Executive Summary
Meeting of ITU-T SG17 'Security', Geneva, 1-10 June 2026
1 Hot topics of this meeting (summarizing both input & output)
- Agentic AI: security, trust framework and identity management
- Identity management and trust management framework
- Security of generative AI systems, AI applications and AI cloud
- Public key and privilege management Infrastructure as foundation for digital trust
- Digital Emblems
- Child online protection and parental/family control
- Year 2000 problem is back in 2036 and 2038
- computing power network security
- intelligent transport system and autonomous driving security
- Quantum readiness and new essential Quantum Key Distribution work
- Intelligent Transport System security
2 Meeting Output (meeting statistics see Annex E below)
– Successful SG17 workshop on Global interoperability for trust management of digital identity for Humans and Agents (Geneva, 2 June 2026)
– SG17 Focus Group on Trust and Identity for Humans and Agentic AI (FG-TIDA):
o ToR in TD295/P
o Chair: Ms Debora Comparin (Thales, France)
o Vice-Chair: Ms Liangliang Zhang (Huawei, China)
– Output standards (56, see Annex A):
- TAP approval (10): Details are in Annex A a).
- TAP not approved (1): Details are in Annex A b).
- TAP determined (21): 20 new Recommendations and 1 Amendment. Details are in Annex A c).
- AAP consented (7): 5 new Recommendations, 1 new Corrigendum and 1 new Amendment for AAP Last Call. Details are in Annex A d).
- Agreed (19): 1 new Amendment, 13 Technical Reports and 5 SG17 documents. Details are in Annex A e).
– New work items (71): 52 Recommendations, 15 Technical reports, 2 Technical Papers, and 2 Supplements, Details are in Annex B. Two work items were discontinued (see Annex C).
– Two new Registration Authorities have been established:
- One for Burkina Faso under joint-iso-itu-t(2) country(16) bf(854)
- One for Cote d'Ivoire under joint-iso-itu-t(2) country(16) ci(384)
– SG17 Correspondence Groups
- CG-COP (Child online protection): continued, updated gap analysis report
- CG-RES-MODERN (Correspondence group to SG17 restructuring and modernization) became CG-NSP-MODERN (Correspondence group on SG17 preparation for next study period and modernization): ToR in TD278/P
- Progress on restructuring:
- Agreed on updated ToR for Question 8/17
- Started discussion on updating Qs 1, 7 and 15/17
- Progress on modernization
- attracted 13 new ITU-T members since WTSA-24
- Efficiency:
- 7 working days with only 8 meeting rooms (previously 12 rooms)
- 140 sessions (previously 190 sessions)
- Quality:
- 71 new work items established out of 78 proposed (91%),
- Successful 1st SG17 Content Week: Outcome 50% reopened, but only 10% modified.
- tooling:
- automation tool to generate SG17 Q and WP reports
- Gitlab for SG17 management
- SG17 is premier user of DDPv2 and new version of MyMeetings
- “Risk Register” session with the SG17 extended management team
- Visibility:
- SG17 introduction for newcomers on 26 May 2026 attracted 49 participants
- SG17 workshop on 2 June 2026 attended by 239 participants
3 Future SG17 meetings
3.1 WP/SG/workshop events
| date | Venue | event | Scope |
| 9 July 2026 (during AI4Good 2026) | Geneva | Agentic AI security workshop | workshop |
7-11 Sept 2026 - 7 Sept 2026
- 8-10 Sept 2026
- 11 Sept 2026
| Chongqing. China | SG17 2nd content week | - two 0.5-day workshops: ITS security, and AI security
- RGMs
- WP1, 2, 3, 4/17 meetings
|
