Anthropic says Chinese AI firms used Claude in distillation attacks

March 21, 20262 min read2 sources
Share:
Anthropic says Chinese AI firms used Claude in distillation attacks

Anthropic has accused Chinese AI companies DeepSeek, Moonshot AI and MiniMax of using its Claude models for unauthorized “distillation” attacks, according to reporting by Infosecurity Magazine. The company says the firms queried Claude at scale to help train rival systems that could mimic some of Claude’s capabilities, a practice Anthropic says violated its terms of service and attempted to bypass its safeguards.

The allegation centers on model distillation, a standard machine learning technique that becomes contentious when developers use outputs from a proprietary system without permission to build a competing product. In this case, Anthropic is framing the issue less as a conventional software exploit and more as model extraction through API abuse: repeated prompts, automated collection of responses and use of those outputs as training data.

Anthropic’s warning adds to a growing security concern for major AI providers. Unlike a traditional breach, there are no CVEs, malware indicators or publicly disclosed infrastructure compromises tied to the claim. The attack surface is the model interface itself. Providers typically respond with rate limits, account monitoring, prompt-pattern analysis and stronger abuse detection, but those controls can be difficult to enforce if actors spread activity across accounts or infrastructure.

The broader impact is commercial as much as technical. Frontier AI models are expensive to build, and large-scale extraction can let competitors reproduce useful behaviors at a fraction of the cost. The case also raises questions about whether model outputs should be treated more like protected intellectual property and whether AI vendors will further restrict access, logging and customer verification. For enterprise users, that could mean tighter controls around how models are accessed, tested and integrated, including over remote connections where teams may already rely on a VPN.

The named firms had not publicly rebutted the allegations in the source report. Anthropic’s claims arrive amid intensifying US-China competition in generative AI, where disputes over model theft, training data and API misuse are becoming part of the wider cybersecurity and policy debate.

Share:

// SOURCES

// RELATED

Meta settles bellwether lawsuit alleging addictive design harmed student mental health

Meta's confidential settlement with a Washington school district marks a pivotal moment in the massive litigation against social media's psychological

6 min readMay 24

Huawei zero-day attack behind last year’s crash of Luxembourg's entire telecoms network

A sophisticated zero-day attack on Huawei routers allegedly caused Luxembourg's 2023 national telecom outage, raising severe global security concerns.

6 min readMay 23

MiniPlasma Windows 0-day enables SYSTEM privilege escalation on fully patched systems

A newly disclosed 0-day flaw, MiniPlasma, allows attackers to gain full SYSTEM control on patched Windows systems, with a public PoC accelerating risk

6 min readMay 18

The ransomware dilemma: why more than half of security chiefs would pay the price

A new survey reveals 56% of CISOs would consider paying a ransom, highlighting the intense pressure to restore operations despite official guidance.

6 min readMay 16