CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Feds accuse China of ‘systematic’ distillation of U.S. AI models

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 6738

As cited

Copy frozen at (site build).

ai security

Feds accuse China of ‘systematic’ distillation of U.S. AI models

U.S. federal agencies, including the National Security Agency, Cybersecurity and Infrastructure Security Agency, and Federal Bureau of Investigation, have released a joint advisory accusing Chinese artificial intelligence (AI) companies of conducting systematic, industrial-scale distillation of U.S. frontier AI models since late 2024. Named targets include DeepSeek, Moonshot AI, Alibaba, MiniMax, StepFun, and Z.AI, which the agencies say have spent billions of tokens querying models from Anthropic, OpenAI, Google, and xAI to extract proprietary capabilities and train competing systems. The Chinese firms employ sophisticated evasion tactics, including distributed requests across accounts and platforms, proxies, and third-party aggregators to avoid detection and circumvent usage safeguards.

Why it matters: U.S. AI vendors and cloud providers must implement detection systems and usage monitoring to identify large-scale distillation campaigns, and coordinate with government and international partners to defend model intellectual property and capabilities from extraction at industrial scale.

VendorsGoogle
Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

ai security

Feds accuse China of ‘systematic’ distillation of U.S. AI models

U.S. federal agencies, including the National Security Agency, Cybersecurity and Infrastructure Security Agency, and Federal Bureau of Investigation, have released a joint advisory accusing Chinese artificial intelligence (AI) companies of conducting systematic, industrial-scale distillation of U.S. frontier AI models since late 2024. Named targets include DeepSeek, Moonshot AI, Alibaba, MiniMax, StepFun, and Z.AI, which the agencies say have spent billions of tokens querying models from Anthropic, OpenAI, Google, and xAI to extract proprietary capabilities and train competing systems. The Chinese firms employ sophisticated evasion tactics, including distributed requests across accounts and platforms, proxies, and third-party aggregators to avoid detection and circumvent usage safeguards.

Why it matters: U.S. AI vendors and cloud providers must implement detection systems and usage monitoring to identify large-scale distillation campaigns, and coordinate with government and international partners to defend model intellectual property and capabilities from extraction at industrial scale.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary