• About Us
  • Write For Us?
  • Contact
    • Contact
    • Business Services
    • Privacy Policy
      • Editorial Ethics Policy
      • Money
  • PRnewswire
  • BusinessWire
  • Artificial Intelligence
Wednesday, August 12, 2026
  • Login
  • Register
TTM
  • TTM
  • TechNews
    • All
    • AR & VR
    • Artificial Intelligence
    • Business Wire
    • EdTech
    • HealthTech
    • IoT
    • Machine Learning
    • MarTech
    • Middle East TechNews
    • Personality
    • Robotics
    • SaaS
    • Security
    • softwares
    • Startups
    • Stories
    • Tips & Tricks
    • Trending
    • Web3
    Sinch-Agent-Tools

    Sinch Launches Agent Tools to Bring AI Coding Assistants Directly into Communications App Development!

    ai-assisted-software-development

    AI-Assisted Software Development: How AI Is Changing the Software Development Lifecycle!

    direct-to-cell-d2c-in-bangladesh

    Bangladesh Tests Satellite-to-Mobile Service With Starlink to Bring Connectivity Beyond Cell Towers!

    sinch-ai-production-paradox

    Sinch Research Reveals 74% of Enterprises Have Rolled Back Live AI Customer Communications Agents!

    Managing-International-Teams

    Shipping Across Time Zones: A Tech Leader’s Guide to Managing International Teams

    thetechmusk-spreading-technoology

    AI is Now Both Your Best Security Guard and Your Biggest Threat!

    Trending Tags

    • Best iPhone 7 deals
    • Apple Watch 2
    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • iOS 10
    • iPhone 7
    • Sillicon Valley
    • Trending
    • Artificial Intelligence
      Sinch-Agent-Tools

      Sinch Launches Agent Tools to Bring AI Coding Assistants Directly into Communications App Development!

      ai-assisted-software-development

      AI-Assisted Software Development: How AI Is Changing the Software Development Lifecycle!

      sinch-ai-production-paradox

      Sinch Research Reveals 74% of Enterprises Have Rolled Back Live AI Customer Communications Agents!

      thetechmusk-spreading-technoology

      AI is Now Both Your Best Security Guard and Your Biggest Threat!

      Smart-Yard-Ecosystem-at-CES-2026

      Aiper Expands its Smart Yard Ambitions at CES 2026 with AI-Powered Pool and Lawn Care Systems!

      Grokipedia-by-elonmusk

      Elon Musk Declares War on Wikipedia With His AI Encyclopedia, Grokipedia

      spreading-technology-THETECHNEWS

      Alkemi Launches DataLab, an AI Workspace That Puts Decision Intelligence in Every Employee’s Hands!

      nextcomputing-computer-hardware-manufacturer

      Inside NextComputing: The Hidden Powerhouse Fueling the Next Wave of Compact AI and Edge Innovation!

      thetechmusk-spreading-technoology

      IBM and nybl Team Up to Bring AI-Powered Industrial Intelligence to the Real World!

      Trending Tags

      • artificial intelligence
      • Artificial Intelligence (AI)
    • IoT
    • Startups
    • AR & VR
    • Personality
    • Stories
    • Business Wire
  • Cyber Security
    • All
    • Courses & Programs
    • How to!
    • News
    • Software
    • Tips & Tricks
    • VPN
    CyberSecurity-THETECHNEWS

    Researchers Find Cross-Model Attack That Can Expose Encrypted AI Reasoning Traces!

    CyberSecurity-THETECHNEWS

    Picus Security Launches AI-Powered Exposure Validation Platform as Enterprises Race to Keep Pace with Faster Cyberattacks!

    CyberSecurity-THETECHNEWS

    Parallel Works Lands DoD HPC Contract to Expand Secure Hybrid Cloud Access for Defense AI and Supercomputing Workloads!

    cyber-insurance

    Cyber Insurers Still Struggling to Price Risk Accurately as AI-Driven Threats Evolve, GlobalData Says!

    thetechmusk-spreading-technoology

    AI is Now Both Your Best Security Guard and Your Biggest Threat!

    cyber-security-by-TTM

    THETECHMUSK Cybersecurity Isn’t Broken – Your Approach to it is!