| 7 Oct 2026 (tbc) | MyWorkspace | SG17 virtual plenary | Announcement of SG17 Jan 2027 events |
| Nov 2026 (tbc) | Paris, France | FG 1st meeting | |
| 9 Dec 2026 (tbc) | MyWorkspace | SG17 virtual plenary | Finalize LSs to TSAG Jan 2027 meeting |
Mon 18 – Fri 29 Jan 2027 - 18 Jan
- 19 Jan
- Wes 20 – Fri 29
| Geneva | SG17 series of events | - Workshop - FG 2nd meeting - SG17 plenary meeting in 2025-2028 Study Period |
3.2 Interim RGMs
All 12 Questions of SG17 plan to hold the following 19 RGMs in the interregnum period before SG17 June 2026 meeting:
| # | Q | Date | Place/Host | Subject/objective |
| 1. | 1/17 | 8-10 Sept 2026 (SG17 content week) | Chongqing+remote | Progress ongoing WIs |
| 2. | 1 /17 | 9 December 2026 | Fully virtual | Only for review on LS |
| 3. | 2/17 | 8-10 Sept 2026 (SG17 content week) | Chongqing+remote | - prepare texts for action in the next SG17 meeting: X.5Gsec-FMSC, X.5Gsec-scio, X.s-isac, XSTR.srsec, and XSTR.FMSC-IMT2030 - review all work items and identify future topics for Q2/17 |
| 4. | 4/17 | 8-10 Sept 2026 (SG17 content week) | Chongqing+remote | Progress ongoing WIs |
| 5. | 6/17 | 8-10 Sept 2026 (SG17 content week) | Chongqing+remote | - work items planned for decision at next SG17 meeting |
| 6. | 7/17 | 8-10 Sept 2026 (SG17 content week) | Chongqing+remote | Candidate work items for action at the next SG17 meeting, ongoing work item |
| 7. | 8/17 | 8-10 Sept 2026 (SG17 content week) | Chongqing+remote | Progress on ongoing WIs and discuss of potential new work item proposals |
| 8. | 10/17 | 8-10 Sept 2026 (SG17 content week) | Chongqing+remote | Progress on on-going items |
| 9. | 10/17 +Q1+JCA-IdM | 17 Sept 2026 | New York + remote | Trust and agentic AI, Future work for IdM Roadmap |
| 10. | 11/17 | 8-10 Sept 2026 (SG17 content week) | Chongqing+remote | Progress on on-going items |
| 11. | 11/17 | 30 Nov - 4 Dec 2026 | Takamatsu, Japan | Joint ISO/IEC/JTC 1/SC 6/WG 10 and ITU-T Q11/17 meeting |
| 12. | 13/17 | 8-10 July 2026 | Seoul+remote | - Progress on on-going items (mainly X.ececu-sec, X.ota-sec, X.cov-sec) - discuss new work item if any, but not agree |
| 13. | 13/17 | 8-10 Sept 2026 (SG17 content week) | Chongqing+remote | - Progress on on-going items (mainly X.ececu-sec, X.ota-sec, X.cov-sec) - discuss new work item if any, but not agree |
| 14. | 13/17 | 4-5 November, 2026 | e-meeting | - Progress on on-going items - discuss new work item if any, but not agree |
| 15. | 14/17 | 8-10 Sept 2026 (SG17 content week) | Chongqing+remote | Progress on WIs for action (XSTR.gscim-dlt), X.dsa-dlt, etc |
| 16. | 15/17 | 29-30 July 2026 | e-meeting | Finalize for agreement on XSTR.QKDN-nq- ZTA, XSTR.QKDN-SP and XSTR.SQKDN- SC, Other input contributions |
| 17. | 15/17 | 31 July 2026 | e-meeting | X.sec-QKDN-TLS, Y.QKDN-TLS, Other input contributions |
| 18. | 15/17 | 8-10 Sept 2026 (SG17 content week) | Chongqing+remote | Agreement on XSTR.QKDN-nq-ZTA, XSTR.QKDN-SP and XSTR.SQKDN-SC, Other input contributions |
| 19. | 16/17 | 8-10 Sept 2026 (SG17 content week) | Chongqing+remote | AI security: progressing ongoing work items and reviewing contributions and TDs deferred to the content week, with particular focus on work items targeted for completion at the next SG17 meeting. |
Annex A
Actions taken on Recommendations, and other texts at SG17 closing plenary on 11 December 2025
a) TAP Recommendations approved (WTSA-24 Resolution 1) (10)
| # | Q/17 | Acronym | Title | New / Revised | Base text | Equivalent e.g., ISO/IEC |
