{"id":13857,"date":"2026-06-25T10:03:36","date_gmt":"2026-06-25T10:03:36","guid":{"rendered":"https:\/\/serisec.com\/index.php\/2026\/06\/25\/anthropic-accuses-alibaba-of-illicitly-accessing-its-claude-ai-models-in-largest-known-distillation-attack\/"},"modified":"2026-06-25T10:03:36","modified_gmt":"2026-06-25T10:03:36","slug":"anthropic-accuses-alibaba-of-illicitly-accessing-its-claude-ai-models-in-largest-known-distillation-attack","status":"publish","type":"post","link":"https:\/\/serisec.com\/index.php\/2026\/06\/25\/anthropic-accuses-alibaba-of-illicitly-accessing-its-claude-ai-models-in-largest-known-distillation-attack\/","title":{"rendered":"Anthropic Accuses Alibaba of \u2018Illicitly\u2019 Accessing Its Claude AI Models in Largest Known Distillation Attack"},"content":{"rendered":"<p>    Anthropic Accuses Alibaba of \u2018Illicitly\u2019 Accessing Its Claude AI Models in Largest Known Distillation Attack<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n    <!-- no image --><br \/>\n \t<BR><br \/>\n<BR><\/BR><\/p>\n<div>\n<p class=\"wp-block-paragraph\">Anthropic has formally accused Chinese tech and e-commerce giant Alibaba of orchestrating a massive, unauthorized extraction campaign targeting its Claude AI model, marking what the company describes as the largest known distillation attack in its history.<\/p>\n<p class=\"wp-block-paragraph\">In a letter dated June 10, 2026, and addressed to U.S. Senate Banking Committee Chair Tim Scott and Ranking Member Elizabeth Warren, Anthropic alleged that operators affiliated with Alibaba and its AI research division, Alibaba Qwen, conducted a coordinated campaign to illicitly harvest capabilities from its Claude AI model.<\/p>\n<p class=\"wp-block-paragraph\">The campaign ran from April 22 to June 5, 2026, generating more than 28.8 million exchanges with Claude through nearly 25,000 fraudulent accounts.<\/p>\n<p class=\"wp-block-paragraph\">The operation specifically targeted Claude\u2019s most advanced and commercially valuable capabilities, including software engineering and agentic reasoning, the cornerstones of Anthropic\u2019s cutting-edge Mythos Preview model.<\/p>\n<p class=\"wp-block-paragraph\">The attack relied on a technique known as \u201cadversarial distillation,\u201d a method where a less capable AI model is trained on the outputs of a more powerful one to mimic its capabilities at a fraction of the development cost.<\/p>\n<p class=\"wp-block-paragraph\">Anthropic warned that this process allows Chinese AI labs to replicate frontier U.S. AI capabilities without incurring the enormous R&amp;D and computational expenditure required to train models from scratch.<\/p>\n<p class=\"wp-block-paragraph\">In its letter, Anthropic wrote: \u201cThese distillation attacks are carried out illicitly, systematically, and at an industrial scale to harvest U.S. AI capabilities across frontier labs and repackage them as their own without incurring the training and R&amp;D costs required to train U.S. frontier models\u201d.\u00a0Bloomberg was the first <a href=\"https:\/\/www.bloomberg.com\/news\/articles\/2026-06-24\/anthropic-accuses-alibaba-of-illicitly-accessing-its-ai-models\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">to report on this letter<\/a>.<\/p>\n<p class=\"wp-block-paragraph\">Anthropic further cautioned that AI systems <a href=\"https:\/\/www.anthropic.com\/news\/detecting-and-preventing-distillation-attacks\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">built through this adversarial distillation method<\/a> often lack safety guardrails, posing broader security and safety risks beyond intellectual property theft.<\/p>\n<p class=\"wp-block-paragraph\">This is not an isolated incident. In February 2026, Anthropic had already revealed a separate scheme involving DeepSeek the Chinese AI startup whose low-cost model rattled global tech markets in early 2025 along with two other Chinese AI laboratories attempting to illicitly access Claude\u2019s platform.