<?xml version='1.0' encoding='utf-8'?>
<!DOCTYPE rfc [
  <!ENTITY nbsp    "&#160;">
  <!ENTITY zwsp   "&#8203;">
  <!ENTITY nbhy   "&#8209;">
  <!ENTITY wj     "&#8288;">
]>
<?xml-stylesheet type="text/xsl" href="rfc2629.xslt" ?>
<!-- generated by https://github.com/cabo/kramdown-rfc version 1.7.43 (Ruby 3.4.9) -->
<rfc xmlns:xi="http://www.w3.org/2001/XInclude" ipr="trust200902" docName="draft-intra-handshake-fail-52" category="info" submissionType="IETF" tocInclude="true" sortRefs="true" symRefs="true" version="3">
  <!-- xml2rfc v2v3 conversion 3.34.1 -->
  <front>
    <title abbrev="Early Attestation Considered Harmful">Early Attestation Considered Very Harmful (CVE-2026-92701 of CVSS 9.1, CVE-2026-92702 of CVSS 9.1, CVE-2026-33697 of CVSS 7.5, and 37 other CVEs of up to expected CVSS 10.0 upcoming)</title>
    <seriesInfo name="Internet-Draft" value="draft-intra-handshake-fail-52"/>
    <author fullname="Muhammad Usama Sardar">
      <organization abbrev="TU Dresden">Technical University of Dresden</organization>
      <address>
        <postal>
          <city>Dresden</city>
          <code>01187</code>
          <country>Germany</country>
        </postal>
        <email>muhammad_usama.sardar@tu-dresden.de</email>
      </address>
    </author>
    <author fullname="Viacheslav Dubeyko">
      <organization>CoreWeave</organization>
      <address>
        <email>slava@dubeyko.com</email>
      </address>
    </author>
    <author fullname="Jean-Marie Jacquet">
      <organization>University of Namur</organization>
      <address>
        <postal>
          <city>Namur</city>
          <country>Belgium</country>
        </postal>
        <email>jean-marie.jacquet@unamur.be</email>
      </address>
    </author>
    <author fullname="Songbo Bu">
      <organization>Stevens Institute of Technology</organization>
      <address>
        <postal>
          <city>New York</city>
          <country>USA</country>
        </postal>
        <email>bluedognull@gmail.com</email>
      </address>
    </author>
    <author fullname="Chengxin Huang">
      <organization>Independent</organization>
      <address>
        <email>aurestarnull@gmail.com</email>
      </address>
    </author>
    <author fullname="Haowen Song">
      <organization>Shanghai Guan An Information Technology Co., Ltd.</organization>
      <address>
        <postal>
          <country>China</country>
        </postal>
        <email>havan12050544@gmail.com</email>
      </address>
    </author>
    <author fullname="Kaya Ercihan">
      <organization>Switch</organization>
      <address>
        <postal>
          <city>Zurich</city>
          <country>Switzerland</country>
        </postal>
        <email>kaya.ercihan@switch.ch</email>
      </address>
    </author>
    <author initials="D. K. A." surname="Küçük" fullname="Dr Kubilay Ahmet Küçük">
      <organization>DPhil Oxford University</organization>
      <address>
        <email>dr.kucuk@oxfordalumni.org</email>
      </address>
    </author>
    <author fullname="Sylvain Bellemare">
      <organization>Sureshot Labs</organization>
      <address>
        <postal>
          <country>Japan</country>
        </postal>
        <email>sbellem@gmail.com</email>
      </address>
    </author>
    <author initials="E. C. M." surname="Willems" fullname="Eva C. M. Willems">
      <organization>Independent</organization>
      <address>
        <postal>
          <country>Netherlands</country>
        </postal>
        <email>evac.m.willems@proton.me</email>
      </address>
    </author>
    <author fullname="Justin DESSENNES SAINTEN">
      <organization>Independent Corporate Risk Consultant</organization>
      <address>
        <postal>
          <city>Paris</city>
          <country>France</country>
        </postal>
        <email>dessennes_sainten@msn.com</email>
      </address>
    </author>
    <author fullname="Massimiliano Brighindi">
      <organization>PHI-OMEGA</organization>
      <address>
        <postal>
          <city>San Benedetto del Tronto</city>
          <country>Italy</country>
        </postal>
        <email>phiomega.runtime@gmail.com</email>
      </address>
    </author>
    <author fullname="Mikerah Quintyne-Collins">
      <organization>HashCloak Inc and Stoffel Labs Inc</organization>
      <address>
        <postal>
          <country>Canada</country>
        </postal>
        <email>mikerah@hashcloak.com</email>
      </address>
    </author>
    <author fullname="Iman Schrock">
      <organization>EMILIA Protocol, Inc.</organization>
      <address>
        <email>team@emiliaprotocol.ai</email>
      </address>
    </author>
    <author fullname="Islam Aboubakarov">
      <organization abbrev="ESILV">Ecole Superieure Ingénieurs Léonard de Vinci Paris</organization>
      <address>
        <postal>
          <city>Paris</city>
          <code>92000</code>
          <country>France</country>
        </postal>
        <email>islam.aboubakarov@edu.devinci.fr</email>
      </address>
    </author>
    <author fullname="Ammara Gul">
      <organization>Birmingham City University</organization>
      <address>
        <postal>
          <country>UK</country>
        </postal>
        <email>ammara.gul@bcu.ac.uk</email>
      </address>
    </author>
    <date year="2026" month="October" day="01"/>
    <workgroup>SEAT</workgroup>
    <keyword>AI agents</keyword>
    <keyword>Intra-handshake attestation</keyword>
    <keyword>Early attestation</keyword>
    <keyword>CVE-2026-33697</keyword>
    <keyword>CVE-2026-92701</keyword>
    <keyword>CVE-2026-92702</keyword>
    <abstract>
      <?line 339?>

<t>The draft aims to provide technical details of <xref target="CVE-2026-33697"/>, <xref target="EUVD-2026-16488"/>, <xref target="CVE-2026-92701"/>, <xref target="EUVD-2026-83194"/>, <xref target="CVE-2026-92702"/>, <xref target="EUVD-2026-83192"/> and several GitHub Security Advisories (GHSAs) which provide substantial technical evidence of how early attestation fails in practice, even <strong>without physical access</strong> to the desired machine. Moreover, since continuous attestation is generally required <xref target="CSA-eBPF"/> <xref target="MITRE-Continuous-Attestation"/>, early attestation adds <strong>unnecessary complexity</strong>. The results are backed by the research <xref target="Intra-handshake.fail"/>, <xref target="TLS-RA"/>, <xref target="EarlyAttestationBleed"/> and the artifacts <xref target="Intra-handshake.fail-repo"/> in state-of-the-art formal analysis tool, ProVerif, under Apache-2.0 license for reproducibility, extensibility, and review, and have been acknowledged by the relevant stakeholders. Currently, there are <strong>two CVEs of CVSS 9.1, one CVE of CVSS 7.5, one GHSA of 9.0-10.0, one GHSA of CVSS 7.8, seven GHSAs of CVSS 7.4, and one GHSA of CVSS 6.3 published against the broader early attestation covering all layers of the ecosystem up to the application</strong>. The research papers on these are currently either under submission or being prepared for submission. The artifacts of these papers will be shared with the community under Apache-2.0 license for reproducibility, extensibility, and review. Based on our work, all except two implementations of early attestation have been archived, withdrawn, or moved to post-handshake attestation. In our analysis <xref target="Intra-handshake.fail-repo"/>, the remaining two implementations of early attestation -- Edgeless Systems Contrast and Meta's AI -- remain vulnerable. We recommend users to carefully evaluate their systems.</t>
    </abstract>
    <note removeInRFC="true">
      <name>About This Document</name>
      <t>
        The latest revision of this draft can be found at <eref target="https://muhammad-usama-sardar.github.io/intra-handshake-fail/draft-intra-handshake-fail.html"/>.
        Status information for this document may be found at <eref target="https://datatracker.ietf.org/doc/draft-intra-handshake-fail/"/>.
      </t>
      <t>Source for this draft and an issue tracker can be found at
        <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail"/>.</t>
    </note>
  </front>
  <middle>
    <?line 343?>

<section anchor="introduction">
      <name>Introduction</name>
      <t>We first present the executive summary of published GHSAs/CVEs against early attestation and then an overview of the research works that led to those discoveries.</t>
      <section anchor="executive-summary-of-current-status">
        <name>Executive Summary of Current Status</name>
        <t>The table below presents the current status of published GHSAs and CVEs against implementations of early attestation with confirmed scores.
Severity is based on <eref target="https://nvd.nist.gov/vuln-metrics/cvss">NIST standard metrics</eref>, where 10.0 is the highest possible vulnerability score. <strong>For TLS reference, Heartbleed was CVSS 7.5</strong>. Scores of 13 more published GHSAs is yet to be confirmed and will be added later in this table.</t>
        <table>
          <name>Published CVEs/GHSAs for intra-handshake (aka early) attestation</name>
          <thead>
            <tr>
              <th align="left">CVSS</th>
              <th align="left">Severity</th>
              <th align="left">Number of Published GHSAs</th>
              <th align="left">Number of Published CVEs</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">9.0-10.0</td>
              <td align="left">Critical</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">9.8</td>
              <td align="left">Critical</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">9.1</td>
              <td align="left">Critical</td>
              <td align="left">8</td>
              <td align="left">3</td>
            </tr>
            <tr>
              <td align="left">8.2</td>
              <td align="left">High</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">7.8</td>
              <td align="left">High</td>
              <td align="left">2</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">7.7</td>
              <td align="left">High</td>
              <td align="left">2</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">7.5</td>
              <td align="left">High</td>
              <td align="left">3</td>
              <td align="left">1</td>
            </tr>
            <tr>
              <td align="left">7.4</td>
              <td align="left">High</td>
              <td align="left">4</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">6.5</td>
              <td align="left">Medium</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">6.3</td>
              <td align="left">Medium</td>
              <td align="left">3</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">5.3</td>
              <td align="left">Medium</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">4.4</td>
              <td align="left">Medium</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">4.2</td>
              <td align="left">Medium</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
            <tr>
              <td align="left">3.7</td>
              <td align="left">Low</td>
              <td align="left">1</td>
              <td align="left">-</td>
            </tr>
          </tbody>
        </table>
      </section>
      <section anchor="intra-handshakefail">
        <name>Intra-handshake.fail</name>
        <t><xref target="Intra-handshake.fail"/> presents a general approach to analyze the intra-handshake (aka early) attestation proposals, regardless of whether they are within the scope of SEAT charter or not. From a security perspective, one of the key decision factors is the candidate binding mechanism. Some binding mechanisms are within scope of SEAT charter and others are not. The artifacts are available in <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 license for reproducibility, extensibility, and further research.</t>
      </section>
      <section anchor="id-crisis">
        <name>ID-Crisis</name>
        <t>A <em>complementary</em> paper <xref target="ID-Crisis"/> presents the identity crisis in pre- and intra-handshake attestation. The formal analysis is available in <xref target="ID-Crisis-repo"/> under Apache-2.0 license for reproducibility, extensibility, and extensibility.</t>
      </section>
      <section anchor="earlyattestationbleed">
        <name>EarlyAttestationBleed</name>
        <t><xref target="EarlyAttestationBleed"/> presents a formal analysis together with regression tests of the broader attestation ecosystem and discovered three critical-severity vulnerabilities in implementations of early attestation:</t>
        <ul spacing="normal">
          <li>
            <t>Ultraviolet Cocos AI in TDX path resulting in <xref target="CVE-2026-92701"/> of CVSS 9.1</t>
          </li>
          <li>
            <t>Ultraviolet Cocos AI in SEV-SNP path resulting in <xref target="CVE-2026-92702"/> of CVSS 9.1</t>
          </li>
          <li>
            <t>Edgeless Systems Contrast in policies resulting in <xref target="GHSA-Edgeless-Systems2"/> of CVSS 9.0-10.0</t>
          </li>
        </ul>
      </section>
    </section>
    <section anchor="sec-credits">
      <name>Published GHSAs/CVEs</name>
      <t>The vulnerabilities cover the broader ecosystem, including but not limited to attestation, authentication, authorization, key storage, parsing and resource handling inside the runtime. Any vulnerability in the whole system, and not just attestation, breaks security of the overall system. The key take away is that early attestation adds unnecessary complexity to an already complex system.</t>
      <table>
        <name>GHSAs/CVEs for implementations of early attestation and finders in (roughly) chronological order of publishing -- CVSS scores marked with * are preliminary</name>
        <thead>
          <tr>
            <th align="left">GHSA/CVE</th>
            <th align="left">CVSS</th>
            <th align="left">Finders</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI"/></td>
            <td align="left">7.8</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">7.5</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-16488"/></td>
            <td align="left">7.5</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, and Jean-Marie Jacquet</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI2"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI3"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems2"/></td>
            <td align="left">9.0-10.0</td>
            <td align="left">Markus Rudy; independently by Songbo Bu and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rustls"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, Jean-Marie Jacquet, and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-go"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, Jean-Marie Jacquet, and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-eov"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, Jean-Marie Jacquet, and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-eom"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, Jean-Marie Jacquet, and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar, Viacheslav Dubeyko, Jean-Marie Jacquet, and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc-da"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Privasys-rtc-tcu"/></td>
            <td align="left">6.3</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-92701"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-92702"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-83194"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-83192"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar and Songbo Bu</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-322v-xwfj-63cm">GHSA-322v-xwfj-63cm</eref></td>
            <td align="left">9.8</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-m9p9-3hxp-4j6j">GHSA-m9p9-3hxp-4j6j</eref></td>
            <td align="left">9.1</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-ppc4-fg56-x397">GHSA-ppc4-fg56-x397</eref></td>
            <td align="left">6.5</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6j47-3cm6-9cg6">GHSA-6j47-3cm6-9cg6</eref></td>
            <td align="left">8.2</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-4755-rh6c-694j">GHSA-4755-rh6c-694j</eref></td>
            <td align="left">7.4</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6f8q-88mv-c8vr">GHSA-6f8q-88mv-c8vr</eref></td>
            <td align="left">6.3</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-qqq3-6c47-684v">GHSA-qqq3-6c47-684v</eref></td>
            <td align="left">7.5</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-xxr6-w252-4ggx">GHSA-xxr6-w252-4ggx</eref></td>
            <td align="left">7.5</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-fmrx-fjqw-37gp</eref></td>
            <td align="left">7.7</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-f96w-jjf8-xpw3">GHSA-f96w-jjf8-xpw3</eref></td>
            <td align="left">5.3</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fqrx-3wc2-4g49">GHSA-fqrx-3wc2-4g49</eref></td>
            <td align="left">4.4</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-mrgr-34cc-fcg8">GHSA-mrgr-34cc-fcg8</eref></td>
            <td align="left">3.7</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-wqf9-jfmm-f68v">GHSA-wqf9-jfmm-f68v</eref></td>
            <td align="left">4.2</td>
            <td align="left">Songbo Bu, Chengxin Huang, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems3"/></td>
            <td align="left">7.7</td>
            <td align="left">Sebastian Jylanki</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems4"/></td>
            <td align="left">7.8</td>
            <td align="left">Chengxin Huang, Songbo Bu, and Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI4"/></td>
            <td align="left">7.4</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="GHSA-Cocos-AI5"/></td>
            <td align="left">6.3</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="CVE-2026-100835"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EUVD-2026-87851"/></td>
            <td align="left">9.1</td>
            <td align="left">Muhammad Usama Sardar</td>
          </tr>
        </tbody>
      </table>
    </section>
    <section anchor="intra-handshakefail-1">
      <name>Intra-handshake.fail</name>
      <section anchor="overview">
        <name>Overview</name>
        <t><xref target="Intra-handshake.fail"/> presents the formal specification and analysis of the candidate binding mechanisms for binding in intra-handshake attestation for standardization for attested TLS protocols:</t>
        <table>
          <name>Binding mechanisms, implementations and ProVerif artifacts</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Used in</th>
              <th align="left">Artifacts</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">-</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MarkusRudy.contrast-atls-ccc-attestation.pdf">Edgeless Systems Contrast</eref>; <eref target="https://www.sns-itrust6g.com/wp-content/uploads/2025/12/Webinar-Architecting-Trust-CONFIDENTIAL6G.pdf">Cocos AI v0.8.2</eref>;  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref>; <eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI updated spec</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <xref target="I-D.fossati-tls-attestation-06"/></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7">binder7</eref></td>
            </tr>
          </tbody>
        </table>
        <artwork><![CDATA[
We provide a formal proof of insecurity of all the above candidate
binding mechanisms of intra-handshake attestation using the
state-of-the-art tool ProVerif and propose a mitigation for the
discovered security vulnerabilities. Our study reveals that it may
not be possible to achieve strong application-traffic (level 3)
binding using intra-handshake attestation alone. This can be exploited
for relay attacks, where an attacker makes a client accept an evidence
from a different machine. So the client cannot be sure that it connects
to its desired server.
