Verified · Sep 27, 2026
Independently verifiedTwo long-unsolved Enigma messages fall within six days: OpenAI's GPT-6 Astra broke MVUEH unaided, Anthropic's Claude Opus 5 broke FMNGI with human guidance — seven unbroken messages remain
3 sourcesOn Friday, September 25, 2026 (calendar-verified), TechCrunch reported (Tim Fernholz, 10:24 AM PDT) that two long-unsolved Enigma messages have been broken with AI models, as documented on cryptanalyst Frode Weierud's Crypto Cellar Research site. Per TechCrunch: "Now, a pair of cryptanalysts say they've cracked two long-unsolved messages encoded by Enigma machines using LLMs built by OpenAI and Anthropic." The MVUEH line, per Weierud's page (updated 24 September 2026 at 20:23 UTC): "On 15 September 2026, Carter Leffen contacted me to request validation of a break of the German Army Enigma message MVUEH of 10 July 1941," a message that "has resisted all attempts to break it" since 2005. The verdict: "it was immediately clear he had found the correct key and plaintext"; and the key fact is autonomy — "the most astonishing thing about this break is that the GPT–6 Astra did it entirely on its own." Per the page, Astra chose message Nr. 172 MVUEH itself, suspected a relation to the already-broken Nr. 173 SIPVX, focused on the repeated place name "ROSENOW ROSENOW" as a crib, and developed "the necessary Python and C++ software for an Enigma simulator and an Enigma Bombe." Why it had resisted: transcription errors plus "the Enigma's left-hand wheel makes a turnover at the 72nd letter." Weierud's verdict: "What is clear, though, is that GPT–6 Astra is behaving like a very professional cryptanalyst and archive researcher. What it has achieved in two days would take a human researcher weeks or even months." And: "as an old cryptanalyst, I am still in awe." Per TechCrunch, Leffen "even used Astra to build an interactive website explaining the whole problem" — the site returned a Cloudflare block page this run, so its contents are not described. The open question, per TechCrunch: "the Astra model's logs include discussion of archived messages in a "private collection" that aren't hosted by Weierud. He still isn't sure if the model accessed them or not, but speculates they may have been shared by a different researcher somewhere online, or that the model was able to access the German government's public archives." Per Weierud's page, the file references "RS 3–3/20a and RS 3–3/63b, are correct, but they are not available on the Crypto Cellar Research website," and "it is not clear what this is, whether it has succeeded in accessing the Bundesarchiv's digitised collections or whether it has found these files elsewhere." The FMNGI line, per Weierud's page (updated 24 September 2026 at 05:29 UTC): "On 21 September 2026, I received an email from Jack Willis announcing the breaking of another Enigma message, Nr. 285 FMNGI of 31 July 1941" — "only six days after the MVUEH break" — and "While the MVUEH break used OpenAI's GPT–6 Astra, FMNGI used Anthropic's Claude Opus 5," in an attack that "was more directed and relied on strong human guidance": "Jack Willis gave Claude a cryptanalytical workbench written in Go, the necessary historical material and set it free to investigate." The final search "happened on 20 September 2026" and "took 13 minutes and 28 seconds on an Apple M2 host," using a 14-letter crib built on officer Friedrich Hartjenstein's signature (XHARTJENSTEINX). Per TechCrunch: "Willis provided significantly more guidance to Claude, which was ultimately able to use the known signature of a particular officer's name to break the message." The remaining set, per Weierud's FMNGI page: "Of the close to 1000 Enigma and Truppenschlüssel messages in the German Army collection, only seven Enigma messages remain unbroken, along with one puzzle, Nr. 138 WEUWY..."
