Researchers say a flaw in ChatGPT, Claude, and Gemini APIs exposed hidden reasoning traces — and leaked passwords

Security researchers say they found an API flaw across OpenAI, Anthropic, and Google that let them extract and move models' encrypted reasoning traces, exposing leaked passwords and API keys.