<?xml version='1.0' encoding='utf-8'?>
<!DOCTYPE rfc [
  <!ENTITY nbsp    "&#160;">
  <!ENTITY zwsp   "&#8203;">
  <!ENTITY nbhy   "&#8209;">
  <!ENTITY wj     "&#8288;">
]>
<?xml-stylesheet type="text/xsl" href="rfc2629.xslt" ?>
<!-- generated by https://github.com/cabo/kramdown-rfc version 1.7.39 (Ruby 3.4.9) -->
<rfc xmlns:xi="http://www.w3.org/2001/XInclude" ipr="trust200902" docName="draft-intra-handshake-fail-13" category="info" consensus="true" submissionType="IETF" tocInclude="true" sortRefs="true" symRefs="true" version="3">
  <!-- xml2rfc v2v3 conversion 3.34.0 -->
  <front>
    <title abbrev="Intra-handshake Attestation Considered Harmful">Intra-handshake (aka Early) Attestation Considered Harmful (CVE-2026-33697 of CVSS 7.5 and several other CVEs of up to expected CVSS 9.8 upcoming)</title>
    <seriesInfo name="Internet-Draft" value="draft-intra-handshake-fail-13"/>
    <author fullname="Muhammad Usama Sardar">
      <organization>TU Dresden, Germany</organization>
      <address>
        <email>muhammad_usama.sardar@tu-dresden.de</email>
      </address>
    </author>
    <author fullname="Songbo Bu">
      <organization>Shanghai Guan An Information Technology Co., Ltd., China</organization>
      <address>
        <email>bluedognull@gmail.com</email>
      </address>
    </author>
    <author fullname="Chengxin Huang">
      <organization>Independent</organization>
      <address>
        <email>aurestarnull@gmail.com</email>
      </address>
    </author>
    <author fullname="Haowen Song">
      <organization>Shanghai Guan An Information Technology Co., Ltd., China</organization>
      <address>
        <email>havan12050544@gmail.com</email>
      </address>
    </author>
    <author fullname="Iman Schrock">
      <organization>EMILIA Protocol, Inc.</organization>
      <address>
        <email>team@emiliaprotocol.ai</email>
      </address>
    </author>
    <date year="2026" month="August" day="25"/>
    <workgroup>SEAT</workgroup>
    <keyword>AI agents</keyword>
    <keyword>Intra-handshake attestation</keyword>
    <keyword>CVE-2026-33697</keyword>
    <abstract>
      <?line 115?>

<t>The draft aims to provide technical details of <eref target="https://www.cve.org/CVERecord?id=CVE-2026-33697">CVE-2026-33697</eref> and <eref target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-16488">EUVD-2026-16488</eref>, which is substantial technical evidence of how <strong>intra</strong>-handshake attestation fails in practice, even <em>without physical access</em>. Moreover, since continuous attestation is generally required, <strong>intra</strong>-handshake attestation adds <strong>unnecessary complexity</strong>. The results are backed by the research <xref target="Intra-handshake.fail"/> and the artifacts <xref target="Intra-handshake.fail-repo"/> in state-of-the-art formal analysis tool, ProVerif, under Apache-2.0 license for reproducibility, and have been acknowledged by the relevant stakeholders.</t>
    </abstract>
    <note removeInRFC="true">
      <name>About This Document</name>
      <t>
        The latest revision of this draft can be found at <eref target="https://muhammad-usama-sardar.github.io/intra-handshake-fail/draft-intra-handshake-fail.html"/>.
        Status information for this document may be found at <eref target="https://datatracker.ietf.org/doc/draft-intra-handshake-fail/"/>.
      </t>
      <t>Source for this draft and an issue tracker can be found at
        <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail"/>.</t>
    </note>
  </front>
  <middle>
    <?line 119?>

<section anchor="introduction">
      <name>Introduction</name>
      <t><xref target="Intra-handshake.fail"/> presents a general approach to analyze the intra-handshake attestation proposals, regardless of whether they are within the scope of SEAT charter or not. From a security perspective, one of the key decision factors is the candidate binding mechanism. Some binding mechanisms are within scope of SEAT charter and others are not. The artifacts are in <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 license for reproducibility and extensibility.</t>
      <t>A <strong>complementary</strong> paper <xref target="ID-Crisis"/> presents the identity crisis in pre- and intra-handshake attestation. The formal analysis is available in <xref target="ID-Crisis-repo"/> under Apache-2.0 license for reproducibility and extensibility.</t>
      <t>Another complementary paper -- currently under submission -- peforms a thorough formal analysis of the design options in intra-handshake attestation.</t>
      <section anchor="overview">
        <name>Overview</name>
        <t>This draft presents the formal specification and analysis of the candidate binding mechanisms for binding in intra-handshake attestation for standardization for attested TLS protocols:</t>
        <table>
          <name>Binding mechanisms, implementations and ProVerif artifacts</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Used in</th>
              <th align="left">Artifacts</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">
                <eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MarkusRudy.contrast-atls-ccc-attestation.pdf">Edgeless Systems Contrast</eref>; <eref target="https://www.sns-itrust6g.com/wp-content/uploads/2025/12/Webinar-Architecting-Trust-CONFIDENTIAL6G.pdf">Cocos AI</eref>;  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <xref target="I-D.fossati-tls-attestation-06"/></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7">binder7</eref></td>
            </tr>
          </tbody>
        </table>
        <artwork><![CDATA[
We provide a formal proof of insecurity of all the above candidate
binding mechanisms of intra-handshake attestation using the
state-of-the-art tool ProVerif and propose a mitigation for the
discovered security vulnerabilities. Our study reveals that it may
not be possible to achieve strong application-traffic (level 3)
binding using intra-handshake attestation alone. This can be exploited
for relay attacks, where an attacker makes a client accept an evidence
from a different machine. So the client cannot be sure that it connects
to its desired server.
]]></artwork>
        <t>We responsibly disclosed the vulnerability in intra-handshake attestation -- as noted in <xref target="GHSA-Cocos-AI"/> issued -- to the vendors, which resulted in  <xref target="CVE-2026-33697"/> of CVSS 7.5.</t>
      </section>
      <section anchor="modeling-other-binding-mechanisms">
        <name>Modeling Other Binding Mechanisms</name>
        <t>The artifacts are quite flexible for modification and testing of different intra-handshake attestation binding mechanisms by simply changing single <tt>rdata</tt> parameter in the Client and Server processes. Folder <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/aggregate">aggregate</eref> contains all analyzed and proposed binding mechanisms in <xref target="Intra-handshake.fail"/> to select via comment and uncomment. Other folders contain one specific binding mechanism.</t>
      </section>
      <section anchor="seat-early-attestation">
        <name>SEAT-Early-Attestation</name>
        <t>The draft <xref target="I-D.fossati-seat-early-attestation"/> is an extension of the provably vulnerable (and withdrawn) draft <xref target="I-D.fossati-tls-attestation-10"/> with the following two main changes from a formal perspective:</t>
        <ol spacing="normal" type="1"><li>
            <t>Binder has been updated</t>
          </li>
          <li>
            <t>Post-handshake attestation part has been added for re-attestation</t>
          </li>
        </ol>
        <t>The current binder in <xref target="I-D.fossati-seat-early-attestation"/> does not prevent relay attacks as there is no <strong>shared secret</strong> in the binder.</t>
        <t>Post-handshake attestation part may prevent relay attacks, but then the <strong>additional complexity</strong> of intra-handshake attestation is unjustified.</t>
      </section>
    </section>
    <section anchor="credits">
      <name>Credits</name>
      <table>
        <name>GHSAs/CVEs and finders</name>
        <thead>
          <tr>
            <th align="left">GHSA/CVE</th>
            <th align="left">Finders</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-16488"/></td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI"/></td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems"/></td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">TBA</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
        </tbody>
      </table>
    </section>
    <section anchor="threat-model">
      <name>Threat Model</name>
      <t>The threat model is explained in Sec. 6.1 of <xref target="Intra-handshake.fail"/> and Sec. 4 of <xref target="ID-Crisis"/>.</t>
    </section>
    <section anchor="detailed-vulnerability-disclosure-timeline-and-public-acknowledgements-by-affected-vendors">
      <name>Detailed Vulnerability Disclosure Timeline and Public Acknowledgements by Affected Vendors</name>
      <table>
        <name>Detailed vulnerability disclosure timeline and acknowledgements</name>
        <thead>
          <tr>
            <th align="left">Event</th>
            <th align="left">Date</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">Our initial responsible disclosure to vendor</td>
            <td align="left">07 Oct, 2025</td>
          </tr>
          <tr>
            <td align="left">Acknowledgement by vendor</td>
            <td align="left">14 Dec, 2025</td>
          </tr>
          <tr>
            <td align="left">Information to the <eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">IETF</eref></td>
            <td align="left">11 Jan, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://web.archive.org/web/20260227160554/https://www.ultraviolet.rs/blog/tee-tls-privacy/">Public announcement</eref> by vendor</td>
            <td align="left">27 Feb, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>]</td>
            <td align="left">23 March, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-33697"/> published  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-16488"/>  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/rustls/releases/tag/privasys-v0.8.1">Acknowledgment</eref> by Privasys for rustls <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">9 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/go/releases/tag/privasys-v0.5.1-go1.26.5">Acknowledgment</eref> by Privasys for go <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">10 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation</eref> declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref></td>
            <td align="left">17 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation repo</eref> archived</td>
            <td align="left">22 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable draft <xref target="I-D.fossati-tls-attestation-10"/> withdrawn by authors</td>
            <td align="left">23 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">29 July, 2026</td>
          </tr>
        </tbody>
      </table>
      <t><strong>Neither the GHSAs nor the CVE has any dependency whatsoever on the considered threat model with <tt>WeakHash</tt>, <tt>WeakDH</tt>, or <tt>BadElement</tt>.</strong> They hold independent of those, i.e., with <tt>StrongHash</tt> and <tt>StrongDH</tt> and all good elements within a group.</t>
    </section>
    <section anchor="eu-enisa">
      <name>EU ENISA</name>
      <t>European Union's <eref target="https://euvd.enisa.europa.eu/homepage">ENISA</eref> has independently published <xref target="EUVD-2026-16488"/> with CVSS 7.5 to acknowledge this vulnerability.</t>
    </section>
    <section anchor="sec-cvss-scores">
      <name>Comparison with Other Vulnerabilities in Confidential Computing Literature</name>
      <t>Severity is based on <eref target="https://nvd.nist.gov/vuln-metrics/cvss">NIST metrics</eref>.</t>
      <table>
        <name>Comparison with other vulnerabilities in confidential computing literature</name>
        <thead>
          <tr>
            <th align="left">Vulnerability</th>
            <th align="left">CVE</th>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <eref target="https://wiretap.fail/files/wiretap.pdf">wiretap.fail</eref></td>
            <td align="left">No CVE (<eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2025-10-28-001.html">Intel</eref> and <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3040.html">AMD</eref> announcements)</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://tee.fail/files/paper.pdf">TEE.fail</eref></td>
            <td align="left">No CVE</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://dl.acm.org/doi/10.1145/3658644.3690230">TDXdown</eref></td>
            <td align="left">
              <eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2024-10-08-001.html">Intel</eref></td>
            <td align="left">2.5</td>
            <td align="left">Low</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/staleus/staleus_usenix26.pdf">Staleus</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-54509">CVE-2025-54509</eref></td>
            <td align="left">4.0</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-6197">CVE-2025-61972</eref></td>
            <td align="left">4.2</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://badram.eu/badram.pdf">BadRAM</eref></td>
            <td align="left">
              <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3015.html">AMD</eref></td>
            <td align="left">5.3</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-61971">CVE-2025-61971</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/fabricked/fabricked_usenix26.pdf">Fabricked</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=cve-2025-54510">CVE-2025-54510</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">Intra-handshake.fail</eref></td>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">7.5</td>
            <td align="left">High</td>
          </tr>
        </tbody>
      </table>
      <t>The comparison of the above with CVSS <strong>7.5</strong> for <xref target="Intra-handshake.fail"/> indicates that attested TLS is not mature yet compared to the rest of the confidential computing stack, and is currently one of the weakest links in the ecosystem.</t>
    </section>
    <section anchor="more-cves">
      <name>More CVEs</name>
      <t>Further formal analysis has led to the following potential CVEs for intra-handshake attestation (currently under disclosure):</t>
      <table>
        <name>Expected CVEs for intra-handshake attestation under disclosure</name>
        <thead>
          <tr>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
            <th align="left">Number of CVEs</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">9.8</td>
            <td align="left">Critical</td>
            <td align="left">1</td>
          </tr>
          <tr>
            <td align="left">9.1</td>
            <td align="left">Critical</td>
            <td align="left">2</td>
          </tr>
          <tr>
            <td align="left">8.7</td>
            <td align="left">High</td>
            <td align="left">1</td>
          </tr>
          <tr>
            <td align="left">7.5</td>
            <td align="left">High</td>
            <td align="left">2</td>
          </tr>
          <tr>
            <td align="left">7.4</td>
            <td align="left">High</td>
            <td align="left">2</td>
          </tr>
          <tr>
            <td align="left">6.3</td>
            <td align="left">Medium</td>
            <td align="left">2</td>
          </tr>
        </tbody>
      </table>
      <t>These are preliminary estimates of scores, not final assigned score. They are still under review.</t>
    </section>
    <section anchor="vulnerable-implementations">
      <name>Vulnerable Implementations</name>
      <t>At least the following implementations are vulnerable:</t>
      <ul spacing="normal">
        <li>
          <t><eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI</eref>: <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
        <li>
          <t><eref target="https://github.com/ultravioletrs/cocos">Cocos AI</eref>: <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>], <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
        <li>
          <t><eref target="https://github.com/edgelesssys/contrast">Edgeless Systems Contrast</eref>: <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</t>
        </li>
        <li>
          <t><eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref>: declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref> and <strong>archived</strong></t>
        </li>
        <li>
          <t>Privasys rustls: <eref target="https://github.com/Privasys/rustls/releases/tag/privasys-v0.8.1">Acknowledgment</eref> of applicability of <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
        <li>
          <t>Pirvasys go: <eref target="https://github.com/Privasys/go/releases/tag/privasys-v0.5.1-go1.26.5">Acknowledgment</eref> of applicability of <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
      </ul>
      <t>If you are aware of any other intra-handshake attestation implementation, please let us know so that we can check and responsibly disclose the vulnerabilities to them.</t>
    </section>
    <section anchor="vulnerable-protocol-specifications">
      <name>Vulnerable Protocol Specifications</name>
      <t>At least the following protocol specifications with intra-handshake attestation <em>path</em> are vulnerable to <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/>:</t>
      <ul spacing="normal">
        <li>
          <t><xref target="I-D.fossati-tls-attestation-09"/>: symbolic proof of insecurity; <xref target="I-D.fossati-tls-attestation-10"/> <strong>withdrawn</strong> after the CVE</t>
        </li>
        <li>
          <t><xref target="I-D.fossati-seat-early-attestation"/>: symbolic and (paper-and-pen-based) computational proof of insecurity (originally done for -04 and applies also to -06)
          </t>
          <ul spacing="normal">
            <li>
              <t>As a SEAT WG participant pointed out, please note that both <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> contain a link to <xref target="GHSA-Cocos-AI"/> that contains a link to <xref target="SEAT-vulnerability-report"/> that contains the G3 property (cf. <xref target="sec-corr-goals"/>) that this draft does not satisfy.</t>
            </li>
            <li>