]]></artwork>
        <t>We responsibly disclosed the vulnerability in intra-handshake attestation -- as noted in <xref target="GHSA-Cocos-AI"/> issued -- to the vendors, which resulted in  <xref target="CVE-2026-33697"/> of CVSS 7.5.</t>
      </section>
      <section anchor="modeling-other-binding-mechanisms">
        <name>Modeling Other Binding Mechanisms</name>
        <t>The artifacts are quite flexible for modification and testing of different intra-handshake attestation binding mechanisms by simply changing single <tt>rdata</tt> parameter in the Client and Server processes. Folder <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/aggregate">aggregate</eref> contains all analyzed and proposed binding mechanisms in <xref target="Intra-handshake.fail"/> to select via comment and uncomment. Other folders contain one specific binding mechanism.</t>
      </section>
      <section anchor="seat-early-attestation">
        <name>SEAT-Early-Attestation</name>
        <t>The draft <xref target="I-D.fossati-seat-early-attestation"/> is an extension of the provably vulnerable (and withdrawn) draft <xref target="I-D.fossati-tls-attestation-10"/> with the following two main changes from a formal perspective:</t>
        <ol spacing="normal" type="1"><li>
            <t>Binder has been updated</t>
          </li>
          <li>
            <t>Optional post-handshake attestation part has been added for re-attestation</t>
          </li>
        </ol>
        <t>The current binder in <xref target="I-D.fossati-seat-early-attestation"/> does not prevent relay attacks as there is no <strong>shared secret</strong> in the binder. In addition to the formal analysis in <xref target="Intra-handshake.fail"/>, see <xref target="TLS-RA"/> for arguments why shared secret is necessary to prevent relay attacks.</t>
        <t>Post-handshake attestation part may prevent relay attacks, but then the <strong>additional complexity</strong> of intra-handshake attestation is unjustified.</t>
      </section>
    </section>
    <section anchor="threat-model">
      <name>Threat Model</name>
      <t>The threat model is explained in Sec. 6.1 of <xref target="Intra-handshake.fail"/> and Sec. 4 of <xref target="ID-Crisis"/>.</t>
      <t>Beyond post-generation leakage of <tt>privEK</tt> considered in <xref target="Intra-handshake.fail"/>, the same adversary capability may arise from failures during key generation or entropy provisioning. Platform-attestation keys and workload-controlled TLS keys belong to distinct key-generation domains: for example, in AMD SEV-SNP the VCEK is derived by SNP firmware from chip-unique secrets and a TCB version, while several other platform secrets are specified as CSRNG-generated; by contrast, <tt>privEK</tt> and TLS (EC)DHE private values are typically generated by software executing inside the confidential VM using the guest OS or cryptographic-library random subsystem. Furthermore, SEV-SNP <tt>REPORT_DATA</tt> is supplied by the guest and incorporated into the signed attestation report without being interpreted by SNP firmware; consequently, valid Evidence can authenticate a binding value without attesting the entropy provenance, generation procedure, or exclusive possession of the corresponding private key. The <tt>LEK(privEK)</tt> capability should therefore also encompass predictable or repeated key generation caused by deficient entropy, cloned or rolled-back DRBG state, defective software or firmware, or malicious provisioning. <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-7055.html">CVE-2025-62626</eref> provides a concrete manufacturer-layer fault model: affected AMD Zen 5 processors could return insufficiently random values from certain <tt>RDSEED</tt> forms while incorrectly signaling success. This does not establish compromise of the AMD-SP-internal CSRNG or of a specific attested-TLS implementation, but demonstrates that ideal-randomness assumptions can fail below the protocol layer; software dependencies such as OpenSSL's <tt>--with-rand-seed=rdcpu</tt> (<eref target="https://github.com/openssl/openssl/blob/openssl-3.5.0/INSTALL.md">OpenSSL 3.5.0 INSTALL.md</eref>), which can use <tt>RDSEED</tt> or <tt>RDRAND</tt> as CSPRNG seed input, illustrate a possible propagation path from hardware entropy interfaces to workload TLS key generation.</t>
      <section anchor="low-level-mapping-of-the-system-model">
        <name>Low-Level Mapping of the System Model</name>
        <t>Figure 2 of <xref target="Intra-handshake.fail"/> provides a TEE-agnostic protocol-level
abstraction. For a low-level view, the following table maps the abstract
components to representative Intel TDX and AMD SEV-SNP implementations.</t>
        <table>
          <name>Mapping of the abstract system model to representative CC implementations</name>
          <thead>
            <tr>
              <th align="left">Fig. 2 element</th>
              <th align="left">Intel TDX</th>
              <th align="left">AMD SEV-SNP</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">
                <strong>Physical Machine</strong></td>
              <td align="left">TDX-capable Intel platform</td>
              <td align="left">SEV-SNP-capable AMD platform</td>
            </tr>
            <tr>
              <td align="left">
                <strong>CC Platform</strong></td>
              <td align="left">CPU HW + TDX Module + attestation infrastructure</td>
              <td align="left">CPU HW + AMD-SP/SNP (system) firmware + RMP/SEV machinery</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Quoting Agent</strong></td>
              <td align="left">TD QE</td>
              <td align="left">AMD-SP / SNP attestation (VM) firmware</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Confidential VM</strong></td>
              <td align="left">Trust Domain (TD)</td>
              <td align="left">Part of SNP confidential VM</td>
            </tr>
            <tr>
              <td align="left">
                <strong>Network stack</strong></td>
              <td align="left">Part of guest OS + TLS library inside TD</td>
              <td align="left">Part of guest OS + TLS library inside SNP guest</td>
            </tr>
            <tr>
              <td align="left">
                <strong>HSM/TPM</strong></td>
              <td align="left">Secure element</td>
              <td align="left">Secure element</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privAK</tt></strong></td>
              <td align="left">Attestation key of TD Quoting Enclave</td>
              <td align="left">VCEK/VLEK signing key</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privEK</tt></strong></td>
              <td align="left">Workload/TLS-side ephemeral key</td>
              <td align="left">Workload/TLS-side ephemeral key</td>
            </tr>
            <tr>
              <td align="left">
                <strong><tt>privLTK</tt></strong></td>
              <td align="left">Long-term key in secure element</td>
              <td align="left">Long-term key in secure element</td>
            </tr>
          </tbody>
        </table>
        <t>The key material shown in the abstract model belongs to different implementation
and trust domains. The following table provides a corresponding low-level view.</t>
        <table>
          <name>Low-level implementation and key-generation domains</name>
          <thead>
            <tr>
              <th align="left">Component/key</th>
              <th align="left">Runs/lives where?</th>
              <th align="left">Type</th>
              <th align="left">Randomness/key source</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">TLS ECDHE</td>
              <td align="left">Inside network stack</td>
              <td align="left">Network stack</td>
              <td align="left">OS/library CSPRNG</td>
            </tr>
            <tr>
              <td align="left">
                <tt>privEK</tt></td>
              <td align="left">Inside confidential VM</td>
              <td align="left">Guest software</td>
              <td align="left">OS/library CSPRNG</td>
            </tr>
            <tr>
              <td align="left">AK</td>
              <td align="left">Quoting Agent</td>
              <td align="left">Firmware/enclave/platform key hierarchy</td>
              <td align="left">Platform-specific</td>
            </tr>
            <tr>
              <td align="left">Memory-encryption key</td>
              <td align="left">CC Platform</td>
              <td align="left">Hardware/firmware managed</td>
              <td align="left">Platform RNG/KDF</td>
            </tr>
            <tr>
              <td align="left">
                <tt>REPORT_DATA</tt></td>
              <td align="left">Created by Guest Software</td>
              <td align="left">Data binding</td>
              <td align="left">No independent entropy requirement</td>
            </tr>
          </tbody>
        </table>
        <t>Per-VM memory-encryption key is used to encrypt confidential VM's RAM.</t>
      </section>
    </section>
    <section anchor="detailed-vulnerability-disclosure-timeline-and-public-acknowledgements-by-affected-vendors">
      <name>Detailed Vulnerability Disclosure Timeline and Public Acknowledgements by Affected Vendors</name>
      <table>
        <name>Detailed vulnerability disclosure timeline and acknowledgements</name>
        <thead>
          <tr>
            <th align="left">Event</th>
            <th align="left">Date</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">Our initial responsible disclosure to vendor</td>
            <td align="left">07 Oct, 2025</td>
          </tr>
          <tr>
            <td align="left">Acknowledgement by vendor</td>
            <td align="left">14 Dec, 2025</td>
          </tr>
          <tr>
            <td align="left">Information to the <eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">IETF</eref></td>
            <td align="left">11 Jan, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://web.archive.org/web/20260227160554/https://www.ultraviolet.rs/blog/tee-tls-privacy/">Public announcement</eref> by vendor</td>
            <td align="left">27 Feb, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>]</td>
            <td align="left">23 March, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-33697"/> published  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-16488"/>  [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">26 March, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/rustls/releases/tag/privasys-v0.8.1">Acknowledgment</eref> by Privasys for rustls <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">9 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/Privasys/go/releases/tag/privasys-v0.5.1-go1.26.5">Acknowledgment</eref> by Privasys for go <xref target="CVE-2026-33697"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</td>
            <td align="left">10 July, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation</eref> declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref></td>
            <td align="left">17 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable <eref target="https://github.com/ccc-attestation/attested-tls-poc">CCC implementation repo</eref> archived</td>
            <td align="left">22 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Vulnerable draft <xref target="I-D.fossati-tls-attestation-10"/> withdrawn by authors</td>
            <td align="left">23 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">29 July, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI2"/>  [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">16 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI3"/>  [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">16 August, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems2"/> [<strong>Severity = CRITICAL (CVSS 9.0-10.0)</strong>]</td>
            <td align="left">24 August, 2026</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="I-D.ritz-seat-facts"/> archived</td>
            <td align="left">2 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rustls"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-go"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-eov"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-eom"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">3 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys archived early attestation in rustls and moved to post-handshake attestation</td>
            <td align="left">4 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys archived early attestation in go and moved to post-handshake attestation</td>
            <td align="left">4 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc-da"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">6 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <xref target="GHSA-Privasys-rtc-tcu"/> [<strong>Severity = MEDIUM (CVSS 6.3)</strong>]</td>
            <td align="left">6 September, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-92701"/> published [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-92702"/> published [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-83194"/> [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-83192"/> [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">18 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-322v-xwfj-63cm">GHSA-322v-xwfj-63cm</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-m9p9-3hxp-4j6j">GHSA-m9p9-3hxp-4j6j</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-ppc4-fg56-x397">GHSA-ppc4-fg56-x397</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6j47-3cm6-9cg6">GHSA-6j47-3cm6-9cg6</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-4755-rh6c-694j">GHSA-4755-rh6c-694j</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-6f8q-88mv-c8vr">GHSA-6f8q-88mv-c8vr</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-qqq3-6c47-684v">GHSA-qqq3-6c47-684v</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-xxr6-w252-4ggx">GHSA-xxr6-w252-4ggx</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-fmrx-fjqw-37gp</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fmrx-fjqw-37gp">GHSA-f96w-jjf8-xpw3</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-fqrx-3wc2-4g49">GHSA-fqrx-3wc2-4g49</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-mrgr-34cc-fcg8">GHSA-mrgr-34cc-fcg8</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Privasys published <eref target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-wqf9-jfmm-f68v">GHSA-wqf9-jfmm-f68v</eref></td>
            <td align="left">19 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems3"/></td>
            <td align="left">24 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Edgeless Systems published <xref target="GHSA-Edgeless-Systems4"/></td>
            <td align="left">24 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI4"/>  [<strong>Severity = HIGH (CVSS 7.4)</strong>]</td>
            <td align="left">25 September, 2026</td>
          </tr>
          <tr>
            <td align="left">Cocos AI published <xref target="GHSA-Cocos-AI5"/>  [<strong>Severity = MODERATE (CVSS 6.3)</strong>]</td>
            <td align="left">25 September, 2026</td>
          </tr>
          <tr>
            <td align="left">CVE <xref target="CVE-2026-100835"/> published  [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">27 September, 2026</td>
          </tr>
          <tr>
            <td align="left">ENISA published EUVD <xref target="EUVD-2026-87851"/>  [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</td>
            <td align="left">27 September, 2026</td>
          </tr>
        </tbody>
      </table>
      <t><strong>Neither the GHSAs nor the CVEs have any dependency whatsoever on the considered threat model with <tt>WeakHash</tt>, <tt>WeakDH</tt>, or <tt>BadElement</tt>.</strong> They hold independent of those, i.e., with <tt>StrongHash</tt> and <tt>StrongDH</tt> and all good elements within a group.</t>
    </section>
    <section anchor="eu-enisa">
      <name>EU ENISA</name>
      <t>European Union's <eref target="https://euvd.enisa.europa.eu/homepage">ENISA</eref> has independently published <xref target="EUVD-2026-16488"/> with CVSS 7.5 to acknowledge this vulnerability.</t>
    </section>
    <section anchor="sec-cvss-scores">
      <name>Comparison with Other Vulnerabilities in Confidential Computing Literature</name>
      <t>Severity is based on <eref target="https://nvd.nist.gov/vuln-metrics/cvss">NIST metrics</eref>.</t>
      <table>
        <name>Comparison with other vulnerabilities in confidential computing literature</name>
        <thead>
          <tr>
            <th align="left">Vulnerability</th>
            <th align="left">CVE</th>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">
              <eref target="https://wiretap.fail/files/wiretap.pdf">wiretap.fail</eref></td>
            <td align="left">No CVE (<eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2025-10-28-001.html">Intel</eref> and <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3040.html">AMD</eref> announcements)</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://tee.fail/files/paper.pdf">TEE.fail</eref></td>
            <td align="left">No CVE</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://ddropattack.eu/ddrop.pdf">DDRop</eref></td>
            <td align="left">No CVE (<eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2026-08-11-001.html">Intel</eref> and <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3048.html">AMD</eref> announcements)</td>
            <td align="left">-</td>
            <td align="left">None</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://dl.acm.org/doi/10.1145/3658644.3690230">TDXdown</eref></td>
            <td align="left">
              <eref target="https://www.intel.com/content/www/us/en/security-center/announcement/intel-security-announcement-2024-10-08-001.html">Intel</eref></td>
            <td align="left">2.5</td>
            <td align="left">Low</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/staleus/staleus_usenix26.pdf">Staleus</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-54509">CVE-2025-54509</eref></td>
            <td align="left">4.0</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-6197">CVE-2025-61972</eref></td>
            <td align="left">4.2</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://badram.eu/badram.pdf">BadRAM</eref></td>
            <td align="left">
              <eref target="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3015.html">CVE-2024-21944</eref></td>
            <td align="left">5.3</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/breakfast/breakfast_oakland26.pdf">BreakFAST</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=CVE-2025-61971">CVE-2025-61971</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://xca-attacks.github.io/fabricked/fabricked_usenix26.pdf">Fabricked</eref></td>
            <td align="left">