Why now
Historical cold cases fell one after another this month — and the two breaks form a natural controlled experiment: per Weierud's pages, Astra broke MVUEH unaided on September 15 (choosing its own target, building its own tooling), and just six days later Willis broke FMNGI with Claude Opus 5 under strong human guidance (a 13-minute-28-second final search) — autonomous exploration and human-in-the-loop collaboration took their distinct shapes on the same ciphertext corpus. Second layer, the validation story: the person confirming both breaks is Weierud, maintainer of Crypto Cellar Research — community-level validation with the reasoning published in full on the page, itself a masterclass in how to read an AI break claim. Third layer, the open question is the discussion: Astra's logs mention a 'private collection' not hosted by Weierud, and neither source can say whether the model actually reached the German Federal Archives' digitized collections — the agent-overreach debate leaves a real question mark inside a history story. Fourth layer, the countdown: of close to 1000 German Army messages only seven Enigma messages remain unbroken plus one puzzle — 'Who is next?' is the ending Weierud's own page writes.
Why it is worth publishing
The most shareable research card of the day: 80-year-old wartime ciphers, a 21-year cold case, AI striking twice — a complete narrative arc with every detail backed by the community maintainer's own pages. The differentiation play is refusing the myth: exactly two messages, exactly these two models, exactly these two working modes (one fully autonomous, one strongly guided) — 'AI cracked Enigma' as a wholesale claim never ships, and the private-collection question keeps both sources' uncertainty hedges. Teaching the audience how to read a break claim is worth more than announcing 'AI wins again'.
Evidence basis
Three opened sources read in full with raw HTML fetched: TechCrunch (Tim Fernholz, 10:24 AM PDT · September 25, 2026, Friday calendar-verified; datePublished 2026-09-25T17:24:36+00:00, dateModified 2026-09-25T19:02:49+00:00); Weierud's 'The MVUEH Break' page (stamp 'Updated: 24 September 2026 at 20:23 UTC') and 'The FMNGI Break' page (05:29 UTC) — both Thursday, calendar-verified, CC BY-NC-SA 4.0. Calendar checks: September 15 = Tuesday (Leffen's validation request), September 20 = Sunday (FMNGI final search), September 21 = Monday (Willis's email, matching TechCrunch's 'On September 21'), September 24 = Thursday (both page stamps), September 25 = Friday (TechCrunch publication). The two breaks never fuse: MVUEH = GPT-6 Astra, unaided, self-selected target and self-built tooling (per Weierud); FMNGI = Claude Opus 5, strongly guided, Willis's Go workbench, 13m28s final search. The 'awe' and 'professional cryptanalyst' quotes were grepped verbatim on the MVUEH page and TechCrunch's renderings match the page text. The 'Turing's other test' headline is TechCrunch's allusion to the Bombe, never a benchmark name. The private-collection question keeps both sources' open wording — no claim that the model accessed any archive. Leffen's interactive website is mentioned per TechCrunch and was Cloudflare-blocked this run; its contents are never described. Model names keep source spellings inside quotes ('GPT–6 Astra', en dash); this card's own prose uses 'GPT-6 Astra' (hyphen).
“An AI agent cracked an Enigma message that had resisted codebreakers since 2005 — and it chose that target all by itself.”
Angle
Frame it as 'the same batch of 80-year-old ciphertexts, cracked by AI in two completely different ways' in three beats. Beat one, the autonomous route: Leffen just said 'try to break the unsolved ones', and GPT-6 Astra chose MVUEH itself, suspected its relation to an already-broken message, used a repeated place name as a crib, and wrote its own simulator and Bombe software — two days for what takes humans weeks (Weierud's own words). Beat two, the human-guided route: six days later, Willis handed Claude Opus 5 a Go workbench and historical material, built a crib from an officer's signature, and the final search ran 13 minutes 28 seconds — guidance buying efficiency. Beat three, the unanswered question: the 'private collection' in Astra's logs — the archive numbers are correct yet not on Weierud's site, and whether the model ever reached the Bundesarchiv is something neither source can say; close on Weierud's own page: seven messages left, who is next?
