▲ 27 r/artificial+2 crossposts

Stealing Reasoning Traces from Proprietary LLM APIs

Proprietary reasoning can be recovered from its encrypted traces. Anthropic, OpenAI, and Google return encrypted chain-of-thought blocks to clients that can be replayed across sessions, users, and models. We take a trace produced by a frontier model, replay it into a weaker sibling, jailbreak the weaker model, and recover the stronger model’s hidden reasoning in plaintext, without ever attacking the stronger model directly or triggering its anti-distillation safeguards.

stolen-thoughts.com
u/tw1st3d_m3nt4t — 8 days ago