              <eref target="https://www.cve.org/CVERecord?id=cve-2025-54510">CVE-2025-54510</eref></td>
            <td align="left">5.9</td>
            <td align="left">Medium</td>
          </tr>
          <tr>
            <td align="left">
              <eref target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">Intra-handshake.fail</eref></td>
            <td align="left">
              <xref target="CVE-2026-33697"/></td>
            <td align="left">7.5</td>
            <td align="left">High</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EarlyAttestationBleed"/></td>
            <td align="left">
              <xref target="CVE-2026-92701"/></td>
            <td align="left">9.1</td>
            <td align="left">Critical</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EarlyAttestationBleed"/></td>
            <td align="left">
              <xref target="CVE-2026-92702"/></td>
            <td align="left">9.1</td>
            <td align="left">Critical</td>
          </tr>
          <tr>
            <td align="left">
              <xref target="EarlyAttestationBleed"/></td>
            <td align="left">
              <xref target="GHSA-Edgeless-Systems2"/></td>
            <td align="left">9.0-10.0</td>
            <td align="left">Critical</td>
          </tr>
        </tbody>
      </table>
      <t>The comparison of the above with CVSS up to <strong>10.0</strong> for early attestation indicates that it is not mature yet compared to the rest of the confidential computing stack, and is currently one of the weakest links in the ecosystem.</t>
    </section>
    <section anchor="more-cves">
      <name>More CVEs</name>
      <t>Further formal analysis has led to the following potential CVEs for intra-handshake (aka early) attestation (currently under review and disclosure):</t>
      <table>
        <name>Expected CVEs for intra-handshake (aka early) attestation under review and disclosure</name>
        <thead>
          <tr>
            <th align="left">CVSS</th>
            <th align="left">Severity</th>
            <th align="left">Number of CVEs</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">9.0-10.0</td>
            <td align="left">Critical</td>
            <td align="left">1 (confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">9.8</td>
            <td align="left">Critical</td>
            <td align="left">1</td>
          </tr>
          <tr>
            <td align="left">8.7</td>
            <td align="left">High</td>
            <td align="left">1</td>
          </tr>
          <tr>
            <td align="left">7.8</td>
            <td align="left">High</td>
            <td align="left">1 (confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">7.5</td>
            <td align="left">High</td>
            <td align="left">5</td>
          </tr>
          <tr>
            <td align="left">7.4</td>
            <td align="left">High</td>
            <td align="left">9 (5 confirmed by developers)</td>
          </tr>
          <tr>
            <td align="left">6.3</td>
            <td align="left">Medium</td>
            <td align="left">7</td>
          </tr>
        </tbody>
      </table>
      <t>These are preliminary estimates of scores, not final assigned score. They are still under review.</t>
    </section>
    <section anchor="vulnerable-implementations">
      <name>Vulnerable Implementations</name>
      <t>As demonstrated in <xref target="Intra-handshake.fail"/> and <xref target="Intra-handshake.fail-repo"/>, at least the following intra-handshake implementations are vulnerable:</t>
      <ul spacing="normal">
        <li>
          <t><eref target="https://ai.meta.com/static-resource/private-processing-technical-whitepaper">Meta's AI</eref>: <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]</t>
        </li>
        <li>
          <t><eref target="https://github.com/edgelesssys/contrast">Edgeless Systems Contrast</eref>: <xref target="CVE-2026-100835"/> [<strong>Severity = CRITICAL (CVSS 9.1)</strong>]</t>
        </li>
      </ul>
      <t>If you are aware of any other intra-handshake attestation implementation, please let us know so that we can check and responsibly disclose the vulnerabilities to them.</t>
      <section anchor="archivedmitigated-implementations">
        <name>Archived/Mitigated Implementations</name>
        <t>The following intra-handshake implementations were vulnerable and have been <strong>archived</strong> or moved to <strong>post</strong>-handshake attestation:</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref>'s adopted project <eref target="https://github.com/ccc-attestation/attested-tls-poc">intra-handshake attestation</eref>: declared <eref target="https://github.com/CCC-Attestation/attested-tls-poc/pull/58">vulnerable to relay attacks</eref> and <strong>archived</strong></t>
          </li>
          <li>
            <t><eref target="https://github.com/ultravioletrs/cocos">Cocos AI &lt;= v0.8.2</eref>: <xref target="GHSA-Cocos-AI"/>  [<strong>Severity = HIGH (CVSS 7.8)</strong>], <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> [<strong>Severity = HIGH (CVSS 7.5)</strong>]; <strong>migrated</strong> to post-handshake attestation since v0.9.0</t>
          </li>
          <li>
            <t><eref target="https://github.com/Privasys/rustls">Privasys rustls &lt;= privasys-v0.2.0</eref>: <xref target="GHSA-Privasys-rustls"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>], <strong>archived</strong> and Privasys migrated to post-handshake attestation</t>
          </li>
          <li>
            <t><eref target="https://github.com/Privasys/go">Privasys go &lt;= privasys-v0.3.0-go1.26.5</eref>: <xref target="GHSA-Privasys-go"/> [<strong>Severity = HIGH (CVSS 7.4)</strong>], <strong>archived</strong> and Privasys migrated to post-handshake attestation</t>
          </li>
        </ul>
      </section>
    </section>
    <section anchor="vulnerable-protocol-specifications">
      <name>Vulnerable Protocol Specifications</name>
      <t>At least the following protocol specifications with intra-handshake attestation <em>path</em> are vulnerable to <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/>:</t>
      <ul spacing="normal">
        <li>
          <t><xref target="I-D.fossati-tls-attestation-09"/>: symbolic proof of insecurity; <xref target="I-D.fossati-tls-attestation-10"/> <strong>withdrawn</strong> after the CVE</t>
        </li>
        <li>
          <t><xref target="I-D.ritz-seat-facts"/>: symbolic proof of insecurity; draft <strong>archived</strong>
          </t>
          <ul spacing="normal">
            <li>
              <t>violates G3 property in our analysis</t>
            </li>
            <li>
              <t>unnecessary complexity is itself a security concern</t>
            </li>
          </ul>
        </li>
        <li>
          <t><xref target="I-D.fossati-seat-early-attestation"/>: symbolic and (paper-and-pen-based) computational proof of insecurity (originally done for -04 and applies also to -06)
          </t>
          <ul spacing="normal">
            <li>
              <t>As a SEAT WG participant pointed out, please note that both <xref target="CVE-2026-33697"/> and <xref target="EUVD-2026-16488"/> contain a link to <xref target="GHSA-Cocos-AI"/> that contains a link to <xref target="SEAT-vulnerability-report"/> that contains the G3 property (cf. <xref target="sec-corr-goals"/>) that this draft does not satisfy.</t>
            </li>
            <li>
              <t>Some WG participants successfully reproduced the vulnerability by substituting the right value of <tt>rdata</tt> in the shared formal model <xref target="Intra-handshake.fail-repo"/> that led to the CVE.</t>
            </li>
            <li>
              <t>An informal reasoning is that binder is not <strong>directly</strong> derived from any <strong>shared secret</strong> in this draft.</t>
            </li>
            <li>
              <t><strong>Unnecessary complexity</strong> is itself a security concern</t>
            </li>
          </ul>
        </li>
      </ul>
    </section>
    <section anchor="binding-levels">
      <name>Binding Levels</name>
      <ol spacing="normal" type="1"><li>
          <t>DH shared secret (<tt>gxy</tt>) used as shared secret between client and server</t>
        </li>
        <li>
          <t>Handshake traffic key (<tt>htsc</tt>) used for encryption of handshake messages</t>
        </li>
        <li>
          <t>Application traffic key (<tt>atsc</tt>) used for encryption of application data</t>
        </li>
      </ol>
      <t>Please see Sec. 6.2 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="sec-corr-goals">
      <name>Security Properties (Correlation Goals)</name>
      <t>We consider TLS Server as RATS Attester, which is typical in confidential computing.</t>
      <ol spacing="normal" type="1"><li>
          <t>Correlation of Evidence to a DH Shared Secret (G1)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Handshake Traffic Key (G2)</t>
        </li>
        <li>
          <t>Correlation of Evidence to Client’s Application Traffic Key (G3)</t>
        </li>
      </ol>
      <t>Please see Sec. 6.3 of <xref target="Intra-handshake.fail"/> for details.</t>
    </section>
    <section anchor="main-results">
      <name>Main Results</name>
      <ul spacing="normal">
        <li>
          <t>All analyzed binding mechanisms and the corresponding implementations of intra-handshake attestation are vulnerable to relay attacks.</t>
        </li>
        <li>
          <t>Early exporter helps achieve level 1 binding.</t>
        </li>
        <li>
          <t>Our proposed mechanism helps achieve level 2 binding.</t>
        </li>
        <li>
          <t>It may not be possible to achieve level 3 in intra-handshake attestation alone without additional assumptions.</t>
        </li>
      </ul>
      <table>
        <name>Main results</name>
        <thead>
          <tr>
            <th align="left">Property</th>
            <th align="left">Mechanism #1,2,4,6</th>
            <th align="left">Mechanism #3,5,7</th>
            <th align="left">Proposed mechanism</th>
          </tr>
        </thead>
        <tbody>
          <tr>
            <td align="left">G1 : Correlation of Evidence to <tt>gxy</tt></td>
            <td align="left">❌</td>
            <td align="left">✅</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G2 : Correlation of Evidence to <tt>kch</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">✅</td>
          </tr>
          <tr>
            <td align="left">G3 : Correlation of Evidence to <tt>kc</tt></td>
            <td align="left">❌</td>
            <td align="left">❌</td>
            <td align="left">❌</td>
          </tr>
        </tbody>
      </table>
      <t>Please see Sec. 7.1 and Figure 5 of <xref target="Intra-handshake.fail"/> for details of attacks.</t>
      <section anchor="expected-results">
        <name>Expected Results</name>
        <table>
          <name>Expected results</name>
          <thead>
            <tr>
              <th align="left">No.</th>
              <th align="left">Binding mechanism</th>
              <th align="left">Artifacts</th>
              <th align="left">Expected results</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">1.</td>
              <td align="left">Client’s TLS nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/">binder1</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder1/log.txt">binder1</eref></td>
            </tr>
            <tr>
              <td align="left">2.</td>
              <td align="left">Client’s attestation nonce</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/">binder2</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder2/log.txt">binder2</eref></td>
            </tr>
            <tr>
              <td align="left">3.</td>
              <td align="left">Early exporter</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/">binder3</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder3/log.txt">binder3</eref></td>
            </tr>
            <tr>
              <td align="left">4.</td>
              <td align="left">Server’s public key</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/">binder4</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder4/log.txt">binder4</eref></td>
            </tr>
            <tr>
              <td align="left">5.</td>
              <td align="left">Combination of #2 and #3</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/">binder5</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder5/log.txt">binder5</eref></td>
            </tr>
            <tr>
              <td align="left">6.</td>
              <td align="left">Combination of #2 and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/">binder6</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder6/log.txt">binder6</eref></td>
            </tr>
            <tr>
              <td align="left">7.</td>
              <td align="left">Combination of #2, #3, and #4</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/">binder7</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/binder7/log.txt">binder7</eref></td>
            </tr>
            <tr>
              <td align="left">8.</td>
              <td align="left">Proposed</td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/">proposal</eref></td>
              <td align="left">
                <eref target="https://github.com/muhammad-usama-sardar/intra-handshake.fail/tree/main/proposal/log.txt">proposal</eref></td>
            </tr>
          </tbody>
        </table>
      </section>
    </section>
    <section anchor="implications-of-findings">
      <name>Implications of Findings</name>
      <section anchor="implications-of-findings-for-ietf-seat-wg">
        <name>Implications of Findings for IETF SEAT WG</name>
        <ul spacing="normal">
          <li>
            <t>We believe post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>, can achieve level 3 binding.</t>
          </li>
          <li>
            <t>The research suggests that recent hybrid proposals (combination of intra-handshake attestation and post-handshake attestation) <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> may add <strong>unnecessary complexity</strong> of intra-handshake attestation without adding any security benefit compared to post-handshake attestation alone, such as <eref target="https://datatracker.ietf.org/doc/draft-fossati-seat-expat/">draft-fossati-seat-expat</eref>. We are not aware of any <strong>security property</strong> that hybrid proposals can achieve that post-handshake attestation alone cannot achieve.</t>
          </li>
          <li>
            <t>As demonstrated by our symbolic analysis using ProVerif, the protocol specifications <xref target="I-D.fossati-seat-early-attestation"/> and <xref target="I-D.ritz-seat-facts"/> remain vulnerable to CVE-2026-33697. We have also proved that <xref target="I-D.fossati-seat-early-attestation-04"/> and <xref target="I-D.fossati-seat-early-attestation"/> violate the security theorems in the computational model.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-lake-wg">
        <name>Implications of Findings for IETF LAKE WG</name>
        <ul spacing="normal">
          <li>
            <t>Similar problems occur for protocol specification <eref target="https://datatracker.ietf.org/doc/draft-ietf-lake-ra/">lake-ra</eref>.</t>
          </li>
        </ul>
      </section>
      <section anchor="implications-of-findings-for-ietf-tls-wg">
        <name>Implications of Findings for IETF TLS WG</name>
        <ul spacing="normal">
          <li>
            <t><xref target="I-D.fossati-tls-attestation-09"/> is vulnerable to <xref target="CVE-2026-33697"/>. Thankfully, the authors have withdrawn <xref target="I-D.fossati-tls-attestation-10"/>.</t>
          </li>
          <li>
            <t>Remote attestation <em>within</em> the handshake is very dangerous, since to our knowledge, it is one of the highest scored published vulnerabilities in confidential computing literature (see <xref target="sec-cvss-scores"/>). For reference, <strong>Heartbleed</strong> was <strong>7.5 CVSS</strong>.</t>
          </li>
        </ul>
        <artwork><![CDATA[
Given the high- and critical-severity vulnerabilities, we recommend
that the developers and maintainers of intra-handshake attestation MUST
urgently move to post-handshake attestation.
]]></artwork>
      </section>
      <section anchor="implications-of-findings-for-agent2agent">
        <name>Implications of Findings for Agent2Agent</name>
        <t>The findings of published CVEs/GHSAs up to 10.0 (presented in <xref target="sec-credits"/>) show that intra-handshake attestation can introduce significant security risks for AI agents when relied upon as a security mechanism.</t>
        <t>Attestation can provide evidence about an agent’s technical state, but such evidence should not be equated with governability. For a relying party, governability also depends on whether the agent’s identity, authority and permissions remain aligned with the intended interaction, whether responsibility for its actions can be attributed, and whether meaningful intervention remains possible. The findings in this draft reinforce that distinction by showing that even the binding between attestation evidence and the intended session can fail. Successful attestation should therefore be treated as one input into governance, rather than as sufficient evidence that an AI agent remains under effective control.</t>
      </section>
    </section>
    <section anchor="technical-details">
      <name>Technical Details</name>
      <section anchor="tool">
        <name>Tool</name>
        <t>We use state-of-the-art symbolic security analysis tool <eref target="https://ieeexplore.ieee.org/document/9833653">ProVerif</eref> for the specification of the protocols.</t>
      </section>
      <section anchor="modeling">
        <name>Modeling</name>
        <t>The formal model uses the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work as the starting point to focus on relay attacks in intra-handshake attestation in this work.
The rationale is that we consider it more useful to show the added value of this contribution to the community by using the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> as the baseline, rather than showing the same diversion attacks from <xref target="ID-Crisis"/>, and the discovered CVE (<xref target="CVE-2026-33697"/>) -- which the previous analysis could not find -- practically demonstrates the added value.
This modeling choice makes it clear that even with the diversion attacks fixed, high-severity relay attacks would still remain in intra-handshake attestation.</t>
        <t>Note: Similar to the <eref target="https://github.com/CCC-Attestation/formal-spec-id-crisis/tree/main/TLS-a/fix">fixed version of diversion attacks in intra-handshake attestation</eref> from our previous work, we model non-PSK-based handshake.
