I have tried blocking connect.athom.com in my routers firewall, to see if that reduces the traffic at all (sacrificing cloud connectivity until there is a better solution), but that just splits the TLS requests into multiple different chains to and from (Internet-dependent) app-specific servers (LIFX, Spotify, etc.).
This seems very strange to me since when I first noticed this behavior I disabled all apps on my Homey and saw no difference to network traffic (or TLS-Packets) at all. I will try disabling everything again and do another packet capture during the reboot.
EDIT:
Doing this stops nearly all TLS-Packets, but now I just get my traffic filled with corrupted TCP-Packets (going and coming from the same server in Ireland)