <eref target="https://output-dd.de/projekte/relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems/">demo</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://events.linuxfoundation.org/confidential-computing-summit/">Confidential Computing Summit 2026</eref> (presented by Jens Albers)</td>
                <td align="left">San Francisco, USA</td>
                <td align="left">23-24 June, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411851358_Standardization_of_Attested_TLS">poster</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://confidentialcontainers.org/">Confidential Containers Community Meeting</eref> @ <eref target="https://www.cncf.io/">Cloud Native Computing Foundation</eref></td>
                <td align="left">Virtual</td>
                <td align="left">30 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411849492_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref>, <eref target="https://zoom.us/rec/share/3thZhsRi-BZJL-GqjnwGzh7inbltuKIlpVjqMlWp6WRdMTZ66Z8p-8YjaaeOfbhX.CoH6YBukaKua0gkt">video</eref> around timestamp 00:27:00</td>
              </tr>
              <tr>
                <td align="left">GIF Project showcase @ <eref target="https://www.ga4gh.org/event/april-connect-2026/">GA4GH April Connect 2026</eref></td>
                <td align="left">Montreal, Canada (virtual)</td>
                <td align="left">17 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/412136610_Trusted_Research_Environment_TRE_Open_Suite">slides</eref>, <eref target="https://youtu.be/Kr9oxp1fdn0?t=1083">video</eref>, <eref target="https://www.ga4gh.org/document/arpril-connect-2026-meeting-report/">report</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://sos-vo.org/group/hotsos/">NSA Symposium on Hot Topics in the Science of Security (HotSoS) 2026</eref></td>
                <td align="left">Virtual</td>
                <td align="left">16 April, 2026</td>
                <td align="left">
                  <eref target="https://sos-vo.org/group/hotsos/2026/sardar">abstract</eref>, <eref target="https://sos-vo.org/system/files/2026-04/20260416_HotSoS%20%281%29.pdf">slides</eref>, <eref target="https://sos-vo.org/group/hotsos/2026/sardar">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fg-pet.gi.de/veranstaltung/15th-privacy-enhancing-techniques-convention">PET-CON 2026.1: 15th Privacy Enhancing Techniques Convention</eref></td>
                <td align="left">Karlsruhe, Germany</td>
                <td align="left">16-17 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411849502_Formal_Analysis_of_Attested_TLS">slides</eref>, <eref target="https://www.researchgate.net/publication/411852738_Formal_Analysis_of_Attested_TLS_and_Standardization_in_the_IETF">poster</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://gtmfs2026.sciencesconf.org/program?lang=en">GTMFS 2026: Annual Meeting of the WG "Formal Methods in Security"</eref></td>
                <td align="left">Luz-Saint-Sauveur, France</td>
                <td align="left">24-26 Mar, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411853715_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref></td>
              </tr>
              <tr>
                <td align="left">CFRG @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">19 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-cfrg-relay-attacks-00">slides</eref>, <eref target="https://youtu.be/IfKgbO74Lt4?t=6054">video</eref></td>
              </tr>
              <tr>
                <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref> (relay)</td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">17 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-seat-security-analysis-00">slides</eref>, <eref target="https://youtu.be/hX7genEkN7w?t=676">video</eref></td>
              </tr>
              <tr>
                <td align="left">Side meeting @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">16 Mar, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/403474373_Proposed_RG_Confidential_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">LAKE @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">16 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-lake-formal-analysis-of-attested-edhoc-00">slides</eref>, <eref target="https://youtu.be/JzfLpbnhl0A?t=3117">video</eref></td>
              </tr>
              <tr>
                <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">15 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hotrfc-sessa-formal-proof-of-insecurity-of-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/OtOo7Nogisw?t=3514">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ietf.org/meeting/hackathons/125-hackathon/">IETF 125 Hackathon</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">14-15 Mar, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/125/hackathon#relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hackathon-sessd-relay-attacks-in-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/62A58qH19MI?t=2270">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">10 Feb, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksGen_20260210.pdf">slides</eref>; <eref target="https://www.youtube.com/watch?v=idqwb0hFlhs&amp;list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1061s">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/session/rats">IETF RATS Interim meeting</eref></td>