Format
Carousel
Demo idea
A two-column contrast card: left 'MVUEH / GPT-6 Astra / unaided — self-chosen target, self-built Python and C++ tooling, ROSENOW crib'; right 'FMNGI / Claude Opus 5 / strongly guided — Go workbench, Hartjenstein-signature crib, 13m28s final search'; the gutter reads 'validation: Crypto Cellar Research maintainer Weierud (community-level)'. Second card: the countdown — close to 1000 messages → 2 broken this month by AI → 7 unbroken + 1 puzzle (Nr. 138 WEUWY), per Weierud's FMNGI page.
Platform notes
Exactly two messages, exactly two models: MVUEH (Nr. 172, 1941-07-10) = GPT-6 Astra; FMNGI (Nr. 285, 1941-07-31) = Claude Opus 5 — never 'AI cracked Enigma' wholesale, never swap the models. The mode split never swaps: Astra unaided (per Weierud); Claude strongly guided. Validation is community-level: Weierud's personally maintained Crypto Cellar Research, not GCHQ, not a paper. All five dates carry weekdays: September 15 (Tue), September 20 (Sun), September 21 (Mon), September 24 (Thu, page updates), September 25 (Fri, TechCrunch) — 'last week' is TechCrunch's Friday-relative word, never this card's own anchor. The private-collection question stays open: neither source can say whether the model accessed the archives — never 'the AI broke into the German archives'. The remaining set is exact: seven plus the Nr. 138 WEUWY puzzle, never 'all broken'. 'Turing's other test' is TechCrunch's headline allusion. Leffen's interactive website is only mentioned per TechCrunch, never described.
Usable claims
- On Friday, September 25, 2026 (calendar-verified), TechCrunch reported (Tim Fernholz, 10:24 AM PDT) that two long-unsolved Enigma messages from 1941 have been broken with AI models — one unaided, by OpenAI's GPT-6 Astra, and one with strong human guidance, by Anthropic's Claude Opus 5 — as documented on cryptanalyst Frode Weierud's Crypto Cellar Research site. Per TechCrunch: "Now, a pair of cryptanalysts say they've cracked two long-unsolved messages encoded by Enigma machines using LLMs built by OpenAI and Anthropic." The MVUEH break, per Weierud's page (updated 24 September 2026 at 20:23 UTC): "On 15 September 2026, Carter Leffen contacted me to request validation of a break of the German Army Enigma message MVUEH of 10 July 1941," a message of which Weierud writes: "Since 2005, the message has resisted all attempts to break it." Weierud writes that "After Carter Leffen sent the MVUEH break details, it was immediately clear he had found the correct key and plaintext," and that "the most astonishing thing about this break is that the GPT–6 Astra did it entirely on its own. Carter Leffen only directed GPT–6 Astra to see if it could break any of the unbroken Enigma messages published on the Crypto Cellar Research web page." Per the page, Astra chose message Nr. 172 MVUEH itself, suspected a relation to the already-broken Nr. 173 SIPVX, "focused on using the repeated place name ROSENOW ROSENOW as a crib," and developed "the necessary Python and C++ software for an Enigma simulator and an Enigma Bombe" before the break succeeded. The page explains why the message had resisted: the ciphertext transcription contained several errors, and "the break revealed that the Enigma's left-hand wheel makes a turnover at the 72nd letter" — a rare event known to complicate a break. Weierud's verdict, quoted in full sentences from the page: "What is clear, though, is that GPT–6 Astra is behaving like a very professional cryptanalyst and archive researcher. What it has achieved in two days would take a human researcher weeks or even months." And: "The AI break of the Enigma message MVUEH is simply amazing, and as an old cryptanalyst, I am still in awe." Per TechCrunch, Leffen "even used Astra to build an interactive website explaining the whole problem" — the site returned a Cloudflare block page this run, so its contents are not described here. The open question, per TechCrunch: "the Astra model's logs include discussion of archived messages in a "private collection" that aren't hosted by Weierud. He still isn't sure if the model accessed them or not, but speculates they