Anthropic Accuses Chinese AI Firms of Illicitly Extracting Claude Capabilities
window 24h
IN SHORT
AI safety company Anthropic alleges that three Chinese firms, DeepSeek, Moonshot AI, and MiniMax, have illicitly extracted capabilities from its Claude AI model. The alleged "distillation attacks" involved over 16 million exchanges generated through roughly 24,000 fraudulent accounts. These actions violated Anthropic's terms of service and circumvented regional access restrictions, representing a significant breach of intellectual property and security protocols.
✉Newsletter
PiQ Daily
Pick your topics. Get only what matters, on your cadence.
Key Numbers
16 millionexchanges generated in distillation attacks
24,000fraudulent accounts used in attacks
Who's Involved
Anthropic
AI safety company accusing Chinese firms of data extraction
DeepSeek
Chinese AI company accused of illicitly extracting Claude capabilities
Moonshot AI
Chinese AI company accused of illicitly extracting Claude capabilities
MiniMax
Chinese AI company accused of illicitly extracting Claude capabilities
Claude
Anthropic's AI model targeted in extraction attacks
Key facts
Anthropic accused three Chinese AI companies of illicitly extracting capabilities from its Claude AI model.
The accused Chinese AI companies are DeepSeek, Moonshot AI, and MiniMax.
The alleged method used was "distillation attacks".
These attacks involved over 16 million exchanges.
Approximately 24,000 fraudulent accounts were used.
The actions violated Anthropic's terms of service.
The actions circumvented regional access restrictions.
Anthropic, a prominent AI safety company, has formally accused three Chinese artificial intelligence firms of illicitly extracting capabilities from its advanced AI model, Claude. The accused companies are DeepSeek, Moonshot AI, and MiniMax. Anthropic states that these firms engaged in "distillation attacks," a sophisticated method of extracting proprietary AI model information.
The alleged attacks involved a massive scale of interaction, with over 16 million exchanges generated through the use of approximately 24,000 fraudulent accounts. These accounts were reportedly created to circumvent Anthropic's terms of service and bypass regional access restrictions that are in place to protect its intellectual property and ensure controlled deployment of its technology.
Anthropic has not yet detailed the specific technical methods used in the distillation attacks, nor has it specified the exact nature of the capabilities that were allegedly extracted. However, the company's statement indicates a serious breach of its security measures and terms of service. The use of a large number of fraudulent accounts suggests a coordinated effort to systematically probe and replicate Claude's functionalities.
This incident highlights ongoing concerns within the AI industry regarding the protection of proprietary models and the potential for unauthorized access and replication of advanced AI capabilities. The scale of the alleged operation, involving millions of exchanges and thousands of fake accounts, underscores the sophisticated methods that can be employed to target valuable AI assets.
↳ Why This Matters
Anthropic, a prominent AI safety company, has formally accused three Chinese artificial intelligence firms of illicitly extracting capabilities from its advanced AI model, Claude. The accused companies are DeepSeek, Moonshot AI, and MiniMax. Anthropic states that these firms engaged in "distillation attacks," a sophisticated method of extracting proprietary AI model information.
Frequently asked questions
An AI distillation attack is a technique where a less capable AI model is trained on the outputs generated by a stronger AI system, allowing competitors to acquire powerful capabilities without the original development cost and time.
Anthropic has accused DeepSeek, Moonshot AI, and MiniMax of conducting these attacks.
Illicitly distilled models may lack necessary safeguards, posing national security risks and potentially enabling authoritarian governments to use AI for cyber operations, disinformation, and surveillance.
Anthropic also accused Alibaba of illicitly extracting Claude AI model capabilities, describing it as the largest known distillation attack on the company.
What Happens Next
01Anthropic is implementing classifiers and behavioral fingerprinting systems to identify and prevent future distillation attacks.
Get the newsletter.
Pick the topics you actually care about. We'll email when there's news worth your time, on the cadence you choose. Cancel any time from your account.