From <xref target="ID-Crisis"/>:</t>
        <ul empty="true">
          <li>
            <t>For modeling TLS 1.3, we consider handshakes based on Diffie-Hellman over either finite fields or elliptic curves, represented as (EC)DHE. This is because we are unaware of any publicly available specification or implementation of attested TLS with PSK-based handshakes.</t>
          </li>
        </ul>
        <t>While it would be nice to model PSK-based handshake, the rationale is that the correlation properties studied in this work do not necessarily require it.</t>
        <t>Note: The artifacts consider the case of server authentication only, as client authentication is optional in TLS 1.3. No claims are made about other configurations.</t>
      </section>
      <section anchor="properties">
        <name>Properties</name>
        <t>Properties in <xref target="Intra-handshake.fail"/> are complemetary to properties in <xref target="ID-Crisis"/>. Sec. 8 of <xref target="ID-Crisis"/> mentions:</t>
        <ul empty="true">
          <li>
            <t>We emphasize that both diversion and relay attacks are orthogonal and thus the two works are complementary.</t>
          </li>
        </ul>
      </section>
      <section anchor="technical-vulnerability-report">
        <name>Technical Vulnerability Report</name>
        <t>Technical vulnerability report is available at <xref target="Intra-handshake.fail"/>. It is accepted for publication at ESORICS 2026.</t>
        <section anchor="vulnerabilities">
          <name>Vulnerabilities</name>
          <t>Sec. 7.1 of <xref target="Intra-handshake.fail"/> presents the technical details with abstract attack traces of the vulnerabilities.</t>
        </section>
        <section anchor="mitigation">
          <name>Mitigation</name>
          <t>Sec. 7.2 of <xref target="Intra-handshake.fail"/> presents the technical details of the proposed mitigation.</t>
        </section>
      </section>
      <section anchor="artifacts">
        <name>Artifacts</name>
        <t>Artifacts are available at <xref target="Intra-handshake.fail-repo"/> under Apache-2.0 License.</t>
      </section>
    </section>
    <section anchor="sec-news">
      <name>Media Coverage</name>
      <t>Several cybersecurity and media professionals and bloggers have covered the vulnerabilities to protect the community from the harm of early attestation.</t>
      <t>If you have written an article on this and would like to be added here, please send us a PR at <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail">https://github.com/muhammad-usama-sardar/intra-handshake-fail</eref> or an email with the subject "Media coverage of CVE-2026-100835/EarlyAttestationBleed/Intra-handshake.fail."</t>
      <section anchor="edgeless-systems-cve-2026-100835">
        <name>Edgeless Systems (CVE-2026-100835)</name>
        <ul spacing="normal">
          <li>
            <t><eref target="https://radar.offseq.com/threat/contrast-before-1160-is-susceptible-to-remote-attestation-relay-attacks-cve-2026-100835-3833ee713219f7e3">Threat radar</eref></t>
          </li>
          <li>
            <t><eref target="https://buttondown.com/vulnfeed/archive/vulnfeed-2-critical-cves-2026-09-27-0400-utc/">vulnfeed</eref></t>
          </li>
          <li>
            <t><eref target="https://www.ervik.as/cves/CVE-2026-100835">ervik</eref></t>
          </li>
          <li>
            <t><eref target="https://securityvulnerability.io/vulnerability/CVE-2026-100835">securityvulnerability.io</eref></t>
          </li>
          <li>
            <t>CIRCL's <eref target="https://vulnerability.circl.lu/vuln/cve-2026-100835">vulnerability</eref></t>
          </li>
        </ul>
      </section>
      <section anchor="earlyattestationbleed-1">
        <name>EarlyAttestationBleed</name>
        <t><xref target="EarlyAttestationBleed"/></t>
        <ul spacing="normal">
          <li>
            <t>(German) <eref target="https://cybersecurity-news.de/cve-2026-92701-trusted-execution-environments-0-8-2/">Cybersecurity news (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t>(German) <eref target="https://cybersecurity-news.de/cve-2026-92702-cocos-ai-0-8-2/">Cybersecurity news (CVE-2026-92702)</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://www.anquan114.com/archives/7429">Security 114</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://mp.weixin.qq.com/s/31Glxqr6ofHylTyrtNsuaQ">KK says security</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="mp.weixin.qq.com/s/REtESPngXemSro0hjIZyxw">Safe Meow Station</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://mp.weixin.qq.com/s/864dwIXF5IY04q7ig4uBwg">Digital World Information</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://mp.weixin.qq.com/s/864dwIXF5IY04q7ig4uBwg">Shusei Consulting</eref></t>
          </li>
          <li>
            <t><eref target="https://freenode.net/digest/518">Freenode 518</eref></t>
          </li>
          <li>
            <t><eref target="https://freenode.net/digest/571">Freenode 571</eref></t>
          </li>
          <li>
            <t><eref target="https://collective.flashbots.net/t/earlyattestationbleed-paper-review/6054">Flashbots</eref></t>
          </li>
          <li>
            <t>(Japanese) <eref target="https://www.rich-wise.co.jp/cve-info/cve-2026-92701-intel-tdx%E3%81%AE%E8%84%86%E5%BC%B1%E6%80%A7%E3%81%AB%E3%82%88%E3%82%8A%E3%82%BB%E3%82%AD%E3%83%A5%E3%83%AA%E3%83%86%E3%82%A3%E5%AF%BE%E7%AD%96%E3%82%92%E8%AC%9B%E3%81%98%E3%82%8B/">Rich &amp; Wise with Socrates and Plato</eref></t>
          </li>
          <li>
            <t><eref target="https://app.opencve.io/cve/CVE-2026-92701">OpenCVE (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t><eref target="https://app.opencve.io/cve/CVE-2026-92702">OpenCVE (CVE-2026-92702)</eref></t>
          </li>
          <li>
            <t>CIRCL's <eref target="https://vulnerability.circl.lu/vuln/CVE-2026-92701">vulnerability.circl.lu (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t>CIRCL's <eref target="https://vulnerability.circl.lu/vuln/CVE-2026-92702">vulnerability.circl.lu (CVE-2026-92702)</eref></t>
          </li>
          <li>
            <t>GCVE's <eref target="https://db.gcve.eu/vuln/cve-2026-92701">db.gcve.eu (CVE-2026-92701)</eref></t>
          </li>
          <li>
            <t>GCVE's <eref target="https://db.gcve.eu/vuln/cve-2026-92702">db.gcve.eu (CVE-2026-92702)</eref></t>
          </li>
        </ul>
      </section>
      <section anchor="intra-handshakefail-2">
        <name>Intra-handshake.fail</name>
        <t><xref target="Intra-handshake.fail"/></t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref></t>
          </li>
          <li>
            <t>(Japanese) <eref target="https://blackhatnews.tokyo/archives/119915">BlackHatNewsTokyo</eref></t>
          </li>
          <li>
            <t>(Several languages) <eref target="https://hackernoon.com/attested-tls-was-supposed-to-be-the-last-trust-boundary-it-isnt-formal-methods-show-how">Hackernoon</eref></t>
          </li>
          <li>
            <t><eref target="https://podcasts.apple.com/eg/podcast/attested-tls-was-supposed-to-be-the-last-trust/id1698517643?i=1000776623286">Apple podcast</eref></t>
          </li>
          <li>
            <t><eref target="https://meterpreter.org/attested-tls-vulnerability-cve-2026-33697/">Information Security News</eref></t>
          </li>
          <li>
            <t><eref target="https://thenextgentechinsider.com/pulse/critical-flaw-discovered-in-confidential-computing-attestation-protocols">TheNextGenTechInsider</eref></t>
          </li>
          <li>
            <t><eref target="https://dailysecurityreview.com/resources/cve-2026-33697-attested-tls-relay-flaw-hits-whatsapp-cocos-ai/">DailySecurityReview</eref></t>
          </li>
          <li>
            <t><eref target="https://www.scworld.com/brief/confidential-computings-remote-attestation-protocol-may-have-fundamental-flaw">SC World</eref></t>
          </li>
          <li>
            <t><eref target="https://blogs.groupware.org.uk/01-Quantum-Inc/the-handshake-that-cant-keep-its-promise-why-confidential-computings-flaw-changes-the-data-sovereignty-conversation/">01 Quantum</eref></t>
          </li>
          <li>
            <t>(Russian) <eref target="https://www.securitylab.ru/news/574545.php">Security Lab</eref></t>
          </li>
          <li>
            <t>(German) <eref target="https://www.blogspan.net/confidential-computing-attestierung-relay-luecke/">blogspan</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://finance.sina.cn/tech/2026-07-04/detail-inifscxt9953361.d.html">Sina</eref></t>
          </li>
          <li>
            <t><eref target="https://data4biz.com/articles/una-falla-rompe-la-fiducia-del-confidential-computing">data4biz</eref></t>
          </li>
          <li>
            <t>(Russian) <eref target="https://www.itsec.ru/news/issledovateli-nashli-kriticheskuyu-uyazvimost-v-attested-tls">ITSec</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://post.smzdm.com/p/a82ol990/">smzdm</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://www.donews.com/news/detail/4/6621022.html">donews</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://i.ifeng.com/c/8uUfy0PMmqE">ifeng</eref></t>
          </li>
          <li>
            <t><eref target="https://www.dugganusa.com/post/confidential-computing-s-whole-pitch-is-trust-the-proof-not-the-cloud-two-years-of-formal-verifi">dugganusa</eref></t>
          </li>
          <li>
            <t><eref target="https://github.com/pduggusa/dugganusa-ietf/tree/main/cve-2026-33697-attestation">dugganusa repo</eref></t>
          </li>
          <li>
            <t><eref target="https://sploitus.com/exploit?id=92591A05-07BC-5015-BA3D-B1347B35D684">spoitus</eref></t>
          </li>
          <li>
            <t><eref target="https://news.lavx.hu/article/attested-tls-research-exposes-a-weak-link-in-confidential-computing">lavx news</eref></t>
          </li>
          <li>
            <t><eref target="https://www.sohu.com/a/1045865934_122004016">sohu</eref></t>
          </li>
          <li>
            <t>(Persian) <eref target="https://news.ditty.ir/news/attested-tls-relay-flaw-formal-methods/019f6221-26ca-7293-9ee9-5557b3c0b8f8">news.ditty</eref></t>
          </li>
          <li>
            <t>(Russian) <eref target="https://limpvpn.com/ru/news/attested-tls-whatsapp-privacy-flaw-2026">LiMP VPN</eref></t>
          </li>
          <li>
            <t><eref target="https://daily.dev/posts/kI6PoNzPx">daily.dev</eref></t>
          </li>
          <li>
            <t><eref target="https://warden.veritai.ch/news/researchers-find-attested-tls-flaws-that-weaken-confidential-computing-trust-model">warden</eref></t>
          </li>
          <li>
            <t><eref target="https://db.gcve.eu/sightings/?query=cve-2026-33697">GCVE.eu</eref></t>
          </li>
          <li>
            <t><eref target="https://vulnerability.circl.lu/vuln/CVE-2026-33697#sightings">vuln.lu</eref></t>
          </li>
          <li>
            <t><eref target="https://coderlegion.com/24087/intra-handshake-attestation-when-more-security-doesnt-mean-better-security">coderlegion</eref></t>
          </li>
          <li>
            <t><eref target="https://www.anjuna.io/blog/attested-tls-flaw-explained">Anjuna Security</eref></t>
          </li>
          <li>
            <t><eref target="https://privasys.org/blog/binding-attestation-to-the-tls-session/">Privasys</eref></t>
          </li>
          <li>
            <t><eref target="https://caution.co/blog/steve-attesting-the-session.html">Caution</eref></t>
          </li>
          <li>
            <t><eref target="https://freenode.net/digest/67">freenode</eref></t>
          </li>
          <li>
            <t>(Chinese) <eref target="https://blog.csdn.net/weixin_42376192/category_13096766.html">csdn</eref></t>
          </li>
          <li>
            <t><eref target="https://osintsights.com/confidential-computing-flaws-expose-trust-risks">osintsights</eref></t>
          </li>
          <li>
            <t>(Turkish) <eref target="https://hardwaremania.com/haber/arastirma-attested-tls-confidential-computing-icin-zayif-kaliyor/">hardwaremania</eref></t>
          </li>
          <li>
            <t><eref target="https://akber.com/sovereignty-in-the-cloud-is-an-illusion/">akber</eref></t>
          </li>
          <li>
            <t><eref target="https://www.ad-hoc-news.de/wissenschaft/cloud-souveraenitaet-red-hat-startet-reifegrad-assessments-gegen/69691475">ad-hoc news</eref></t>
          </li>
          <li>
            <t><eref target="https://aimultiple.com/privacy-enhancing-technologies">AIMultiple</eref></t>
          </li>
        </ul>
        <section anchor="security-researchers">
          <name>Security Researchers</name>
          <t>Several credible security researchers, such as the following, have publicly attested to it.</t>
          <ul spacing="normal">
            <li>
              <t><eref target="https://www.linkedin.com/posts/michaelpak_confidential-computings-core-trust-mechanism-activity-7479415537836376064-q-A4/">Michael Pak</eref></t>
            </li>
            <li>
              <t><eref target="https://www.linkedin.com/posts/rrbranco_one-more-evidence-that-there-is-no-such-a-share-7479582122366615552-X0A5/">Rodrigo Branco</eref></t>
            </li>
            <li>
              <t><eref target="https://www.linkedin.com/posts/bart-preneel-4451412_on-the-limits-of-confidential-computing-share-7479549718294077440-wfi3/">Bart Preneel</eref></t>
            </li>
            <li>
              <t><eref target="https://www.linkedin.com/in/strufe/recent-activity/all/">Thorsten Strufe</eref></t>
            </li>
          </ul>
        </section>
        <section anchor="germanys-bsi">
          <name>Germany's BSI</name>
          <t>Germany's Federal Office for Information Security (Bundesamt für Sicherheit in der Informationstechnik) has attested to it. Carina Hilt, deputy press spokesperson at BSI, told <eref target="https://www.theregister.com/security/2026/07/04/confidential-computings-trust-mechanism-is-broken-the-fix-may-not-exist/5266056">The Register</eref>:</t>
          <artwork><![CDATA[
CC alone cannot satisfy the requirements for digital sovereignty.
]]></artwork>
          <artwork><![CDATA[
dependencies on other services, such as identity and key
management etc., are also not mitigated by CC.