<\/p>\n<p class=\"wp-block-paragraph\">Earlier this month, the company announced that it received a directive from the Trump administration. This directive requires them to stop allowing anyone from outside the U.S., including their own employees who are not U.S. citizens, to access their newest models called Claude, specifically <a href=\"https:\/\/cybersecuritynews.com\/anthropic-fable-5-and-mythos-5-access-blocked\/\" target=\"_blank\" rel=\"noreferrer noopener\">Fable 5 and Mythos 5<\/a>.<\/p>\n<p class=\"wp-block-paragraph\">Anthropic now describes this pattern as \u201csystematic and unauthorized\u201d exploitation of leading U.S. AI models to build a rival generation of Chinese chatbots.<\/p>\n<p class=\"wp-block-paragraph\">The disclosure is already driving legislative action on Capitol Hill. Senators Bill Hagerty (R-TN) and Andy Kim (D-NJ) are moving to introduce an amendment to must-pass defense legislation that would blacklist or sanction any Chinese firm found improperly accessing U.S. AI model outputs to train competing systems.<\/p>\n<p class=\"wp-block-paragraph\">Alibaba has not responded to requests for comment. The escalating confrontation over AI model theft signals a deepening technological and geopolitical rift between the U.S. and Chinese AI sectors, with frontier model security now firmly in the crosshairs of national security policy.<\/p>\n<p class=\"has-text-align-center has-background wp-block-paragraph\" style=\"background:linear-gradient(180deg,rgb(238,238,238) 91%,rgb(169,184,195) 100%)\"><strong>Follow us on\u00a0<a href=\"https:\/\/news.google.com\/publications\/CAAqMggKIixDQklTR3dnTWFoY0tGV041WW1WeWMyVmpkWEpwZEhsdVpYZHpMbU52YlNnQVAB?hl=en-IN&amp;gl=IN&amp;ceid=IN:en\" target=\"_blank\" rel=\"noreferrer noopener\">Google News<\/a>,\u00a0<a href=\"https:\/\/www.linkedin.com\/company\/cyber-news-live-\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">LinkedIn<\/a>,\u00a0and\u00a0<a href=\"https:\/\/x.com\/cyber_press_org\" target=\"_blank\" rel=\"noreferrer noopener\">X<\/a>\u00a0to Get More Instant Updates.<\/strong><\/p>\n<p>The post <a href=\"https:\/\/cybersecuritynews.com\/anthropic-accuses-alibaba\/\">Anthropic Accuses Alibaba of \u2018Illicitly\u2019 Accessing Its Claude AI Models in Largest Known Distillation Attack<\/a> appeared first on <a href=\"https:\/\/cybersecuritynews.com\/\">Cyber Security News<\/a>.<\/p>\n<\/div>\n<p> \t<BR><br \/>\n <BR><\/BR><br \/>\n    Guru Baran<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n<a href=\"https:\/\/cybersecuritynews.com\/anthropic-accuses-alibaba\/\">Go to cyber-security-news<\/a><br \/>\n \t<BR><br \/>\n <BR><\/BR><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Anthropic Accuses Alibaba of \u2018Illicitly\u2019 Accessing Its Claude AI Models in Largest Known Distillation Attack Anthropic has formally accused Chinese tech and e-commerce giant Alibaba of orchestrating a massive, unauthorized extraction campaign targeting its Claude AI model, marking what the company describes as the largest known distillation attack in its history. In a letter dated [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[129,63],"tags":[130],"class_list":["post-13857","post","type-post","status-publish","format-standard","hentry","category-cyber-security","category-cyber-security-news","tag-cyber-security-news"],"_links":{"self":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/13857"}],"collection":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/comments?post=13857"}],"version-history":[{"count":0,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/13857\/revisions"}],"wp:attachment":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/media?parent=13857"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/categories?post=13857"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/tags?post=13857"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}