[Seat] Re: Comments on formal analysis of relay attacks in intra-handshake attestation (CVE-2026-33697)
Songbo Bu <bluedognull@gmail.com> Mon, 06 July 2026 14:10 UTC
Return-Path: <bluedognull@gmail.com>
X-Original-To: seat@mail2.ietf.org
Delivered-To: seat@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 07A431103604D for <seat@mail2.ietf.org>; Mon, 6 Jul 2026 07:10:17 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1783347017; bh=ddx46+uhtOmKDxpJzCwJAjPSvJ8CG5hKRdYt6KY8pls=; h=References:In-Reply-To:From:Date:Subject:To:Cc; b=io7Pko80ps7qOm/7qyXTSaINO48Ha6hrM6/V0WeBPaVA5hSVF4ibDO9x6Yr3DgAzR eUCgIoBMM2gwciFHL2vaAZMPtI7+8d8o3uUdjCkwz+Q9qsD8F1atqSoKdVbpRox4El ayncOznPNZwPGuHDNB9xxMqIRPBSMaJDhNt660Gw=
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.098
X-Spam-Level:
X-Spam-Status: No, score=-2.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 3eq4nLG0r_zH for <seat@mail2.ietf.org>; Mon, 6 Jul 2026 07:10:15 -0700 (PDT)
Received: from mail-qv1-xf2a.google.com (mail-qv1-xf2a.google.com [IPv6:2607:f8b0:4864:20::f2a]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id E26981103213D for <seat@ietf.org>; Mon, 6 Jul 2026 07:04:41 -0700 (PDT)
Received: by mail-qv1-xf2a.google.com with SMTP id 6a1803df08f44-8f18d92172aso43245196d6.2 for <seat@ietf.org>; Mon, 06 Jul 2026 07:04:41 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; t=1783346681; cv=none; d=google.com; s=arc-20260327; b=FWBzzMurR8OvJ+qnTSTaz1Qj5O547a4ZAgZyEbqBbXGW4RBiDZoGGKxQtU7OYph9i3 a4tqsCxNRRUJxrUbpKapIRhx6Go1kt22AGV2SAc0xSk6yimZaBWBQnUpKtbGmDWU78fV spiWgpK2dy3jmKoX5K17Ayw6s167gW3U6j3SJ3fAApM1YtcPeL6xeA4SN2xjXXpe63EY tKNsmHKwRBa0XCum8Wu2nk6aNTH0IdiLENYdjxMvH5PCtqYnDkPulm+W8bGtmU9kLfOm djuWtmgO9rOHxg2N3JpzqQsUxXJocsVsMea7M3ZRmoOaEpRwjStzl8vWn1PTK56QgmhC kvvw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20260327; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:dkim-signature; bh=h6mzv8dgXt52xhXU/j/iiRkFX1Tl9iOSEg4XlKFaZsM=; fh=ngRS5Sy8q49sRjhzG3c0LE6zjAJt4iK/Rl130IQWUBc=; b=YnZBmDXCRSllEvljAbr6CwdWtDnePpc1nBcNyVaZJ59hDwHlAkvLu9P4tiRxuaW+0+ vwhrgmKNYwF1nNjZTfBj7ot8O0VtzMFTwfypa5vJ+IiZIBpHwTTTj7EVyTKRyx0IHDgR alhAX4PFtDn8ZYh5XR1sLllD6wAtPcUT/Y92QP93pLrProP9xjzHDnE8wrOwmjWzc0qL 6OBdeEHa6u/vXj7cnK4xslY+7faMo76mZenh1ljwuqc7GZK9s+Hv581DCj+pS2S7VoN9 bHWq/up+H8YorKX4HM4kb9+PUfBHJ/UcjcWCOz42I/5u6yQWMa4KEu0NZviUFTlY5bZ2 CkXQ==; darn=ietf.org
ARC-Authentication-Results: i=1; mx.google.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20251104; t=1783346681; x=1783951481; darn=ietf.org; h=content-type:cc:to:subject:message-id:date:from:in-reply-to :references:mime-version:from:to:cc:subject:date:message-id:reply-to :content-type; bh=h6mzv8dgXt52xhXU/j/iiRkFX1Tl9iOSEg4XlKFaZsM=; b=XNmSvXcBhDU1uHUmb2QsGsZWSiQGaChXLINhGK2KI7eme3IIfGIbO5oc7CsrFcobZJ G0wUO1WNuTaDcziSG7IIfl4/cIIf0jvliAcu7KQmH+p9Vo4OGtT3EGp3X4XVXw5KOIKW +PvATIRB9YqeT7u/6jPznH6xSwemAh+FioFVxVU/JbUZZceqDHTDHJxzQrDVSmYBavd0 a7Scxxn3635nH8HTQFSSFx/410iiEnYWNUIOFr8GSGMqCGSwjwGJ6uxx7etU/ioJZQii 4q7VQk2GESIwqTrPEW6LbGTMyJstbXlJZDfbvzAFJfKxmA1/G4SNU01sLDEkf525W45T Ntrg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20251104; t=1783346681; x=1783951481; h=content-type:cc:to:subject:message-id:date:from:in-reply-to :references:mime-version:x-gm-gg:x-gm-message-state:from:to:cc :subject:date:message-id:reply-to:content-type; bh=h6mzv8dgXt52xhXU/j/iiRkFX1Tl9iOSEg4XlKFaZsM=; b=Z3FbMQ48Su3mdOndlSVI8DGia03a8/YQxQBlEnkKNLPioT7Fv+1JrMYlDQViGCfOAw IvUB+lSMrfnWCQm043gKsKJmS8XBPD7zVkEj2amVbTkFgcNXIUEZ9mhpH/N2B3nVesM+ GWyiI0u0L0BvmRPp7s9xDBiPitwfOo7oO3pa3c9VovHzhtFZaNuZDhbESWSUkTe0yWgo KvveJQs/cUgR7b1btv5W8+g3SKbI0upxZKpUMu6+Ns+kUnG2xCssZkvjhVPc4wOfK14c Mo9XwUHWiCilmUyuGRcjoo/wSVhqgwSMWFFnXc7orMS2bBViqKD0JHEOOSC4efAP/edZ prwA==