]]></artwork>
          <t>CC refers to Confidential Computing, and attested TLS is the core trust mechanism of CC.</t>
        </section>
      </section>
    </section>
    <section anchor="reviews">
      <name>Reviews</name>
      <section anchor="conference-reviews">
        <name>Conference Reviews</name>
        <t><xref target="Intra-handshake.fail"/> has been peer-reviewed and accepted for publication at ESORICS 2026.</t>
      </section>
      <section anchor="ietfirtf">
        <name>IETF/IRTF</name>
        <t>Several participants of the IETF/IRTF have attested to the results by independently reproducing the results and reviewing the code. Some of the participants have independently reproduced the results by developing their own formal models and a proof-of-concept implementation of the vulnerabilities. Some of the messages are mentioned below (<strong>excluding</strong> the messages of authors of <xref target="Intra-handshake.fail"/>):</t>
        <ul spacing="normal">
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/">https://mailarchive.ietf.org/arch/msg/seat/B7F1Dj_rjs8I0Kg3yCp3Rap0XeE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/">https://mailarchive.ietf.org/arch/msg/seat/aEV9dUFotAQzHndk23qBcwBT3as/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/">https://mailarchive.ietf.org/arch/msg/seat/3Hv0E1sfXsvyBtl6AgY8j-SHHiw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/">https://mailarchive.ietf.org/arch/msg/seat/5LJ6i9svomnhpyPHWPejM7fMmXQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/">https://mailarchive.ietf.org/arch/msg/seat/V_YqGUY3fEwaFwwyfA9DshpHet0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/">https://mailarchive.ietf.org/arch/msg/seat/JF_cwmHHEbrJ_W5V6yEetWWnii4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/">https://mailarchive.ietf.org/arch/msg/seat/P_CYTycg0KG7cbKauFA-kVgX2jo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/">https://mailarchive.ietf.org/arch/msg/seat/ZJjJXpYwZ5nCVmz_W4FK6XiFEY4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/">https://mailarchive.ietf.org/arch/msg/seat/4so3LxHOOXHS1wnvhuoeWWgeCHk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/">https://mailarchive.ietf.org/arch/msg/seat/Q6Jmc58v0c1lDV3ujIY0AX_ofGA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/">https://mailarchive.ietf.org/arch/msg/seat/n4Me5QPCvwhxcEJndWePyishcoo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/">https://mailarchive.ietf.org/arch/msg/seat/beRzNNvwMifkRfJPfxecGoHpTDs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/">https://mailarchive.ietf.org/arch/msg/seat/aFCo4BMRDSUynvN9AQJatPjnXag/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/">https://mailarchive.ietf.org/arch/msg/seat/wb_Ys9MZd9u9oM2Bk-8tv7fvXGg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/">https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/">https://mailarchive.ietf.org/arch/msg/seat/2uUuaD1DygjNDM4GT_-rYbwTiJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/">https://mailarchive.ietf.org/arch/msg/seat/pB39abN1QrH4_ATM_E78vxPTuxk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/">https://mailarchive.ietf.org/arch/msg/seat/PxKCxMHe-SAiR9uhOOllrK4mUA4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/">https://mailarchive.ietf.org/arch/msg/seat/T1xupUBwqYEBSHCTXgSHXZtdqz8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/">https://mailarchive.ietf.org/arch/msg/seat/hRw46FwgmVdi9fqZm2fjKbln_IA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/">https://mailarchive.ietf.org/arch/msg/seat/UG7yE_klmRSxNy2HX6fzuFonDjM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/">https://mailarchive.ietf.org/arch/msg/seat/2hpeIldeFfE6o9q6L9Vkt00ACKA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/">https://mailarchive.ietf.org/arch/msg/seat/gc2ij0vboehS_-v10-SNslxaZC0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/">https://mailarchive.ietf.org/arch/msg/seat/oO4mAfq5HJZptDDNrSnd7zDdX18/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/">https://mailarchive.ietf.org/arch/msg/seat/XuJc_yEJPCMIuYcv2OM7XDogRCU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/">https://mailarchive.ietf.org/arch/msg/seat/nVHlnbFIEh-cPQeMuDVOqx5YvWQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/">https://mailarchive.ietf.org/arch/msg/seat/xVU3C7qUOngcip7B4ZO5MJUT9Xg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/">https://mailarchive.ietf.org/arch/msg/seat/1gCcPw-7NopDRzzBzA3dFIgo3Rs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/">https://mailarchive.ietf.org/arch/msg/seat/t8aobzB374lWiLzrVrORY7kGYyQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/">https://mailarchive.ietf.org/arch/msg/seat/m3UyB6XLQzxaucejE_o8Pn41uSI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/">https://mailarchive.ietf.org/arch/msg/seat/gqHqcbbKva_oGE-jEDZu243gf-4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/">https://mailarchive.ietf.org/arch/msg/seat/QD8QB1WVL-toNovGQ2Tk6DmmeEM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/">https://mailarchive.ietf.org/arch/msg/seat/vXN2pifZ5GXcC1xLwSfLCnUcFUE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/">https://mailarchive.ietf.org/arch/msg/seat/MGFXinb85XSaLkqjBEhmBZC7PcI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/">https://mailarchive.ietf.org/arch/msg/seat/js9VI4PB8yYmhg2ObaZB1a22fL4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/">https://mailarchive.ietf.org/arch/msg/seat/0RzORzX_VdlY5UQ_MWMmxZlnrjs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/">https://mailarchive.ietf.org/arch/msg/seat/W3MH1BDSUbm1WUPxGQihaIc1zTk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/">https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/">https://mailarchive.ietf.org/arch/msg/seat/7SYSuB83Kmr9qCb1V1F94n9W33U/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/">https://mailarchive.ietf.org/arch/msg/seat/0SWfg2YNEAOtJQ7Zsf1xl4O-AOo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/">https://mailarchive.ietf.org/arch/msg/seat/1mfNw-bw8KsdJbl4saL99Fz4iec/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/">https://mailarchive.ietf.org/arch/msg/seat/VyifG8zP5aworb_S1NR9FEUEXW0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/">https://mailarchive.ietf.org/arch/msg/seat/CYwvM75z6rTId2A3ZZvZJmHxOig/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/">https://mailarchive.ietf.org/arch/msg/ufmrg/29xFZX5C4oSGkpZAvXT_7YLW2Vc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/">https://mailarchive.ietf.org/arch/msg/seat/u1HxYW9cJfVpi3Cf9q06ehwpYGE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/">https://mailarchive.ietf.org/arch/msg/seat/SG_A0016a-KMnXAkGtMUxokZmjc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/">https://mailarchive.ietf.org/arch/msg/seat/3w7-OW2CAVr0-QBz97eAMxB_nMI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/">https://mailarchive.ietf.org/arch/msg/seat/UnybcafvQ2D-IhUfTV228WQFNhA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/">https://mailarchive.ietf.org/arch/msg/seat/rmVNeFbjax26l31n5pitHIxOQkk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/">https://mailarchive.ietf.org/arch/msg/seat/DghJdG3ysbPFKMQe8czz-tcIMq0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/">https://mailarchive.ietf.org/arch/msg/seat/rZLacid2wnEtaJwSbiIIft3T0FI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/">https://mailarchive.ietf.org/arch/msg/seat/_kEBODNsTWjgadb5xnlj86dvhcs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/">https://mailarchive.ietf.org/arch/msg/seat/qP3XC0MarFFA3SMbBpWWJtxACNA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/">https://mailarchive.ietf.org/arch/msg/seat/kkjQhi4yvJ_iAwYrPw1crFh-m-0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/">https://mailarchive.ietf.org/arch/msg/seat/vBkdKtKzTt4F91VprfKIndgmT2o/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/">https://mailarchive.ietf.org/arch/msg/seat/Huu_AFu11BTrdxK3I8hmw2jjp8Q/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/">https://mailarchive.ietf.org/arch/msg/seat/oOnioxkB__QZIvhFn5naW6jIXzg/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/">https://mailarchive.ietf.org/arch/msg/seat/iWsCCAl8YZ-pOTA7siNUGsfliHQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/">https://mailarchive.ietf.org/arch/msg/seat/-HGPUR5CvuVWcOAg37cSxwoATm0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/">https://mailarchive.ietf.org/arch/msg/seat/LnLYE7bGQOmCxVXq6stiOtKwc1s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/">https://mailarchive.ietf.org/arch/msg/seat/o_bIJhOdB4j1g0nczxPZwFXtCo8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/">https://mailarchive.ietf.org/arch/msg/seat/hy4qVQJQGR82-bskQ_UGI6iel1Y/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3J3s_YFnf9IQ87Tv2c1q4f36xKQ/">https://mailarchive.ietf.org/arch/msg/seat/3J3s_YFnf9IQ87Tv2c1q4f36xKQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JWKMYY1YG1E2iS_HyQ4rDmOsDGw/">https://mailarchive.ietf.org/arch/msg/seat/JWKMYY1YG1E2iS_HyQ4rDmOsDGw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/rK1nDSewAbVL_weOp98knYZcg6s/">https://mailarchive.ietf.org/arch/msg/seat/rK1nDSewAbVL_weOp98knYZcg6s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/Wjuz0fIj8tjYocUmiZZXcSwwFHw/">https://mailarchive.ietf.org/arch/msg/seat/Wjuz0fIj8tjYocUmiZZXcSwwFHw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SYiV4KZNr20re6QkGmyWS3pPteA/">https://mailarchive.ietf.org/arch/msg/seat/SYiV4KZNr20re6QkGmyWS3pPteA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/ZYgxm1ibt6p4dL7xF1YNdl0XSpc/">https://mailarchive.ietf.org/arch/msg/seat/ZYgxm1ibt6p4dL7xF1YNdl0XSpc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/6LKgOp22YRxGTYb-i-BxiMGzMW4/">https://mailarchive.ietf.org/arch/msg/seat/6LKgOp22YRxGTYb-i-BxiMGzMW4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3oHcKPtXLfBUYCZoN1nnO6e1F-s/">https://mailarchive.ietf.org/arch/msg/seat/3oHcKPtXLfBUYCZoN1nnO6e1F-s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/aSybH9ihnNjN7SjdhhY_XtxhMtc/">https://mailarchive.ietf.org/arch/msg/seat/aSybH9ihnNjN7SjdhhY_XtxhMtc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/d_G8r7LMGjA45BPexZwsfmmAtJY/">https://mailarchive.ietf.org/arch/msg/seat/d_G8r7LMGjA45BPexZwsfmmAtJY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/u-za86_YJ0spwBXBwTVQzwiOCrU/">https://mailarchive.ietf.org/arch/msg/seat/u-za86_YJ0spwBXBwTVQzwiOCrU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/P4IMdvCx8lSEKrCiJIjbpBCRr4g/">https://mailarchive.ietf.org/arch/msg/seat/P4IMdvCx8lSEKrCiJIjbpBCRr4g/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-AO9yFJoflV1wDwwch45dmqkmyo/">https://mailarchive.ietf.org/arch/msg/seat/-AO9yFJoflV1wDwwch45dmqkmyo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/H0LqHfBasQml69Y-9Zl_njfsE8s/">https://mailarchive.ietf.org/arch/msg/seat/H0LqHfBasQml69Y-9Zl_njfsE8s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/3hOGlYyc_yntmvT0tjYxldlwaxM/">https://mailarchive.ietf.org/arch/msg/seat/3hOGlYyc_yntmvT0tjYxldlwaxM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/JbwL9cdl6fiP0vBGgASUUDmaPy8/">https://mailarchive.ietf.org/arch/msg/seat/JbwL9cdl6fiP0vBGgASUUDmaPy8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/TtewHbMGKBQOKD2sqrgTrnpCOkI/">https://mailarchive.ietf.org/arch/msg/seat/TtewHbMGKBQOKD2sqrgTrnpCOkI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/UsIj6o7wf4hX_uCL51TCTv-wFxU/">https://mailarchive.ietf.org/arch/msg/seat/UsIj6o7wf4hX_uCL51TCTv-wFxU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/a6c8D6PBDRe0x4DAqXM3t4EPc4c/">https://mailarchive.ietf.org/arch/msg/seat/a6c8D6PBDRe0x4DAqXM3t4EPc4c/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/prB537Jht2kELVCSrTRktjbp7Y4/">https://mailarchive.ietf.org/arch/msg/seat/prB537Jht2kELVCSrTRktjbp7Y4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/RPnKYfUCD_MRw3hnA00zg684yGM/">https://mailarchive.ietf.org/arch/msg/seat/RPnKYfUCD_MRw3hnA00zg684yGM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/nMH_0sLLU5MekoEnzWKJnIJmaSk/">https://mailarchive.ietf.org/arch/msg/seat/nMH_0sLLU5MekoEnzWKJnIJmaSk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/GJCA31mgAehlgFPRu_yHA10lKPI/">https://mailarchive.ietf.org/arch/msg/seat/GJCA31mgAehlgFPRu_yHA10lKPI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/9f-21JMK6s1Pdcob6mPo06rNwmQ/">https://mailarchive.ietf.org/arch/msg/seat/9f-21JMK6s1Pdcob6mPo06rNwmQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/8qq_GFT391IEbGZZQUtYMONX9U0/">https://mailarchive.ietf.org/arch/msg/seat/8qq_GFT391IEbGZZQUtYMONX9U0/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xzu2UlClYMkG8gNSOClxGJgwnOI/">https://mailarchive.ietf.org/arch/msg/seat/xzu2UlClYMkG8gNSOClxGJgwnOI/</eref></t>
          </li>
          <li>
            <t>Exploit: <eref target="https://mailarchive.ietf.org/arch/msg/seat/MfxWpRtlTqPElX8vX4v8uiN65TU/">https://mailarchive.ietf.org/arch/msg/seat/MfxWpRtlTqPElX8vX4v8uiN65TU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/PkU0jW_xHAF18rZmtZJ2A2p_wHs/">https://mailarchive.ietf.org/arch/msg/seat/PkU0jW_xHAF18rZmtZJ2A2p_wHs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/jZmdYKQlfherbhowIEmZRw2HF1c/">https://mailarchive.ietf.org/arch/msg/seat/jZmdYKQlfherbhowIEmZRw2HF1c/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/-0j6UpsD_CebqPPMNkDJCjySqEI/">https://mailarchive.ietf.org/arch/msg/seat/-0j6UpsD_CebqPPMNkDJCjySqEI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/ssDrZRFW4s6CSaYeA9ImH0PPQ10/">https://mailarchive.ietf.org/arch/msg/rats/ssDrZRFW4s6CSaYeA9ImH0PPQ10/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/OPBI_Wd-RoTzzdh5D0JZoWlNGI8/">https://mailarchive.ietf.org/arch/msg/rats/OPBI_Wd-RoTzzdh5D0JZoWlNGI8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/nfrdr1T9Pdp6D_kj2Et3XZk-hOY/">https://mailarchive.ietf.org/arch/msg/rats/nfrdr1T9Pdp6D_kj2Et3XZk-hOY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/gMMvtP1IXsXFfb0X5nMhRTaLLok/">https://mailarchive.ietf.org/arch/msg/rats/gMMvtP1IXsXFfb0X5nMhRTaLLok/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/yaGG4sVf4pCfJ0HNPPRv3Xg0cG8/">https://mailarchive.ietf.org/arch/msg/rats/yaGG4sVf4pCfJ0HNPPRv3Xg0cG8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/DaA1jDQNF-bdO5x-dkVbSzlHcD4/">https://mailarchive.ietf.org/arch/msg/rats/DaA1jDQNF-bdO5x-dkVbSzlHcD4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/ptkHZUDzSoYnD6R5zln6HcE1cv4/">https://mailarchive.ietf.org/arch/msg/rats/ptkHZUDzSoYnD6R5zln6HcE1cv4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/n1-mBLW1m4TKiGsQqOhOIkbNxVs/">https://mailarchive.ietf.org/arch/msg/seat/n1-mBLW1m4TKiGsQqOhOIkbNxVs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/mBHcB8YRR0HVcyihhjm11XqRhWE/">https://mailarchive.ietf.org/arch/msg/seat/mBHcB8YRR0HVcyihhjm11XqRhWE/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/zY3vdP_TZKZIdK_kpcrwWQuYf8s/">https://mailarchive.ietf.org/arch/msg/seat/zY3vdP_TZKZIdK_kpcrwWQuYf8s/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/QcXGunfoT1OKrBI_FRsgpNsXvn4/">https://mailarchive.ietf.org/arch/msg/seat/QcXGunfoT1OKrBI_FRsgpNsXvn4/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/FSh0tTa7h1NcaeVZENqz6wg45C8/">https://mailarchive.ietf.org/arch/msg/seat/FSh0tTa7h1NcaeVZENqz6wg45C8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5uos1xo5lkLisK-9RGJWLJaAnmk/">https://mailarchive.ietf.org/arch/msg/seat/5uos1xo5lkLisK-9RGJWLJaAnmk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/2Vyb3hcqRoJF4tLkJOxs2CueNuw/">https://mailarchive.ietf.org/arch/msg/seat/2Vyb3hcqRoJF4tLkJOxs2CueNuw/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/9mDNq-Fv3-9726qe_te0nfYKMaM/">https://mailarchive.ietf.org/arch/msg/seat/9mDNq-Fv3-9726qe_te0nfYKMaM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/KwtGScLIYvUCW2A0HxAS5s9XMMo/">https://mailarchive.ietf.org/arch/msg/seat/KwtGScLIYvUCW2A0HxAS5s9XMMo/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/SpLBEi5_nMr51gSng5oqS1uTlxU/">https://mailarchive.ietf.org/arch/msg/seat/SpLBEi5_nMr51gSng5oqS1uTlxU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/b2laJbuyFQQr6Q1nUCbpKa_PNz8/">https://mailarchive.ietf.org/arch/msg/seat/b2laJbuyFQQr6Q1nUCbpKa_PNz8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/V-3QA8_dX1A5mdKxoVy-1z_8RlA/">https://mailarchive.ietf.org/arch/msg/seat/V-3QA8_dX1A5mdKxoVy-1z_8RlA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/vjIo3JCMjHglRNaSSHNOqjKgDxs/">https://mailarchive.ietf.org/arch/msg/seat/vjIo3JCMjHglRNaSSHNOqjKgDxs/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/pE1j3aP-qvaUgT-Q88JextCIlcc/">https://mailarchive.ietf.org/arch/msg/seat/pE1j3aP-qvaUgT-Q88JextCIlcc/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/uojEp8S21Ftf2osLCJNoR8xPzKA/">https://mailarchive.ietf.org/arch/msg/seat/uojEp8S21Ftf2osLCJNoR8xPzKA/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/xP6PxDJhAH9bnefUjlKc0f96ak8/">https://mailarchive.ietf.org/arch/msg/seat/xP6PxDJhAH9bnefUjlKc0f96ak8/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/krTrXMiNIPyYzVDvlXlJB0UvaSk/">https://mailarchive.ietf.org/arch/msg/seat/krTrXMiNIPyYzVDvlXlJB0UvaSk/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/5dHBv3DyUy4Fprh71i90x6pHPCY/">https://mailarchive.ietf.org/arch/msg/seat/5dHBv3DyUy4Fprh71i90x6pHPCY/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/HErXLOWPTDmOK6RMVO8J0lEGCyU/">https://mailarchive.ietf.org/arch/msg/rats/HErXLOWPTDmOK6RMVO8J0lEGCyU/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/QqstD1bsKrZrfQ_VQU-Z9KhYnxM/">https://mailarchive.ietf.org/arch/msg/rats/QqstD1bsKrZrfQ_VQU-Z9KhYnxM/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/Oh4lBsX5wtnqPJM1cPOkt1mPOAQ/">https://mailarchive.ietf.org/arch/msg/rats/Oh4lBsX5wtnqPJM1cPOkt1mPOAQ/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/dMAZ-uAbZIlUxiDbO_0ZBVh4q90/">https://mailarchive.ietf.org/arch/msg/rats/dMAZ-uAbZIlUxiDbO_0ZBVh4q90/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/FRdzVOJ5OBs4M1yuFk_ntxYl1yI/">https://mailarchive.ietf.org/arch/msg/rats/FRdzVOJ5OBs4M1yuFk_ntxYl1yI/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/qr4w7FinCkG1qt27aCCjJKruP5E/">https://mailarchive.ietf.org/arch/msg/rats/qr4w7FinCkG1qt27aCCjJKruP5E/</eref></t>