              <t>Some WG participants successfully reproduced the vulnerability by substituting the right value of <tt>rdata</tt> in the shared formal model <xref target="Intra-handshake.fail-repo"/> that led to the CVE.</t>
            </li>
            <li>
              <t>An informal reasoning is that binder is not <strong>directly</strong> derived from any <strong>shared secret</strong> in this draft.</t>
            </li>
            <li>
              <t><strong>Unnecessary complexity</strong> is itself a security concern</t>
            </li>
          </ul>
        </li>
        <li>
          <t><xref target="I-D.ritz-seat-facts"/>: symbolic proof of insecurity
          </t>
          <ul spacing="normal">
            <li>
              <t>violates G3 property in our analysis</t>
            </li>
            <li>
              <t>unnecessary complexity is itself a security concern</t>
            </li>
          </ul>
        </li>
      </ul>
    </section>
    <section anchor="binding-levels">
      <name>Binding Levels</name>
      <ol spacing="normal" type="1"><li>
          <t>DH shared secret (<tt>gxy</tt>) used as shared secret between client and server</t>
        </li>
        <li>
          <t>Handshake traffic key (<tt>htsc</tt>) used for encryption of handshake messages</t>
        </li>
        <li>
          <t>Application traffic key (<tt>astc</tt>) used for encryption of application data</t>
        </li>
      </ol>
      <t>Please see Sec. 6.2 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="sec-corr-goals">
      <name>Security Properties (Correlation Goals)</name>
      <t>We consider TLS Server as RATS Attester, which is typical in confidential computing.</t>
      <ol spacing="normal" type="1"><li>
          <t>Correlation of Evidence to a DH Shared Secret (G1)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Handshake Traffic Key (G2)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Application Traffic Key (G3)</t>
        </li>
      </ol>
      <t>Please see Sec. 6.3 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="main-results">
      <name>Main Results</name>
      <ul spacing="normal">
        <li>
          <t>All analyzed binding mechanisms and the corresponding implementations of intra-handshake attestation are vulnerable to relay attacks.</t>
        </li>
        <li>
          <t>Early exporter helps achieve level 1 binding.</t>
        </li>
        <li>
          <t>Our proposed mechanism helps achieve level 2 binding.</t>
        </li>
        <li>
          <t>It may not be possible to achieve level 3 in intra-handshake attestation alone without additional assumptions.</t>
        </li>
      </ul>
      <table>
        <name>Main results</name>
        <thead>
          <tr>
            <th align="left">Property</th>
            <th align="left">Mechanism #1,2,4,6</th>
            <th align="left">Mechanism #3,5,7</th>
            <th align="left">Proposed mechanism</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">G1 : Correlation of Evidence to <tt>gxy</tt></td>
            <td align="left">❌</td>
            <td align="left">✅</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G2 : Correlation of Evidence to <tt>kch</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G3 : Correlation of Evidence to <tt>kc</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">❌</td>
          </tr>
        </tbody>
      </table>
      <t>Please see Sec. 7.1 and Figure 5 of <xref target="Intra-handshake.fail"/> for details of attacks.</t>
      <section anchor="expected-results">
        <name>Expected Results</name>
        <table>
          <name>Expected results</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Artifacts</th>
              <th align="left">Expected results</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/">binder1</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/log.txt">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/">binder2</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/log.txt">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/">binder3</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/log.txt">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/">binder4</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/log.txt">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/">binder5</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/log.txt">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/">binder6</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/log.txt">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/">binder7</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/log.txt">binder7</eref></td>
            </tr>
            <tr>
              <td align="left">8.</td>
              <td align="left">Proposed</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/">proposal</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/log.txt">proposal</eref></td>
            </tr>
          </tbody>
        </table>
      </section>
    </section>
    <section anchor="implications-of-findings">
      <name>Implications of Findings</name>
      <section anchor="implications-of-findings-for-ietf-seat-wg">
        <name>Implications of Findings for IETF SEAT WG</name>
        <ul spacing="normal">
          <li>
            <t>We believe post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>, can achieve level 3 binding.</t>
          </li>
          <li>
            <t>The research suggests that recent hybrid proposals (combination of intra-handshake attestation and post-handshake attestation) <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> may add <strong>unnecessary complexity</strong> of intra-handshake attestation without adding any security benefit compared to post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>. We are not aware of any <strong>security property</strong> that hybrid proposals can achieve that post-handshake attestation alone cannot achieve.</t>
          </li>
          <li>
            <t>As demonstrated by our symbolic analysis using ProVerif, the protocol specifications <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> remain vulnerable to CVE-2026-33697. We have also proved that <xref target="I-D.fossati-seat-early-attestation-04"/> and <xref target="I-D.fossati-seat-early-attestation"/> violate the security theorems in the computational model.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-lake-wg">
        <name>Implications of Findings for IETF LAKE WG</name>
        <ul spacing="normal">
          <li>
            <t>Similar problems occur for protocol specification <eref target="https://datatracker.ietf.org/doc/draft-ietf-lake-ra/">lake-ra</eref>.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-tls-wg">
        <name>Implications of Findings for IETF TLS WG</name>
        <ul spacing="normal">
          <li>
            <t><xref target="I-D.fossati-tls-attestation-09"/> is vulnerable to <xref target="CVE-2026-33697"/>. Thankfully, the authors have withdrawn <xref target="I-D.fossati-tls-attestation-10"/>.</t>
          </li>
          <li>
            <t>Remote attestation <em>within</em> the handshake is very dangerous, since to our knowledge, it is one of the highest scored published vulnerabilities in confidential computing literature (see <xref target="sec-cvss-scores"/>).</t>
          </li>
        </ul>
        <artwork><![CDATA[
Given the high- and critical-severity vulnerabilities, we recommend
that the developers and maintainers of intra-handshake attestation MUST
urgently move to post-handshake attestation.
]]></artwork>
      </section>
      <section anchor="implications-of-findings-for-agent2agent">
        <name>Implications of Findings for Agent2Agent</name>
        <t>From a security perspective, intra-handshake attestation does more damage than protection for AI agents.</t>
      </section>
    </section>
    <section anchor="technical-details">
      <name>Technical Details</name>
      <section anchor="tool">
        <name>Tool</name>
        <t>We use state-of-the-art symbolic security analysis tool <eref target="https://ieeexplore.ieee.org/document/9833653">ProVerif</eref> for the specification of the protocols.</t>
      </section>
      <section anchor="modeling">
        <name>Modeling</name>
        <t>The formal model uses the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work as the starting point to focus on relay attacks in intra-handshake attestation in this work.
The rationale is that we consider it more useful to show the added value of this contribution to the community by using the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> as the baseline, rather than showing the same diversion attacks from <xref target="ID-Crisis"/>, and the discovered CVE (<xref target="CVE-2026-33697"/>) -- which the previous analysis could not find -- practically demonstrates the added value.
This modeling choice makes it clear that even with the diversion attacks fixed, high-severity relay attacks would still remain in intra-handshake attestation.</t>
        <t>Note: Similar to the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work, we model non-PSK-based handshake.
From <xref target="ID-Crisis"/>:</t>
        <ul empty="true">
          <li>
            <t>For modeling TLS 1.3, we consider handshakes based on Diffie-Hellman over either finite fields or elliptic curves, represented as (EC)DHE. This is because we are unaware of any publicly available specification or implementation of attested TLS with PSK-based handshakes.</t>
          </li>
        </ul>
        <t>While it would be nice to model PSK-based handshake, the rationale is that the correlation properties studied in this work do not necessarily require it.</t>
        <t>Note: The artifacts consider the case of server authentication only, as client authentication is optional in TLS 1.3. No claims are made about other configurations.</t>
      </section>
      <section anchor="properties">
        <name>Properties</name>
        <t>Properties in <xref target="Intra-handshake.fail"/> are complemetary to properties in <xref target="ID-Crisis"/>. Sec. 8 of <xref target="ID-Crisis"/> mentions:</t>
        <ul empty="true">
          <li>
            <t>We emphasize that both diversion and relay attacks are orthogonal and thus the two works are complementary.</t>
          </li>
        </ul>
      </section>
      <section anchor="technical-vulnerability-report">
        <name>Technical Vulnerability Report</name>
        <t>Technical vulnerability report is available at <xref target="Intra-handshake.fail"/>. It is accepted for publication at ESORICS 2026.</t>
        <section anchor="vulnerabilities">
          <name>Vulnerabilities</name>
          <t>Sec. 7.1 of <xref target="Intra-handshake.fail"/> presents the technical details with abstract attack traces of the vulnerabilities.</t>
        </section>
        <section anchor="mitigation">
          <name>Mitigation</name>
          <t>Sec. 7.2 of <xref target="Intra-handshake.fail"/> presents the technical details of the proposed mitigation.</t>
        </section>
      </section>
      <section anchor="artifacts">
        <name>Artifacts</name>
        <t>Artifacts are available at <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 License.</t>
      </section>
    </section>
    <section anchor="sec-news">
      <name>Media Coverage</name>
      <t>Several media professionals and bloggers have covered the vulnerabilities to protect the community from the harm of intra-handshake attestation.</t>
      <ul spacing="normal">
        <li>
          <t><eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref></t>
        </li>
        <li>
          <t>(Japanese) <eref target="https://blackhatnews.tokyo/archives/119915">BlackHatNewsTokyo</eref></t>
        </li>
        <li>
          <t>(Several languages) <eref target="https://hackernoon.com/attested-tls-was-supposed-to-be-the-last-trust-boundary-it-isnt-formal-methods-show-how">Hackernoon</eref></t>
        </li>
        <li>
          <t><eref target="https://podcasts.apple.com/eg/podcast/attested-tls-was-supposed-to-be-the-last-trust/id1698517643?i=1000776623286">Apple podcast</eref></t>
        </li>
        <li>
          <t><eref target="https://meterpreter.org/attested-tls-vulnerability-cve-2026-33697/">Information Security News</eref></t>
        </li>
        <li>
          <t><eref target="https://thenextgentechinsider.com/pulse/critical-flaw-discovered-in-confidential-computing-attestation-protocols">TheNextGenTechInsider</eref></t>
        </li>
        <li>
          <t><eref target="https://dailysecurityreview.com/resources/cve-2026-33697-attested-tls-relay-flaw-hits-whatsapp-cocos-ai/">DailySecurityReview</eref></t>
        </li>
        <li>
          <t><eref target="https://www.scworld.com/brief/confidential-computings-remote-attestation-protocol-may-have-fundamental-flaw">SC World</eref></t>
        </li>
        <li>
          <t><eref target="https://blogs.groupware.org.uk/01-Quantum-Inc/the-handshake-that-cant-keep-its-promise-why-confidential-computings-flaw-changes-the-data-sovereignty-conversation/">01 Quantum</eref></t>
        </li>
        <li>
          <t>(Russian) <eref target="https://www.securitylab.ru/news/574545.php">Security Lab</eref></t>
        </li>
        <li>
          <t>(German) <eref target="https://www.blogspan.net/confidential-computing-attestierung-relay-luecke/">blogspan</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://finance.sina.cn/tech/2026-07-04/detail-inifscxt9953361.d.html">Sina</eref></t>
        </li>
        <li>
          <t><eref target="https://data4biz.com/articles/una-falla-rompe-la-fiducia-del-confidential-computing">data4biz</eref></t>
        </li>
        <li>
          <t>(Russian) <eref target="https://www.itsec.ru/news/issledovateli-nashli-kriticheskuyu-uyazvimost-v-attested-tls">ITSec</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://post.smzdm.com/p/a82ol990/">smzdm</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://www.donews.com/news/detail/4/6621022.html">donews</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://i.ifeng.com/c/8uUfy0PMmqE">ifeng</eref></t>
        </li>
        <li>
          <t><eref target="https://www.dugganusa.com/post/confidential-computing-s-whole-pitch-is-trust-the-proof-not-the-cloud-two-years-of-formal-verifi">dugganusa</eref></t>
        </li>
        <li>
          <t><eref target="https://github.com/pduggusa/dugganusa-ietf/tree/main/cve-2026-33697-attestation">dugganusa repo</eref></t>
        </li>
        <li>
          <t><eref target="https://sploitus.com/exploit?id=92591A05-07BC-5015-BA3D-B1347B35D684">spoitus</eref></t>
        </li>
        <li>
          <t><eref target="https://news.lavx.hu/article/attested-tls-research-exposes-a-weak-link-in-confidential-computing">lavx news</eref></t>
        </li>
        <li>
          <t><eref target="https://www.sohu.com/a/1045865934_122004016">sohu</eref></t>
        </li>
        <li>
          <t>(Persian) <eref target="https://news.ditty.ir/news/attested-tls-relay-flaw-formal-methods/019f6221-26ca-7293-9ee9-5557b3c0b8f8">news.ditty</eref></t>
        </li>
        <li>
          <t>(Russian) <eref target="https://limpvpn.com/ru/news/attested-tls-whatsapp-privacy-flaw-2026">LiMP VPN</eref></t>
        </li>
        <li>
          <t><eref target="https://daily.dev/posts/kI6PoNzPx">daily.dev</eref></t>
        </li>
        <li>
          <t><eref target="https://warden.veritai.ch/news/researchers-find-attested-tls-flaws-that-weaken-confidential-computing-trust-model">warden</eref></t>
        </li>
        <li>
          <t><eref target="https://db.gcve.eu/sightings/?query=cve-2026-33697">GCVE.eu</eref></t>
        </li>
        <li>
          <t><eref target="https://vulnerability.circl.lu/vuln/CVE-2026-33697#sightings">vuln.lu</eref></t>
        </li>
        <li>
          <t><eref target="https://coderlegion.com/24087/intra-handshake-attestation-when-more-security-doesnt-mean-better-security">coderlegion</eref></t>
        </li>
        <li>
          <t><eref target="https://www.anjuna.io/blog/attested-tls-flaw-explained">Anjuna Security</eref></t>
        </li>
        <li>
          <t><eref target="https://freenode.net/digest/67">freenode</eref></t>
        </li>
        <li>
          <t>(Chinese) <eref target="https://blog.csdn.net/weixin_42376192/category_13096766.html">csdn</eref></t>
        </li>
        <li>
          <t><eref target="https://osintsights.com/confidential-computing-flaws-expose-trust-risks">osintsights</eref></t>
        </li>
        <li>
          <t>(Turkish) <eref target="https://hardwaremania.com/haber/arastirma-attested-tls-confidential-computing-icin-zayif-kaliyor/">hardwaremania</eref></t>
        </li>
        <li>
          <t><eref target="https://akber.com/sovereignty-in-the-cloud-is-an-illusion/">akber</eref></t>
        </li>
        <li>
          <t><eref target="https://www.ad-hoc-news.de/wissenschaft/cloud-souveraenitaet-red-hat-startet-reifegrad-assessments-gegen/69691475">ad-hoc news</eref></t>
        </li>
        <li>
          <t><eref target="https://aimultiple.com/privacy-enhancing-technologies">AIMultiple</eref></t>
        </li>
      </ul>
      <section anchor="security-researchers">
        <name>Security Researchers</name>
        <t>Several credible security researchers, such as the following, have publicly attested to it.</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://www.linkedin.com/posts/michaelpak_confidential-computings-core-trust-mechanism-activity-7479415537836376064-q-A4/">Michael Pak</eref></t>
          </li>
          <li>
            <t><eref target="https://www.linkedin.com/posts/rrbranco_one-more-evidence-that-there-is-no-such-a-share-7479582122366615552-X0A5/">Rodrigo Branco</eref></t>
          </li>
          <li>
            <t><eref target="https://www.linkedin.com/posts/bart-preneel-4451412_on-the-limits-of-confidential-computing-share-7479549718294077440-wfi3/">Bart Preneel</eref></t>
          </li>
          <li>
            <t><eref target="https://www.linkedin.com/in/strufe/recent-activity/all/">Thorsten Strufe</eref></t>
          </li>
        </ul>
      </section>
      <section anchor="germanys-bsi">
        <name>Germany's BSI</name>
        <t>Germany's Federal Office for Information Security (Bundesamt für Sicherheit in der Informationstechnik) has attested to it. Carina Hilt, deputy press spokesperson at BSI, told <eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref>:</t>
        <artwork><![CDATA[
CC alone cannot satisfy the requirements for digital sovereignty.