                <td align="left">Virtual</td>
                <td align="left">9 Feb, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/materials/slides-interim-2026-rats-01-sessa-relayattacks-00.pdf">slides</eref>, <eref target="https://youtu.be/gURY61dViPw?t=1474">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fosdem.org/2026/schedule/track/confidential-computing/">Confidential Computing</eref> devroom at <eref target="https://fosdem.org/2026/">FOSDEM 2026</eref></td>
                <td align="left">Brussels, Belgium</td>
                <td align="left">31 Jan-1 Feb, 2026</td>
                <td align="left">
                  <eref target="https://fosdem.org/2026/schedule/event/GHGFBM-attestedtls/">abstract</eref>, <eref target="https://fosdem.org/2026/events/attachments/GHGFBM-attestedtls/slides/267432/20260201_60u9e0n.pdf">slides</eref>, <eref target="https://video.fosdem.org/2026/ud6215/GHGFBM-attestedtls.av1.webm">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">27 Jan, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksProposal_20260127.pdf">slides</eref>; <eref target="https://youtu.be/P04tLJcSxfM?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=434">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">13 Jan, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacks_20260113.pdf">slides</eref>; <eref target="https://youtu.be/cSrCZNyo7_g?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1083">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">16 Dec, 2025</td>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MuhammadUsamaSardar_Binding_Properties_20251216.pdf">slides</eref>; <eref target="https://youtu.be/w_MrjMeHyP8?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=593">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">2 Dec, 2025</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_Open_Questions_20251202.pdf">slides</eref>; <eref target="https://youtu.be/16aGZ-oZidg?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=2920">video</eref></td>
              </tr>
            </tbody>
          </table>
        </section>
        <section anchor="sec-archives">
          <name>Archives</name>
          <t>Since January, we have publicly informed the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> and shared our results with the community for review and to raise awareness on high-severity vulnerabilities and apply appropriate mitigations for the safety of their users:</t>
          <section anchor="intra-handshakefail-1">
            <name>Intra-handshake.fail</name>
            <section anchor="ietfhttpswwwietforg">
              <name><eref target="https://www.ietf.org/">IETF</eref></name>
              <ul spacing="normal">
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">SEAT WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">RATS WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/tls/8lyqHh9y7_Lv6b1iXhpUqYrp0M0/">TLS WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/lake/Tovtl7wgvzwJWT2I2ZwnhoIOnYQ/">LAKE WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/saag/jBZVk7YySwpaFqydAfxW33kNZPY/">SAAG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/practical-cybersecurity/d65WPaC0WbZRwxTBclnTkf7SmRs/">Practical Cybersecurity list</eref></t>
                </li>
                <li>
                  <t>Agent2agent list <eref target="https://mailarchive.ietf.org/arch/msg/agent2agent/ubz7uXCs--YzuSWyXNNsmWf_tSQ/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/agent2agent/xHhjA94fzed6ONIvPRgwTT-WRmA/">thread2</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/dmsc/QC2adIcYkxiTlniEcc7ggk86BAY/">DSMC list</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/hackathon/PIrJ2O_QqcNUAnMIn_Vh22ImWMc/">Hackathon</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">126attendees</eref></t>
                </li>
              </ul>
            </section>
            <section anchor="irtfhttpswwwirtforg">
              <name><eref target="https://www.irtf.org/">IRTF</eref></name>
              <ul spacing="normal">
                <li>
                  <t>UFMRG: <eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZWK0uMM92OdwlPbgXBvQApDpe5Q/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZRhR7o1HrWxfGDfgRJMR65RBkDE/">thread2</eref></t>
                </li>
                <li>
                  <t>CFRG <eref target="https://mailarchive.ietf.org/arch/msg/cfrg/NbxHIw9H_xpSYbgfO_n7lVIFeWs/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">thread2</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/din/_8LE3Ru1xX16hgGJwryMTRwRoaA/">DINRG</eref></t>
                </li>
              </ul>
            </section>
            <section anchor="ccchttpsconfidentialcomputingio">
              <name><eref target="https://confidentialcomputing.io/">CCC</eref></name>
              <ul spacing="normal">
                <li>
                  <t>Attestation SIG: <eref target="https://lists.confidentialcomputing.io/g/attestation/topic/117207133">thread1</eref> and <eref target="https://lists.confidentialcomputing.io/g/attestation/message/334">thread2</eref></t>
