Encrypted Reasoning Traces: What's Inside, Who Can Read It, and What It Does Next
Unreadable to you, fully readable to a model. Researchers opened 315,320 sealed AI reasoning blocks, found credentials that survive scrubbing, and planted an instruction another model obeyed as its own.