]]></artwork>
        <artwork><![CDATA[
dependencies on other services, such as identity and key
management etc., are also not mitigated by CC.
]]></artwork>
        <t>CC refers to Confidential Computing, and attested TLS is the core trust mechanism of CC.</t>
      </section>
    </section>
    <section anchor="reviews">
      <name>Reviews</name>
      <section anchor="conference-reviews">
        <name>Conference Reviews</name>
        <t><xref target="Intra-handshake.fail"/> has been peer-reviewed and accepted for publication at ESORICS 2026.</t>
      </section>
      <section anchor="ietfirtf">
        <name>IETF/IRTF</name>
        <t>Several participants of the IETF/IRTF have attested to the results by independently reproducing the results and reviewing the code. Some of the participants have independently reproduced the results by developing their own formal models and a proof-of-concept implementation of the vulnerabilities. Some of the messages are mentioned below (<strong>excluding</strong> the messages of <em>paper</em> authors):</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/">https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/">https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/">https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/">https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/">https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/">https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/">https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/">https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/">https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/">https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/">https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/">https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/">https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/">https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/">https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/">https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/">https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/">https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/">https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/">https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/">https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/">https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/">https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/">https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/">https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/">https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/">https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/">https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/">https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/">https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/">https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/">https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/">https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/">https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/">https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/">https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/">https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/">https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/">https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/">https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/">https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/">https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/">https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/">https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/">https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/">https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/">https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/">https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/">https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/">https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/">https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/">https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/">https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/">https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/">https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/">https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/">https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/">https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/">https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/">https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/">https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/">https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3J3s_YFnf9IQ87Tv2c1q4f36xKQ/">https://mailarchive.ietf.org/arch/msg/seat/3J3s_YFnf9IQ87Tv2c1q4f36xKQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JWKMYY1YG1E2iS_HyQ4rDmOsDGw/">https://mailarchive.ietf.org/arch/msg/seat/JWKMYY1YG1E2iS_HyQ4rDmOsDGw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rK1nDSewAbVL_weOp98knYZcg6s/">https://mailarchive.ietf.org/arch/msg/seat/rK1nDSewAbVL_weOp98knYZcg6s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Wjuz0fIj8tjYocUmiZZXcSwwFHw/">https://mailarchive.ietf.org/arch/msg/seat/Wjuz0fIj8tjYocUmiZZXcSwwFHw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SYiV4KZNr20re6QkGmyWS3pPteA/">https://mailarchive.ietf.org/arch/msg/seat/SYiV4KZNr20re6QkGmyWS3pPteA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZYgxm1ibt6p4dL7xF1YNdl0XSpc/">https://mailarchive.ietf.org/arch/msg/seat/ZYgxm1ibt6p4dL7xF1YNdl0XSpc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/6LKgOp22YRxGTYb-i-BxiMGzMW4/">https://mailarchive.ietf.org/arch/msg/seat/6LKgOp22YRxGTYb-i-BxiMGzMW4/</eref></t>
          </li>
        </ul>
        <section anchor="main-questions">
          <name>Main Questions</name>
          <t>In short, five main questions have been raised by WG participants in support of our work:</t>
          <ul spacing="normal">
            <li>
              <t>What <strong>security property</strong> hybrid (intra- + post-handshake attestation) provides that post-handshake attestation alone cannot provide?</t>
            </li>
            <li>
              <t>Since continuous attestation is required in most use cases, how is <strong>additional complexity</strong> of <strong>intra</strong>-handshake attestation justified? Use cases with one-time attestation can be covered by doing attestation round immediately after Connection Establishment Time: see <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-6-2">reference</eref>.</t>
            </li>
            <li>
              <t>What is the benefit of doing <strong>signatures</strong> of remote attestation <strong>within</strong> the handshake (as this latency can be exploited)? We add that <strong>verification</strong> of signatures is also time consuming, which can be exploited too. See <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-4.2.4">reference</eref>.</t>
            </li>
            <li>
              <t>How evidence is bound to the secure channel without involving any <strong>shared secret</strong>?</t>
            </li>
            <li>
              <t>How does a verifying relying party get the legitimate PIIDs and CHIP_IDs?</t>
            </li>
          </ul>
        </section>
      </section>
      <section anchor="researchers-outside-of-ietfirtf">
        <name>Researchers outside of IETF/IRTF</name>
        <t>Some researchers have approached us confirming the proof-of-concept of the vulnerabilities in intra-handshake attestation. More information will be added once their pre-prints/papers are public.</t>
      </section>
    </section>
    <section anchor="security-considerations">
      <name>Security Considerations</name>
      <t>All of this document is about the <strong>insecurity</strong> of <strong>intra</strong>-handshake attestation.</t>
      <t>By no means should the vendors mentioned in this draft be considered less secure than any other vendors implementing intra-handshake attestation solutions. In particular, those who have closed-source implementations are most likely more vulnerable than the open-source ones, since the former cannot easily be reviewed by the security community. Even extensive security reviews -- of closed-source implementations -- by cybersecurity firms often do not perform formal analysis, and thus such reviews may miss corner cases and subtle vulnerabilities.</t>
    </section>
    <section anchor="ethical-considerations">
      <name>Ethical Considerations</name>
      <t>We (i.e., the super set of all authors involved in this research, including but not limited to Muhammad Usama Sardar, Mariam Moustafa, Tuomas Aura, Viacheslav Dubeyko, Jean-Marie Jacquet, Songbo Bu, Chengxin Huang, and Haowen Song) are ethical researchers aiming to protect the community from the potential harm caused by the exploitability of the vulnerabilities in intra-handshake attestation. We have responsibly disclosed the vulnerabilities to the respective developers and maintainers following their respective disclosure processes and provided them our proposed mitigations and requested them to take rapid action.</t>
      <t>We have released only the formal analysis for published CVE. To minimize exploit in the wild, we have not publicly released the proof-of-concept exploit code.</t>
      <t>We have not retrieved any real data from any real system. We have not released any key to any public forum or to any person.</t>
      <section anchor="evidence-of-explanation-of-vulnerabilities-to-the-authors-of-vulnerable-drafts">
        <name>Evidence of Explanation of Vulnerabilities to the Authors of Vulnerable Drafts</name>
        <t>To the best of our abilities, knowledge, and understanding, we have tried to explain the vulnerabilities to the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> first privately in several meetings and then later on publicly for at least half a year at several forums, including but not limited to CCC Attestation SIG and IETF/IRTF. Please see the (non-exhaustive list of) recordings <xref target="sec-recordings"/> and the archives <xref target="sec-archives"/> below. We sincerely thank the authors of <xref target="I-D.fossati-tls-attestation-10"/> for withdrawing their draft to protect further exploits mentioned in <xref target="sec-news"/>.</t>
        <section anchor="sec-recordings">
          <name>Recordings</name>
          <table>
            <name>Evidence of several explanations of vulnerabilities to the authors of vulnerable drafts</name>
            <thead>
              <tr>
                <th align="left">Event/Host</th>
                <th align="left">Venue</th>
                <th align="left">Date(s)</th>
                <th align="left">Evidence</th>
              </tr>
            </thead>
            <tbody>
              <tr>
                <td align="left">
                  <eref target="https://lpc.events/event/20/">Linux Plumbers Conference 2026</eref></td>
                <td align="left">Prague, Czechia</td>
                <td align="left">5-7 Oct, 2026</td>
                <td align="left">slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ga4gh.org/event/14th-plenary/">GA4GH 14th Plenary Meeting</eref></td>
                <td align="left">Singapore</td>
                <td align="left">28 Sept-2 Oct, 2026</td>
                <td align="left">slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://sites.google.com/di.uniroma1.it/esorics2026/">ESORICS 2026</eref></td>
                <td align="left">Rome, Italy</td>
                <td align="left">14-18 Sept, 2026</td>
                <td align="left">slides</td>
              </tr>
              <tr>
                <td align="left">IETF RATS Interim meeting</td>
                <td align="left">Virtual</td>
                <td align="left">TBA Sept, 2026</td>
                <td align="left">slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://summit.riot-os.org/2026/">RIOT Summit 2026</eref></td>
                <td align="left">Grenoble, France</td>
                <td align="left">2-4 September, 2026</td>
                <td align="left">
                  <eref target="https://summit.riot-os.org/2026/blog/speakers/muhammad-usama-sardar/">abstract</eref>, slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ga4gh.org/work_stream/data-security/">Data Security Work Stream (DSWS)</eref> at the <eref target="https://www.ga4gh.org/">Global Alliance for Genomics and Health (GA4GH)</eref></td>
                <td align="left">Virtual</td>
                <td align="left">24 Aug, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/413569575_High-Severity_Vulnerabilities_in_Former_GIF_Design_for_Attested_TLS_draft-fossati-seat-early-attestation">slides</eref>, <eref target="https://us02web.zoom.us/rec/share/UAn381deia-aMNmjGHhMqxocc1HcyF7ksLlaeeKefxO4bSC2mHPzwPQPYGe2dnZR.zfleYCmmtiteo_NS">video</eref></td>
              </tr>
              <tr>
                <td align="left">Confidential AI Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">21 July, 2026</td>
                <td align="left">
                  <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/odgd_xmhjQXiR_aLYdqtVvDJeF4/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">21 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-seat-binding-properties-of-expat-00.pdf">slides</eref>, <eref target="https://youtu.be/Fb5Hzh1mp1E?t=4189">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">IETF 126 Hackdemo Happy Hour</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">20 July, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">demo</eref></td>
              </tr>
              <tr>
                <td align="left">Confidential Computing Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">20 July, 2026</td>
                <td align="left">
                  <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hotrfc-sessa-15-confidential-computing-and-digital-sovereignty-00">slides</eref>, <eref target="https://youtu.be/FDHWRijxKso?t=3285">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ietf.org/meeting/hackathons/126-hackathon/">IETF 126 Hackathon</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hackathon-sessd-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/GRqyrDIEgEw?t=1340">video</eref></td>
              </tr>
              <tr>
                <td align="left">IEPG @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/g8q_u19vXzk?t=4404">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">Workshop</eref> @ <eref target="https://www.wissenschaftsnacht-dresden.de/en/">Dresden Science Night 2026</eref></td>
                <td align="left">Dresden</td>
                <td align="left">26 June, 2026</td>
                <td align="left">
                  <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">demo</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://output-dd.de/">Output 2026</eref></td>
                <td align="left">Dresden</td>
                <td align="left">25 June, 2026</td>
                <td align="left">
                  <eref target="https://output-dd.de/projekte/relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems/">demo</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://events.linuxfoundation.org/confidential-computing-summit/">Confidential Computing Summit 2026</eref> (presented by Jens Albers)</td>
                <td align="left">San Francisco, USA</td>
                <td align="left">23-24 June, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411851358_Standardization_of_Attested_TLS">poster</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://confidentialcontainers.org/">Confidential Containers Community Meeting</eref> @ <eref target="https://www.cncf.io/">Cloud Native Computing Foundation</eref></td>
                <td align="left">Virtual</td>
                <td align="left">30 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411849492_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref>, <eref target="https://zoom.us/rec/share/3thZhsRi-BZJL-GqjnwGzh7inbltuKIlpVjqMlWp6WRdMTZ66Z8p-8YjaaeOfbhX.CoH6YBukaKua0gkt">video</eref> around timestamp 00:27:00</td>
              </tr>
              <tr>
                <td align="left">GIF Project showcase @ <eref target="https://www.ga4gh.org/event/april-connect-2026/">GA4GH April Connect 2026</eref></td>
