[Seat] Re: Comments on formal analysis of relay attacks in intra-handshake attestation (CVE-2026-33697)
Steve <zhijieluo1022@gmail.com> Mon, 06 July 2026 15:06 UTC
Return-Path: <zhijieluo1022@gmail.com>
X-Original-To: seat@mail2.ietf.org
Delivered-To: seat@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id B0B89110506F6 for <seat@mail2.ietf.org>; Mon, 6 Jul 2026 08:06:46 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1783350406; bh=d5CJHeArH561g/Cudm4pyZ4mQ/X0Rp0/d9H8O3cY6vk=; h=References:In-Reply-To:From:Date:Subject:To:Cc; b=k8Fh2IW+U+9wv6x5JL2u52g3NKc6mUeyaL2lblRDlxCcuYd1U0eL2NQ9vCRK5IMFv Ae3dh07VWT3Voybh0Uh9T/CTt2OaoaINvvHs2RgzkwDmYpWCe+AHKYmJjY7gxoz3Hb p+RXaXoSPk+6Ziwemr1wVwD7wAws7Vh9blgSH7qE=
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -1.848
X-Spam-Level:
X-Spam-Status: No, score=-1.848 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_ENVFROM_END_DIGIT=0.25, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id jvqwN3LqQBPb for <seat@mail2.ietf.org>; Mon, 6 Jul 2026 08:06:46 -0700 (PDT)
Received: from mail-ej1-x62b.google.com (mail-ej1-x62b.google.com [IPv6:2a00:1450:4864:20::62b]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 8C09B1104C2DF for <seat@ietf.org>; Mon, 6 Jul 2026 07:57:41 -0700 (PDT)
Received: by mail-ej1-x62b.google.com with SMTP id a640c23a62f3a-c125bcfd9a1so442597266b.1 for <seat@ietf.org>; Mon, 06 Jul 2026 07:57:41 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; t=1783349860; cv=none; d=google.com; s=arc-20260327; b=Zk5fiiqqPc9peAoGE2klXhAGDwvEvESeYtqevO5de3BetUh499d90BRXx94DijOzI9 2Uhl1oKVDyPLwPFIgVH7I7k0H5CRS8baLkTEfvbl/QS9TG0aoyGmBWLR/Dyqge1mXql1 FAkBmKEzO0I1mAvCmB87foCef8IH8utVYYcN1qrKlNsuXjT0dciFFnf7okPgejMnVaY1 LBCn4cjDZ3dRJmddCWaqYjkT+zF8gUEbkDAFvnB31rG9lugEzJRdraEXIW1jg3iibyjL JccKhA+mbmSw9IFQWDinfgA3Ry9zYk0iEiQ6UqXb0dk5HTGxdI+ElegBpvm5dOpH/qH/ CFTg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20260327; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:dkim-signature; bh=cPJsiYni9MhNPntxrHTg3yqu6nV5zj5t//+VriiJipI=; fh=YNvQ9WCitGztkFXM74wjUGv6rWFUsSuLH3j8BaVWK6M=; b=QzW2jdrvZWoM6Ara8V7omTFMwCCX+CsiqwCFaMnBvFmW73Nk298YW0qmO0jeB4Tz4H 1VSf/FpNu8bgr+otGXfTz8DXkLbsmAkITwBqXEH/FAhh/m+pAbyXj0Dnz7s9FG86D/9e 5d3YcSikh9vNZPNv5nsC8J2OVjEiBaX88+HyVV9yOF/hB6bShpLj8Q5kwx2907gSEU0t fu8URjhUKQxhkNLp1fWiyqw0wW22gFeFA0wTWoW0Yfy/9grq6azsXHboYOUO71al8KdT a6H84Jo9q8vhXgQfizyBs09bxvr1G6Tvbv+BE7AnXGeHGi8GpZDBU9OEWuzb3qOQneeb uwXQ==; darn=ietf.org
ARC-Authentication-Results: i=1; mx.google.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20251104; t=1783349860; x=1783954660; darn=ietf.org; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=cPJsiYni9MhNPntxrHTg3yqu6nV5zj5t//+VriiJipI=; b=mTw1o9Nwt/AS0ek4UKqLKv7OwRXZO94kd7dfMrOxbpPfomKceWvtKLCiLb3HyVtUYm LB09mfyO1ZpFLlBQB2mW/SN1IFBfWlgnlYG4aLaIM0CPzRYTn9ILoSPsEG98fLXfizr+ 78iTbTbqy50K2MNGVJoN7xyIMQox5w5pepn6Tcot2c1dS8EhnAJcQj8n6QwllvRudp89 g87BmMvt9ZkY6uKTDsI9IKk5Ff1gMJWe5oS0Tkai1s5zsOMyWAuswbScAVvUceo84s/9 dLlsemXWmc0xNhijR9knwV2gfKlywc6/LfviMomRDKLpail/6ONdosOpNOyvAtB0CMM3 Ykmg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20251104; t=1783349860; x=1783954660; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-gg:x-gm-message-state:from:to:cc:subject:date :message-id:reply-to; bh=cPJsiYni9MhNPntxrHTg3yqu6nV5zj5t//+VriiJipI=; b=sClA8khazSLcxHGwoS0ipzEdDXgMtP7LR7B319UCFqGbjEWxpSzfIOTFv2RoZD4UOf iW0iSfUpm3Ovyg1h3YXbcZ2fwmeqA1He6c+4+g6r5YnUkaNCl3SvQ3WobpaQRdpxMRV9 HoFK1lbd9fSVia/H+Od7LyJJChORmYzHMLENyQhXp4r5AZx8HO6iQT+w88iG53dmy7v6 9s+MNB3jpIhpWTBLSDNru3JryrnNZIJ6MXYTeQQ4RhDjSJ9+PY0uWyL1+JaZ8QXWaKqW vVrFuTf+WnrH9JdvWWH/D0/MUNodxFZo9kyB/X4j0KPQRqOPXl440SURrU3W5krsC845 ma/Q==