                </li>
                <li>
                  <t>TAC: <eref target="https://lists.confidentialcomputing.io/g/tac/topic/117932193">thread1</eref> and <eref target="https://lists.confidentialcomputing.io/g/tac/topic/120068850">thread2</eref></t>
                </li>
              </ul>
            </section>
            <section anchor="ocphttpswwwopencomputeorg">
              <name><eref target="https://www.opencompute.org/">OCP</eref></name>
              <ul spacing="normal">
                <li>
                  <t>OCP Security: <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/117932716">message1</eref>, <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120069056">message2</eref>, <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120483814">message3</eref> and <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120524635">message4</eref></t>
                </li>
              </ul>
            </section>
          </section>
          <section anchor="earlyattestationbleed-1">
            <name>EarlyAttestationBleed</name>
            <ul spacing="normal">
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZQKdp07P4UeTushAC1q9eBBtp0s/">IRTF UFMRG</eref></t>
              </li>
              <li>
                <t><eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/materials/slides-interim-2026-rats-03-sessa-protecting-the-rats-ecosystem-from-critical-severity-vulnerabilities-00">IETF RATS</eref></t>
              </li>
              <li>
                <t><eref target="https://ocp-all.groups.io/g/OCP-Security/message/1263">OCP Security</eref></t>
              </li>
              <li>
                <t><eref target="https://sympa.inria.fr/sympa/arc/proverif/2026-09/msg00000.html">ProVerif</eref></t>
              </li>
            </ul>
            <t>If you know any other relevant mailing list that we should inform for protection of users, please let us know.</t>
          </section>
        </section>
      </section>
    </section>
    <section anchor="contributions">
      <name>Contributions</name>
      <t>Contributions to the draft are welcome at <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail">https://github.com/muhammad-usama-sardar/intra-handshake-fail</eref>.</t>
      <t>Wenn Sie nur Deutsch sprechen, können Sie sich gerne per E-Mail an den Erstautor wenden. Wir haben Mitglieder, die Ihnen bei der Übersetzung Ihres Beitrags helfen können.</t>
      <t>如果您只会说中文，非常欢迎您通过电子邮件联系第四位作者。我们有成员可以协助翻译您的投稿。</t>
    </section>
    <section anchor="iana-considerations">
      <name>IANA Considerations</name>
      <t>This document has no IANA actions.</t>
    </section>
  </middle>
  <back>
    <references anchor="sec-combined-references">
      <name>References</name>
      <references anchor="sec-normative-references">
        <name>Normative References</name>
        <reference anchor="Intra-handshake.fail" target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="June"/>
          </front>
        </reference>
        <reference anchor="Intra-handshake.fail-repo" target="https://github.com/muhammad-usama-sardar/intra-handshake.fail">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="July"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-33697" target="https://www.cve.org/CVERecord?id=CVE-2026-33697">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-16488" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-16488">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-92701" target="https://www.cve.org/CVERecord?id=CVE-2026-92701">
          <front>
            <title>Cocos AI Intra-handshake attested TLS implementation is vulnerable to session-misbinding attacks for Intel TDX verifier path</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-92702" target="https://www.cve.org/CVERecord?id=CVE-2026-92702">
          <front>
            <title>Cocos AI Intra-handshake attested TLS implementation can accept Evidence with nil, empty, or omitted reportData in the AMD SEV-SNP path</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-83194" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-83194">
          <front>
            <title>EUVD-2026-83194</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-83192" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-83192">
          <front>
            <title>EUVD-2026-83192</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-vfgg-mvxx-mgg7">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI2" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-4px3-wj2x-xx47">
          <front>
            <title>Cocos AI intra-handshake attested TLS implementation is vulnerable to session-misbinding attacks for Intel TDX verifier path</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI3" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-4r6g-mp48-j2rw">
          <front>
            <title>Cocos AI intra-handshake attested TLS implementation can accept Evidence with nil, empty, or omitted reportData in the AMD SEV-SNP path</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-hjgc-jc5v-fw7h">