                <td align="left">Montreal, Canada (virtual)</td>
                <td align="left">17 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/412136610_Trusted_Research_Environment_TRE_Open_Suite">slides</eref>, <eref target="https://youtu.be/Kr9oxp1fdn0?t=1083">video</eref>, <eref target="https://www.ga4gh.org/document/arpril-connect-2026-meeting-report/">report</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://sos-vo.org/group/hotsos/">NSA Symposium on Hot Topics in the Science of Security (HotSoS) 2026</eref></td>
                <td align="left">Virtual</td>
                <td align="left">16 April, 2026</td>
                <td align="left">
                  <eref target="https://sos-vo.org/group/hotsos/2026/sardar">abstract</eref>, <eref target="https://sos-vo.org/system/files/2026-04/20260416_HotSoS%20%281%29.pdf">slides</eref>, <eref target="https://sos-vo.org/group/hotsos/2026/sardar">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fg-pet.gi.de/veranstaltung/15th-privacy-enhancing-techniques-convention">PET-CON 2026.1: 15th Privacy Enhancing Techniques Convention</eref></td>
                <td align="left">Karlsruhe, Germany</td>
                <td align="left">16-17 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411849502_Formal_Analysis_of_Attested_TLS">slides</eref>, <eref target="https://www.researchgate.net/publication/411852738_Formal_Analysis_of_Attested_TLS_and_Standardization_in_the_IETF">poster</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://gtmfs2026.sciencesconf.org/program?lang=en">GTMFS 2026: Annual Meeting of the WG "Formal Methods in Security"</eref></td>
                <td align="left">Luz-Saint-Sauveur, France</td>
                <td align="left">24-26 Mar, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411853715_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref></td>
              </tr>
              <tr>
                <td align="left">CFRG @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">19 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-cfrg-relay-attacks-00">slides</eref>, <eref target="https://youtu.be/IfKgbO74Lt4?t=6054">video</eref></td>
              </tr>
              <tr>
                <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref> (relay)</td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">17 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-seat-security-analysis-00">slides</eref>, <eref target="https://youtu.be/hX7genEkN7w?t=676">video</eref></td>
              </tr>
              <tr>
                <td align="left">Side meeting @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">16 Mar, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/403474373_Proposed_RG_Confidential_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">LAKE @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">16 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-lake-formal-analysis-of-attested-edhoc-00">slides</eref>, <eref target="https://youtu.be/JzfLpbnhl0A?t=3117">video</eref></td>
              </tr>
              <tr>
                <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">15 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hotrfc-sessa-formal-proof-of-insecurity-of-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/OtOo7Nogisw?t=3514">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ietf.org/meeting/hackathons/125-hackathon/">IETF 125 Hackathon</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">14-15 Mar, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/125/hackathon#relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hackathon-sessd-relay-attacks-in-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/62A58qH19MI?t=2270">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">10 Feb, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksGen_20260210.pdf">slides</eref>; <eref target="https://www.youtube.com/watch?v=idqwb0hFlhs&amp;list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1061s">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/session/rats">IETF RATS Interim meeting</eref></td>
                <td align="left">Virtual</td>
                <td align="left">9 Feb, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/materials/slides-interim-2026-rats-01-sessa-relayattacks-00.pdf">slides</eref>, <eref target="https://youtu.be/gURY61dViPw?t=1474">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fosdem.org/2026/schedule/track/confidential-computing/">Confidential Computing</eref> devroom at <eref target="https://fosdem.org/2026/">FOSDEM 2026</eref></td>
                <td align="left">Brussels, Belgium</td>
                <td align="left">31 Jan-1 Feb, 2026</td>
                <td align="left">
                  <eref target="https://fosdem.org/2026/schedule/event/GHGFBM-attestedtls/">abstract</eref>, <eref target="https://fosdem.org/2026/events/attachments/GHGFBM-attestedtls/slides/267432/20260201_60u9e0n.pdf">slides</eref>, <eref target="https://video.fosdem.org/2026/ud6215/GHGFBM-attestedtls.av1.webm">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">27 Jan, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksProposal_20260127.pdf">slides</eref>; <eref target="https://youtu.be/P04tLJcSxfM?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=434">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">13 Jan, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacks_20260113.pdf">slides</eref>; <eref target="https://youtu.be/cSrCZNyo7_g?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1083">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">16 Dec, 2025</td>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MuhammadUsamaSardar_Binding_Properties_20251216.pdf">slides</eref>; <eref target="https://youtu.be/w_MrjMeHyP8?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=593">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">2 Dec, 2025</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_Open_Questions_20251202.pdf">slides</eref>; <eref target="https://youtu.be/16aGZ-oZidg?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=2920">video</eref></td>
              </tr>
            </tbody>
          </table>
        </section>
        <section anchor="sec-archives">
          <name>Archives</name>
          <t>Since January, we have publicly informed the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> and shared our results with the community for review and to raise awareness on high-severity vulnerabilities and apply appropriate mitigations for the safety of their users:</t>
          <section anchor="ietfhttpswwwietforg">
            <name><eref target="https://www.ietf.org/">IETF</eref></name>
            <ul spacing="normal">
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">SEAT WG</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">RATS WG</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/tls/8lyqHh9y7_Lv6b1iXhpUqYrp0M0/">TLS WG</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/lake/Tovtl7wgvzwJWT2I2ZwnhoIOnYQ/">LAKE WG</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/saag/jBZVk7YySwpaFqydAfxW33kNZPY/">SAAG</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/practical-cybersecurity/d65WPaC0WbZRwxTBclnTkf7SmRs/">Practical Cybersecurity list</eref></t>
              </li>
              <li>
                <t>Agent2agent list <eref target="https://mailarchive.ietf.org/arch/msg/agent2agent/ubz7uXCs--YzuSWyXNNsmWf_tSQ/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/agent2agent/xHhjA94fzed6ONIvPRgwTT-WRmA/">thread2</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/dmsc/QC2adIcYkxiTlniEcc7ggk86BAY/">DSMC list</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/hackathon/PIrJ2O_QqcNUAnMIn_Vh22ImWMc/">Hackathon</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">126attendees</eref></t>
              </li>
            </ul>
          </section>
          <section anchor="irtfhttpswwwirtforg">
            <name><eref target="https://www.irtf.org/">IRTF</eref></name>
            <ul spacing="normal">
              <li>
                <t>UFMRG: <eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZWK0uMM92OdwlPbgXBvQApDpe5Q/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZRhR7o1HrWxfGDfgRJMR65RBkDE/">thread2</eref></t>
              </li>
              <li>
                <t>CFRG <eref target="https://mailarchive.ietf.org/arch/msg/cfrg/NbxHIw9H_xpSYbgfO_n7lVIFeWs/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">thread2</eref></t>
              </li>
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/din/_8LE3Ru1xX16hgGJwryMTRwRoaA/">DINRG</eref></t>
              </li>
            </ul>
          </section>
          <section anchor="ccchttpsconfidentialcomputingio">
            <name><eref target="https://confidentialcomputing.io/">CCC</eref></name>
            <ul spacing="normal">
              <li>
                <t>Attestation SIG: <eref target="https://lists.confidentialcomputing.io/g/attestation/topic/117207133">thread1</eref> and <eref target="https://lists.confidentialcomputing.io/g/attestation/message/334">thread2</eref></t>
              </li>
              <li>
                <t>TAC: <eref target="https://lists.confidentialcomputing.io/g/tac/topic/117932193">thread1</eref> and <eref target="https://lists.confidentialcomputing.io/g/tac/topic/120068850">thread2</eref></t>
              </li>
            </ul>
          </section>
          <section anchor="ocphttpswwwopencomputeorg">
            <name><eref target="https://www.opencompute.org/">OCP</eref></name>
            <ul spacing="normal">
              <li>
                <t>OCP Security: <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/117932716">message1</eref>, <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120069056">message2</eref>, <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120483814">message3</eref> and <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120524635">message4</eref></t>
              </li>
            </ul>
            <t>If you know any other relevant mailing list that we should inform for protection of users, please let us know.</t>
          </section>
        </section>
      </section>
    </section>
    <section anchor="iana-considerations">
      <name>IANA Considerations</name>
      <t>This document has no IANA actions.</t>
    </section>
  </middle>
  <back>
    <references anchor="sec-combined-references">
      <name>References</name>
      <references anchor="sec-normative-references">
        <name>Normative References</name>
        <reference anchor="Intra-handshake.fail" target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="June"/>
          </front>
        </reference>
        <reference anchor="Intra-handshake.fail-repo" target="https://github.com/muhammad-usama-sardar/intra-handshake.fail">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="July"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-33697" target="https://www.cve.org/CVERecord?id=CVE-2026-33697">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-16488" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-16488">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-vfgg-mvxx-mgg7">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-hjgc-jc5v-fw7h">
          <front>
            <title>Remote attestation is susceptible to relay attacks</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="SEAT-vulnerability-report" target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">
          <front>
            <title>Relay Attacks in Intra-handshake Attestation for Confidential Agentic AI Systems</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <date year="2026" month="January"/>
          </front>
        </reference>
      </references>
      <references anchor="sec-informative-references">
        <name>Informative References</name>
        <reference anchor="ID-Crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author fullname="Muhammad Usama Sardar" initials="M." surname="Sardar">
              <organization>TU Dresden, Dresden, Germany</organization>
            </author>
            <author fullname="Mariam Moustafa" initials="M." surname="Moustafa">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <author fullname="Tuomas Aura" initials="T." surname="Aura">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <date month="June" year="2026"/>
          </front>
          <seriesInfo name="Proceedings of the ACM Asia Conference on Computer and Communications Security" value="pp. 547-560"/>
          <seriesInfo name="DOI" value="10.1145/3779208.3785387"/>
          <refcontent>ACM</refcontent>
        </reference>
        <reference anchor="ID-Crisis-repo" target="https://github.com/CCC-Attestation/formal-spec-id-crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="M." surname="Moustafa">
              <organization/>
            </author>
            <author initials="T." surname="Aura">
              <organization/>
            </author>
            <date year="2025" month="November"/>
          </front>
        </reference>
        <reference anchor="refTLS">
          <front>
            <title>Verified Models and Reference Implementations for the TLS 1.3 Standard Candidate</title>
            <author fullname="Karthikeyan Bhargavan" initials="K." surname="Bhargavan">
              <organization/>
            </author>
            <author fullname="Bruno Blanchet" initials="B." surname="Blanchet">
              <organization/>
            </author>
            <author fullname="Nadim Kobeissi" initials="N." surname="Kobeissi">
              <organization/>
            </author>
            <date month="May" year="2017"/>
          </front>
          <seriesInfo name="2017 IEEE Symposium on Security and Privacy (SP)" value="pp. 483-502"/>
          <seriesInfo name="DOI" value="10.1109/sp.2017.26"/>
          <refcontent>IEEE</refcontent>
        </reference>
        <reference anchor="I-D.fossati-seat-early-attestation">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="5" month="August" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a TLS extension that
   enables the negotiation and binding of the TLS authentication key to
   a remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   This extension has been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-06"/>
        </reference>
        <reference anchor="I-D.fossati-seat-early-attestation-04">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="27" month="May" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a series of TLS
   extensions that enable the binding of the TLS authentication key to a
   remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   These extensions have been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-04"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-06">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="19" month="March" year="2024"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-06"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-09">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="30" month="April" year="2025"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-09"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-10">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="23" month="July" year="2026"/>
            <abstract>
              <t>   This draft has been withdrawn.

About This Document

   This note is to be removed before publishing as an RFC.

   Status information for this document may be found at
   https://datatracker.ietf.org/doc/draft-fossati-tls-attestation/.

   Source for this draft and an issue tracker can be found at
   https://github.com/yaronf/draft-tls-attestation.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-10"/>
        </reference>
        <reference anchor="I-D.ritz-seat-facts">
          <front>
            <title>Factor-based Attestation and Credential Transport Scheme (FACTS) over TLS 1.3</title>
            <author fullname="Nathanael Ritz" initials="N." surname="Ritz">
              <organization>Independent</organization>
            </author>
            <date day="1" month="March" year="2026"/>
            <abstract>
              <t>   This document describes FACTS (Factor-based Attestation and
   Credential Transport Scheme) over TLS 1.3.  Conceptually acting as
   "multi-factor authentication" for machine identities, factor-based
   attestation derives session trust from multiple independent
   cryptographic inputs rather than a single point of failure.