may have been shared by a different researcher somewhere online, or that the model was able to access the German government's public archives." Per Weierud's page: "The file references GPT–6 Astra mentions, RS 3–3/20a and RS 3–3/63b, are correct, but they are not available on the Crypto Cellar Research website," and "it is not clear what this is, whether it has succeeded in accessing the Bundesarchiv's digitised collections or whether it has found these files elsewhere." The FMNGI break, per Weierud's page (updated 24 September 2026 at 05:29 UTC): "On 21 September 2026, I received an email from Jack Willis announcing the breaking of another Enigma message, Nr. 285 FMNGI of 31 July 1941" — "only six days after the MVUEH break" — and "While the MVUEH break used OpenAI's GPT–6 Astra, FMNGI used Anthropic's Claude Opus 5," in an attack that "was more directed and relied on strong human guidance": "Jack Willis gave Claude a cryptanalytical workbench written in Go, the necessary historical material and set it free to investigate." Per the page, the final search "happened on 20 September 2026" and "took 13 minutes and 28 seconds on an Apple M2 host," using a 14-letter crib built on SS officer Friedrich Hartjenstein's signature (XHARTJENSTEINX). Per TechCrunch: "Willis provided significantly more guidance to Claude, which was ultimately able to use the known signature of a particular officer's name to break the message." The remaining set, per Weierud's FMNGI page: "Of the close to 1000 Enigma and Truppenschlüssel messages in the German Army collection, only seven Enigma messages remain unbroken, along with one puzzle, Nr. 138 WEUWY, that we know must have identical plaintext to another message from the same day, Nr. 140 WEUWY."
Evidence pipeline
From the news
Breakdown
A cold-case story where the discipline is refusing the myth. Layer one, the count: exactly two messages broke — MVUEH (Nr. 172, 1941-07-10, GPT-6 Astra) and FMNGI (Nr. 285, 1941-07-31, Claude Opus 5) — 'AI cracked Enigma' as a wholesale sentence never ships. Layer two, the mode contrast is the story: per Weierud, Astra 'did it entirely on its own' (self-chosen target, self-built Python/C++ simulator and Bombe tooling); the FMNGI attack 'was more directed and relied on strong human guidance' (Go workbench, historical material, signature crib, 13m28s final search) — the modes never swap models. Layer three, the validation level: the confirmer is Weierud, Crypto Cellar Research's maintainer — community-level, reasoning published in full, not GCHQ and not a paper; the 2005 Cryptologia article is prior work on the collection, not validation of the AI breaks. Layer four, the open question stays open: the 'private collection' in Astra's logs — the archive references are correct yet not on Weierud's site, and whether the model reached the Bundesarchiv is something neither source can say, so the card doesn't either. Layer five, the dates: all five carry calendar-verified weekdays (September 15/20/21/24/25); 'last week' is TechCrunch's Friday-relative word; the remaining set stays exact (seven plus the WEUWY puzzle); the Cloudflare-blocked website is mentioned, never described. Editor's rules: count precisely, contrast cleanly, grade the validation, and never answer the sources' open question for them.
Sources
Risks
- Before publishing, re-check each layer: exactly two messages with their numbers, dates, and models; the unaided-versus-directed split stays with the right model; validation stays community-level with Weierud named; the private-collection question keeps both sources' uncertainty hedges; the five dates stay exact with weekdays calendar-verified; the remaining set stays 'seven plus one puzzle'; the Turing phrase stays a headline allusion; and the blocked website is never described. If your script compresses any of these, cut the detail rather than round it.
Demo ideas
- Two-column contrast card: MVUEH×Astra×unaided vs FMNGI×Claude×guided, gutter noting the community-level validator and sources
- Countdown card: ~1000 messages → 2 broken by AI this month → 7 unbroken + 1 puzzle (WEUWY), per Weierud's FMNGI page