| 1. | Q2/17 | X.1821 (ex X.5Gsec-asra) | Guidelines and Technical Requirements for Analysis of 5G Network Asset Security Risk | New | TD232/2 | |
| 2. | Q4/17 | X.2105 (ex X.st-ssc) | Security threats of software supply chain | New | TD188/3 | |
| 3. | Q6/17 | X.1350 (ex X.sr-iiot) | Security requirements for the industrial Internet of things based smart manufacturing reference model | New | TD238/2 | |
| 4. | Q7/17 | X.1910 (ex X.tc-ifd) | Technical capabilities of interactive deception risk detection | New | TD309/4 | |
| 5. | Q8/17 | X.1607 (ex X.asm-cc) | Requirements of attack surface management for cloud computing | New | TD264/4 | |
| 6. | Q8/17 | X.1651 (ex X.soar-cc) | Framework of security orchestration, automation and response for cloud computing | New | TD265/4 | |
| 7. | Q10/17 | X.1280rev | Framework for out-of-band mutual authentication using mobile devices | Rev | TD223/1 | |
| 8. | Q10/17 | X.1286 (ex X.accsadlt) | Access security authentication based on DLT | New | TD 193/1 | |
| 9. | Q14/17 | X.1417 (ex X.sr-dpts) | Security requirements for DLT data on permissioned DLT-based distributed power trading systems | New | TD 311/4 | |
| 10. | Q14/17 | X.1418 (ex X.sg-dcs) | Security guidelines for DLT-based digital collection services | New | TD 310/4 | |
b) TAP Recommendations not approved (WTSA-24 Resolution 1) (1)
| # | Q | Work Item | Title/Subject | Version | Reference | Equivalent e.g., ISO/IEC | Timing |
| 1. | Q7/17 | X.2210 (ex X.ig-dw) | Implementation guidelines for digital watermarking | New | TD308/4 | |
|
c) TAP Recommendations determined (WTSA-24 Resolution 1) (21)
| # | Q | Work Item | Title/Subject | Version | Reference | Equivalent e.g., ISO/IEC | Timing |
| 1. | Q2/17 | X.1048 (ex X.ztmc) | Guidelines for Zero trust model and its security capabilities in telecommunication networks | New | TD207/2 | | 2026-06 |
| 2. | Q4/17 | X.1239 (ex X.sf-dtea) | Security framework for detecting targeted email attacks | New | TD181/3 | | 2026-06 |
| 3. | Q4/17 | X.1221 (ex X.MVSC)* | Minimum viable security controls | New | TD179/3 | | 2026-06 |
| 4. | Q4/17 | X.2106 (ex X.ssc-sa) | Guidelines for Software Supply Chain Security Audit | New | TD202/3 | | 2026-06 |
| 5. | Q6/17 | X.1351 (ex X.sm-iot) | Technical requirements of security situation monitoring for Internet of things (IoT) devices | New | TD231/2 | | 2026-06 |
| 6. | Q6/17 | X.1356 (ex X.sr-smb) | Security requirements for industrial Internet of things data of smart manufacturing using blockchain | New | TD219/2 | | 2026-06 |
| 7. | Q10/17 | X.2312 (ex X.f2sp) | FAPI 2.0 security profile | New | TD214R1/1 | | 2026-06 |
| 8. | Q10/17 | X.2311 (ex X.f2am) | FAPI2.0AttackerModel | New | TD213R4/1 | | |
| 9. | Q10/17 | X.1281Amd1 | APIs for interoperability of identity management systems | New | TD192R1/1 | | |
| 10. | Q7/17 | X.2213 (ex X.sg-GenAI) | Security Guidelines for Generative Artificial Intelligence Application Service | New | TD333/4 | | 2026-04 Determined in WP4/17 meeting on 2 April 2026 |
| 11. | Q7/17 | X.2050 (ex X.srgsc) | Security requirements and guidelines of application and service for smart city platform | New | TD282/4 | | 2026-06 |
| 12. | Q7/17 | X.2051 (ex X.sgrtem) | Security guidelines for real-time event monitoring and integrated management in smart city | New | TD281/4 | | 2026-06 |
| 13. | Q8/17 | X.1652 (ex X.sgcnp) | Security guidelines for platform as a service for cloud native applications | New | TD213/4 | | 2026-04 Determined in WP4/17 meeting on 2 April 2026 |