   Specifically, it utilizes a dual-key scheme that binds identity to
   attestation evidence through the use of key encapsulation material
   keys (KEM) and traditional identity signing keys (IK), establishing
   per-session freshness.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ritz-seat-facts-00"/>
        </reference>
      </references>
    </references>
    <?line 641?>

<section numbered="false" anchor="acknowledgments">
      <name>Acknowledgments</name>
      <t>Acknowledgment does not necessarily imply attestation. It implies that the authors found the feedback and discussion useful in improving the formal analysis, the corresponding paper, or this draft.</t>
      <t>This draft benefits from several years of research on attested TLS, in particular some of the recent works mentioned below:</t>
      <t>We wish to express our sincere appreciation to the following for their review of our latest work:</t>
      <ul spacing="normal">
        <li>
          <t>Sammy Kerata Oina</t>
        </li>
        <li>
          <t>Drasko Draskovic</t>
        </li>
      </ul>
      <t><strong>Intra-handshake.fail</strong> <xref target="Intra-handshake.fail"/></t>
      <t>We would like to thank our co-authors of paper <xref target="Intra-handshake.fail"/> for their valuable contributions:</t>
      <ul spacing="normal">
        <li>
          <t>Viacheslav Dubeyko</t>
        </li>
        <li>
          <t>Jean-Marie Jacquet</t>
        </li>
      </ul>
      <t>We also gratefully acknowledge the following for insightful discussions and helpful reviews on <xref target="Intra-handshake.fail"/>:</t>
      <ul spacing="normal">
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Juho Forsén</t>
        </li>
        <li>
          <t>Markus Rudy</t>
        </li>
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Steve Kremer</t>
        </li>
        <li>
          <t>Tjaden Hess</t>
        </li>
        <li>
          <t>Martin Thomson</t>
        </li>
        <li>
          <t>Yuning Jiang</t>
        </li>
        <li>
          <t>Pavel Nikonorov</t>
        </li>
        <li>
          <t>Casey Wilson</t>
        </li>
        <li>
          <t>Anonymous ESORICS 2026 reviewers</t>
        </li>
        <li>
          <t>Danko Miladinovic</t>
        </li>
        <li>
          <t>John Preuß Mattsson</t>
        </li>
        <li>
          <t>Britta Hale</t>
        </li>
        <li>
          <t>Werner Staub</t>
        </li>
        <li>
          <t>Songbo Bu</t>
        </li>
        <li>
          <t>Haowen Song</t>
        </li>
        <li>
          <t>Chengxin Huang</t>
        </li>
        <li>
          <t>Steve Luo</t>
        </li>
        <li>
          <t>Kubilay Ahmet Küçük</t>
        </li>
        <li>
          <t>Iman Schrock</t>
        </li>
        <li>
          <t>Sophie Schmieg</t>
        </li>
        <li>
          <t>Davyd Okaianchenko</t>
        </li>
        <li>
          <t>Alistair Woodman</t>
        </li>
        <li>
          <t>Göran Selander</t>
        </li>
        <li>
          <t>Tom Sato</t>
        </li>
        <li>
          <t>Jakub Maria Plutowski</t>
        </li>
        <li>
          <t>Martin Friedrich</t>
        </li>
        <li>
          <t>Patrick Duggan</t>
        </li>
        <li>
          <t>Deb Cooley</t>
        </li>
      </ul>
      <t><strong>Identity Crisis</strong> <xref target="ID-Crisis"/></t>
      <t>We would like to thank our co-authors of complementary paper <xref target="ID-Crisis"/> for their valuable contributions:</t>
      <ul spacing="normal">
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Tuomas Aura</t>
        </li>
      </ul>
      <t>We also gratefully acknowledge the following for insightful discussions and helpful feedback:</t>
      <ul spacing="normal">
        <li>
          <t>Ionut Mihalcea</t>
        </li>
        <li>
          <t>Jean-Marie Jacquet</t>
        </li>
        <li>
          <t>Thomas Fossati</t>
        </li>
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Hannes Tschofenig</t>
        </li>
        <li>
          <t>Yaron Sheffer</t>
        </li>
        <li>
          <t>Laurence Lundblade</t>
        </li>
        <li>
          <t>Giridhar Mandyam</t>
        </li>
        <li>
          <t>Christopher Patton</t>
        </li>
        <li>
          <t>Jonathan Hoyland</t>
        </li>
        <li>
          <t>Richard Barnes</t>
        </li>
      </ul>
      <t><strong>refTLS</strong> <xref target="refTLS"/></t>
      <t>We sincerely thank the following for the foundational formal model of draft 20 of TLS 1.3 in their work <xref target="refTLS"/> that we have used as the foundation of all of this work:</t>
      <ul spacing="normal">
        <li>
          <t>Karthikeyan Bhargavan</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Nadim Kobeissi</t>
        </li>
      </ul>
      <t><strong>General</strong></t>
      <t>Several others at the IETF, IRTF, CCC, and GA4GH have contributed by providing feedback over the years. A non-exhaustive list of contributors is <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00#page=17">here</eref>.</t>
      <t>Muhammad Usama Sardar is funded by German Research Foundation ("Deutsche Forschungsgemeinschaft.")</t>
    </section>
  </back>
  <!-- ##markdown-source:
H4sIAAAAAAAAA8292XLrSJIo+K6vgJ20vn2kEUiCO9WWk8VFXCRRG6n12DUm
CARJiFgoLFxUmW33Zd7mB8bsXpvHsfmBeeq3+pP+knH3AECAIinh9DlVVdad
mQIBDw8PD9/C3UMUxQNXc3V2InzpmK4tixPZVJ2JPGXCV3kqC6eyra8Oharr
MseVXc0yhbplOprKbKYKbdk2Rp4ufK3fn4rZTLYo5nLFSkmwRkL9vtcTSqmC
APAEh82ZLeuC5U6YDT+dOviKNxNcS2DLGVNcAEZfVFJleK5YhmaOD78cyMOh
zeZbkNuP0JcDRXbZ2LJXJ4JmjqyDA9VSTNmAaaq2PHJFLQ5OHMmaLkq5A8cb
GprjAFR3NYO3O6f9piD8Isi6YwEWmqmyGYN/mO6XY+ELUzXXsjVZxz861Rr8
y7Lhv277zS8HpmcMmX1yoAImJwcK4MhMx3NOBNf22AHMKXcAcG0mnwjV29Pq
wcKyp2Pb8mYnQu+02j+YshU8Uk8OBFGodgR5DIM6+McmKeQ1KfDn+FIczJnp
wfi/CIIP/KGFf/DpPcCYQGihhT/hYwPogK/8hS1lY6azFKwEPpdtZXIiTFx3
5pyk05Ef0wAOQGvuxBsCgQxvIhuGrIqeIxuy6Mi2KtvpbdT+Ap/pMmIOnwWA
t36e4tBTmrUVUHr3iqYmrgEDHcieO7FspCQMKgjAIDpnhi9df0DhDgcUejTg
F3rLsseyqb0RXU+E/p3QsJkDK38stJhtyOaK3mKcYuHEB4R5imP+F9cTVf5V
SmVftozfs8zx0BJq3rYxezCb8UTWhJYnm0LVhJUfWTA0MX2fKRPT0q3xCvg/
dSxcuCr8sz7RTDmG2FD3mGqNTRjzL2N8hqu2DZX6hJnjpWYKbRhtvA2fzpr7
Y0PIno0MaH88Rlu2FswUcNY/bcITeS6bUjZTyBTy+f3odGAZhZ4ysS1lug2f
027nolMVrm3LtRRLPwZ8lFRsMJfJxl+YoemaPPPfSskasJzJ8Z7D1hM2d2wK
efOE4OyQvfTGplQ9PBHa2ngikjDV3BXudJBuvigE4de/6PFZkMgRzjyTCfj5
MR9KtsfMXW/ixWKRgnVjuLXH8EHKZG565g11TaHpp/OZclaqSOXsYAM7RG4Q
x20Qwwx/HGjmIMBsAJgRDuFGpP+JgD3Iw25KuEv5Wy/+y31KaHhDtppa8edn
InxzJiuvHnN3kFe02cz6e9BYX+2hsS+5UE5+SjISTj+RUvHJ+tDjQ9EeOME3
+QOfenWrbvV8VcPJIGiOMPd0ExT7UGeoyW2myyt8R1am8Jsmg26H6ZFyZ7MJ
M8gGwE9Btzk++C1cqcxZCpBIAw63TAEd+Jum/rqh1oT1GmSLQheZmNYBfji9
u2/wV6VivlzeN8vTy06v+g+ZJ/PmaoqZmiOnmGdbM/xXmv5Ob+C/b6qtdq8q
1kHqOGK1E+f2Hz+RKN9nc3FE9rK+pwPQuWbpzLWdtILoph2meLjB0rI61xww
opiTptnMR+OxaMyXS9EYj0u798LdGqhAFAAjKaDIqTpmOnMcsbeCyRtOnDK3
zLDcmNmElAHTTGEzV9tGmujMq97Yc9xPzZv5aDgrnDXudMfdPfHJy1gRX5TC
XBwtSpPdEw8mJ/iTg1/RXhSDpQVd5K5I/Nnu5sRxTlV/uTXznSUZNapB8aJh
PdJQ3YOJK1TRANUUtEX9kaNkkSQQM+YeUYgKEzkGVGJKY+6Idjg+SBvOGKgi
u+lljt0smy83zbMLhcmsqOcHl+NH03AaT+lPCsUDLbAYfM3bEOu25mjwXuOq
k5IyKUnKF9K5UqmSzZRTuVK5kCuXoi9uUxxEAlQG9AZSLkaZumXMPBfs6BOh
iYMDrUxZX+Gr4OXsUh2X1pyhh4A0K3yoPur1uhhZnjTNUhcd8J1ETRUVwux7
NAf80rWAo+WRHP+hnwJet/GhzUaAe4SCmUq6d53KZqRSinZBR2ykRpbjAGoi