          <front>
            <title>Remote attestation is susceptible to relay attacks</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems2" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-m2qg-wrxv-h898">
          <front>
            <title>Generated policies don't detect all image substitutions</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="SEAT-vulnerability-report" target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">
          <front>
            <title>Relay Attacks in Intra-handshake Attestation for Confidential Agentic AI Systems</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <date year="2026" month="January"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rustls" target="https://github.com/Privasys/rustls/security/advisories/GHSA-j6qv-435v-r492">
          <front>
            <title>Privasys RA-TLS challenge mode did not bind attestation evidence to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-go" target="https://github.com/Privasys/go/security/advisories/GHSA-7jfw-53rm-phh2">
          <front>
            <title>Privasys Go fork: RA-TLS challenge mode did not bind attestation evidence to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-eov" target="https://github.com/Privasys/enclave-os-virtual/security/advisories/GHSA-p5fp-g94g-g9m9">
          <front>
            <title>enclave-os-virtual: RA-TLS challenge certificates were not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-eom" target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-49qm-4pj3-w2c6">
          <front>
            <title>enclave-os-mini: RA-TLS challenge certificates were not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-5qrc-v874-mxvx">
          <front>
            <title>ra-tls-clients: RA-TLS challenge verifier accepted quotes not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc-da" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-pj2x-5wqv-fh57">
          <front>
            <title>Privasys Intra-handshake attested TLS implementation is vulnerable to Diversion Attacks</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc-tcu" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-gg8q-mfhh-wrrc">
          <front>
            <title>Privasys Intra-handshake attested TLS implementation is vulnerable to TOCTOU Attacks</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="ID-Crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author fullname="Muhammad Usama Sardar" initials="M." surname="Sardar">
              <organization>TU Dresden, Dresden, Germany</organization>
            </author>
            <author fullname="Mariam Moustafa" initials="M." surname="Moustafa">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <author fullname="Tuomas Aura" initials="T." surname="Aura">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <date month="June" year="2026"/>
          </front>
          <seriesInfo name="Proceedings of the ACM Asia Conference on Computer and Communications Security" value="pp. 547-560"/>
          <seriesInfo name="DOI" value="10.1145/3779208.3785387"/>
          <refcontent>ACM</refcontent>
        </reference>
        <reference anchor="ID-Crisis-repo" target="https://github.com/CCC-Attestation/formal-spec-id-crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="M." surname="Moustafa">
              <organization/>
            </author>
            <author initials="T." surname="Aura">
              <organization/>
            </author>
            <date year="2025" month="November"/>
          </front>
        </reference>
        <reference anchor="refTLS">
          <front>
            <title>Verified Models and Reference Implementations for the TLS 1.3 Standard Candidate</title>
            <author fullname="Karthikeyan Bhargavan" initials="K." surname="Bhargavan">
              <organization/>
            </author>
            <author fullname="Bruno Blanchet" initials="B." surname="Blanchet">
              <organization/>
            </author>
            <author fullname="Nadim Kobeissi" initials="N." surname="Kobeissi">
              <organization/>
            </author>
            <date month="May" year="2017"/>
          </front>
          <seriesInfo name="2017 IEEE Symposium on Security and Privacy (SP)" value="pp. 483-502"/>
          <seriesInfo name="DOI" value="10.1109/sp.2017.26"/>
          <refcontent>IEEE</refcontent>
        </reference>
        <reference anchor="TLS-RA" target="https://www.usenix.org/conference/atc25/presentation/weinhold">
          <front>
            <title>Separate but together: integrating remote attestation into TLS</title>
            <author initials="" surname="Carsten Weinhold">
              <organization/>
            </author>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="" surname="Ionuț Mihalcea">
              <organization/>
            </author>
            <author initials="" surname="Yogesh Deshpande">
              <organization/>
            </author>
            <author initials="" surname="Hannes Tschofenig">
              <organization/>
            </author>
            <author initials="" surname="Yaron Sheffer">
              <organization/>
            </author>