    Trending Tags

      • News
      • Tips & Tricks
      • How to!
      • Courses & Programs
      • Software
      • VPN
      • Applications
    • Telecom
    • Reviews
      • All
      • Hosting Review
      • SEO
      spreading-technology-THETECHNEWS

      The Smarter, Water-Saving Showerhead!

      spreading-technology-THETECHNEWS

      Best SEO Tools Paid and Free: Internet Marketing Must-Haves in 2023!

      spreading-technology-THETECHNEWS

      Node.js vs. Python: The Best Language in 2023?

      spreading-technology-THETECHNEWS

      The Era of High-Speed Intelligent Printing with FDM 3D Printers has Arrived!

      spreading-technology-THETECHNEWS

      Why React is Cooler than Others || TTM

      spreading-technology-THETECHNEWS

      BDIX Hosting Advantage and Disadvantage!

    • Business Services
      • Thought Leadership Service
      • PR LINKS STORE
      • Small Business Program – Publicity Services
      • Our Media Kit
    • Best 05
    • TTM
    • TechNews
      • All
      • AR & VR
      • Artificial Intelligence
      • Business Wire
      • EdTech
      • HealthTech
      • IoT
      • Machine Learning
      • MarTech
      • Middle East TechNews
      • Personality
      • Robotics
      • SaaS
      • Security
      • softwares
      • Startups
      • Stories
      • Tips & Tricks
      • Trending
      • Web3
      Sinch-Agent-Tools

      Sinch Launches Agent Tools to Bring AI Coding Assistants Directly into Communications App Development!

      ai-assisted-software-development

      AI-Assisted Software Development: How AI Is Changing the Software Development Lifecycle!

      direct-to-cell-d2c-in-bangladesh

      Bangladesh Tests Satellite-to-Mobile Service With Starlink to Bring Connectivity Beyond Cell Towers!

      sinch-ai-production-paradox

      Sinch Research Reveals 74% of Enterprises Have Rolled Back Live AI Customer Communications Agents!

      Managing-International-Teams

      Shipping Across Time Zones: A Tech Leader’s Guide to Managing International Teams

      thetechmusk-spreading-technoology

      AI is Now Both Your Best Security Guard and Your Biggest Threat!

      Trending Tags

      • Best iPhone 7 deals
      • Apple Watch 2
      • Nintendo Switch
      • CES 2017
      • Playstation 4 Pro
      • iOS 10
      • iPhone 7
      • Sillicon Valley
      • Trending
      • Artificial Intelligence
        Sinch-Agent-Tools

        Sinch Launches Agent Tools to Bring AI Coding Assistants Directly into Communications App Development!

        ai-assisted-software-development

        AI-Assisted Software Development: How AI Is Changing the Software Development Lifecycle!

        sinch-ai-production-paradox

        Sinch Research Reveals 74% of Enterprises Have Rolled Back Live AI Customer Communications Agents!

        thetechmusk-spreading-technoology

        AI is Now Both Your Best Security Guard and Your Biggest Threat!

        Smart-Yard-Ecosystem-at-CES-2026

        Aiper Expands its Smart Yard Ambitions at CES 2026 with AI-Powered Pool and Lawn Care Systems!

        Grokipedia-by-elonmusk

        Elon Musk Declares War on Wikipedia With His AI Encyclopedia, Grokipedia

        spreading-technology-THETECHNEWS

        Alkemi Launches DataLab, an AI Workspace That Puts Decision Intelligence in Every Employee’s Hands!

        nextcomputing-computer-hardware-manufacturer

        Inside NextComputing: The Hidden Powerhouse Fueling the Next Wave of Compact AI and Edge Innovation!

        thetechmusk-spreading-technoology

        IBM and nybl Team Up to Bring AI-Powered Industrial Intelligence to the Real World!

        Trending Tags

        • artificial intelligence
        • Artificial Intelligence (AI)
      • IoT
      • Startups
      • AR & VR
      • Personality
      • Stories
      • Business Wire
    • Cyber Security
      • All
      • Courses & Programs
      • How to!
      • News
      • Software
      • Tips & Tricks
      • VPN
      CyberSecurity-THETECHNEWS

      Researchers Find Cross-Model Attack That Can Expose Encrypted AI Reasoning Traces!

      CyberSecurity-THETECHNEWS

      Picus Security Launches AI-Powered Exposure Validation Platform as Enterprises Race to Keep Pace with Faster Cyberattacks!

      CyberSecurity-THETECHNEWS

      Parallel Works Lands DoD HPC Contract to Expand Secure Hybrid Cloud Access for Defense AI and Supercomputing Workloads!

      cyber-insurance

      Cyber Insurers Still Struggling to Price Risk Accurately as AI-Driven Threats Evolve, GlobalData Says!

      thetechmusk-spreading-technoology

      AI is Now Both Your Best Security Guard and Your Biggest Threat!

      cyber-security-by-TTM

      THETECHMUSK Cybersecurity Isn’t Broken – Your Approach to it is!