          </li>
          <li>
            <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/mf_CtbtSDHPz3uMHRXele2vwYr8/">https://mailarchive.ietf.org/arch/msg/ufmrg/mf_CtbtSDHPz3uMHRXele2vwYr8/</eref></t>
          </li>
        </ul>
        <section anchor="main-questions">
          <name>Main Questions</name>
          <t>In short, five main questions have been raised by WG participants in support of our work:</t>
          <ul spacing="normal">
            <li>
              <t>What <strong>security property</strong> hybrid (intra- + post-handshake attestation) provides that post-handshake attestation alone cannot provide?</t>
            </li>
            <li>
              <t>Since continuous attestation is required in most use cases <xref target="CSA-eBPF"/> <xref target="MITRE-Continuous-Attestation"/>, how is <strong>additional complexity</strong> of <strong>intra</strong>-handshake attestation justified? Use cases with one-time attestation can be covered by doing attestation round immediately after Connection Establishment Time: see <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-6-2">reference</eref>.</t>
            </li>
            <li>
              <t>What is the benefit of doing <strong>signatures</strong> of remote attestation <strong>within</strong> the handshake (as this latency can be exploited)? We add that <strong>verification</strong> of signatures is also time consuming, which can be exploited too. See <eref target="https://www.ietf.org/archive/id/draft-usama-seat-intra-vs-post-04.html#section-4.2.4">reference</eref>.</t>
            </li>
            <li>
              <t>How evidence is bound to the secure channel without involving any <strong>shared secret</strong>? See <xref target="TLS-RA"/>.</t>
            </li>
            <li>
              <t>How does a verifying relying party get the legitimate PIIDs and CHIP_IDs?</t>
            </li>
          </ul>
        </section>
        <section anchor="guidance-text">
          <name>Guidance Text</name>
          <ul spacing="normal">
            <li>
              <t>Evidence MUST be bound to the secure channel. Failure to do so results in
relay attacks <xref target="CVE-2026-33697"/>, <xref target="EUVD-2026-16488"/>, <xref target="GHSA-Cocos-AI"/>.</t>
            </li>
            <li>
              <t>Verifier MUST have access to legitimate hardware identifiers of the
Attester. Failure to do so results in relay attacks <xref target="GHSA-Edgeless-Systems"/>.</t>
            </li>
            <li>
              <t>Verifier MUST carefully check the binding. Failure to do so results in
relay attacks <xref target="GHSA-Cocos-AI2"/>, <xref target="GHSA-Cocos-AI3"/>.</t>
            </li>
            <li>
              <t>Binder MUST contain shared secrets. Failure to do so results in relay
attacks <xref target="GHSA-Privasys-rustls"/>, <xref target="GHSA-Privasys-go"/>, <xref target="GHSA-Privasys-eov"/>, <xref target="GHSA-Privasys-eom"/>, <xref target="GHSA-Privasys-rtc"/>, <xref target="GHSA-Privasys-rtc-da"/>, <xref target="GHSA-Privasys-rtc-tcu"/>.</t>
            </li>
          </ul>
        </section>
      </section>
      <section anchor="researchers-outside-of-ietfirtf">
        <name>Researchers outside of IETF/IRTF</name>
        <t>Some researchers have approached us confirming the proof-of-concept of the vulnerabilities in intra-handshake attestation. More information will be added once their pre-prints/papers are public.</t>
      </section>
    </section>
    <section anchor="security-considerations">
      <name>Security Considerations</name>
      <t>All of this document is about the <strong>insecurity</strong> of <strong>intra</strong>-handshake (aka early) attestation.</t>
      <t>By no means should the vendors mentioned in this draft be considered less secure than any other vendors implementing intra-handshake attestation solutions. In particular, those who have closed-source implementations are most likely more vulnerable than the open-source ones, since the former cannot easily be reviewed by the security community. Even extensive security reviews -- of closed-source implementations -- by cybersecurity firms often do not perform formal analysis, and thus such reviews may miss corner cases and subtle vulnerabilities.</t>
    </section>
    <section anchor="ethical-considerations">
      <name>Ethical Considerations</name>
      <t>We (i.e., the super set of all authors involved in this research, including but not limited to Muhammad Usama Sardar, Mariam Moustafa, Tuomas Aura, Viacheslav Dubeyko, Jean-Marie Jacquet, Songbo Bu, Chengxin Huang, Haowen Song, Kaya Ercihan, Dr. Kubilay Ahmet Küçük, Sylvain Bellemare, Eva C. M. Willems, Justin DESSENNES SAINTEN, Massimiliano Brighindi, Mikerah Quintyne-Collins, and Iman Schrock) are ethical researchers aiming to protect the community from the potential harm caused by the exploitability of the vulnerabilities in early attestation. We have <strong>responsibly disclosed</strong> the vulnerabilities to the respective developers and maintainers following their respective disclosure processes and provided them our proposed mitigations and requested them to take rapid action.</t>
      <t>We have released only the formal analysis for published CVE-2026-33697. To minimize exploit in the wild, we have not publicly released the proof-of-concept exploit code.</t>
      <t>We have not retrieved any real data from any real system. We have not released any key to any public forum or to any person.</t>
      <section anchor="evidence-of-explanation-of-vulnerabilities-to-the-authors-of-vulnerable-drafts">
        <name>Evidence of Explanation of Vulnerabilities to the Authors of Vulnerable Drafts</name>
        <t>To the best of our abilities, knowledge, and understanding, we have tried to explain the vulnerabilities to the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> first privately in several meetings and then later on publicly for at least half a year at several forums, including but not limited to CCC Attestation SIG and IETF/IRTF. Please see the (non-exhaustive list of) recordings <xref target="sec-recordings"/> and the archives <xref target="sec-archives"/> below. We sincerely thank the authors of <xref target="I-D.fossati-tls-attestation-10"/> for withdrawing their draft to protect further exploits mentioned in <xref target="sec-news"/>.
We also sincerely thank the author of <xref target="I-D.ritz-seat-facts"/> for archiving the draft.</t>
        <section anchor="sec-recordings">
          <name>Recordings</name>
          <table>
            <name>Evidence of several explanations of vulnerabilities to the authors of vulnerable drafts</name>
            <thead>
              <tr>
                <th align="left">Event/Host</th>
                <th align="left">Venue</th>
                <th align="left">Date(s)</th>
                <th align="left">Evidence</th>
              </tr>
            </thead>
            <tbody>
              <tr>
                <td align="left">System Boot and Security MC @ <eref target="https://lpc.events/event/20/">Linux Plumbers Conference 2026</eref></td>
                <td align="left">Prague, Czechia</td>
                <td align="left">5 Oct, 2026</td>
                <td align="left">
                  <eref target="https://lpc.events/event/20/contributions/2585/">abstract</eref>, slides, video</td>
              </tr>
              <tr>
                <td align="left">BoF @ <eref target="https://lpc.events/event/20/">Linux Plumbers Conference 2026</eref></td>
                <td align="left">Prague, Czechia</td>
                <td align="left">5 Oct, 2026</td>
                <td align="left">
                  <eref target="https://lpc.events/event/20/contributions/2640/">abstract</eref>, slides, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ga4gh.org/event/14th-plenary/">GA4GH 14th Plenary Meeting</eref></td>
                <td align="left">Singapore</td>
                <td align="left">28 Sept-2 Oct, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/415074362_Presentation_Safeguarding_GA4GH_Ecosystem_from_High-and_Critical-Severity_Vulnerabilities_in_Former_GIF_Design_for_Attested_TLS_draft-fossati-seat-early-attestation">slides</eref>, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fg-pet.gi.de/veranstaltung/16th-privacy-enhancing-techniques-convention">PET-CON 2026.2: 16th Privacy Enhancing Techniques Convention</eref></td>
                <td align="left">Lübeck, Germany</td>
                <td align="left">28-29 Sept, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/414897198_Presentation_EarlyAttestationBleed_Three_Critical-severity_Vulnerabilities_of_CVSS_90_in_Confidential_Computing">slides</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://sites.google.com/di.uniroma1.it/esorics2026/">ESORICS 2026</eref></td>
                <td align="left">Rome, Italy</td>
                <td align="left">14-18 Sept, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/414416257_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">slides</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/session/rats">IETF RATS Interim meeting</eref></td>
                <td align="left">Virtual</td>
                <td align="left">14 Sept, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/materials/slides-interim-2026-rats-03-sessa-protecting-the-rats-ecosystem-from-critical-severity-vulnerabilities-00">slides</eref>, <eref target="https://youtu.be/y5_SR0-DzH0?t=255">video</eref></td>
              </tr>
              <tr>
                <td align="left">Hackathon @ <eref target="https://summit.riot-os.org/2026/">RIOT Summit 2026</eref></td>
                <td align="left">Grenoble, France</td>
                <td align="left">4 September, 2026</td>
                <td align="left">
                  <eref target="https://notes.inria.fr/2ppogr2fTSKusRog3RXbPQ?view#topic-security-analysis-of-attested-tls-and-attested-edhoc">topic synopsis</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://summit.riot-os.org/2026/">RIOT Summit 2026</eref></td>
                <td align="left">Grenoble, France</td>
                <td align="left">2-4 September, 2026</td>
                <td align="left">
                  <eref target="https://summit.riot-os.org/2026/blog/speakers/muhammad-usama-sardar/">abstract</eref>, <eref target="https://www.researchgate.net/publication/413988306_Security_Analysis_of_Attested_TLS_and_Attested_EDHOC">slides</eref>, video</td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ga4gh.org/work_stream/data-security/">Data Security Work Stream (DSWS)</eref> at the <eref target="https://www.ga4gh.org/">Global Alliance for Genomics and Health (GA4GH)</eref></td>
                <td align="left">Virtual</td>
                <td align="left">24 Aug, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/413569575_High-Severity_Vulnerabilities_in_Former_GIF_Design_for_Attested_TLS_draft-fossati-seat-early-attestation">slides</eref>, <eref target="https://us02web.zoom.us/rec/share/UAn381deia-aMNmjGHhMqxocc1HcyF7ksLlaeeKefxO4bSC2mHPzwPQPYGe2dnZR.zfleYCmmtiteo_NS">video</eref></td>
              </tr>
              <tr>
                <td align="left">Confidential AI Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">21 July, 2026</td>
                <td align="left">
                  <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/odgd_xmhjQXiR_aLYdqtVvDJeF4/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">21 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-seat-binding-properties-of-expat-00.pdf">slides</eref>, <eref target="https://youtu.be/Fb5Hzh1mp1E?t=4189">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">IETF 126 Hackdemo Happy Hour</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">20 July, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://wiki.ietf.org/en/meeting/126/hackathon/hackdemo">demo</eref></td>
              </tr>
              <tr>
                <td align="left">Confidential Computing Public Side Meeting @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">20 July, 2026</td>
                <td align="left">
                  <eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">plan</eref>, <eref target="https://www.researchgate.net/publication/410954219_Proposed_RG_Confidential_Computing_for_Agentic_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hotrfc-sessa-15-confidential-computing-and-digital-sovereignty-00">slides</eref>, <eref target="https://youtu.be/FDHWRijxKso?t=3285">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ietf.org/meeting/hackathons/126-hackathon/">IETF 126 Hackathon</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/126/hackathon#cve-2026-33697-cvss-75-intra-handshakefail">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-hackathon-sessd-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/GRqyrDIEgEw?t=1340">video</eref></td>
              </tr>
              <tr>
                <td align="left">IEPG @ <eref target="https://www.ietf.org/meeting/126/">IETF 126</eref></td>
                <td align="left">Vienna, Austria</td>
                <td align="left">19 July, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00">slides</eref>, <eref target="https://youtu.be/g8q_u19vXzk?t=4404">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">Workshop</eref> @ <eref target="https://www.wissenschaftsnacht-dresden.de/en/">Dresden Science Night 2026</eref></td>
                <td align="left">Dresden</td>
                <td align="left">26 June, 2026</td>
                <td align="left">
                  <eref target="https://www.wissenschaftsnacht-dresden.de/programm/detailansicht/confidential-computing-15585">demo</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://output-dd.de/">Output 2026</eref></td>
                <td align="left">Dresden</td>
                <td align="left">25 June, 2026</td>
                <td align="left">
                  <eref target="https://output-dd.de/projekte/relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems/">demo</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://events.linuxfoundation.org/confidential-computing-summit/">Confidential Computing Summit 2026</eref> (presented by Jens Albers)</td>
                <td align="left">San Francisco, USA</td>
                <td align="left">23-24 June, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411851358_Standardization_of_Attested_TLS">poster</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://confidentialcontainers.org/">Confidential Containers Community Meeting</eref> @ <eref target="https://www.cncf.io/">Cloud Native Computing Foundation</eref></td>
                <td align="left">Virtual</td>
                <td align="left">30 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411849492_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref>, <eref target="https://zoom.us/rec/share/3thZhsRi-BZJL-GqjnwGzh7inbltuKIlpVjqMlWp6WRdMTZ66Z8p-8YjaaeOfbhX.CoH6YBukaKua0gkt">video</eref> around timestamp 00:27:00</td>
              </tr>
              <tr>
                <td align="left">GIF Project showcase @ <eref target="https://www.ga4gh.org/event/april-connect-2026/">GA4GH April Connect 2026</eref></td>
                <td align="left">Montreal, Canada (virtual)</td>
                <td align="left">17 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/412136610_Trusted_Research_Environment_TRE_Open_Suite">slides</eref>, <eref target="https://youtu.be/Kr9oxp1fdn0?t=1083">video</eref>, <eref target="https://www.ga4gh.org/document/arpril-connect-2026-meeting-report/">report</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://sos-vo.org/group/hotsos/">NSA Symposium on Hot Topics in the Science of Security (HotSoS) 2026</eref></td>
                <td align="left">Virtual</td>
                <td align="left">16 April, 2026</td>
                <td align="left">
                  <eref target="https://sos-vo.org/group/hotsos/2026/sardar">abstract</eref>, <eref target="https://sos-vo.org/system/files/2026-04/20260416_HotSoS%20%281%29.pdf">slides</eref>, <eref target="https://sos-vo.org/group/hotsos/2026/sardar">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fg-pet.gi.de/veranstaltung/15th-privacy-enhancing-techniques-convention">PET-CON 2026.1: 15th Privacy Enhancing Techniques Convention</eref></td>
                <td align="left">Karlsruhe, Germany</td>
                <td align="left">16-17 April, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411849502_Formal_Analysis_of_Attested_TLS">slides</eref>, <eref target="https://www.researchgate.net/publication/411852738_Formal_Analysis_of_Attested_TLS_and_Standardization_in_the_IETF">poster</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://gtmfs2026.sciencesconf.org/program?lang=en">GTMFS 2026: Annual Meeting of the WG "Formal Methods in Security"</eref></td>
                <td align="left">Luz-Saint-Sauveur, France</td>
                <td align="left">24-26 Mar, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/411853715_Relay_Attacks_in_Intra-handshake_Attestation">slides</eref></td>
              </tr>
              <tr>
                <td align="left">CFRG @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">19 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-cfrg-relay-attacks-00">slides</eref>, <eref target="https://youtu.be/IfKgbO74Lt4?t=6054">video</eref></td>
              </tr>
              <tr>