rqTI0GsUIzvs5FNviZn85ouu7sTfKH74RuWjN6RM8AZsxDeOywikHsiJVCp1
cCCKoiAPHZKEBwf9CeNOoyBrhoOyASy9OSy+4KJFCtaSLqjMBfam5f4WV1T/
/WtCzXZIDvO3DSWwBvN5xXF4LCwmGshokm4wH5mz6xpthtMwFYZ4T6yFcHRE
9sjR0XbvUhjRJIH9Z0gaTWHHAALs+aMFMKrlucJsAlyPkGVFARF1hLxlM2B0
+1hwNBwJ5aBmesBxmwIYxAuqG7CnbPbqaeDNH3+IkKyqDrzkmSbD8WR7BQOg
a7qE7XoEw+PigZELGshBX1sYguiDrThcCS7/hcxf4a9/3WYc/vknrQW+Kduu
Riyy41WSGvA+0AZxY6I1EuE7Eb4T+FYFUL5McC10JcCpuAcTc3QseOBR2UJ1
JivwQTaVEcACZ6bDSAQDXNtSPUXjcv2YMAIXB6bCgPIwHdNa6KhpIrPSGbhA
LmIyZRNLB/COz9aGpqo6OwCXHmeBgClssHP+MySRicQL1keQZ4AR4Io7geb0
xmhYbXdYAnfMzHJk3TkG7MYghUiBAdctJoxCQvCPFS0QchIQEQE6ijUj1kT1
JigToCW8CTQxLTclNG3LAKwCdSrMYJIYSALBfyxYJn2IUMByge2paA5nYMW1
bAfZDX9TAFkNpbEw1OC/zLFgwN4AB9AxQFhaxpbnThTL7RjiClGgi79L2PZj
PISP4fP9rJSELWhMsN3gd/8JrHcVdgbfDQYsIeyNoyNhJgOdcOBA3UXXmFYx
0HVKqOvgd5EG2LPCfIabnA7/B8446H00qviEY2r2h8zS5EHF2Ez9eQLDA3fY
8AykCh9pHeDDX2cMUUbuRp1peePJuzn4bKQyRxubgjXD2RJZ9lEDNtgvwhWI
vbnGFqhCABDXITFi+2Mh32oj3+2mSW6OvodRHaJU8Hg/XvQq6gGwAlQ/ykHP
Ym5CEMgAdXjwB5gpKeEPobY5LDy7cxjyBPxXNeTsP+ALCT+o6xpM8z//x//l
EEzTQuH/h/CtC5ryX9FWX2s0WUsZ8JTMHEJUAeZwLM9WWHpma3MUp4ATCnhA
QQzVlwjazWW00ocIGmnAbGkN+Lu877RrM4bWqpn2AR7SrLIbs4qSNZiduEYj
+6PRyHI0cogGBeUxcG6RwIkNnPvRA+f4wHkcuAcczWyaP48UkXiNjZ//0ePn
+fgFor9lwENOdNgav2Rpt/ySi6NQ+NEoFDgKxT0o5HH4TdcM3QTy+rYitGnS
G4yhE+Gkh7o15MODI8PwfMFJg7c99ZxbT12lAlcSbFowbBVFiRq3qZk6Ovw3
sEJ9lzhufzqmI2quDeZ+cUw4LGYiggOmTnsz3ZJVJ43uSFrKph8YztMWq+i0
uahZYfP18VuxfnXZ7DROL/ud6kWx5Q8JY9brMRey12l9ZuKHIA9kFSQriBPY
5y8wlPBtjxTbCnODDOlAopHxP7OUiIQo/mj2KHL2KG1lj2Ngz+M1j4AK3Ovd
gEoMES39aERLiOhfT7hj++uXd0IdzDMt1KJc0SHigam6tmC+/Hlw8O///u8H
Dyx0huRAm8EDmDj8H3iRgXEGf4Flzy3pIbgDa4V2sEWh0be7lZiHagBhHbwz
tdG0jqBrqr7liegZmquN1yoPv1c1sODmdHAYohoNo2jMSQlXHupM2HhgjswZ
7EX4VHYFzRUMeXUA1gdY4gKM4QShIzBlNHgTPrItQBTs5SCkLsKkRqDoha9g
oTNdyB2G0+eT2jdtWQerFu0sMAuAfDgqaADdgr2pHnBrKRKyQt8PJgY08J+A
njAAJNo6Cmkx8tFmLr4R+IEHI25Uq9poxNBsgk9gMjhsz+KGCP8Uxvcn7ng2
CwkCogQcMdc5ACpoYA2g0cSJi2ojRSxzgEwD+n2Gh7ZDUGO4CLqFtgQOEIti
fWTOoJ/uoIHNDZG//jUWD0V3zHE8+A3eczn+4K2q4AAEnjF3DfnX8HncE4fv
I+fY3KbrWirTcaWuyOgMdlA3ZF4eL4ib+uDNguU2Qq8UWQTXyrDUuMWHk0JI
MOKa+vvmvmXfgP/n4P5doStijvFX5CoY8neQEa78O5jFtgy2FmDu+1h1nxUA
A67bBd/SQs5vkusofJPHY/TaXPbj5FEI8pAiAvDIIQnhO5RqdO+q2+a6032C
VYO1dkAPgxrBkDbgaARz9Ez/r5S/gCPuHQdIkOMYmONbnELiAYq2kgkW1WLR
QFFcyG+PdRF30ubjDg3XF7gmKFFl3BmRYP1XxB69ThhgYR5uHed9mAvGwG98
X0PXrQVJzoWF5/wm5xKQCP6uD+T32pEGBwCM+RrpDmECW41iDt4MBbd6ABbx
tQXWwA6XH+Vx+I2sqrCOXEpFkeRU8500gWspf20/Q0HVYrT/0a2aI4T4iYZM
bhY62/gWuMOApi/sbeaCO+zvAj4urO5H8wGJv32oY2HouQiLAzw6gglr+B0Q
NBqR+ki3AaKe+QI2FjAgU5HfhLqNaSYO+mIo3jB2CCZCk1Amh0sURfr/gz+2
ibA/hK05DsfCvYY+t6PL8+DokJspZ0w2RTA3NRYcHAoc9EZ48YfC3hTcPxjy
5oHQ7hHoq36tuvN3EpVB1kbMnMKRnDQlN+FLI75CaCr9AlrbBh7m6oNY3uUP
DHyAq46qHPYkV0U9pqTA25CQW/aGJunFvP/aOqQDfANjNigoDRDvYzq1wfUt
6u2+ZqA2Y9zK4w5ddR1RNChQAVqlCgqJDgXvufpEXjylTfCH0MCoRJwL0WLS
TI2CzWtNzwJNTxaD5atigJApCVeKe0znIET+DRQQg/BlKQ/zUiIvR1NEfCX/
DbO21rpq/8mTLbtOujgevi4zj0/lhye7nesu8/OrspkVvfPxUxo9B366RaMW
adRvPrXQDgKlQnhGXC02TAUj4mDwN7pVxUw2W5KKmUIhn456ZZHz0ZRN7t84
7TLGXRcMgCgrwCJKhWxJaLJhBJ/A3eNuuTOBtXq/qYRvR0e9ILHhV6HdabUx
/4Hsm/Lh0dF/R8j+wW4UNgicLYJlPdI+uIUAbvEdXDp8j4BB+bJVzHwn/G9r
PoovT8R4uUby4vks+rXgZmPsXAbjJ+3KYx58gh/FeSZVTkm0BMEHXJfRR9uI
8wmMK5Q88r34jq3duBZSkji2pFS2CIO9Q3psfSfCUuYdxujxxz3G73TOVabo
pJq/7clQ+FQUZRN2eubperpQpm1c2pzB/Xq0LZPBALT1nTPy97+KvJndM2wi
S46sP1xRfsgL6l/AHbsB/V0Y6p1Q2KIP9zBAPthjGyy7Vn2hqom7b1GBH1U1
8oaOQR15dHTJtOAsiCwdtNn4XyiB0JSUTTzL4SmIygp8OJDdFiItWNzuUtaZ
wDEFS1bw7w9MnrZlZ/L7Mf/vRvt3Stj9vSarp3zZf0+BjdbHwyg8NxMi+b7c
Ogd35FjQUix17MPskZNPUGlq/gMAzWcKPs3YslSB6b469Y+OZJ6OSxbe6Z2f
iHRwiie6YMkIdyas+786wjf64YPT34llsJk8Bl8KiRTBGXyI6NK/l6w0hzBT
m2IX4crAbCMJQ8FxCxqkYM+CoeUAzel77kndx+Mmu5MkhAvwhkHrAlcgB/0C
xriozIEXHcUCa0EAXggZERAYyugBwljfgBJ98MVcW1MiosAEggA93NTYmqcR
W9F/JY1AD1MHke3GuZJrtD/4vEGIBaN9GmbU3ImYPd8WGngV8owMtIgxEHma
HsEuccJHGDgV8IiFMPr6DSw9pscjtho+4iLHj9PC07TnpJkZphKJCjxndjpq
jKTpQzF8Jfob8kABhIqYLYuZjERZ0n7aQbXbiI8vGyrPZTLTwaGMk+ancm4I
PT0EGYvB6zS8LjpDMZfJZ0Kw64GRdBSov0Q/m2jWPz3doBdYPlFa0fnOBqXe
AWk8qtYiontUPSUrBtleqqWlw7SfYqFczOdToPMy2VyGYsJ/R5rnkeaZKM3x
WAnMWOHCWvCZ9FxZZ16EvZeKLPrqL5IH7/DXgn8PPAdkwhL0vU+nIAmlIBby
hUzl80ko/gcII5/KoBMEzqdncORqIFGnzWqv/xF6Q3xxhNlu4X8NLHmqA4tt
w7EoVUrZJDjiB4eIYXYTQ1m9rXbXoIYyaEwDZaT/Xzj2Hz+QzaUCX0k8n8r9
HcklJSWXRChWNlBsykMQa1OmfoTiKHhx/V/7mU7KfAJDeBj5YCuG25zfOOS/
Yw77obAjxFKiXYzfx8yiTU3JMxXm7zWlEtWUSqgp9VBTooVEkbI1RD9ayM9T
1or86AiQASMGTf2dsQMMbGKFlH+WsZkljBE1g8YVVsz1B0WbygrSptwwM2E7
5g4yEI/M4HFFmIQRScxZMDyOcGGSJs9GxYfAGg6ZpGQYYfIYVYsdHDQ92w/Y
xtMz0OLR16ito5wzyw0sD4zIIDn2Bd6+biaKrG3XQ8qD8K2F0DQB/UMFXvyM
4NTZNArgE6xl+wOTRl3KiQP/Q+CPpfjjLD0up0ohD/lvRtnKfwus8c1HxZjk
oYdrFjxdV9d9ggqbUxd8vsMDNBsj02DDG3gqvBLwvMIgFgICcNPtmBhnpGHQ
U3YwXwZjrfhTitvUCAM+A5uYD2QzzI+hpY54RJ34EeTBQRWYBDxdd2OF3x1V
2iwSModFE39ausnJNjGAzL7NyP7ItUY83x/X78+fJwwSx3eOfzTayRIetuXD
ryfyHT4pUe6fOeng5O8S2MAVPDoKAg5HR0CWMOLDQ1QnPyEYhmf6/Gjb96so
Cp04sITIajZHdmwlRPTzUbAfhe1BZySsLI+EjbzAfyJkc+Xr9r1nOzF5dSzM
CHEBC1g8R8BJC47FFfKCMiQEZcKUKS3vtgPzd+flaExwPWhsytSghFHoRXMN
nV2iNUgBjKcm8uDF3jkezWR3crQhihGpzwseEtwfpMlU4DXBWRlDC4PwWzJO
/u0zEbWjozCmBgaTPHJZGG56h8KuI8gIGjifr6QfwPNTxRkzRQpeHPp2keyf
B25LkPlq2doYFSeuLxpJqKnFTJ4HkZBxMXNDR/6w4Hnx8ADrNKqYzUG5xw8t
OqDUFG2Gmd8zC11RVbA8N+QzTJPg3DUEXk2iCYLDcZlsNb6am7qHAK+P8iNv
7ixOevcVBf5ydOzPbCSKMkoBAAoQWbYNuxko8Oefh/wzd51UGx4D41I5o1WK
qEMJ3HHCYCEEVSZgEfAqzC/emnuC2RRYNaG53KQlyxfsLleYy7pH+z5IqwgS
1vnpsm+i8sjj/hxvmkjEfIUl4bhXTcGvZMIjNBnsfbJ4fHs9OCfnkz46UjUb
9JeO58vwnKLO/Ewf5NKOQ++Adny4o6O7HSUUOIjmOkwfRZPtFUx4tc1wl2zU
0Xy0O2lMNGjIfowuOaZgeHZo3tOL26s79iMG0i/IzbnAVCsHExkabSFGC+Hr
7+Pl6vdDEL+YceJs/Dpk7gJzF5R1jgxPZMLMh3Yo/oKcLsyE/fr7xHWUACLu
YWYq9moWpAOuhaaBExoz5yCXEqrrDLENaCCZ90CLZJZhTZl8cHDNt7rDWHCG
nN17howw/dol0hi9gI7XfEFQ6nytw94Da4WGaeEWPFzHbcNtKfyJeV1B/J0c
ST+hCOh6W+33gjo4O1KV5K5m5ALt9IBTlIASRQBmcxpULWG8Ghe1x5et5y9q
SzrEFdrzVSSNe72OfZ/y50j5VvYQV+ZzMKLrF4eSO9y2JrlEa9JF0XvLa5hQ
NVajaVLb6lP8kiVcG7Ia1G3O0gd5KO8VeMxgTQEeG0noE6bPnDD3kec3SgF+
+D5mBYQZXes6gm3fZaPfdXjazZ5ESz+Z8qNsQUqgFIJStUiCDviqnsELO+i4
4DqQRnv/98c660/4RTrOHuePi/GHuePCMfr01+9njX77iSjuHyE2mP928B/h
vzEtSBJO9rEqSTn44j//1//pA/vP//l/xP8DoWQ/gDJVJhtQ+H/FoeQ+hPK7
sAOK/x+R6AXxvl+/h6GIzb1USknE701tjNGKwmc3FknPgJUxpy8Mk4QbbX/t
S6TiZf1tUGi4/Xhob1nMz6pdSf/Uypi0bo1T7tL9fIXMT6uOiU70J0CPTXR7
Dc5Pq7+JTu0nQI9NbW+Vz0+r8InO8CdAj83wozqin1ZDFJ3kT4Aem+SHlUo/
qxIm/VPrbOKT/FS9zU8rpYnO9CdAj820nIpaETBsUE/948YNIPJp/UT4kYlt
OaWI6Ppf6CAgDD3B4ja5InZIY+/6kdQ8te3zAyNgQj5gtbxOtuJsd4Y32YfH
GCGYoNPyjfeViweAljM5EpJEpwu7REyZvc4sVS0lvevT9OExBfY2LdeIuduP
9iVwvDH4iK7v9oOTj47oZDW0NXVdUy98VeKbYK8RjHUVO2lw+NnEex4q2ur6
k7UO1vWevgwfIRm10bGCylytPfwhM9lIix9K/qMXNYUc5tf6x6PCR0frBgW+
VwHTp9V8t4xRxqA3PppWUIblf4TcU8WiKwO2BMzA5S0hMJ4SiVH656a83mzd
hMIvPNka9f0BPGEzqjiJu5TxACQRkTpbUJwTq2AoLid/rp5GzORjOHyIrh9/
4pG7YJHgD8tmRngeHY/cUkgv9Unxc1E9P+Xip6cZmIGOU4KZY4GjAsPRm9tJ
LnzTsYWlLX+aK/GR6H+UPvwsiuiCEIYfh9vfNw97H0DGU17ZnFJslXNUkKZK
y7pOYP04No+8vKVP1xHPnjwi4OudgbgxkDEq1jPZlucE3WYATWT/MKfxGKsU
sa3COg1hoo0nmIZA59RqJF/ye9I0hK/omvoh63VO459/4pJg9WNLm/slQjgu
b6uh+JkA66aDG0Mf43kQCH8qXVMP/Og39qQA7YFChQd9cIdhIB3//kDAdu96
/QPPHvOEBwMzSPaKUb908yOmohZhWfrnwd7+LPtwo2C+gZkfKpgXlIcqUwcZ
qkH3q3fDhrgUIuuHHY14IjK3EPqWpWNQ0sOIwWalcCgRQwRj/XmEb4FoXG9B
jTEquLWxjISxYAd6lPpXKcMmKOQOg9rijQ29Lu3jrTXi1aQ8tyd2bgBI8wOR
byNtidwI5PMBqVrwh7xu5Zb06PpT/cQi9huIClFOAy6H/GjBomgeAyHqOQK2
LvaL7ZDStssTcAAnZKsR0Ai33EZx3gfRuuCUAmGniD62L4ZZeA6yiEScsR4b
mQYIhx2psQYUW1qRFKLiw/DUhsBS/oE29KJ1Q7jBPNM/+wmrzP8JV8AnNZ4u
Yk79MZKGZ87DTsFpB6iDgc62YEsrGKsYOw7DxpGaeEpKfi/mD7GemsfwOU/7