      Trending Tags

        • News
        • Tips & Tricks
        • How to!
        • Courses & Programs
        • Software
        • VPN
        • Applications
      • Telecom
      • Reviews
        • All
        • Hosting Review
        • SEO
        spreading-technology-THETECHNEWS

        The Smarter, Water-Saving Showerhead!

        spreading-technology-THETECHNEWS

        Best SEO Tools Paid and Free: Internet Marketing Must-Haves in 2023!

        spreading-technology-THETECHNEWS

        Node.js vs. Python: The Best Language in 2023?

        spreading-technology-THETECHNEWS

        The Era of High-Speed Intelligent Printing with FDM 3D Printers has Arrived!

        spreading-technology-THETECHNEWS

        Why React is Cooler than Others || TTM

        spreading-technology-THETECHNEWS

        BDIX Hosting Advantage and Disadvantage!

      • Business Services
        • Thought Leadership Service
        • PR LINKS STORE
        • Small Business Program – Publicity Services
        • Our Media Kit
      • Best 05
      No Result
      View All Result
      TTM
      No Result
      View All Result
      Home Cyber Security

      Researchers Find Cross-Model Attack That Can Expose Encrypted AI Reasoning Traces!

      The research shows how encrypted reasoning blocks generated by stronger models could potentially be replayed through weaker compatible models to recover hidden content—including API keys, passwords, personal information and even hidden prompt instructions.

      Md. Nazrul Islam by Md. Nazrul Islam
      August 12, 2026
      in Cyber Security
      23 0
      0
      CyberSecurity-THETECHNEWS
      12
      SHARES
      585
      VIEWS
      Share on FacebookTweet

      A new research paper says encrypted reasoning blocks used by major AI providers can be replayed through weaker compatible models, potentially exposing hidden reasoning, credentials and other sensitive information.

      A newly published security paper has identified a potential architectural weakness in how major AI providers protect hidden reasoning traces, showing that encrypted reasoning blocks can be extracted by passing them to compatible but less restricted models within the same provider ecosystem.

      The research, “Stealing Reasoning Traces from Proprietary LLM APIs,” was authored by researchers affiliated with MATS Research, the ELLIS Institute Tübingen, the Max Planck Institute for Intelligent Systems, the Tübingen AI Center, Snyk and the University of Tübingen.

      The researchers tested the technique against APIs from Anthropic, OpenAI and Google, arguing that the problem stems from the portability of encrypted reasoning blocks across models, users and sessions.

      Voldemaras Kadys (https://www.linkedin.com/in/voldemaras-kadys/), the Head of Security at Cybernews, with over 15 years of experience in cybersecurity and IT infrastructure, comments:

      “The most interesting part of this research is that the researchers didn’t need to ‘break’ the encryption in the traditional sense. They found that encrypted reasoning traces could be passed between compatible models within the same provider’s ecosystem, effectively turning a weaker model into a master decryption key. The main lesson here for users and organizations is this: if you’re using AI with sensitive inputs or outputs, treat chat logs as sensitive data, even when they look like meaningless encrypted text. Those encrypted blocks can contain credentials, personal information, and other sensitive data that isn’t visible to the person sharing the log. As this research demonstrates, encryption doesn’t necessarily make that information inaccessible, and the barrier to decrypt it may be much lower than users expect.”

      The attack does not require breaking the encryption

      Modern reasoning models generally do not return their full chain-of-thought in readable form. Instead, some APIs provide clients with opaque reasoning blocks that can be passed back to the provider to maintain context between requests.

      ADVERTISEMENT

      According to the paper, these blocks use authenticated encryption mechanisms designed to protect confidentiality and integrity while allowing providers to avoid storing the reasoning state server-side.

      The researchers found that the security boundary can become much weaker when those encrypted blocks are accepted by multiple models within the same provider ecosystem.

      Their attack works by taking a reasoning block generated by a more capable, heavily safeguarded model and replaying it into a weaker compatible model. The weaker model can then be prompted to reproduce the hidden reasoning in plaintext.

      The important distinction is that the researchers did not cryptographically break the underlying encryption. Instead, they exploited the model ecosystem’s ability to accept and process an authenticated reasoning block in another context.

      The researchers describe this as a “decryption jailbreak,” with the compatible weaker model effectively becoming a decoding channel.

      Anthropic, OpenAI and Google models tested

      The researchers identified compatible decoder models for each ecosystem.

      For Anthropic, they used Claude Haiku 4.5 to extract reasoning generated by stronger Claude models. For OpenAI, they used GPT-5.6 Luna, while Gemini Robotics 1.6 was used to process reasoning traces from multiple Gemini generations.