                <td align="left">SEAT @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref> (relay)</td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">17 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-seat-security-analysis-00">slides</eref>, <eref target="https://youtu.be/hX7genEkN7w?t=676">video</eref></td>
              </tr>
              <tr>
                <td align="left">Side meeting @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">16 Mar, 2026</td>
                <td align="left">
                  <eref target="https://www.researchgate.net/publication/403474373_Proposed_RG_Confidential_AI">slides</eref></td>
              </tr>
              <tr>
                <td align="left">LAKE @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">16 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-lake-formal-analysis-of-attested-edhoc-00">slides</eref>, <eref target="https://youtu.be/JzfLpbnhl0A?t=3117">video</eref></td>
              </tr>
              <tr>
                <td align="left">HotRFC @ <eref target="https://www.ietf.org/meeting/125/">IETF 125</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">15 Mar, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hotrfc-sessa-formal-proof-of-insecurity-of-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/OtOo7Nogisw?t=3514">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://www.ietf.org/meeting/hackathons/125-hackathon/">IETF 125 Hackathon</eref></td>
                <td align="left">Shenzhen, China (virtual)</td>
                <td align="left">14-15 Mar, 2026</td>
                <td align="left">
                  <eref target="https://wiki.ietf.org/en/meeting/125/hackathon#relay-attacks-in-intra-handshake-attestation-for-confidential-agentic-ai-systems">Hackathon project</eref>, <eref target="https://datatracker.ietf.org/meeting/125/materials/slides-125-hackathon-sessd-relay-attacks-in-intra-handshake-attestation-00">slides</eref>, <eref target="https://youtu.be/62A58qH19MI?t=2270">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">10 Feb, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksGen_20260210.pdf">slides</eref>; <eref target="https://www.youtube.com/watch?v=idqwb0hFlhs&amp;list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1061s">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/session/rats">IETF RATS Interim meeting</eref></td>
                <td align="left">Virtual</td>
                <td align="left">9 Feb, 2026</td>
                <td align="left">
                  <eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-01/materials/slides-interim-2026-rats-01-sessa-relayattacks-00.pdf">slides</eref>, <eref target="https://youtu.be/gURY61dViPw?t=1474">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://fosdem.org/2026/schedule/track/confidential-computing/">Confidential Computing</eref> devroom at <eref target="https://fosdem.org/2026/">FOSDEM 2026</eref></td>
                <td align="left">Brussels, Belgium</td>
                <td align="left">31 Jan-1 Feb, 2026</td>
                <td align="left">
                  <eref target="https://fosdem.org/2026/schedule/event/GHGFBM-attestedtls/">abstract</eref>, <eref target="https://fosdem.org/2026/events/attachments/GHGFBM-attestedtls/slides/267432/20260201_60u9e0n.pdf">slides</eref>, <eref target="https://video.fosdem.org/2026/ud6215/GHGFBM-attestedtls.av1.webm">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">27 Jan, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacksProposal_20260127.pdf">slides</eref>; <eref target="https://youtu.be/P04tLJcSxfM?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=434">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">13 Jan, 2026</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_RelayAttacks_20260113.pdf">slides</eref>; <eref target="https://youtu.be/cSrCZNyo7_g?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=1083">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">16 Dec, 2025</td>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation/meetings/blob/main/materials/MuhammadUsamaSardar_Binding_Properties_20251216.pdf">slides</eref>; <eref target="https://youtu.be/w_MrjMeHyP8?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=593">video</eref></td>
              </tr>
              <tr>
                <td align="left">
                  <eref target="https://github.com/CCC-Attestation">CCC Attestation SIG</eref></td>
                <td align="left">Virtual</td>
                <td align="left">2 Dec, 2025</td>
                <td align="left">
                  <eref target="https://github.com/muhammad-usama-sardar/CCC-Att-meetings/blob/main/materials/MuhammadUsamaSardar_Open_Questions_20251202.pdf">slides</eref>; <eref target="https://youtu.be/16aGZ-oZidg?list=PLmfkUJc39uMhZsNGmpx-qD-uCoQyMglIp&amp;t=2920">video</eref></td>
              </tr>
            </tbody>
          </table>
        </section>
        <section anchor="sec-archives">
          <name>Archives</name>
          <t>Since January, we have publicly informed the authors of vulnerable drafts <xref target="I-D.fossati-tls-attestation-09"/>, <xref target="I-D.fossati-seat-early-attestation"/>, and <xref target="I-D.ritz-seat-facts"/> and shared our results with the community for review and to raise awareness on high-severity vulnerabilities and apply appropriate mitigations for the safety of their users:</t>
          <section anchor="intra-handshakefail-3">
            <name>Intra-handshake.fail</name>
            <section anchor="ietfhttpswwwietforg">
              <name><eref target="https://www.ietf.org/">IETF</eref></name>
              <ul spacing="normal">
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">SEAT WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/rats/6gbqx0XY8WYrH3Mx4vO8n2-uKgY/">RATS WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/tls/8lyqHh9y7_Lv6b1iXhpUqYrp0M0/">TLS WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/lake/Tovtl7wgvzwJWT2I2ZwnhoIOnYQ/">LAKE WG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/saag/jBZVk7YySwpaFqydAfxW33kNZPY/">SAAG</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/practical-cybersecurity/d65WPaC0WbZRwxTBclnTkf7SmRs/">Practical Cybersecurity list</eref></t>
                </li>
                <li>
                  <t>Agent2agent list <eref target="https://mailarchive.ietf.org/arch/msg/agent2agent/ubz7uXCs--YzuSWyXNNsmWf_tSQ/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/agent2agent/xHhjA94fzed6ONIvPRgwTT-WRmA/">thread2</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/dmsc/QC2adIcYkxiTlniEcc7ggk86BAY/">DSMC list</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/hackathon/PIrJ2O_QqcNUAnMIn_Vh22ImWMc/">Hackathon</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/126attendees/V9BKZJ_DGkZPdlnjBaUeyluhbqQ/">126attendees</eref></t>
                </li>
              </ul>
            </section>
            <section anchor="irtfhttpswwwirtforg">
              <name><eref target="https://www.irtf.org/">IRTF</eref></name>
              <ul spacing="normal">
                <li>
                  <t>UFMRG: <eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZWK0uMM92OdwlPbgXBvQApDpe5Q/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZRhR7o1HrWxfGDfgRJMR65RBkDE/">thread2</eref></t>
                </li>
                <li>
                  <t>CFRG <eref target="https://mailarchive.ietf.org/arch/msg/cfrg/NbxHIw9H_xpSYbgfO_n7lVIFeWs/">thread1</eref> and <eref target="https://mailarchive.ietf.org/arch/msg/cfrg/U5YHd91lYjiqCTt9BZyVDNFeUpM/">thread2</eref></t>
                </li>
                <li>
                  <t><eref target="https://mailarchive.ietf.org/arch/msg/din/_8LE3Ru1xX16hgGJwryMTRwRoaA/">DINRG</eref></t>
                </li>
              </ul>
            </section>
            <section anchor="ccchttpsconfidentialcomputingio">
              <name><eref target="https://confidentialcomputing.io/">CCC</eref></name>
              <ul spacing="normal">
                <li>
                  <t>Attestation SIG: <eref target="https://lists.confidentialcomputing.io/g/attestation/topic/117207133">thread1</eref> and <eref target="https://lists.confidentialcomputing.io/g/attestation/message/334">thread2</eref></t>
                </li>
                <li>
                  <t>TAC: <eref target="https://lists.confidentialcomputing.io/g/tac/topic/117932193">thread1</eref> and <eref target="https://lists.confidentialcomputing.io/g/tac/topic/120068850">thread2</eref></t>
                </li>
              </ul>
            </section>
            <section anchor="ocphttpswwwopencomputeorg">
              <name><eref target="https://www.opencompute.org/">OCP</eref></name>
              <ul spacing="normal">
                <li>
                  <t>OCP Security: <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/117932716">message1</eref>, <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120069056">message2</eref>, <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120483814">message3</eref> and <eref target="https://ocp-all.groups.io/g/OCP-Security/topic/intra_handshake_fail/120524635">message4</eref></t>
                </li>
              </ul>
            </section>
          </section>
          <section anchor="earlyattestationbleed-2">
            <name>EarlyAttestationBleed</name>
            <ul spacing="normal">
              <li>
                <t><eref target="https://mailarchive.ietf.org/arch/msg/ufmrg/ZQKdp07P4UeTushAC1q9eBBtp0s/">IRTF UFMRG</eref></t>
              </li>
              <li>
                <t><eref target="https://datatracker.ietf.org/meeting/interim-2026-rats-03/materials/slides-interim-2026-rats-03-sessa-protecting-the-rats-ecosystem-from-critical-severity-vulnerabilities-00">IETF RATS</eref></t>
              </li>
              <li>
                <t><eref target="https://lists.confidentialcomputing.io/g/attestation/topic/121496347">Confidential Computing Consortium (CCC)</eref></t>
              </li>
              <li>
                <t><eref target="https://lists.aaif.io/g/wg-security-privacy/topic/contribution/121504323">Agentic AI Foundation (AAIF) Security &amp; Privacy</eref></t>
              </li>
              <li>
                <t><eref target="https://ocp-all.groups.io/g/OCP-Security/message/1263">OCP Security</eref></t>
              </li>
              <li>
                <t><eref target="https://sympa.inria.fr/sympa/arc/proverif/2026-09/msg00000.html">ProVerif</eref></t>
              </li>
            </ul>
            <t>If you know any other relevant mailing list that we should inform for protection of users, please let us know.</t>
          </section>
        </section>
      </section>
    </section>
    <section anchor="contributions">
      <name>Contributions</name>
      <t>Contributions to the draft are welcome at <eref target="https://github.com/muhammad-usama-sardar/intra-handshake-fail">https://github.com/muhammad-usama-sardar/intra-handshake-fail</eref>.</t>
      <t>Wenn Sie nur Deutsch sprechen, können Sie sich gerne per E-Mail an den Erstautor wenden. Wir haben Mitglieder, die Ihnen bei der Übersetzung Ihres Beitrags helfen können.</t>
      <t>如果您只会说中文，非常欢迎您通过电子邮件联系第四位作者。我们有成员可以协助翻译您的投稿。</t>
    </section>
    <section anchor="iana-considerations">
      <name>IANA Considerations</name>
      <t>This document has no IANA actions.</t>
    </section>
  </middle>
  <back>
    <references anchor="sec-combined-references">
      <name>References</name>
      <references anchor="sec-normative-references">
        <name>Normative References</name>
        <reference anchor="Intra-handshake.fail" target="https://www.researchgate.net/publication/408219182_Intra-handshakefail_CVE-2026-33697_High-severity_CVE_in_Attested_TLS">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="June"/>
          </front>
        </reference>
        <reference anchor="Intra-handshake.fail-repo" target="https://github.com/muhammad-usama-sardar/intra-handshake.fail">
          <front>
            <title>Intra-handshake.fail (CVE-2026-33697): High-severity CVE in Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="V." surname="Dubeyko">
              <organization/>
            </author>
            <author initials="J.-M." surname="Jacquet">
              <organization/>
            </author>
            <date year="2026" month="July"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-33697" target="https://www.cve.org/CVERecord?id=CVE-2026-33697">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-16488" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-16488">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-92701" target="https://www.cve.org/CVERecord?id=CVE-2026-92701">
          <front>
            <title>Cocos AI Intra-handshake attested TLS implementation is vulnerable to session-misbinding attacks for Intel TDX verifier path</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-92702" target="https://www.cve.org/CVERecord?id=CVE-2026-92702">
          <front>
            <title>Cocos AI Intra-handshake attested TLS implementation can accept Evidence with nil, empty, or omitted reportData in the AMD SEV-SNP path</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-83194" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-83194">
          <front>
            <title>EUVD-2026-83194</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-83192" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-83192">
          <front>
            <title>EUVD-2026-83192</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-vfgg-mvxx-mgg7">
          <front>
            <title>CoCoS attested TLS is vulnerable to relay attacks via extracted ephemeral TLS keys</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="March"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI2" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-4px3-wj2x-xx47">
          <front>
            <title>Cocos AI intra-handshake attested TLS implementation is vulnerable to session-misbinding attacks for Intel TDX verifier path</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI3" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-4r6g-mp48-j2rw">
          <front>
            <title>Cocos AI intra-handshake attested TLS implementation can accept Evidence with nil, empty, or omitted reportData in the AMD SEV-SNP path</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-hjgc-jc5v-fw7h">
          <front>
            <title>Remote attestation is susceptible to relay attacks</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems2" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-m2qg-wrxv-h898">
          <front>
            <title>Generated policies don't detect all image substitutions</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="August"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems3" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-rxcv-p3px-m3c3">
          <front>
            <title>Existing Mesh CA key can cross manifest boundaries during Contrast peer recovery</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Edgeless-Systems4" target="https://github.com/edgelesssys/contrast/security/advisories/GHSA-376m-h37w-4rvq">
          <front>
            <title>Node installer leaves the host containerd configuration world-writable (0666), allowing local privilege escalation</title>
            <author initials="" surname="Edgeless Systems">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="SEAT-vulnerability-report" target="https://mailarchive.ietf.org/arch/msg/seat/x3eQxFjQFJLceae6l4_NgXnmsDY/">
          <front>
            <title>Relay Attacks in Intra-handshake Attestation for Confidential Agentic AI Systems</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <date year="2026" month="January"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rustls" target="https://github.com/Privasys/rustls/security/advisories/GHSA-j6qv-435v-r492">
          <front>
            <title>Privasys RA-TLS challenge mode did not bind attestation evidence to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-go" target="https://github.com/Privasys/go/security/advisories/GHSA-7jfw-53rm-phh2">
          <front>
            <title>Privasys Go fork: RA-TLS challenge mode did not bind attestation evidence to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-eov" target="https://github.com/Privasys/enclave-os-virtual/security/advisories/GHSA-p5fp-g94g-g9m9">
          <front>
            <title>enclave-os-virtual: RA-TLS challenge certificates were not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-eom" target="https://github.com/Privasys/enclave-os-mini/security/advisories/GHSA-49qm-4pj3-w2c6">
          <front>
            <title>enclave-os-mini: RA-TLS challenge certificates were not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-5qrc-v874-mxvx">
          <front>
            <title>ra-tls-clients: RA-TLS challenge verifier accepted quotes not bound to the TLS session</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc-da" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-pj2x-5wqv-fh57">
          <front>
            <title>Privasys Intra-handshake attested TLS implementation is vulnerable to Diversion Attacks</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Privasys-rtc-tcu" target="https://github.com/Privasys/ra-tls-clients/security/advisories/GHSA-gg8q-mfhh-wrrc">
          <front>
            <title>Privasys Intra-handshake attested TLS implementation is vulnerable to TOCTOU Attacks</title>
            <author initials="" surname="Privasys">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI4" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-v5m8-5wxc-vjgp">
          <front>
