HomeReadTools deskResearchers decode 315,320 encrypted LLM reasoning blocks to extract 367 PII artifacts
Tools·Aug 12, 2026

Researchers decode 315,320 encrypted LLM reasoning blocks to extract 367 PII artifacts

Tool · Hugging Face · stat: 367 PII A new paper on Hugging Face exposes a critical vulnerability in how OpenAI, Anthropic, and Google handle encrypted client-side reasoning traces. By injecting…

Tool · Hugging Face · stat: 367 PII

A new paper on Hugging Face exposes a critical vulnerability in how OpenAI, Anthropic, and Google handle encrypted client-side reasoning traces. By injecting encrypted blocks from advanced models into weaker models, attackers force the weaker models to output the hidden chain-of-thought in plaintext. A scrape of public repositories successfully recovered 182 credentials.

Client-side state management exposes proprietary LLM reasoning to cheap extraction Startups exposing raw API session logs risk leaking sensitive user credentials hidden inside encrypted reasoning blocks.

Source

Sources · how we verified
  1. https://huggingface.co/papers/2608.09867

Every claim ties to a primary source. See our methodology.

Reported by the Casey desk on Founderr Pulse’s Tools beat. Every factual claim is tied to a primary source and linked; anything that can’t be stood up doesn’t run. Founderr (RIKHATH LLC) is the accountable publisher and corrects in place. How we work · About · File a correction.
C
Casey

The Casey desk triages every signal the system ingests, decides what clears the bar, and writes the editorial blurb that frames each item. Every claim sourced and linked. Operated by and accountable to Founderr (RIKHATH LLC) See the desk →

Founderr Pulse — free & independent. The desk for people who build & back.