| 14. | Q13/17 | X.1386 (ex X.af-sec) | Evaluation methodologies for anonymization techniques using face images in autonomous vehicles | New | TD197/2 | | 2026-04 Determined in WP4/17 meeting on 2 April 2026 |
| 15. | Q13/17 | X. 1387 (ex X.evpnc-sec) | Security guidelines for electric vehicle plug and charge (PnC) services using vehicle identity (VID) | New | TD198/2 | | 2026-04 Determined in WP4/17 meeting on 2 April 2026 |
| 16. | Q13/17 | X. 1388 (ex X.fod-sec) | Security requirements and guidelines for a feature on demand (FoD) service in a connected vehicle environment | New | TD199/2 | | 2026-04 Determined in WP4/17 meeting on 2 April 2026 |
| 17. | Q14/17 | X.1420 (ex X.sr-di) | Security requirements for DLT-based invoices | New | TD285/4 | | 2026-06 |
| 18. | Q14/17 | X.1421 (ex X.qsdlt-ca) | Guidelines for building crypto-agility and migration for quantum-safe DLT systems | New | TD283/4 | | 2026-06 |
| 19. | Q16/17 | X.2214 (ex X.AI-App-policy) | Reference architecture for artificial intelligence (AI)-assisted analysis of the consistency between application's usage data and its privacy policy | New | TD215/4 | | 2026-04 Determined in WP4/17 meeting on 2 April 2026 |
| 20. | Q16/17 | X.2212 (ex X.srm-fml) | Security requirements and measures of federated machine learning | New | TD300/4 | | 2026-06 |
| 21. | Q16/17 | X.2211 (ex X.sr-AI | Security requirements for AI systems | New | TD299R1/4 | | 2026-06 |
a) AAP Recommendations consented (Recommendation ITU-T A.8) (7)
| # | Q/17 | Acronym | Title | Base text | New / Revised | Equivalent e.g., ISO/IEC | Timing |
| 1. | Q11/17 | X.506 (ex X.migrate) | Information Technology - Open systems Interconnection - The Directory - General methods for migration of cryptographic algorithms | TD203/1 | New | ISO/IEC 9594-x | 2026-06 |
| 2. | Q11/17 | X.509 Cor.3 | Information technology-Open Systems Interconnection-The Directory Public-key and attribute certificate frameworks | TD212/1 | Cor | | 2026-06 |
| 3. | Q11/17 | X.510 Amd.1 | Information technology – Open Systems Interconnection – TheDirectory-Protocol specifications for secure operations | TD211/1 | Amd | ISO/IEC 9594-11 | 2026-06 |
| 4. | Q7/17 | X.1287 (ex X.ias) | Functional requirements for the integrated authentication service of telecommunication operators | TD312/4 | New | | 2026-06 |
| 5. | Q8/17 | X.1632 (ex X.ckrp) | Framework of cryptographic key resource pool for cloud computing | TD211/4, A.5 in TD227/4 | New | | 2026-04 Consented in WP4/17 meeting on 2 April 2026 |
| 6. | Q13/17 | X.1378 (ex X.idse) | Evaluation methodology for in-vehicle intrusion detection systems | TD233/2 | New | | 2026-04 Consented in WP2/17 meeting on 2 April 2026 |
| 7. | Q14/17 | X.1419 (ex X.dlt-share) | Security requirements for DLT-based data statistics software to share data | TD223/4 | New | | 2026-04 Consented in WP4/17 meeting on 2 April 2026 |
b) Non-normative texts (Technical Report, Supplement, Implementers' Guide, etc) agreed (19)
Annex B
New work items (71)
The following 71 new work items were agreed to be added to the SG17 Work Programme:
| Q (TAP/AAP by default) | # | Web | WI abbreviationNote | Title |
Q1/17 (7) AAP | 1. | TD190/3 | X.dmst (incubated)
| Design methodology for security and trust |
| | 2. | TD194/3 | XSTR.psam** | XSTR.psam: Practical Security Architecture Methodology (PSAM) |
| | 3. | TD193/3 | X.res-dfs (incubated)