X-Forwarded-Encrypted: i=1; AHgh+RroJUoPVabcC9A6Et451yHy4ynD7J/W18hlJetgftQi8HKsjQDmrC7kvURT5KVfQ+xLCifo@ietf.org
X-Gm-Message-State: AOJu0YxOjvexc7WDmWbEtFew0mBL2V2V9Zhrcup2eoRtRnG2zcNe+CbR 4WqxQtESxTZ2BCTn7OICrTbKx/N2REhDaVUsU2VtJJ2GqFymKeeR1tYPIJNwKDUfwEDyIBzMcw2 FNrcZamrWMcgI8PP832pxgSZSVAV9Edk=
X-Gm-Gg: AfdE7ckvIQdfr89Iupt+AoIWIy/3oovHf5hY+PT3NEua5Z2JP+GmaY4V5Rdv25/T0VQ V7dITpjltUL2YCpCY34C1DFZEYNkisXg0tEpidi7HB54UB/9aeRXn7sND3NaR2HmAZTBUzq7mX5 3bWOOZopfs75pQExNABrex2LZ2MZ3A2V0nAYLWFnrJgoWu+lShN4KNI3yTooQZ9Ny1YKypazreK u8IojCBdCr0Y7y2IxhO3N3oRheYQCVCbGtU34VJOMhgtMDFeHYYIe88mxkYY+EPppJxHXmg6oUI +oP76n2K3oqtDpmrphjR+HjeWFaxo7zrIIEG3XFYA9EQC9u57AGHnVWeKdhfPobKIRxGP7dyybF DFE10JFFnaA==
X-Received: by 2002:a17:907:9809:b0:c12:7b11:f31c with SMTP id a640c23a62f3a-c15a694e42amr56625566b.51.1783349860344; Mon, 06 Jul 2026 07:57:40 -0700 (PDT)
MIME-Version: 1.0
References: <5f361893-bc32-4737-9578-fdb3ad7be3f9@tu-dresden.de> <9F03163D-B0F9-40DD-A4AB-69C151B872D6@aiven.io> <c4a0c433-173d-44ac-bd48-eed642a674d3@tu-dresden.de> <CAHxYnaOBMnPp7EiRLNYWX8AQDc2zYoBL226nfeBiPXsyii7Now@mail.gmail.com> <CAHxYnaOFWQBLf0Pn8bY=CMx7ytSEkTbvj7xp-s0GCHJohRh5xg@mail.gmail.com> <2b53d833-51b8-4915-82b0-ac3305e89528@tu-dresden.de> <CAHxYnaPDTzHuXyeC06bKWNOQ+wYfc-02AVyDETveL7dTteYURA@mail.gmail.com> <CAK08nYaQb6tQzy_nZrJbGbyu1oLuFpAEjTWqe_hY6cmmGzJFvA@mail.gmail.com> <CAHxYnaPyD+mFBgk-axNXCS+9qob-nhF_+Y6eqz9fgPnDvNF5Nw@mail.gmail.com> <34201e80-edb7-4f99-afa2-0d5b5799c6da@tu-dresden.de> <CAHxYnaOUyvMrMRN2C4wjO_s3hpqXDDMJAOAUYyGVt0JRu4RSQQ@mail.gmail.com> <3f87fe50-f0bc-45f7-8ed5-0a7cc7cf975c@tu-dresden.de> <CAHxYnaOsUBJF1+dkhEuPdhExNmk14cWcauxEw-zo6TotWzxsHQ@mail.gmail.com> <8caf22fa-907d-42fd-b3db-0aed8a9fae91@tu-dresden.de> <CAK08nYbdj2XbAM7ndOiXNGdyHf8kD2V26qvmi-gQJ1NjMuQt+Q@mail.gmail.com>
In-Reply-To: <CAK08nYbdj2XbAM7ndOiXNGdyHf8kD2V26qvmi-gQJ1NjMuQt+Q@mail.gmail.com>
From: Steve <zhijieluo1022@gmail.com>
Date: Mon, 06 Jul 2026 22:57:25 +0800
X-Gm-Features: AVVi8CfY4BBAdTbsbSq-DnwdHG4bvyk46UUdaciLjE3AvNLSi8WxWbyKwgK5qx4
Message-ID: <CADmRJY6W0aUs=3ueyUPhoCe3B1bzpgcZdHJ_vGPy_Dy2-zy-zQ@mail.gmail.com>
To: Songbo Bu <bluedognull@gmail.com>
Content-Type: multipart/alternative; boundary="000000000000efad920655f27e7f"
Message-ID-Hash: 6XJDSPSJ3XNZU62MZ6XF6HSF2SUHLEM4
X-Message-ID-Hash: 6XJDSPSJ3XNZU62MZ6XF6HSF2SUHLEM4
X-MailFrom: zhijieluo1022@gmail.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: Muhammad Usama Sardar <muhammad_usama.sardar@tu-dresden.de>, Nathanael Ritz <nathanritz@gmail.com>, seat@ietf.org, ufmrg@irtf.org
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [Seat] Re: Comments on formal analysis of relay attacks in intra-handshake attestation (CVE-2026-33697)
List-Id: "Secure Evidence and Attestation Transport (SEAT) WG" <seat.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/seat/ov8f-7cZKK5RZ-Mmjc6IhVSB-Fk>
List-Archive: <https://mailarchive.ietf.org/arch/browse/seat>
List-Help: <mailto:seat-request@ietf.org?subject=help>
List-Owner: <mailto:seat-owner@ietf.org>