            <author initials="" surname="Thomas Fossati">
              <organization/>
            </author>
            <author initials="" surname="Michael Roitzsch">
              <organization/>
            </author>
            <date year="2025" month="July"/>
          </front>
        </reference>
        <reference anchor="CSA-eBPF" target="https://cloudsecurityalliance.org/blog/2026/09/09/mitre-s-new-framework-securing-the-ebpf-layer-your-ai-depends-on">
          <front>
            <title>MITRE's New Framework: Securing the eBPF Layer Your AI Depends On</title>
            <author initials="" surname="Cloud Security Alliance">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="MITRE-Continuous-Attestation" target="https://www.mitre.org/news-insights/publication/framework-continuous-remote-attestation">
          <front>
            <title>Framework for Continuous Remote Attestation</title>
            <author initials="" surname="MITRE's Confidential Computing Layered Attestation Working Group">
              <organization/>
            </author>
            <date year="2026" month="July"/>
          </front>
        </reference>
        <reference anchor="EarlyAttestationBleed" target="https://www.researchgate.net/publication/414529199_EarlyAttestationBleed_Three_Critical-severity_Vulnerabilities_of_CVSS_90_in_Confidential_Computing">
          <front>
            <title>EarlyAttestationBleed: Three Critical-severity Vulnerabilities of CVSS ≥ 9.0 in Confidential Computing</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="" surname="Songbo Bu">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
      </references>
      <references anchor="sec-informative-references">
        <name>Informative References</name>
        <reference anchor="I-D.fossati-seat-early-attestation">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="20" month="September" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a TLS extension that
   enables the negotiation and binding of the TLS authentication key to
   a remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   This extension has been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-07"/>
        </reference>
        <reference anchor="I-D.fossati-seat-early-attestation-04">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="27" month="May" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a series of TLS
   extensions that enable the binding of the TLS authentication key to a
   remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   These extensions have been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-04"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-06">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="19" month="March" year="2024"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-06"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-09">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="30" month="April" year="2025"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-09"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-10">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="23" month="July" year="2026"/>
            <abstract>
              <t>   This draft has been withdrawn.

About This Document

   This note is to be removed before publishing as an RFC.

   Status information for this document may be found at
   https://datatracker.ietf.org/doc/draft-fossati-tls-attestation/.

   Source for this draft and an issue tracker can be found at
   https://github.com/yaronf/draft-tls-attestation.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-10"/>
        </reference>
        <reference anchor="I-D.ritz-seat-facts">
          <front>
            <title>Factor-based Attestation and Credential Transport Scheme (FACTS) over TLS 1.3</title>
            <author fullname="Nathanael Ritz" initials="N." surname="Ritz">
              <organization>Independent</organization>
            </author>
            <date day="1" month="March" year="2026"/>
            <abstract>
              <t>   This document describes FACTS (Factor-based Attestation and
   Credential Transport Scheme) over TLS 1.3.  Conceptually acting as
   "multi-factor authentication" for machine identities, factor-based
   attestation derives session trust from multiple independent
   cryptographic inputs rather than a single point of failure.
   Specifically, it utilizes a dual-key scheme that binds identity to
   attestation evidence through the use of key encapsulation material
   keys (KEM) and traditional identity signing keys (IK), establishing
   per-session freshness.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ritz-seat-facts-00"/>
        </reference>
      </references>
    </references>
    <?line 1051?>

<section numbered="false" anchor="acknowledgments">
      <name>Acknowledgments</name>
      <t>Acknowledgment does not necessarily imply attestation. It implies that the authors found the feedback and discussion useful in improving the formal analysis, the corresponding paper, or this draft.</t>
      <t>This draft benefits from several years of research on attested TLS, in particular some of the recent works mentioned below:</t>