      The researchers evaluated the extraction process using reasoning tasks and compared the amount of recovered reasoning with API-reported thinking-token counts. They caution, however, that they cannot guarantee every recovered token represents the model’s original private reasoning because the actual ground-truth reasoning is unavailable and model generation is stochastic.

      That limitation is important: the paper demonstrates substantial extraction capability, but it does not claim perfect byte-for-byte recovery of every hidden reasoning trace.

      Publicly shared AI logs exposed sensitive information

      The privacy implications may be more significant than the model-distillation issue.

      Developers increasingly publish AI agent trajectories, debugging logs and session transcripts on platforms such as GitHub and other public repositories. Even when the visible conversation has been sanitized, encrypted reasoning fields can remain in the underlying data.

      The researchers scraped 315,320 encrypted reasoning blocks from publicly available repositories and reported recovering 367 personally identifiable information artifacts and 182 credentials. From genuine user sessions, the researchers identified 62 API keys, 33 passwords and 30 personal email addresses.

      The paper’s detailed analysis found that 64 of 704 recovered genuine privacy artifacts appeared only inside reasoning, rather than in the visible chat history. The researchers say this could happen when users sanitize visible transcripts while leaving the encrypted reasoning blocks intact, or when information is introduced into hidden reasoning from model memory.

      The researchers stress that their scan was targeted rather than an exhaustive audit of all publicly available AI traces.

      The problem extends beyond data leakage

      The research identifies four potential attack categories:

      • Reasoning extraction and model distillation
      • Extraction of credentials and personally identifiable information
      • Hidden prompt injection
      • Recovery of harmful information from protected reasoning

      The prompt-injection scenario is particularly notable for emerging AI-agent deployments.

      The researchers demonstrated a proof of concept in which an instruction embedded within an encrypted reasoning block could influence a model when the block was subsequently replayed. In one example, the injected instruction caused an agent to generate a PowerPoint-editing script that also uploaded the resulting presentation to an attacker-controlled server.

      Because the malicious instruction exists inside an opaque reasoning block, conventional monitoring focused on visible prompts and responses may not see it.

      Hidden reasoning can contain information absent from the final response

      The researchers also tested whether hidden reasoning could expose information that a model’s visible answer had deliberately withheld.

      In one experiment, the team prompted a stronger model with a harmful request. Although the model’s visible response remained benign, the researchers captured its encrypted reasoning and used a weaker compatible model to extract information from the hidden trace.

      This raises a broader security question for AI providers: protecting the visible output may not be enough if the underlying reasoning channel remains accessible through another model.

      ADVERTISEMENT

      The “weakest model” may become the security boundary

      The paper’s central architectural concern is that security controls applied to frontier models may be undermined by less capable models that share access to the same encrypted reasoning format.

      A powerful model can have strong anti-distillation and refusal safeguards, while a smaller model may not have equivalent protections. If both models can process the same authenticated reasoning block, an attacker may be able to move the protected data from the stronger model into the weaker one.

      That creates an unusual security asymmetry: the security of the most protected model can depend partly on the behavior of the least protected compatible model.

      Researchers say providers were notified

      The researchers say they disclosed the vulnerabilities and extraction methods to the affected model providers, Microsoft and Hugging Face before publication.

      According to the paper, all affected model providers acknowledged receipt of the report, and the researchers subsequently found that they could no longer reproduce the same attacks.

      The paper does not provide detailed public explanations from each provider about what changes were made.

      The researchers also note that their testing was conducted against specific API versions and models available in early July 2026, meaning provider-side changes could affect whether the techniques remain effective.

      What should organizations do?

      The researchers recommend that developers and organizations treat encrypted reasoning fields as potentially sensitive data rather than assuming that an opaque signature is harmless.

      Among their recommendations is removing reasoning blocks and opaque reasoning fields from publicly released AI-agent trajectories when sensitive information may have been exposed. They also advise against retaining or committing raw API transcripts containing reasoning signatures to shared repositories or public version-control systems.

      At the provider level, the researchers propose stronger cryptographic and system-level controls, including binding reasoning blocks to contextual information such as the originating user, session and model, rather than allowing broad replayability.

      A broader warning for AI security

      The research highlights an emerging challenge as AI models increasingly operate as agents rather than simple chat interfaces.

      Reasoning traces can contain intermediate calculations, tool outputs, user information and contextual data that never appears in the final response.

      That makes the security of these hidden channels increasingly important.

      As AI agents gain access to code repositories, corporate systems, credentials and sensitive business data, an encrypted reasoning block may look meaningless to a human reviewing a log while still containing valuable information that another compatible model can potentially recover.