            <title>Cocos Intra-handshake attested TLS implementation is vulnerable to Diversion Attacks</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="GHSA-Cocos-AI5" target="https://github.com/ultravioletrs/cocos/security/advisories/GHSA-ghwv-vrp2-2975">
          <front>
            <title>Cocos AI Intra-handshake attested TLS implementation is vulnerable to TOCTOU Attacks</title>
            <author initials="" surname="Ultraviolet Cocos AI">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="ID-Crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author fullname="Muhammad Usama Sardar" initials="M." surname="Sardar">
              <organization>TU Dresden, Dresden, Germany</organization>
            </author>
            <author fullname="Mariam Moustafa" initials="M." surname="Moustafa">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <author fullname="Tuomas Aura" initials="T." surname="Aura">
              <organization>Aalto University, Espoo, Finland</organization>
            </author>
            <date month="June" year="2026"/>
          </front>
          <seriesInfo name="Proceedings of the ACM Asia Conference on Computer and Communications Security" value="pp. 547-560"/>
          <seriesInfo name="DOI" value="10.1145/3779208.3785387"/>
          <refcontent>ACM</refcontent>
        </reference>
        <reference anchor="ID-Crisis-repo" target="https://github.com/CCC-Attestation/formal-spec-id-crisis">
          <front>
            <title>Identity Crisis in Confidential Computing: Formal Analysis of Attested TLS</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="M." surname="Moustafa">
              <organization/>
            </author>
            <author initials="T." surname="Aura">
              <organization/>
            </author>
            <date year="2025" month="November"/>
          </front>
        </reference>
        <reference anchor="refTLS">
          <front>
            <title>Verified Models and Reference Implementations for the TLS 1.3 Standard Candidate</title>
            <author fullname="Karthikeyan Bhargavan" initials="K." surname="Bhargavan">
              <organization/>
            </author>
            <author fullname="Bruno Blanchet" initials="B." surname="Blanchet">
              <organization/>
            </author>
            <author fullname="Nadim Kobeissi" initials="N." surname="Kobeissi">
              <organization/>
            </author>
            <date month="May" year="2017"/>
          </front>
          <seriesInfo name="2017 IEEE Symposium on Security and Privacy (SP)" value="pp. 483-502"/>
          <seriesInfo name="DOI" value="10.1109/sp.2017.26"/>
          <refcontent>IEEE</refcontent>
        </reference>
        <reference anchor="TLS-RA" target="https://www.usenix.org/conference/atc25/presentation/weinhold">
          <front>
            <title>Separate but together: integrating remote attestation into TLS</title>
            <author initials="" surname="Carsten Weinhold">
              <organization/>
            </author>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="" surname="Ionuț Mihalcea">
              <organization/>
            </author>
            <author initials="" surname="Yogesh Deshpande">
              <organization/>
            </author>
            <author initials="" surname="Hannes Tschofenig">
              <organization/>
            </author>
            <author initials="" surname="Yaron Sheffer">
              <organization/>
            </author>
            <author initials="" surname="Thomas Fossati">
              <organization/>
            </author>
            <author initials="" surname="Michael Roitzsch">
              <organization/>
            </author>
            <date year="2025" month="July"/>
          </front>
        </reference>
        <reference anchor="CSA-eBPF" target="https://cloudsecurityalliance.org/blog/2026/09/09/mitre-s-new-framework-securing-the-ebpf-layer-your-ai-depends-on">
          <front>
            <title>MITRE's New Framework: Securing the eBPF Layer Your AI Depends On</title>
            <author initials="" surname="Cloud Security Alliance">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="MITRE-Continuous-Attestation" target="https://www.mitre.org/news-insights/publication/framework-continuous-remote-attestation">
          <front>
            <title>Framework for Continuous Remote Attestation</title>
            <author initials="" surname="MITRE's Confidential Computing Layered Attestation Working Group">
              <organization/>
            </author>
            <date year="2026" month="July"/>
          </front>
        </reference>
        <reference anchor="EarlyAttestationBleed" target="https://www.researchgate.net/publication/414529199_EarlyAttestationBleed_Three_Critical-severity_Vulnerabilities_of_CVSS_90_in_Confidential_Computing">
          <front>
            <title>EarlyAttestationBleed: Three Critical-severity Vulnerabilities of CVSS ≥ 9.0 in Confidential Computing</title>
            <author initials="M. U." surname="Sardar">
              <organization/>
            </author>
            <author initials="" surname="Songbo Bu">
              <organization/>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="CVE-2026-100835" target="https://www.cve.org/CVERecord?id=CVE-2026-100835">
          <front>
            <title>Contrast before 1.16.0 Remote Attestation Relay Attack</title>
            <author>
              <organization>CVE</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
        <reference anchor="EUVD-2026-87851" target="https://euvd.enisa.europa.eu/enisa/EUVD-2026-87851">
          <front>
            <title>EUVD-2026-87851</title>
            <author>
              <organization>ENISA</organization>
            </author>
            <date year="2026" month="September"/>
          </front>
        </reference>
      </references>
      <references anchor="sec-informative-references">
        <name>Informative References</name>
        <reference anchor="I-D.fossati-seat-early-attestation">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="20" month="September" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a TLS extension that
   enables the negotiation and binding of the TLS authentication key to
   a remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   This extension has been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-07"/>
        </reference>
        <reference anchor="I-D.fossati-seat-early-attestation-04">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <author fullname="Tirumaleswar Reddy.K" initials="T." surname="Reddy.K">
              <organization>Nokia</organization>
            </author>
            <date day="27" month="May" year="2026"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using remote attestation
   which is a process by which an entity produces Evidence about itself
   that another party can use to appraise whether that entity is found
   in a secure state.  This document describes a series of TLS
   extensions that enable the binding of the TLS authentication key to a
   remote attestation session.  This enables an entity capable of
   producing attestation Evidence, such as a confidential workload
   running in a Trusted Execution Environment (TEE), or an IoT device
   that is trying to authenticate itself to a network access point, to
   present a more comprehensive set of security metrics to its peer.
   These extensions have been designed to allow the peers to use any
   attestation technology, in any remote attestation topology, and to
   use them mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-seat-early-attestation-04"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-06">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="19" month="March" year="2024"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-06"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-09">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="30" month="April" year="2025"/>
            <abstract>
              <t>   The TLS handshake protocol allows authentication of one or both peers
   using static, long-term credentials.  In some cases, it is also
   desirable to ensure that the peer runtime environment is in a secure
   state.  Such an assurance can be achieved using attestation which is
   a process by which an entity produces evidence about itself that
   another party can use to appraise whether that entity is found in a
   secure state.  This document describes a series of protocol
   extensions to the TLS 1.3 handshake that enables the binding of the
   TLS authentication key to a remote attestation session.  This enables
   an entity capable of producing attestation evidence, such as a
   confidential workload running in a Trusted Execution Environment
   (TEE), or an IoT device that is trying to authenticate itself to a
   network access point, to present a more comprehensive set of security
   metrics to its peer.  These extensions have been designed to allow
   the peers to use any attestation technology, in any remote
   attestation topology, and mutually.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-09"/>
        </reference>
        <reference anchor="I-D.fossati-tls-attestation-10">
          <front>
            <title>Using Attestation in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS)</title>
            <author fullname="Hannes Tschofenig" initials="H." surname="Tschofenig">
         </author>
            <author fullname="Yaron Sheffer" initials="Y." surname="Sheffer">
              <organization>Intuit</organization>
            </author>
            <author fullname="Paul Howard" initials="P." surname="Howard">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Ionuț Mihalcea" initials="I." surname="Mihalcea">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Yogesh Deshpande" initials="Y." surname="Deshpande">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Arto Niemi" initials="A." surname="Niemi">
              <organization>Huawei</organization>
            </author>
            <author fullname="Thomas Fossati" initials="T." surname="Fossati">
              <organization>Linaro</organization>
            </author>
            <date day="23" month="July" year="2026"/>
            <abstract>
              <t>   This draft has been withdrawn.

About This Document

   This note is to be removed before publishing as an RFC.

   Status information for this document may be found at
   https://datatracker.ietf.org/doc/draft-fossati-tls-attestation/.

   Source for this draft and an issue tracker can be found at
   https://github.com/yaronf/draft-tls-attestation.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-fossati-tls-attestation-10"/>
        </reference>
        <reference anchor="I-D.ritz-seat-facts">
          <front>
            <title>Factor-based Attestation and Credential Transport Scheme (FACTS) over TLS 1.3</title>
            <author fullname="Nathanael Ritz" initials="N." surname="Ritz">
              <organization>Independent</organization>
            </author>
            <date day="1" month="March" year="2026"/>
            <abstract>
              <t>   This document describes FACTS (Factor-based Attestation and
   Credential Transport Scheme) over TLS 1.3.  Conceptually acting as
   "multi-factor authentication" for machine identities, factor-based
   attestation derives session trust from multiple independent
   cryptographic inputs rather than a single point of failure.
   Specifically, it utilizes a dual-key scheme that binds identity to
   attestation evidence through the use of key encapsulation material
   keys (KEM) and traditional identity signing keys (IK), establishing
   per-session freshness.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ritz-seat-facts-00"/>
        </reference>
      </references>
    </references>
    <?line 1141?>

<section numbered="false" anchor="acknowledgments">
      <name>Acknowledgments</name>
      <t>Acknowledgment does not necessarily imply attestation. It implies that the authors found the feedback and discussion useful in improving the formal analysis, the corresponding paper, or this draft.</t>
      <t>This draft benefits from several years of research on attested TLS, in particular some of the recent works mentioned below:</t>
      <t><strong>EarlyAttestationBleed</strong> <xref target="EarlyAttestationBleed"/></t>
      <t>We wish to express our sincere appreciation to the following for their review:</t>
      <ul spacing="normal">
        <li>
          <t>Sammy Kerata Oina</t>
        </li>
        <li>
          <t>Drasko Draskovic</t>
        </li>
        <li>
          <t>Markus Rudy</t>
        </li>
        <li>
          <t>Kaya Ercihan</t>
        </li>
        <li>
          <t>Jan Kahmen</t>
        </li>
        <li>
          <t>Peg Jones</t>
        </li>
        <li>
          <t>Bertrand Foing</t>
        </li>
        <li>
          <t>Rebekah Overdorf</t>
        </li>
        <li>
          <t>Tobias Pulls</t>
        </li>
      </ul>
      <t><strong>Intra-handshake.fail</strong> <xref target="Intra-handshake.fail"/></t>
      <t>We gratefully acknowledge the following for insightful discussions and helpful reviews on <xref target="Intra-handshake.fail"/>:</t>
      <ul spacing="normal">
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Juho Forsén</t>
        </li>
        <li>
          <t>Markus Rudy</t>
        </li>
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Steve Kremer</t>
        </li>
        <li>
          <t>Tjaden Hess</t>
        </li>
        <li>
          <t>Martin Thomson</t>
        </li>
        <li>
          <t>Yuning Jiang</t>
        </li>
        <li>
          <t>Pavel Nikonorov</t>
        </li>
        <li>
          <t>Casey Wilson</t>
        </li>
        <li>
          <t>Anonymous ESORICS 2026 reviewers</t>
        </li>
        <li>
          <t>Marco Anisetti (ESORICS 2026 shepherd)</t>
        </li>
        <li>
          <t>Danko Miladinovic</t>
        </li>
        <li>
          <t>Rongkuan He</t>
        </li>
        <li>
          <t>Peeter Laud</t>
        </li>
        <li>
          <t>Stephen Holmes</t>
        </li>
        <li>
          <t>Ammara Gul</t>
        </li>
        <li>
          <t>Atul Prakash</t>
        </li>
        <li>
          <t>Paul Syverson</t>
        </li>
        <li>
          <t>Jan Tobias Muehlberg</t>
        </li>
        <li>
          <t>John Preuß Mattsson</t>
        </li>
        <li>
          <t>Britta Hale</t>
        </li>
        <li>
          <t>Werner Staub</t>
        </li>
        <li>
          <t>Songbo Bu</t>
        </li>
        <li>
          <t>Haowen Song</t>
        </li>
        <li>
          <t>Chengxin Huang</t>
        </li>
        <li>
          <t>Steve Luo</t>
        </li>
        <li>
          <t>Andrew Miller</t>
        </li>
        <li>
          <t>Kubilay Ahmet Küçük</t>
        </li>
        <li>
          <t>Iman Schrock</t>
        </li>
        <li>
          <t>Sophie Schmieg</t>
        </li>
        <li>
          <t>Davyd Okaianchenko</t>
        </li>
        <li>
          <t>Alistair Woodman</t>
        </li>
        <li>
          <t>Göran Selander</t>
        </li>
        <li>
          <t>Tom Sato</t>
        </li>
        <li>
          <t>Jakub Maria Plutowski</t>
        </li>
        <li>
          <t>Martin Friedrich</t>
        </li>
        <li>
          <t>Patrick Duggan</t>
        </li>
        <li>
          <t>Serhii Nikolaichuk</t>
        </li>
        <li>
          <t>Deb Cooley</t>
        </li>
      </ul>
      <t><strong>Identity Crisis</strong> <xref target="ID-Crisis"/></t>
      <t>We would like to thank our co-authors of paper <xref target="ID-Crisis"/> for their valuable contributions:</t>
      <ul spacing="normal">
        <li>
          <t>Mariam Moustafa</t>
        </li>
        <li>
          <t>Tuomas Aura</t>
        </li>
      </ul>
      <t>We also gratefully acknowledge the following for insightful discussions and helpful feedback:</t>
      <ul spacing="normal">
        <li>
          <t>Ionut Mihalcea</t>
        </li>
        <li>
          <t>Jean-Marie Jacquet</t>
        </li>
        <li>
          <t>Thomas Fossati</t>
        </li>
        <li>
          <t>Eric Rescorla</t>
        </li>
        <li>
          <t>Hannes Tschofenig</t>
        </li>
        <li>
          <t>Yaron Sheffer</t>
        </li>
        <li>
          <t>Laurence Lundblade</t>
        </li>
        <li>
          <t>Giridhar Mandyam</t>
        </li>
        <li>
          <t>Christopher Patton</t>
        </li>
        <li>
          <t>Jonathan Hoyland</t>
        </li>
        <li>
          <t>Richard Barnes</t>
        </li>
      </ul>
      <t><strong>refTLS</strong> <xref target="refTLS"/></t>
      <t>We sincerely thank the following for the foundational formal model of draft 20 of TLS 1.3 in their work <xref target="refTLS"/> that we have used as the foundation of all of this work:</t>
      <ul spacing="normal">
        <li>
          <t>Karthikeyan Bhargavan</t>
        </li>
        <li>
          <t>Bruno Blanchet</t>
        </li>
        <li>
          <t>Nadim Kobeissi</t>
        </li>
      </ul>
      <t><strong>General</strong></t>
      <t>Several others at the IETF, IRTF, CCC, and GA4GH have contributed by providing feedback over the years. A non-exhaustive list of contributors is <eref target="https://datatracker.ietf.org/meeting/126/materials/slides-126-iepg-sessa-05-intra-handshakefail-cve-2026-33697-00#page=17">here</eref>.</t>
      <t>Muhammad Usama Sardar is funded by German Research Foundation ("Deutsche Forschungsgemeinschaft.")</t>
    </section>
  </back>
  <!-- ##markdown-source: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-->

</rfc>