      <t><strong>EarlyAttestationBleed</strong> <xref target="EarlyAttestationBleed"/></t>
      <t>We wish to express our sincere appreciation to the following for their review:</t>
      <ul spacing="normal">
        <li>
          <t>Sammy Kerata Oina</t>
        </li>
        <li>
          <t>Drasko Draskovic</t>
        </li>
        <li>
          <t>Markus Rudy</t>
        </li>
        <li>
          <t>Kaya Ercihan</t>
        </li>
        <li>
          <t>Peg Jones</t>
        </li>
        <li>
          <t>Bertrand Foing</t>
        </li>
        <li>
          <t>Rebekah Overdorf</t>
        </li>
        <li>
          <t>Tobias Pulls</t>
        </li>
      </ul>
      <t><strong>Intra-handshake.fail</strong> <xref target="Intra-handshake.fail"/></t>
      <t>We gratefully acknowledge the following for insightful discussions and helpful reviews on <xref target="Intra-handshake.fail"/>:</t>
      <ul spacing="normal">
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Juho Forsén</t>
        </li>
        <li>
          <t>Markus Rudy</t>
        </li>
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Steve Kremer</t>
        </li>
        <li>
          <t>Tjaden Hess</t>
        </li>
        <li>
          <t>Martin Thomson</t>
        </li>
        <li>
          <t>Yuning Jiang</t>
        </li>
        <li>
          <t>Pavel Nikonorov</t>
        </li>
        <li>
          <t>Casey Wilson</t>
        </li>
        <li>
          <t>Anonymous ESORICS 2026 reviewers</t>
        </li>
        <li>
          <t>Marco Anisetti (ESORICS 2026 shepherd)</t>
        </li>
        <li>
          <t>Danko Miladinovic</t>
        </li>
        <li>
          <t>Rongkuan He</t>
        </li>
        <li>
          <t>Peeter Laud</t>
        </li>
        <li>
          <t>Stephen Holmes</t>
        </li>
        <li>
          <t>Ammara Gul</t>
        </li>
        <li>
          <t>Atul Prakash</t>
        </li>
        <li>
          <t>Paul Syverson</t>
        </li>
        <li>
          <t>Jan Tobias Muehlberg</t>
        </li>
        <li>
          <t>John Preuß Mattsson</t>
        </li>
        <li>
          <t>Britta Hale</t>
        </li>
        <li>
          <t>Werner Staub</t>
        </li>
        <li>
          <t>Songbo Bu</t>
        </li>
        <li>
          <t>Haowen Song</t>
        </li>
        <li>
          <t>Chengxin Huang</t>
        </li>
        <li>
          <t>Steve Luo</t>
        </li>
        <li>
          <t>Andrew Miller</t>
        </li>
        <li>
          <t>Kubilay Ahmet Küçük</t>
        </li>
        <li>
          <t>Iman Schrock</t>
        </li>
        <li>
          <t>Sophie Schmieg</t>
        </li>
        <li>
          <t>Davyd Okaianchenko</t>
        </li>
        <li>
          <t>Alistair Woodman</t>
        </li>
        <li>
          <t>Göran Selander</t>
        </li>
        <li>
          <t>Tom Sato</t>
        </li>
        <li>
          <t>Jakub Maria Plutowski</t>
        </li>
        <li>
          <t>Martin Friedrich</t>
        </li>
        <li>
          <t>Patrick Duggan</t>
        </li>
        <li>
          <t>Deb Cooley</t>
        </li>
      </ul>
      <t><strong>Identity Crisis</strong> <xref target="ID-Crisis"/></t>
      <t>We would like to thank our co-authors of paper <xref target="ID-Crisis"/> for their valuable contributions:</t>
      <ul spacing="normal">
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Tuomas Aura</t>
        </li>
      </ul>
      <t>We also gratefully acknowledge the following for insightful discussions and helpful feedback:</t>
      <ul spacing="normal">
        <li>
          <t>Ionut Mihalcea</t>
        </li>
        <li>
          <t>Jean-Marie Jacquet</t>
        </li>
        <li>
          <t>Thomas Fossati</t>
        </li>
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Hannes Tschofenig</t>
        </li>
        <li>
          <t>Yaron Sheffer</t>
        </li>
        <li>
          <t>Laurence Lundblade</t>
        </li>
        <li>
          <t>Giridhar Mandyam</t>
        </li>
        <li>
          <t>Christopher Patton</t>
        </li>
        <li>
          <t>Jonathan Hoyland</t>
        </li>
        <li>
          <t>Richard Barnes</t>
        </li>
      </ul>
      <t><strong>refTLS</strong> <xref target="refTLS"/></t>
      <t>We sincerely thank the following for the foundational formal model of draft 20 of TLS 1.3 in their work <xref target="refTLS"/> that we have used as the foundation of all of this work:</t>
      <ul spacing="normal">
        <li>
          <t>Karthikeyan Bhargavan</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Nadim Kobeissi</t>
        </li>
      </ul>
      <t><strong>General</strong></t>
      <t>Several others at the IETF, IRTF, CCC, and GA4GH have contributed by providing feedback over the years. A non-exhaustive list of contributors is <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00#page=17">here</eref>.</t>
      <t>Muhammad Usama Sardar is funded by German Research Foundation ("Deutsche Forschungsgemeinschaft.")</t>
    </section>
  </back>
  <!-- ##markdown-source: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-->

</rfc>