XBBuIMXydDXIBaLqa79fGD/eXNsnzubypHirHCOoslYmlgZinBeuo9Gngybn
a0+Nx8Lq1i1zxEU75mI2FKxxDlwQnjwhyTdQPuzrc2lh775AowcFZ/90HLJ9
j5Ii4fLFBEV73TvnJ9RrVZricjvGGycHB/87NjZcLwvaDVIqdxzbgCGMSM5+
QxuNNCa2ma5jq2XkK8Gv8hhhhSAIPY3pqoNVGPCONsMGkyCP54w6hfnNkvjh
3NfT+mGjfep3QMDKAKbIKNsX3Pb2zJjlzSNXwG/rDlQbItnerPbhQeF1JiRx
1xYiofR+mGgoiFyfiYZg+2vc4OD03fIZN4neS7HwsMaPmM/WZ2/Yd0LjNaGh
MAQFSXsrcK20dcc8wCdk0XgbgnCVeDcph8jk+Ad0HtYtuyFdTLTegODBuWf8
Z7SeZr49DGj5rJDC1HxFpw6JuAiGrFJqKjhxQXsuMJ3GHp+9r/7Wh4wHkfPG
fZX9CDpo9EV9vng3xvinkTpYfkpQflcgK+CiIyLE22AjMGM2kR3tLZohEdnD
lIETqyxHRrPBuB3zEyQSnh6XZ1hfjwvlxNClvmR83mtzJV6YcktpEQfrn+MJ
CTxrIt5UjTtHW4mVwpMzfJnafPgHyJHcaPz2tHd126n3qKCLcPtls47nIDxn
2Xe0Eutq9r4tJm2koKOmT0M86VZY2OFss+0KR6Yb9mwJ8Nh/nv0BHmsrzD+P
C8HzhQlPdQ6qsQYen6D3zn52F7yfHT/KZaomC3UUg2C9hqfoJlusy57QAqTX
AMsRo051GBxADsPC4DEL3KlAS+/IAvMN5g3DhvQCd55s4wMvIUUZtChHbtlY
w6P7eOI9tVbgP/Bk2qBMArkpnSmlM/l01GMSQ4/JEakHlRieqImaIw5ta8pM
MtBBhYmGvBJBzIlsCSOkC9liMVMoHgJGX8/kmWzCOh8K32o6cFJbdi+Bgn1r
uooUaw7xJ9jLSNyUi7+l/QxJJy1JlYpUIGABzXVwHT1MyACobXKzTSuqlifh
M5prLBlzIYOj582Ip0TXEoeMZqFjjy4+URCE2HNvJWrgqjsmRpFIlYMUm1gq
fA02mwj/jyh9w3QCDFSqSiyR1n/gpDDtg9+9wcbB04QIpTVVKlbKBalUzOd+
036VMplMqVQsZnPZMhH5W7SsPswKQTJH6uqxkQzsOFx/KqmPohBP+PILPXwT
Mn3oM9YlW7otZqLA63D9FCkDA6UDP6OTx7AHEf1Ms555usPSodc80uWFuLZa
Rc0Ut3NdLMgQemKESwN28CqY5i1lpUdDL/BjwNx+yjrisS4Uik9PjBGC9AZH
cqK5sDZYtApLKFIetyhrnBq9Ol7GoqvxLeYoC3xIww1tjY12biibgiVbp0hb
CUWGOEIuJFXEyUYjZyThxpNN1zOim8caOymqUEWbCpc35U3TGUn0XxU7poJL
FLlwBRWnqMCv4pSxmYhzBQwMzWEw59WONXE4ZfxONMSlGOkSHVpMbWy69CUq
Ym4D06a99UAuyuYh1m76rHkhDzdI5/8Ccjtle2kUA+lCKV/IF1KzyYzA8Htc
AApNF4RKHELwlIqK9rKUxmwP/uBLDW4MiAqOKN5OwiVVTzMj0TyskTAVlgIf
U04pZhpZnMSmmCmJIDa5wgJW1kaOsnQrlQJwlpRSebEZrhpSKT/U3uIRQnzC
5ROmPGL5JFjF4gj8LlmEtZihDADpii1VZRHM1B2rskHkTh/IvFEi6QJ9Q7pq
jqMz1cLSCV0TTdmZwL+mtEEnzJl6K0/0VvLbXDMwwjSPbZANOjnGm2pEhZ7j
pugZ3/ppuZy19Eols0lfTJqNCidEkj+jDwlNTtV0Pg2CTspksyE1I3C0ETPH
kZhPih7wbP902bsbrTLXXeP1lC+CNx7LpufIG+MGjznOMIVd7IPiwNKZONNc
ZYJKkKsL3AaUNkkaEP9SdMsDci0scQUesIORLF+FoGc70uLo7O5bMMN34I10
+C6FjiNO5FZZxg+HcAxnZmlutEDVoRZ0Hiez35AOa/sq2UJFqmYKwNG1uljI
SAWxVs01xJqUy5dquUKjWM4TRF2eL4X44tGy4fPUxAtYOb0hVfkJGZ7AgJYD
OSpiPZmIace7NQCfgTXxNkQFPOG7Ji1l8oVysVDJ5QdSNpvJ5DMSNzqu0RWg
3UDIqZobKxgPn6U0mzPbLiUQ1/wgUiujYjYridmiIoulbCUnVhiriIVCoTTM
KZlheVTe2I4XWvdauL++XA+vgyM7n3HLJNiTcYMgUDp+OxmOCi6zL0xAw6VU
Nt9QeviI+NdJTzvFa+vy7XpJH4BSAOJGqEh/pyjKImspEGaEQ7BKQDsRQ0Fx
zYg4OFxtUC3gTr3tG4voV9PoLUyTZpFFVIepMRaYMi/tYIY2dVH97dVj9urX
OD/T92ibpPTI9/EmB4pmKzr8To/T8ejXLyF8gqQATrYORnDUVIw8pBXJ5jPl
0rury6KaegG2jojRy3XtOEbBTbSQZRPMN3jXDn/jRqL5AqI9NM02qpnpRyot
xl5C76guht2mCNYINr8JSEf0k/+EVJ+q4Rl0uljaEJWKo5pxkyGFj+ibBdOW
mjnIZ3OlolTJpoPr+AZSLlMpgqW51mQWKEGXyBqRAJGHQSH+Ns7gLMRlgM8m
4OFPuVLpe/ZUcyaAKTg7KtoxoO01OWrTRx7TMBN5iDX9WJimwTaN8+sOHDQF
5M2bvNJG4lTWtZVlc4tOng6j9iz9yf2kiG2jmRHxDvIfVlvTdc8JTJ1vsgp+
gSK8V278B5FLHpZegA4GPxMMqRFoGwIH1in6NgwcP5kBYWAauNcoQE9/g2ob
2wBHxnaPDjVoEMcMLO50sVKsSPlSgbNap+vprgZOR7SI0vCfcbXiixVmAoMr
Ydkk3tYG7ughb5sYmGq3a6mw9nkV7HJHQbrgtYjwWJ/fx8qUjrkjvI70BcE7
aj/K3dcumCAyxuPkaZx+qClgSDPU0U7a4O/O5Olgl7WKx3nvnFeMbc9x05by
pUpeKhRypXKuCJyfKebFV7Ga50t5a6m2NraEmg00sj7ExraH9OIArBguHII2
rVxmkvuNPGNaIpIHVCDVLxAWhXIW9FeuWCwCOoWs+JipFjgWNTz9urbBudps
e7EFhyG8DDqDXhbz+YKUl7IDi/MsVgK7ZInsMm7W2OQrJamcreTBycznM+Ji
pOUCJ9CyYcnAxwSijtgehMA0ceidNE+DCameBus2zVnMv5jxXx2h1uscHKz/
bDKVuOwKc/N5cdVWB/drDeM3jmy4wuhv/2ELPTRg7QnDU2MTa2uinzk8wDTl
bXc2mE+oyzYY90Jb091jbFrkUQoI1sqCCTVlDp6H8iAc4HoMX+nqP1uw5YSf
Wdfr8XQTv8jKbwVAgWfe2ogSrDWwNvFOg7WQ8w+P8R9h8yYMUmGsmWLDGIeG
ZYls8/AWCgx7TdnqANZR9rsBMldJHfOwHOaJUK8CHsfj+S71uj8g4G2zEcbL
MNdkay8ifuy12f7AD8hjaQ9e9bXO+8ZS/zpF8niMgJ8zI2js16uw8PHOAGXY
EHXGQKPzYILf7TZRnJbyN9J40WwoQWNlbn6kM3zLT6yJ8KgbuRlnuNroGhVe
vBHUvQVX6FAgHJEOfkFjx78rJYiuRvGgYbfD9kOXERz8fAYftGYL1sKMnYpz
BGReUuZLHuph/f4gZ1tMOYZmUIDFjyv4cQAyEGCwEL4eHbGlonuY2nB0FH8f
vj+iKs+jIL3lkPcaSHDTWa3UlBovA/vFKXcy5+Pcqj7L3cqzzCM7TX+2ceWH
gA4TIiWf3lfUu6blVm/e2qY6zeZea8qi1s/JTjKk9gFKilSuPc+cSs7o0Zmv
aq5erI6fyi9ir93WFsmQ2gcoKVKFi7OiVnHmlmFOZqvr9sM1e+mWRl3j8SYZ
UvsAJUXqfvD02rp7yo1OF3JzsViNqpWGM5m1mZtJhtQ+QEmROmsOlIXRbp8O
7bPBQ+G+uDpl7sODqWn5ZEjtA5QUqetB/am/UsaZ81ZJGZ7LXrMqTu/Hj9kX
KxlS+wAlRer57OXscfa0eC6Y9XvjbfCQb54XH7Xm6VNCSu0DlBSpvGPlLpbt
q6vHdk9amPOJZ7GHhzGrt6fJkNoHKClSN8UzQymU5xlF0hv3Oe+l85SpPg6s
UauaDKl9gJIiZea7rHBzXZ8vJkvl9MxUH9j1CrxPxUrIU/sAJUVqyG7fLi/n
i642mt6Ozq5HS6a0rPas30go0fcBSoCUMoK/7gpPbbUi6U8v2mu971Zqz6v7
xmWT3c26n0bqQ0CJdV+zbuVr3dtG725lzi8r1Zsz2b1+MR/lcULdtwdQUqQW
w8GTU+k+qxWvYnWztalYduel0fyxlRCpfYCSImXNyyOxpDyfnxdun8Wu8aIU
O5P7Xk1sJhQJ+wAlRSrr3XlyQ2qsxi+XjW6+1R+I9tNw0dfOEiK1D1BSpGa1
XEUeXko3djs/qPa7g9NSeb687nvLhEjtA5RY9y3P68tum4m9qnZb8SZXV7pu
n+eNu2pCNbMPUFKk+tLSm93VFq9Pp7Veu95/HPfaj8+u+vpWTobUPkBJkZrc
LvLF5mJs3KtaZfT6bGRHL+dD3Rx0EqqZfYCSInXXKq1OB1PduO0tL1fZ9mNx
9OY1LbPx8nnh+SGgxLtvMmMdXWXN0WnRqrwWLyr3UzeTqdbPE1JqH6CkSI2V
rPaSmQ8tNukNxLmUEXuXjr6Un+sJzeF9gBILz6u8UR29FtpnzzO30bi0e6Za
emuoj1JCRt8HKClSj96ZMlidnl3Xux3vSZlnr7qlx4Y1vq3fJUNqH6DE9tR9
WzeHzc7pRFSub1jXa9xfvS4LT/OHhC7WPkBJkVre3+Xqpde7K3OsaLNSLf98
Veie3fUrjwkV8j5ASZGSxnXleiGWLq1Z4/btrfZWzanNztjK3SY08vYBSoqU
W5at4VstV8rrD9rFm31vX90+laatp1XC5dsHKClSRu5uVSs+Xty8LWVPYS+n
A6t8beYlr9dJhtQ+QInl1Gv7VRkOz+fywGqdii+njWcvm8+NR2JChbwPUGIX
q1G+qUkP9xeia11a89ZNtj8tNgyDnSZUM/sAJUVq/niZnWmj50LrUalLy4tF
b3RRN++U5l3CoNk+QEmR6raaj5o5LBcee/LF9PWldjoxas/10rWSkKf2AUqK
1ItTue/kr2vl1ZMxGWevhvJzTZKz2dFFQp7aBygpUpnbt6vbt8fBvao/Fe5u
Bt2HrrF81k37JaGc2gcoKVIPuW5bqoGzNjSkh7vrZetGm8gdRXrrJ7TR9wFK
bE8N5NZKN5pt68J4vSzVasrTvdUW7cvE3sweQEmRKvWeel6tnDs37MprfSjd
S81K3qw85HIJrYR9gBLzVO9hNM4+XZ5Wr9yzm9KzM5KWev5KrF4ljLrsA5RY
IRujy4U4XJTPHfVsqOcd+aJSab7lNaYkVMh7ACWODq+0Uav8dl2QF5Y9HPSk
y9tK8/Tu9PEhaXR4D6CkSNWfFvNuqfBWtPsdNVvNPT/Pn8+M9vJKS2hP7QOU
AClvZMCf2cqy+fxYqOetXms6e67OH/uD0tPFQ/b+8+v3MaSktPKk9vLpoaKc
je5nWq4+qrxmimyymD21Emq/fYCSItVrDaqZjFSUxfOu+Vidttzu3dKaPhsv
CVl9H6DER0aLknj1kK1X7+2MeFN7q5RYtbusDcxuQpW8D1Bix91cDRV5NL/J
NsTO5G7Uv89myw83zctJQh95H6CkSNnG/SVrDl/kZbao5ySzMNPcdmd5dTNN
qGj2AUqKVGM8OVNbuZUzvG6ed29YWXl7E12l031NKKn2AUpMqecLWdHU7MI8
deWzRW+odTojN9fPNBPy1D5ASZEaTE9rV41Lp//wMpbVYWFp6i/lojqfKAkt
qn2AkiL1ep17rGe6st1sVnO97rA2e3g4c5fV+mVCRt8HKClS0+nLzUTLr+Zn
A626eLKvF5JiNyeiISbkqX2AEvsztal67p6/9d18syLdz+zRecdUx0Y/m9B4
2QcoKVJtzxtUm54k1fq2ujzPdcoTY5F9eZmVEzru+wAlD5uZmrWc1gaDm+fO
fNI0C6b8UHzpPL4ltBP2AUqKlPbg1OtVvfz0LM6u+tWSo13etZyRrrUTUmof
oKRIie3W9d1toT737h+Uq+o4V1J6y4VV7RsJGX0foKRIXZgXT6elYevmyqgv
7x9fi46rXbnnC0VKKKf2AUrMU4Nh52xypdbyL9I4Yypvy+vnRfPRrVtJQ7F7
ACU+c1jlX+9vzm5at+WsOHSmN4O7VqeoMV16SnjmsAdQYnvqLOcMnprmqNK5
KZf686wiveZHueLyPCGj7wOUOLHk4bz79CQ9taTTrNYbtFc3ebthXDmNVsK8
oH2AElsJ55LZ6LFFdXh/MViwq1mlPDWfnpVxMSGj7wOUOMTx4r1lRp2Xsvvy
ZCl3hvb8/Kj0FotmOyGl9gFK7Dg8aff58+dLO5uxWfFm2jJWD73c7NplCa2E
fYASp+A8jZeGpA3d4iyvXpSWTenpUtUzj71ZQm9mH6CkSBUvzsdXs2z26XbZ
6j8NRU2sLbVu6637kDCWtw/QoV9ujy1QbjysaKSLlzrUTcZ2j4URAKYGU8Jr
8DPP7aRkVlvWHJ58u3ndAnxAhcg2XRiGDUmwMwLlSz5go4Xt/fH81nhfec2M
8L/t7ViIjeI0NbjK7LM98/yvfqP2bJi6iw2BNNOjRjbRNkROkONMXTiwgJEa
SmEPDedYwBZD8MrRUaSd+Ganw6MjmsfR0Q68Xjwg6Ehj6m/CXQDZvy/OZCJe
nBt7HdsEDtfl/5g3a1GXxMg7NtabC5pBnQRchrURdLtJ3cKOjPTKKbxLrc4o
qRpvgj+hvtrfKGcas5k3Kj6jXAXckNZUv/ec3wYUeEzkCzbH+4lgGTJ5qvLB
HgdU5lQUs4epYOX9POugnSP2zKFpAEdoY5O6qTmcfvaWPnBBI7jNTnBfqUYE
YGNrP7wj2KeWX5jI1MPfqFej6ncWPDri9ZM81ZqPtx6f2mfQpSu4CNhDxTMo
a5x3P9qEjZ3DsOXITyViPpVN5YmMbeC9oCSE+uHQovup3bStAGcgjelfgIzN
WDRzbunzoKnmu7tBfvPBUg82WSDarPBtG3iImnrJ2Bd/zHhfCSxy47fACded
ToOnZ9fbnesB/PEb5alHin3wNhqs4kcar9PXDygpO1Ls46eqz2CHYhMNFS9H
osoG2wiSzt/lf29P+P6omxO/X1CLFIIssBXUMGhJRT3LeSb6zMaKXKxJ4xfS
8rRxnqUfvzmj7nfaCS+vA4hB07GgWxzxFTXHQaxRPgRS8FMSAwas4YUIAlYH
