← Back to feed
Authors & BlogsEmerging1 sourceSep 8, 2026 · 10:20via Schneier on Security

Stealing AI Reasoning Traces

Brief

Interesting research: “ Stealing Reasoning Traces from Proprietary LLM APIs “:

Abstract: Leading large language model providers now conceal their models’ step-by-step reasoning, or chain-of-thought, to protect intellectual property and limit information leakage. Rather than storing these traces server-side, providers return them to the client as blocks of encrypted text, which the client passes back with each subsequent request.

Building on prior research, we identify an architectural vulnerability: these encrypted blocks are fully compatible and interchangeable across different sessions, users, and models within a provider’s ecosystem. We exploit this compatibility to develop a scalable decryption jailbreak.

Read more on Schneier on Security