List-Post: <mailto:seat@ietf.org>
List-Subscribe: <mailto:seat-join@ietf.org>
List-Unsubscribe: <mailto:seat-leave@ietf.org>
Dear all, I am Research Analyst at Cloud Security Alliance (CSA-GCR). Because of highly severe attacks, the intra-handshake.fail paper deserves close attention from the SEAT WG, UFMRG and the related research community. >From a Cloud Security Alliance community and cloud-security industry perspective, I strongly support bringing the paper and its supporting open-source code into the WG/RG discussion. Cloud and confidential-computing deployments rely on attestation mechanisms that can be implemented, audited, and operated at scale. In this setting, a protocol extension that adds intra-handshake attestation behavior affects more than message syntax. It affects implementation assurance, conformance testing, incident response, certification, and enterprise risk acceptance. The paper is therefore important industry input because it connects a concrete protocol-design question with formal analysis, relay-attack risk, and production implementation impact. Its treatment of binding mechanisms gives cloud providers, enterprise relying parties, security vendors, and governance teams a sharper basis for judging whether a proposed attestation transport path delivers security value proportionate to its operational complexity. I strongly support using the Intra-handshake.fail paper and code as a reference point for further SEAT and UFMRG discussion, and I encourage review by WG participants, UFMRG experts, confidential-computing implementers, and cloud-security stakeholders. Best regards, Steve Luo Research Analyst, Cloud Security Alliance (CSA-GCR) Songbo Bu <bluedognull@gmail.com> 于2026年7月6日周一 22:18写道: > Hi Usama, Slava, Jean-Marie, all, > > Based on my participation in the related research discussions, I > appreciate sharing Intra-handshake.fail paper and code with the WG/RG and > strongly support using them as important technical input for the ongoing > SEAT discussion. > > The paper and code is valuable because it makes the discussion more > property-driven. In particular, I think the WG should explicitly examine > what security property a hybrid intra-handshake plus post-handshake > attestation design can satisfy that post-handshake attestation alone cannot > satisfy. This question is independent of any particular specification > proposal, and it is important for evaluating whether additional > intra-handshake complexity is technically justified. > > I also support the paper’s narrower focus on intra-handshake attestation. > Keeping the analysis scoped in this way avoids conflating different > attestation models and allows the WG/RG to reason more precisely about > binding mechanisms, relay attacks, and the relationship between Evidence > and the TLS connection. > > From WG charter perspective, the paper is useful because it gives the > community a concrete object to review, challenge, reproduce, and improve. > This is especially important where formal models, protocol state-machine > changes, and production implementations intersect. > > It helps bring the standards community and formal methods researchers > closer to share experience and ideas and provides UFMRG a concrete > methodology for protocol analysis of AI agents. > > For these reasons, I strongly support sharing this paper and code with the > WG/RG and encourage review from SEAT WG participants and UFMRG > formal-methods experts. > > Best regards, > Songbo Bu > >> _______________________________________________ > Seat mailing list -- seat@ietf.org > To unsubscribe send an email to seat-leave@ietf.org >
