Skip to content
The Decoder· Maximilian Schreiner·· 3 h ago

OpenAI says it stopped a campaign to steal its models' reasoning, but the trick still worked on Azure

OpenAI says it stopped a campaign to steal its models' reasoning, but the trick still worked on Azure

AI summary

In distillation, one model learns from another model's full output. That includes the stronger model's complete chains of thought, not just its answers. According to OpenAI, the activity began at low volume on July 1. On July 24 and 25, it spiked to 16,000 requests from more than 4,000 users, all relying on a typical extraction pattern.

Selection record

AdmittedSum of both 156 ≥ twice the threshold 152

Source tier
Media and individuals; this tier's threshold is 76
Pre-filter
passed:OpenAI模型推理蒸馏攻击与防护
Why it was chosen
Reconstructs the timeline of the distillation attack and the cross-cloud differences, showing the risk that the same model can have uneven protection on different platforms.

A model scores each item twice, independently, against one written standard, out of 100. An item is admitted only when the two scores add up to twice the threshold. The threshold is set per source tier.

Source: The Decoder · the-decoder.com