Security review of TLS1.3 0-RTT
https://www.ietf.org/mail-archive/web/tls/current/msg23051.html [www.ietf.org]
2017-05-06 00:26
On replay, the main finding is that what’s in the draft is not workably secure, and the review includes 5 different attacks against 0-RTT data to illustrate that.
https://github.com/tlswg/tls13-spec/issues/1001
source: green