- [Seat] Re: Comments on formal analysis of relay a… Iman Schrock
- [Seat] Relay Attacks in Intra-handshake Attestati… Muhammad Usama Sardar
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Давид Nunhausen
- [Seat] Re: [Ufmrg] Re: Re: Comments on formal ana… rachid bouziane
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Muhammad Usama Sardar
- [Seat] Re: [Ufmrg] Re: Re: Comments on formal ana… Dr Küçük Oxford University DPhil Computer S cience
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Nancy Cam-Winget (ncamwing)
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Muhammad Usama Sardar
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Nathanael Ritz
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Paul Wouters
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Muhammad Usama Sardar
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Nathanael Ritz
- [Seat] Comments on formal analysis of relay attac… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Songbo Bu
- [Seat] Re: Comments on formal analysis of relay a… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Songbo Bu
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Songbo Bu
- [Seat] Re: Comments on formal analysis of relay a… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Songbo Bu
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Songbo Bu
- [Seat] Re: Comments on formal analysis of relay a… Steve
- [Seat] Re: Comments on formal analysis of relay a… Chengxin Huang
- [Seat] Re: [Ufmrg] Re: Comments on formal analysi… Song Haowen
- [Seat] Re: Comments on formal analysis of relay a… Mark Novak
- [Seat] Re: Comments on formal analysis of relay a… Markus Rudy
- [Seat] Re: Comments on formal analysis of relay a… Mark Novak
- [Seat] Re: Comments on formal analysis of relay a… camilo ayerbe
- [Seat] Re: Comments on formal analysis of relay a… Markus Rudy
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Markus Rudy
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Markus Rudy
- [Seat] Re: Comments on formal analysis of relay a… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: [Ufmrg] Re: Re: Comments on formal ana… Salz, Rich
- [Seat] Re: Comments on formal analysis of relay a… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Nathanael Ritz
- [Seat] Re: Comments on formal analysis of relay a… Songbo Bu
- [Seat] Re: Comments on formal analysis of relay a… camilo ayerbe
- [Seat] Re: Comments on formal analysis of relay a… Song Haowen
- [Seat] Re: Comments on formal analysis of relay a… Chengxin Huang
- [Seat] Re: [Ufmrg] Re: Re: Comments on formal ana… Salz, Rich
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: [Ufmrg] Re: Re: Comments on formal ana… Steve
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Muhammad Usama Sardar
- [Seat] Re: Comments on formal analysis of relay a… Markus Rudy
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Muhammad Usama Sardar
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Muhammad Usama Sardar
- [Seat] Re: Relay Attacks in Intra-handshake Attes… Paul Wouters