regulatory high confidence

NSA, CISA, and FBI Accuse Six Chinese AI Firms of Industrial-Scale Distillation of US Frontier Models

| China Tech

The NSA, CISA, and FBI issued a joint cybersecurity advisory (AA26-251A) on September 8 accusing six Chinese AI companies — DeepSeek, Moonshot AI, Alibaba, MiniMax, StepFun, and Z.AI — of running "industrial-scale" knowledge-distillation campaigns against US frontier models since late 2024, likely with the Chinese government's knowledge. The agencies said the firms pulled billions of tokens across millions of queries from Anthropic's Claude (including Claude 3.7, Sonnet 4/4.5, and Opus 4.1), OpenAI's GPT models, Google's Gemini, and xAI's Grok, using fraudulent accounts, bulk premium subscriptions spread across teams, gray-market API proxy "transfer stations," and prompt-injection techniques to extract hidden chain-of-thought reasoning while evading detection. DeepSeek is specifically accused of using distillation to generate synthetic training data for its R1 and V3 models, which the advisory says undercuts the company's public narrative of minimal training compute; Moonshot AI is accused of distilling Claude and GPT output to improve its Kimi K2 and K3 models. CISA Acting Director Nick Andersen urged AI companies to "take immediate steps to safeguard their platforms against knowledge distillation campaigns." China has not substantively responded to requests for comment and has previously countered that US companies distill Chinese models as well, with veiled threats of retaliation against any US bans.

NSA, CISA, and FBI jointly accused DeepSeek, Moonshot AI, Alibaba, MiniMax, StepFun, and Z.AI of industrial-scale distillation of US frontier AI models
NSA, CISA, and FBI jointly accused DeepSeek, Moonshot AI, Alibaba, MiniMax, StepFun, and Z.AI of industrial-scale distillation of US frontier AI models — Engadget