| Cyber resilience assessment framework for digital financial services |
| | 4. | TD191/3 | XSTP.COP**(incubated) | Technical Paper: Technical standards supporting child online protection- gap analysis and future directions |
| | 5. | TD189/3 | XSTP.inno-amend** | Amendment to TP.inno: Description of the incubation mechanism and ways to improve it |
| | 6. | TD192/3 | XSTR.qs-IMT2030**(incubated)
| Benefits and challenges of technical approaches for quantum-safe IMT2030 networks |
| | 7. | TD205/3 | XSTR.pcp-mkt**(incubated)
| Worldwide market analysis of parental and family control products |
Q2/17 (6) TAP | 8. | TD239/2 | X.tsr-6g* | Technical security controls for IMT-2030 networks |
| | 9. | TD242/2 | X.tr-5gse | Technical guidelines to 5G simulation system for network security evaluation |
| | 10. | TD243/2 | XSTR.di-IMT2030** | Potential use cases and security considerations of digital identity management for IMT-2030 networks |
| | 11. | TD237/2 | X.sg.aai | Security Guidelines for Agentic AI Driven IMT 2020 and beyond Based Heterogeneous Networks |
| | 12. | TD182/2 | XSTR.AIS-IMT2030** | Benefits and challenges of AI-enabled security for IMT-2030 networks |
| | 13. | TD183/2 | X.5Gsec-SEIA* | Capabilities and framework of Security Event Intelligent Analysis system for IMT-2020 Network |
Q4/17 (7) TAP | 14. | TD198/3 | X.sg-cmp | Security guidelines for countering malicious use of proxies in IP spoofing |
| | 15. | TD199/3 | X.tg-cmc | Technologies and guidelines to counter malicious API crawlers |
| | 16. | TD195/3 | X.asap | Technical framework and functional requirements for anti-fraud situational awareness platform in telecommunication networks |
| | 17. | TD196/3 | X.rcdmu* | Proposal to initiate a new work item - X.rcdmu: Requirements for Collection and Detection of Malicious URLs in Cyber Threat Intelligence |
| | 18. | TD197/3 | X.CSSP | Proposed new work item X.CSSP: "Reference Framework and Application System for Cyberspace Security Simulation Platform" |
| | 19. | TD200/3 | X.uspam | Proposal for new work item X.uspam: Security framework for user-intent-based storage protection against malware attacks |
| | 20. | TD201/3 | XSTR.OTT-MISUSE** | Security Framework for OTT Messaging Phishing Fraud Mitigation |
| Q6/17 (4) | 21. | TD234/2 | X.sf-VIoT* | Security framework for vertical IoT devices using multimodal AI systems |
| | 22. | TD235/2 | X.SRVP* | Security Requirements for Virtual Power Plant ICT Systems |
| | 23. | TD236/2 | X.sg-dtpg | Security guidelines for digital twin system in power grid |
| | 24. | TD173/2 | X.tc-iotsec * | Technical Control for IoT devices and Gateway |
| Q7/17 (4) AAP | 25. | TD244/4 | X.sgAIoT* | Security Guidelines for Artificial Intelligence of Things on Devices |
| | 26. | TD243/4 | X.srm-AIphs* | Security requirements and measures for AI agent-enabled public health services |
| | 27. | TD319/4 | X.fr-SGAI | Functional Requirements for Security Gateway for AI Application Services |
| | 28. | TD317/4 | X.srAITOM* | Security requirements for Artificial Intelligence enhanced Telecommunication Operation and Management |
| Q8/17 (7) TAP | 29. | TD323/4 | X.sra-eAI* | Technical Requirements for Security Risk Assessment of Edge AI in Edge Computing |
| | 30. | TD322/4 | X.sr-AIDevOps* | Security Requirements for AI-based Cloud Service Development and Operations |
| | 31. | TD321/4 | X.dam-sec-req* | Security requirements for data asset management in big data infrastructure |