X-Forwarded-Encrypted: i=1; AHgh+Rp3kPTW40HqhEoxvlL73ncv2SF/WISzdbJoumdLCpMkC2Vxu7bhWlH4HekTikHw9Vt4OmYt@ietf.org
X-Gm-Message-State: AOJu0YzukIptupyElSq//hIWIljgCvKW55tpatf+gXrtoFhIeD6HtY9l w4S5lSbFPfXmVLc7/0GaHtVkPKlx2kQXjongwpG9/vuG3CESky3EDxOR5AXoHdi2HwjzocsAlO7 oYlhwZXiIRskADD7++wFwvIZugRK/1WM=
X-Gm-Gg: AfdE7ckrmRasZtWWyVyuwHTogzecPV8SjE0G35+coiCTkNZxYWAakpLkh6Mi7MerJRj ogkIdLtJ9JJOcNBTd3A3owM2awuML9C7d80GZHzEmhvSJH1Mc6nO3GW0/g6mnM/i8/5gRDIhLG5 05sGLz0U5leoJigud/ujDJCOyGeRCAxBfjtJFv1gcEZfz2nCTG8eG+zt7QjNk9s6TFyA7xQWMKU VJSNE/gTNKMctgaMsz5LxJEW70LDSiW7NdlHdxBpuTjZ160KeDKf2oa7aAmjBy5P7hVc9yyDwi7 zk8FwLl9SDAdsO5Phh/KIUJD/Q==
X-Received: by 2002:a05:6214:2344:b0:8f0:2653:4a9b with SMTP id 6a1803df08f44-8fcb4ef2ccbmr6807686d6.39.1783346680584; Mon, 06 Jul 2026 07:04:40 -0700 (PDT)
MIME-Version: 1.0
References: <5f361893-bc32-4737-9578-fdb3ad7be3f9@tu-dresden.de> <9F03163D-B0F9-40DD-A4AB-69C151B872D6@aiven.io> <c4a0c433-173d-44ac-bd48-eed642a674d3@tu-dresden.de> <CAHxYnaOBMnPp7EiRLNYWX8AQDc2zYoBL226nfeBiPXsyii7Now@mail.gmail.com> <CAHxYnaOFWQBLf0Pn8bY=CMx7ytSEkTbvj7xp-s0GCHJohRh5xg@mail.gmail.com> <2b53d833-51b8-4915-82b0-ac3305e89528@tu-dresden.de> <CAHxYnaPDTzHuXyeC06bKWNOQ+wYfc-02AVyDETveL7dTteYURA@mail.gmail.com> <CAK08nYaQb6tQzy_nZrJbGbyu1oLuFpAEjTWqe_hY6cmmGzJFvA@mail.gmail.com> <CAHxYnaPyD+mFBgk-axNXCS+9qob-nhF_+Y6eqz9fgPnDvNF5Nw@mail.gmail.com> <34201e80-edb7-4f99-afa2-0d5b5799c6da@tu-dresden.de> <CAHxYnaOUyvMrMRN2C4wjO_s3hpqXDDMJAOAUYyGVt0JRu4RSQQ@mail.gmail.com> <3f87fe50-f0bc-45f7-8ed5-0a7cc7cf975c@tu-dresden.de> <CAHxYnaOsUBJF1+dkhEuPdhExNmk14cWcauxEw-zo6TotWzxsHQ@mail.gmail.com> <8caf22fa-907d-42fd-b3db-0aed8a9fae91@tu-dresden.de>
In-Reply-To: <8caf22fa-907d-42fd-b3db-0aed8a9fae91@tu-dresden.de>
From: Songbo Bu <bluedognull@gmail.com>
Date: Mon, 06 Jul 2026 22:04:29 +0800
X-Gm-Features: AVVi8CdzmxMOWmyAmmOOFjSsQPDsrkUNGd49-zQ-IgjGhCKWj_QeAcDWarnNsDA
Message-ID: <CAK08nYbdj2XbAM7ndOiXNGdyHf8kD2V26qvmi-gQJ1NjMuQt+Q@mail.gmail.com>
To: Muhammad Usama Sardar <muhammad_usama.sardar@tu-dresden.de>
Content-Type: multipart/alternative; boundary="000000000000685fee0655f1c112"
Message-ID-Hash: 24KB6NEJC3UIKCUIGD2MQAETHAF6OU5E
X-Message-ID-Hash: 24KB6NEJC3UIKCUIGD2MQAETHAF6OU5E
X-MailFrom: bluedognull@gmail.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: Nathanael Ritz <nathanritz@gmail.com>, seat@ietf.org, ufmrg@irtf.org
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [Seat] Re: Comments on formal analysis of relay attacks in intra-handshake attestation (CVE-2026-33697)
List-Id: "Secure Evidence and Attestation Transport (SEAT) WG" <seat.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/seat/2_aGylmFHoLmqN7BBcYVoH-rNJk>
List-Archive: <https://mailarchive.ietf.org/arch/browse/seat>
List-Help: <mailto:seat-request@ietf.org?subject=help>
List-Owner: <mailto:seat-owner@ietf.org>
List-Post: <mailto:seat@ietf.org>
List-Subscribe: <mailto:seat-join@ietf.org>
List-Unsubscribe: <mailto:seat-leave@ietf.org>
Hi Usama, Slava, Jean-Marie, all, Based on my participation in the related research discussions, I appreciate sharing Intra-handshake.fail paper and code with the WG/RG and strongly support using them as important technical input for the ongoing SEAT discussion. The paper and code is valuable because it makes the discussion more property-driven. In particular, I think the WG should explicitly examine what security property a hybrid intra-handshake plus post-handshake attestation design can satisfy that post-handshake attestation alone cannot satisfy. This question is independent of any particular specification proposal, and it is important for evaluating whether additional intra-handshake complexity is technically justified. I also support the paper’s narrower focus on intra-handshake attestation. Keeping the analysis scoped in this way avoids conflating different attestation models and allows the WG/RG to reason more precisely about binding mechanisms, relay attacks, and the relationship between Evidence and the TLS connection. >From WG charter perspective, the paper is useful because it gives the community a concrete object to review, challenge, reproduce, and improve. This is especially important where formal models, protocol state-machine changes, and production implementations intersect. It helps bring the standards community and formal methods researchers closer to share experience and ideas and provides UFMRG a concrete methodology for protocol analysis of AI agents. For these reasons, I strongly support sharing this paper and code with the WG/RG and encourage review from SEAT WG participants and UFMRG formal-methods experts. Best regards, Songbo Bu >
- [Seat] Re: Comments on formal analysis of relay a… Iman Schrock
- [Seat] Relay Attacks in Intra-handshake Attestati… Muhammad Usama Sardar
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Давид Nunhausen
- [Seat] Re: [Ufmrg] Re: Re: Comments on formal ana… rachid bouziane
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Muhammad Usama Sardar
- [Seat] Re: [Ufmrg] Re: Re: Comments on formal ana… Dr Küçük Oxford University DPhil Computer S cience
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Nancy Cam-Winget (ncamwing)
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Muhammad Usama Sardar
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Nathanael Ritz
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Paul Wouters
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Muhammad Usama Sardar
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Nathanael Ritz
- [Seat] Comments on formal analysis of relay attac… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Songbo Bu
- [Seat] Re: Comments on formal analysis of relay a… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Songbo Bu
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Songbo Bu
- [Seat] Re: Comments on formal analysis of relay a… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Songbo Bu
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Songbo Bu
- [Seat] Re: Comments on formal analysis of relay a… Steve
- [Seat] Re: Comments on formal analysis of relay a… Chengxin Huang
- [Seat] Re: [Ufmrg] Re: Comments on formal analysi… Song Haowen
- [Seat] Re: Comments on formal analysis of relay a… Mark Novak
- [Seat] Re: Comments on formal analysis of relay a… Markus Rudy
- [Seat] Re: Comments on formal analysis of relay a… Mark Novak
- [Seat] Re: Comments on formal analysis of relay a… camilo ayerbe
- [Seat] Re: Comments on formal analysis of relay a… Markus Rudy
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Markus Rudy
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Markus Rudy
- [Seat] Re: Comments on formal analysis of relay a… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: [Ufmrg] Re: Re: Comments on formal ana… Salz, Rich
- [Seat] Re: Comments on formal analysis of relay a… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Songbo Bu
- [Seat] Re: Comments on formal analysis of relay a… camilo ayerbe
- [Seat] Re: Comments on formal analysis of relay a… Song Haowen
- [Seat] Re: Comments on formal analysis of relay a… Chengxin Huang
- [Seat] Re: [Ufmrg] Re: Re: Comments on formal ana… Salz, Rich
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: [Ufmrg] Re: Re: Comments on formal ana… Steve
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Markus Rudy
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Muhammad Usama Sardar
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Muhammad Usama Sardar
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Paul Wouters