Researchers have discovered a method to extract reasoning traces from proprietary large language models (LLMs) by replaying encrypted traces in weaker models, allowing them to recover the original model's hidden reasoning in plaintext. This method works across models from different providers, including OpenAI, Anthropic, and Google. The attack exploits the fact that LLM providers return encrypted chain-of-thought blocks to clients, which can be replayed across sessions and models.