      The researchers ultimately argue that AI systems need to balance proprietary reasoning protection with data transparency and verifiable security. Their conclusion is blunt: an architecture that hides sensitive information from the user while potentially allowing another party to extract it does not provide a sufficient privacy boundary.

      Tags: cyber security news
      Plugin Install : Subscribe Push Notification need OneSignal plugin to be installed.
      ADVERTISEMENT

      Recommended.

      buy magic mushrooms

      What You Should Know Before Buying Magic Mushrooms Online

      July 25, 2025
      spreading-technology-THETECHNEWS

      Panasonic Industry To Digitally Transform Planning Capabilities With Blue Yonder

      May 4, 2023

      Trending.

      ai-assisted-software-development

      AI-Assisted Software Development: How AI Is Changing the Software Development Lifecycle!

      July 22, 2026
      Managing-International-Teams

      Shipping Across Time Zones: A Tech Leader’s Guide to Managing International Teams

      May 10, 2026
      spreading-technology-THETECHNEWS

      In-House VS Outsourcing Software: Which You Should Prefer?

      November 25, 2021
      CyberSecurity-THETECHNEWS

      Emerging Threats in VoIP Security: Preparing for the Future!

      March 3, 2026
      spreading-technology-THETECHNEWS

      How to Stand Out on Social Media as an Entrepreneur!

      November 20, 2021
      Girl in a jacket

      TTM

      THETECHMUSK, shortly as TTM; spreads amazing content from worldwide based on technology, CyberSecurity, unique product reviews, applications & the BEST 05 listicles editorial approach. Get reading with the world of spreading technology!

      Follow TTM

      by sur.ly

      100% Reputable
      Tech News & Reviews

      Website
      2021

      Categories

      • Android
      • Applications
      • AR & VR
      • Artificial Intelligence
      • Bangladesh
      • Best 05
      • Best Apps
      • Business
      • Business Wire
      • BusinessWire
      • Courses & Programs
      • CryptoCurrency
      • Cyber Security
      • Editorial
      • EdTech
      • FinTech
      • HealthTech
      • Hosting Review
      • How to!
      • Interview
      • IoT
      • iPhone
      • Machine Learning
      • Market Research
      • MarTech
      • Middle East TechNews
      • News
      • Personality
      • PR Newswire
      • Press Release
      • Reviews
      • Robotics
      • SaaS
      • Security
      • SEO
      • Smartphones
      • Software
      • softwares
      • Startups
      • Stories
      • TechNews
      • Telecom
      • Tips & Tricks
      • Tips & Tricks
      • Trending
      • VPN
      • Web3

      Recent News

      CyberSecurity-THETECHNEWS

      Researchers Find Cross-Model Attack That Can Expose Encrypted AI Reasoning Traces!

      August 12, 2026
      Sinch-Agent-Tools

      Sinch Launches Agent Tools to Bring AI Coding Assistants Directly into Communications App Development!

      August 5, 2026
      PRIVATE-JET-TRAVELLERS-WITH-HIGH-SPEED-STARLINK’S-INTERNET

      Starlink Is Reshaping Private Aviation Connectivity as Passenger Expectations Rise!

      July 28, 2026

      Reviews

      spreading-technology-THETECHNEWS

      PostPace

      You now have got a better visualization of what actually PostPace $49
      Reviews-THETECHNEWS

      Deepmind Technologies

      The mission is to develop a capable problem-solving process that is
      Reviews-THETECHNEWS

      SiteLock

      SiteLock focuses on helping out small businesses of the underserving market. $149.99 per site/year (SecureAlert)
      • About Us
      • Privacy Policy
      • Cookie Statement
      • Write For Us?
      • Contact

      © 2000-2026 THETECHMUSK || "spreading technology by TTM".

      No Result
      View All Result
      • TechNews
        • Trending
        • Startups
        • Stories
        • AR & VR
        • IoT
        • Artificial Intelligence
        • Personality
      • Cyber Security
        • Courses & Programs
        • Software
        • VPN
        • How to!
        • SaaS
      • Reviews
      • Press Release
      • PR Newswwire
      • Business Wire
      • Contact
        • Write For Us?

      © 2000-2026 THETECHMUSK || "spreading technology by TTM".

      Welcome Back!

      OR

      Login to your account below

      Forgotten Password? Sign Up

      Create New Account!

      Fill the forms below to register

      All fields are required. Log In

      Retrieve your password

      Please enter your username or email address to reset your password.

      Log In

      Add New Playlist

      Go to mobile version