| | 32. | TD315/4 | X.cssc-sra* | Technical requirements for cloud service supply chain security risk assessment |
| | 33. | TD314/4 | X.Sup1-cpres** | Supplement to ITU-T X.1605 on security aspects of computing power resources in public Infrastructure as a Service (IaaS) in cloud computing |
| | 34. | TD230/4 | X.sgcdp* | Security guidelines for collaborative data processing in data platforms |
| | 35. | TD232/4 | X.sr-mlaas* | Security requirements for machine learning as a service |
| Q10/17 (10) | 36. | TD233/1 | X.AIA-dii-req* | Proposes a new work item on "Security requirements of decentralized identity interoperability across artificial intelligence agents" |
| | 37. | TD237/1 | X.aiidm* | New Work Item Proposal - Canonical Agentic AI Identity Data Model (X.aiidm) |
| | 38. | TD224/1 | X.qspm* | Proposal for new work item X.qspm: Framework for QR Code-Based Serverless Password Manager Using a Mobile Device |
| | 39. | TD222/1 | X.sup.livestock_auth** | Proposal for new work item on Recommendation ITU-T X.sup.livestock_auth, "Supplement to X.1095: Guidelines for entity authentication services for livestock animals using telebiometrics" |
| | 40. | TD236/1 | XSTR.athena** | Proposal for a New Work Item for a Technical Report: XSTR.athena Technical Report about Authonomous Trusted Hierarchical ENtity Architecture rev 1.2 |
| | 41. | TD232/1 | X.id-AA-dis | Proposal for new work item on Recommendation X.id-AA-dis, "Identity management framework for AI agents using decentralized identity systems" |
| | 42. | TD215/1 | X.aas-2* | Proposal for new work items on draft ITU-T Recommendation X.aas-2, "Age assurance systems - Part 2: Technical approaches and guidance for implementation" and draft ITU-T Recommendation X.aas-3, "Age assurance systems - Part 3: Approaches to analysis or comparison" |
| | 43. | TD216/1 | X.aas-3* | |
| | 44. | TD229/1 | XSTR.SIMSeDecom** | New work item proposal - Secure decommissioning and number recycling: Operational guidelines after mandatory SIM registration |
| | 45. | TD234/1 | X.AIssc-sm* | Guidelines on AI system supply chain security manage-ment for telecommunications organizations |
| Q11/17 (2) | 46. | TD231/1 | XSTR.iga-pqc** | Proposal for a new work item XSTR.iga-pqc: Implementation guidelines for agile post-quantum cryptography migration |
| | 47. | TD219/1 | X.nfc-sba | Proposal for a new work item on X.nfc-sba: Sovereign bond architecture: Asymmetric cryptographic framework for hardware-bound near field communication (NFC) identity |
| Q13/17 (2) TAP | 48. | TD241/2 | X.vrcmp-sec* | Proposal for new work item X.cmp-sec "Security requirements for vehicle-road coordination management platform" |
| | 49. | TD240/2 | X.ppiimaas-sec* | Proposal for a new work item X.ppiim-sec: Security guidelines for the protection of personally identifiable information in mobility as a service |
| Q14/17 (3) AAP | 50. | TD316/4 | X.dlt-poll | Proposal for new work item on Recommendation ITU-T X.dlt-poll: "Security framework for DLT-based polling systems" |
| | 51. | TD313/4 | X.dlt-sr-aks | Proposal for new work item on Recommendation ITU-T X.dlt-sr-aks: Security requirements for authenticated key establishment in DLT-based distributed systems |
| | 52. | TD225/4 | X.dsa-dlt | Secure data storage architecture based on DLT systems |
| Q15/17 (1) AAP | 53. | TD241/1 | X.sec-QKD-TLS | New work item proposal - draft new Recommendation ITU-T X.sec-QKD-TLS, "Security framework for the use of QKD-derived keys in transport layer security" |
