China AI Firms Scale Knowledge Distillation to Target U.S. Frontier Models
An NSA/CISA/FBI cyber advisory warns that China-based AI firms are conducting industrial-scale knowledge distillation to extract proprietary capabilities from U.S. frontier models (e.g., Claude, GPT-4/5, Gemini, Grok), using multiple access routes, proxies, and gray-market APIs to bypass restrictions and safeguards. Campaigns involving DeepSeek, Moonshot AI, Alibaba, MiniMax, StepFun, and Z.AI since 2024–2026 target reasoning, SFT, coding, and agentic functions, with sophisticated routing, QA, and prompt-injection techniques. The agencies call for rapid detection (anomalous prompts/accounts, subscription abuse, throughput anomalies), targeted response changes to raise attacker costs, and cross‑organization intel sharing, guided by MITRE ATLAS and NIST AI mitigations (e.g., differential privacy, pre/post-training interventions, and safe prompt practices).
- China-Based Artificial Intelligence Companies Conducting Industrial-Scale Distillation Campaigns Against U.S. AI Companies CISA (.gov)
- US claims Chinese AI firms are carrying out ‘industrial-scale’ theft of trade secrets CNN
- US accuses Chinese AI firms of 'malicious' copying of AI technology Reuters
- U.S. agencies say top Chinese AI companies systematically copied American models nbcnews.com
- Anthropic's distillation battle turns to the dark web as China concerns swell CNBC
Reading Insights
0
0
19 min
vs 20 min read
97%
3,988 → 106 words
Want the full story? Read the original article
Read on CISA (.gov)