Today's digest · Thursday, August 13

The 10 things in AI/dev today.

LiveNext issue at 7:00 CET
#1 / TODAY
Simon Willison·2 min·2d agoFREE

Stealing Reasoning Traces from Proprietary LLM APIs

A paper titled 'Stealing Reasoning Traces from Proprietary LLM APIs' reveals that Anthropic, OpenAI, and Google return encrypted chain-of-thought blocks to clients, which can be replayed across sessions, users, and models. Researchers replayed traces from frontier models into weaker siblings, jailbreaking them to recover hidden reasoning in plaintext. The attack has since been fixed.

This attack reveals a practical method to extract hidden reasoning from proprietary LLMs, highlighting a security flaw now fixed.

llm-securityjailbreakingreasoning-tracesopenai
simonwillison.net
Stealing Reasoning Traces from Proprietary LLM APIs
DeepSeek V4 Pro 0813 (on OpenRouter)
#2 / TOP STORY
Simon WillisonFREE

DeepSeek V4 Pro 0813 (on OpenRouter)

DeepSeek released V4 Pro 0813, available via API on OpenRouter. Simon Willison notes the model shows notable differences in image generation across reasoning levels. Benchmark results were shared via WeChat, Reddit, and Hacker News. Open weights may follow, as previous versions were released.

Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations
#3 / TOP STORY
The Hacker NewsFREE

Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations

Malicious releases of LiteLLM, an open-source AI gateway, have been linked to a hack of the Trivy vulnerability scanner project. The incident may have exposed over 2,100 organizations. The malicious releases were distributed through official channels, potentially compromising users who installed them.

aigest · daily

Get this every morning.

One email. The signal. Built for builders.

Free · Unsubscribe in one click · No trackers

// Worth acting on2 stories
// Worth knowing5 stories
// Yesterday9 stories