Q16/17 (18) TAP | 54. | TD247/4 | X.S-AIAI* | Security Framework and Requirements for Invocation by AI Agent system |
| | 55. | TD252/4 | X.scm-llm* | Security control methods for data of large language models |
| | 56. | TD239/4 | X.Max-trust* | A Multi-party, Agentic, and eXtensible Trust Framework for Next Generation Agentic-AI-enabled Telecommunication Networks |
| | 57. | TD248/4 | X.seg-ai* | Security evaluation guidelines for artificial intelligence technology in ICT |
| | 58. | TD246/4 | X.SG-AIAD* | Security Guidelines for Artificial Intelligence Agent Data |
| | 59. | TD245/4 | X.sgMMFM* | Security Guidelines for Multimodal Foundation Models |
| | 60. | TD251/4 | XSTR.stv-OC** | Security threats and vulnerabilities in the OpenClaw framework |
| | 61. | TD287/4 | X.sem-ddm* | Security Evaluation Methodology for DeepFake Detection Model |
| | 62. | TD290/4 | X.sr-AIapi* | Security Requirements for AI Service APIs |
| | 63. | TD272/4 | X.aaia-sec * | Security framework and technical requirements for autonomous AI agents |
| | 64. | TD324/4 | X.sg-AIAof* | Security guidelines for AI agent orchestration framework |
| | 65. | TD325/4 | X.sg-rag* | Security guidelines for retrieval-augmented generation systems |
| | 66. | TD326/4 | XSTR.OCC-LLM** | Prospective assessment of the offensive cyber capabilities of LLMs |
| | 67. | TD327/4 | X.sf-Pai* | Security framework for Physical AI Systems |
| | 68. | TD328/4 | XSTR.magAI-behavior** | Capabilities for Agentic AI security and trust controls to manage the behavior of single or multiple agentic multi-objective AI systems |
| | 69. | TD331/4 | XSTR.atcp** | Cryptographic primitives for enhancing AI agent trustworthiness |
| | 70. | TD329/4 | XSTR.aam** | AI accountability manifest |
| | 71. | TD332/4 | XSTR.llmp-tip** | LLM token-level inference provenance |
Note:
* marked items are for approval by TAP;
** marked items are for approval by agreement; Items without any mark are for approval by AAP
.
Annex C
Work items discontinued
| Question | Acronym | Title |
| Q4/17 | X.stie | Structured Threat Information Expression (STIE) |
| Q4/17 | X.taeii | Trusted Automated Exchange of Intelligence Information (TAEII) |
Annex D
SG17 meeting Statistics
410/54 Participants/Countries (TD205/P)
- Stay high (previous meetings: 408/54, 374/57)
126 sessions (i.e.,1.5-hour slot) in these 7-days meeting (vs 195 session in last 7-days SG17 meeting in Dec 2025, 191 sessions in last 8-days SG17 meeting in April 2025)
| | Participants | #of Countries | # of Member States | # of Sector Members | # of SG17 Associates | # of Academia | # Invited Experts |
| Final | 410 | 54 | 42 | 41 | 7 | 11 | 20 |
Meeting input and organization
Table of SG17 statistics of this meeting
| C | matrix in TD214/P | | TD (422) | | | | | |
| | LS/i | LS/o | | |
| | | |
| 221 | 55 | ~27
| GEN | PLEN | WP1 | WP2 | WP3 | WP4 |
| | | | 64 | 92
| 73
| 61 | 51 | 81 |
Contributions
221 – stay high (past meetings: 221, 189, 187, 153, 119, 104, 101). DDP: 99%
o APT 172.9 (83%) (= Korea 78.3 + China 72.6 + India 11 + Japan 10)
o EUR 28.5 (13%) (= UK 18.5 + Ukraine 6 + Denmark 0.5 + Switzerland 1 + France 1.5 + Neitherlands 1)
o Americas 9 (3%) (= Canada 6 + US 1 + Brazil 2)
o AFR 8.3 (3%) (= Lybia 2 + Mali 0.5 + Ghana 2.5 + Nigeria 0.5 + South Africa 0.8 + Uganda 1 + Senegal 1)
o ARAB 2.3 (= Qatar 0.8 + Kuwait 1 + Palestine 0.5)
o RCC 0 (= Russia 0)
o LAM (0)