4q0l1IKICMBMFfstrvPZY5e9cLkRXpFNN7f5jEKtw9b3WAWAwsR6ukNiT7s2
x9I93tpHAK3BdYAHKumYX5oNO8by25bg1VVUnGYj2265w49krK5NGbUm3LiI
AtHEmVp4vZIPBCa67vjoN9LDlkNc0jPZwRZJQyaE5RbDVbzrZ9gfJSWcYlsx
tgTh4aDKi1SjUWUHNjODBdo/CXgHRlBWQ+CT4HtkX6wdwFonv4ETsBFiunml
5fG6mxCVwwQjY1tdQ3NwM9gmTQ/1BN1K4w1dfWsLHeEUFl+hipc4V4IM/Mqv
MSdCeDMqw6GNhFeWB307ubiIsFGwT7GFo18fIQyBj3E+VBDGi0u6fotoUGgg
1oQetYg+BvvC1mQDth1oPHkkHwt9zzJAYlc9G/6413C/O7o8FxrekK2m1rFw
hvWv+BkTzmQFbA+wRXqWOR5aQs07FuoTZo6XgFzbk4NqnrZsLbCgDN46JH5i
Pg2iMkbWuDD5sE/O+hpR6phDHcdCBvIlf+RKue+RQkHb2213vO1s7+OXzvgd
Nfe1Al3f6sZFWfSr9UWf/o2XPkf51hGNHvSRe9czKSgHIosweBdRwxna8kzD
miZfXq3nSDd4qNRlLNys0Qtdw+onasKKld5CHySdZsKKvYUkD/rzgsBWqQ0d
QaddFVSDhkNt1RgBHKpfWuOHEGy8653NqSwLwWADKdmV11dq0SP/mloh/qU/
JL6FdybgJTVhLzqcmmdg37ngMZUAwuh0A0mgyfHCFCzPXvfzvt++/FV/k0be
ACnQQEHvHPQt37xyQss70k820hAX15CaVgE/UivXNTmRDLSd/XLxfbwor5GJ
iGvSOpsNpLe1Fz7+ZNfm471dpkHIOmja0yWuOt0m5oQ9tRgVQwZ9Lk2yEG0s
Qgw5BllPDi5EnMh0sxi228CHARxaQ+cD8bflTlIaN7R6UkLkJhsk31fsx8iW
Exl9AWwMr9G6HVLbX5t32OVthdcP/HbXRH1uTgbvBH/CG1TPRlxK+hHtOFKi
081V+8R9iUifoInzWp5wyyIiSUf+Vc3+FtuwRjiGWLaOXZ7J7bwNpxS2RItM
+0+8iQfVsptuo2Xwh3DPTA8vk2nACn518MKCcPPgbQki6N+d/8Q7xS/Az1vC
CtD9zU60fhPrKyNtNWZKCtuMgtFH/0pnM3Q9wrUtjz3YOvU37Ewlw5OCWBKu
FNBNCAD+dnT0SI8FRMvig7aq+VZbkPLYUlJndIVyl/Nk3EUYy/nxhHwEPiZ+
Ic74FzQ6uKtjeYZ20R9CtgyG58wVsx+NHi0gjfRuAYZ1UmPLGvt1/KqWAv0H
ck6WUpqbZo5la4pDJcY49C2Y6sdCxwVRjXdU50WJj78xMg1JDcbp4reOCRtN
M4ItiAuo2a5HV1/3a9VtEGK433au+kLPM2B7beJPD0EQWK5oOUS0ENcWrCi2
Wz8WmlhGT9QS8zQYw3UPR/wWNCb8GC510wDtCQrOdnbcg3F4vG0ODVQgoY/w
gG08ey7oEUP42ug99A538QBGSwYOvZnmjbGCuu9DwW8d+q2lW0MgJjgaGk0U
t2kLJm/A0nGLCPQVsN1XYsGdQx3GFiabB/0yXhOJzyn+bWBQYek1df2IVC2n
81KuUKwUSoUBXlYuBrfqDjaU2UAzB02y1wetTnPQYOh9D2AKA/++QHXQv+gN
tt29sKkdgPLfiORrLD0nk12wYerNsoyUhw1plDS5vOm7qpkrSyrTZFHuXhov
rfak+7q0FEVqK6tmaepc6DJj52y0vMoPe/Ws0b5+W1zfXD+1WFY1n29TbyOd
PdUNw4U9ZA0ue/ymlliZebUjXHPN30O319/uwl+Eb7Q5pCgrx6ID/k5JSz4v
32vMNMFCroJ2sEngZCXhzMM+rcH6oMHw2XAggEWygdJnTtpSx+pgaUxebh61
24F88aS+uvfzxhlr5pGXv2fhM5VCPitVBsGNNYPb1iBKmEFYf88XekztZQfV
Dqch3dvyU4i0OZetlypE4WJoA2DpTpp/KsJDzn3+jS3iuvssWpd0H4iYyaRm
6mgLO67A5fdSQ5ZuDgvtt4lkzKTT39xf81K5wqcezlnAHpTYKRv+YzZbCW0w
4CJ00KbaGmFmxnDGTpUyqHWT/gth7KBOJkodJE87+DK4ET3piL9sNA+jKxBK
BXHD/cFeCEgdxO2/MqnN/Ray1c/bdu9o9t377r5SO38+GzRa0+drVTdfavId
W+neZPh68w/ad23LvW3WfwidpMomnX7M1ptYrj1SRGxXJItSYWejT1MV/UYk
sU6SmczeTdloP9xqL8tzx4JNmcuWC9s2JXHhB4QJudVJE9Yh836WWn/vnfiD
VicYnRZI3TbYRifYD1akdfu6shud0/HpAlZEyuUzh75ted36p+ZTjc3GPpdm
thI9GR3G5deBJ1Xmj29TVBf5TN7nTDQknYk1ixMg2gvMMWVl4ooqiA7s0Kcy
vIltbIPh6rfDlE1Hgzd2dViTCgXcB0DsBgch9BSNfKVLugs9bpB/PDrjmyAA
BiK1CEuAd1iES7ChFn7OhIh8V54LTzfmYNFDUVUR9gauhSiu71CNfUkbd+pi
uyrs/eg3jseGb/s6AYJcjgs1mQtpUQarlyJOTtpHfofq2+oocS8WG2p5yxH1
oqa4HPLyruZdBAbG+rq+hGG4Es5gGcDTQL+ZfFHZ5O4Vtl8+Fu56VaRSTgTv
IU4oPMrabGn1gTaTygVwIcqDHsalwLfS3uiXgTWKuQbbqRFGP+thSPedtx2d
uRJ+4ftCwPB17KInXMoUkFkTuBnSLz4dxVRG2HIx7kflMkJ1Zmv6HhHzKVrk
K/lKdnCLvITTR15C12mjzdSgutcdeu8G5dzJ88S51cTa89mF2Hp9MRett0lJ
M4e665139Nn9y2tXf5gVH27Vbv+5WHwuz8Ty04sss6vRcPKYqlvt4lPNm8rn
npwZT10MufNzSM1ATIyZkMmcZEsnmQy/H7rTxHsfUKfRTTV0F8VfgvAIkSo4
pd4iWzaDIzK+jxsG3xdD37+Ll/uA03ss1GVTVmXh65wvCP4olWIr8n0LkpVy
xaKUGfSxQxhaWv7rg1MThrJMDHkN+reng6sZMwc9D5zEfQL+3K5Yy5k0Us0M
KrpMOYdv8wsfdlEgvHpKtt9RQfQ1lMhBBCLjEvZnb2XAZtQwEG2iySf0rRkG
CvzwbiDdrVGkKx681rNgp21EXyxHnFuEC3UKT4N1Bs82NoBU3CT3lnjLDki0
oDyuss1KiXzGZWN6pGHPa95IO0//zuSl4oDj/y/ZzL9ky9K/ZCs73LPPoMEJ
eX3aF+tXl7wfm3QiSAUM6/EmmMJp0ATTv+gDz0eQp+c8DLoebwTuI3NTYw31
BYaXTdgwsO/Qsihg1G97V00CyLuimzwF5g/hXLZ1x/YmIHL9rodEevGHMDtK
n0ImS3Ea8CKq/lHNO0l8/L1yPlvKlT+CPgAZ904XgAQEph2gHeivTKvfbfIw
54lQNU3kwcAB9I/nHlrCFz4W/EJNmJH3A2b/ssZ97Bojin2mHL4pHNQYxB6+
yfEb3hrxK6MVuPDexB4eu8E/vTnz7GjgMS8C8buy/V/VAoVcSSok0wLcTW7e
Rg3mwocGM7+tujdh5hv8Px60YjPLmBitfDChDyznwjbLGTy6kR000g9Mpv22
cWd0Ph5elfIXbh5EZzFTyG+NIn1uyl9p5A+nXvopU6e4UtgAOjgQ/WD6k8cS
WIin08sSukjFUtGfPUY+jHeRjx+y8P91Ts7k8qV8rpTbHakIYhJ0ierfGf/v
Wz26fNVv7h6unTVat5BmKvZr3r+aZ2+ji9nQnOiZKoYgJKm0IzTzQwhR+CmE
iMVofIKEx+/rTCf+125PaD+hrtwrq3RpjTUH2T5XkAKPOKDP98VqChuxmr3k
y4vvKPh9cZtCJG7zo73F74ju7FrXjehOIkz3r2YxWy2UX9tSpduB1cxmS5nA
q3t/kB7RzztvStywQDNCkw338PmHd9v74AOr2sGDwCEGe80IqYKcJ0p54hlP
XFP7iroFjgBZpFmJnw/82zuCIIMSUYb8OHYhu8rkt/mvmvq6GGYmTX3i/DfM
DPj1+sIYTe/OlFzF606encuWMVuKrw3Rq1s3q+5Y78z+G7oRRcmJbottp7Gf
5AqNf8WdC1t2QS1JaYdfT5bGv+Mkr3xA8eRjvWPJbW/5Qoc4c209fHQYM767
fSpK6r12TVFGUE2Hwr4QS8SAtxyVGevzYQfzVT2dpWluO0IrIFhUNgeBaOAJ
7rfmVa9x2t1wrTYBI3Vr4Go6THeOhRrTx+jA/SHkJOFMNkVpg9zvPaydmHI/
utVuNWvdUFe5QOZtgmMTip8cQaSmPHJnGyQOJZ0tgs7Pcqcsm5EGxYxXYRlz
x+rQn6nNAT21mJUKWwZJyXMptWBD40cKjmwJqfsPFxzcSAKjiEgnZUs7pEfI
0NeZvHtxpvSWo+5vnxcX+Vz+h0rd3D8F8XyiSbmPiKb07Prz5coqDcYJiEah
mh9JtaLQYApRrfAR1TavB05Mpxo/wx6sL19FahWkrFT8iFqLQdd+6bL26rqc
gFqFyg8lVvbztPrBHEZRvbBQyqdaJvsR1aSi3HoWrWdNTcJj2UqW7KG/ngiu
5urs1y/RXNEgMZGtc0ZjWZgJ8jS//HnAE/Kqfv5gmI4X5hfiLaWUZw9725Pt
1TpZNMyi5PUUft7tP0VaKOXI80IXzIMNbhwILw+PpH1btp9vz1MrLV7aJtDN
0iaWSwCvxq8U36Qz3VAwm2HJFZawzGwswIplTeMg/HL2EQuzxjUby8psvJD4
F1wCsth2uC6HB4KAV0ZihOMhsm8+03gwx26WzZeb5tmFwmRW1PODy/GjaTiN
pwAsWYmfB4umV7o4Hr4uM49P5Ycnu53rLvPzq7KZFb3zcQgW79b4PFS0G8r6
6rU9qaxKg4t5cShpj5PZ3euTPct0MwFQCg98Hir66Om+NXf10mI8f1ucPfSz
nezzwpxYnSvz6SakbLX6ebLK8jj9Unu+n5aeVr3FTG6+rtTqaPmQy00vn6/D
+V+jQcZrMWKFISgHPjvWLIAhxopL0mqx8HAt1zMPw+fbxbJfU3SzPx2VegZ1
bsThKdcjS+4hzy3+5k5sJqvSZ4eW1wDS3vCt5D3WHVF8evN6D6vHy0vHeBgN
3N4NpiXCBvChZ78H+rI9ealW8qM3phavLjvz69vxot8XH26NakDLRq9bT0Q4
1XCU9E09K6sd5Wm61Pq6qZ0qSmk8npaLtWq4SFuCBvsBr8MF1x37LHs1uHlV
Lu+qZrdjDu4n2WzHeOgqAfRo/s+PzxkKBcftO8FhxwTHXbN72zpJzAG8pdXz
w3nG63Yr2St1oV8Px4+1+U111pixwveuvQ/3dnJbsqS2/bActRqj8e1Z97ZY
uK1NG6c+2hTDToo0NYq/HC7bnUWlPVjOek/D8ehqYJb0+06TPTjfifMn+s9z
Ru1c3n5akoAtlh6UL05zt560fJSKk3HrbGGvuv3bxa0lV9crDGbLrlNs38ek
c2i+8eNG1rZlx42Et+ztgDNOR1Rt2sXTwrQklbKZkpTL7SJfIpj+1TrpHHgg
hHS/Wv8uRMHiXyNYyWWlyvcjGIGVzWSK5XIhEy7AVf06vsOwGpF/zyIbDV4L
z5VgPv40IxOylJko6zq/aNnh48JHYvBRbDIlqYh+sg8lmxgKhecG60MiTEPi
c6vgZV9r0LkfBjpfzpUxMktL4EPP/zDohWy+mCvAonRGApjYVNQUKWHFYqy5
DPoOdx0eg5Deo6pvsFn9ollurPKiM16+4tdckTF2LMx4mY7OsOqfRqByLaFT
vay+K6rsx2p88aov0+Jv8jo4LMk8wCqUIWgNhFJVgkIsCp6AuW1STQpTf/0y
At+DgUUef4dXZmO5kcmwXk+2sbYVC1BX8aLCDr8USwv6IkSN8RFP0MDiO8ZU
RIZWCKsBPYro4exHnk6ViwbVAvqF1+9KVf2r0njposorxGdYXEE2blB3nApo
4xchU8m/wwvqAv+F7jXm5f786Eigq8/WN7NhzVWksFhwIpd58SsBqbeEs3mZ
1wlV9y00Z+KXstElfOgI+BVRZKgzReNC0veT1lWTvrmuhZ6BX06H9WOOu+5n
0QMvcSWcIzvIwpVmyvCsYcvO1PL/NdeUg4Ojo203wx0dCbuujOPYE7NiTTTH
D+u3EAfFEiMeFpF+J6DIROay7pEjhmlPtjbklds0i/dFuPDwfRUuYUWtEcYw
X2QWZMCQVdkWGmom3eeKfLXmNO4vTZg+w+dBqbNl7pwFIXlqawp2FgDO05HM
Z97EEppAhb/9vyb8CZhOYbfeeuqK/xUtOoYnNduDjVkDdxmm6uLSucCEwjne
Y2jDn/0XGfP92sAn/HvQCkJ/YhmOheCfwFeEOZ1psjmGP6/B+9WFS21qmRZs
FXhSB5GxEh40nb9fNS1zZWBjkWgVVlCNbuMYDVhQS+iCdQB7iBgFJmVNTLyo
0/vb/w04uK7DodVAMgKDtWWdYSsNRrXgPVf2hjiRoDQa+zis66CF9/9DNGPF
0yEZLjxc8nMPPFp5JVQnBsi+87/9x9/+n7/9xxR+6Bgy5oBObEuZ0oiziYZp
QxNDY2OaynylCldTWSPymsRAVZS9MnDeg2WpAAAetf72/9kIicEyqJzsIA16
sksMJ0+9IV85rNNzrYUz1dZr0cTCVOCBCZEfOBgkWIMuNEcE2BAks6WzFe22
4CbJuq2BxOIbrSHyvxLtLt7Whcr87dV6r61hfW6DvWfHSBH8z9lWgZSn8TuW
6bnAahOweJi8fXOLxO2AU5PHXbZsuTb2FXGEvqNMrBEzNVz6J9lGK3PCRiNa
0AvZ42WVF6BvhsDbyLEtzdbUCcjvLqC4kg1iRKAg6HrU2rCcLvH5mWXK1O2h
ba2QReDRLd7Pa6tCTQamd3B1bTYCzUCLyv/TX9Ftta7vJLqwzoTlhb3hPZPU
jYZ0VTaD/42xCymV83PkNN7EKDJmaFVQJIw6BIR3FQdDBK0Vgl4god44B56e
AO+tYK41mN9YnsvmNil1CcLBEM6tIdNgkXH6LYahJ9Ae63uUyfZxgtpADCId
C+gRHmNRMg+T8VRL3owjYE+e3cvL/olEgWGA1RMEivRzSqgK2yuV16Cob4Qj
fMMLa/8BefS/zMDI/FUqHYLRsbUNBSI3wop3mjLPlgvb1ESye4WvXxrMc/Gk
jHSLMvHMsYOX0Gp+Knrqy+HB/w8FFY4cQe0AAA==

-->

</rfc>
