Anthropic accuses Alibaba of largest distillation attack to extract Claude AI model capabilities

Reviewed byNidhi Govil

7 Sources

Share

U.S. AI company Anthropic has accused Chinese tech giant Alibaba of conducting the largest known distillation attack to illicitly extract Claude AI model capabilities. The campaign involved 28.8 million exchanges through nearly 25,000 fraudulent accounts between April and June 2026, targeting commercially valuable features like software engineering and agentic reasoning.

News article

Anthropic Accuses Alibaba of Massive Distillation Campaign Against Claude

U.S. AI company Anthropic has accused Alibaba, the Chinese technology and e-commerce giant, of conducting the largest known distillation attack to illicitly extracted Claude AI model capabilities, according to a letter sent to U.S. senators and viewed by multiple news outlets

1

2

. The campaign, which Anthropic described as "brazen" and "illicit," involved operators affiliated with Alibaba and the Qwen AI lab generating more than 28.8 million exchanges with Claude through almost 25,000 fraudulent accounts between April 22 and June 5, 2026

3

.

Distillation attacks represent a method where AI companies improperly obtain AI model capabilities by training a less capable model on the outputs of a stronger one. The distillation campaign against Claude specifically targeted the model's most commercially valuable features, including software engineering and agentic reasoning capabilities

4

. Anthropic warned in its June 10 letter to Senators Tim Scott and Elizabeth Warren of the Senate Banking Committee that such attacks enable competitors to harvest American AI technology and help China reach advanced model capabilities sooner

1

.

Scale Dwarfs Previous Extraction Attempts

The Alibaba campaign represents a significant escalation in the systematic theft of American AI capabilities. This marks the first time Anthropic has publicly named a major Chinese technology conglomerate as the source of a distillation attack

4

. The volume of the Alibaba effort alone exceeded the combined total of three earlier campaigns Anthropic identified in February 2025, which involved Chinese AI startups DeepSeek, MiniMax, and Moonshot AI generating more than 16 million exchanges through approximately 24,000 fake accounts

5

.

To extract AI capabilities at this scale, the fraudulent accounts conducted operations on what Anthropic characterized as an "industrial scale" to enable Chinese companies to harvest and repackage U.S. AI capabilities as their own

3

. The company emphasized that distillation attacks turn hundreds of billions of dollars in American investment and research into a massive subsidy for geopolitical competitors.

National Security Risk and Pentagon Blacklist Connections

The timing of the allegations compounds existing tensions between Alibaba and the U.S. government. The Pentagon added Alibaba to its Chinese military companies list on June 8, a designation the company is actively challenging through legal action

4

. Anthropic's letter cited U.S. Department of Defense claims that Alibaba and several major firms maintain ties to the Chinese military, framing the distillation effort as a national security risk

3

.

The campaign took place after White House Office of Science and Technology Policy Director Michael Kratsios published a memo in April committing the government to share intelligence with U.S. AI labs about foreign distillation campaigns, effectively defying the administration's warnings

4

. Anthropic stated in its letter that distillation helps accelerate China's ability to reach Anthropic's advanced Mythos Preview capabilities

5

.

US-China AI Tensions Escalate as Market Reacts

Alibaba's American depositary receipts fell more than three percent on the news, dropping below $100 in afternoon trading

4

. The stock decline adds pressure to a company already navigating multiple challenges in Washington. The distillation accusation opens a second front for Alibaba, framing it not just as a company with alleged military ties but as an active participant in what Anthropic characterizes as systematic intellectual property theft.

US-China AI tensions continue to intensify as lawmakers consider legislative responses. Senators Bill Hagerty and Andy Kim plan to introduce an amendment to defense legislation that would blacklist or sanction any Chinese firm found improperly accessing U.S. AI model output

4

. A related bipartisan bill in the House is also under consideration, though passage remains uncertain.

Geopolitical Implications for AI Development

Anthropic urged coordinated action between government and industry to combat the threat of illicit distillation, calling for penalties against firms that use the technique and supporting export controls on advanced AI chips

2

4

. The company warned that models built through distillation often lack safety guardrails, posing additional risks beyond competitive concerns

4

.

The geopolitical implications extend to Anthropic's own operations. The company, now valued at $965 billion after a $65 billion Series H round and preparing for an IPO that could come as soon as autumn, faces material risks from cheaper imitation products that could siphon away customers

4

. U.S. officials have estimated that unauthorized distillation costs Silicon Valley labs billions of dollars.

Ironically, Anthropic finds itself caught between competing pressures. While seeking government support against Chinese extraction attempts, the company is simultaneously disputing Commerce Department restrictions imposed on its Fable 5 and Mythos 5 models on June 12, just two days after sending the letter to senators

5

. Commerce Secretary Howard Lutnick signed an order blocking foreign nationals from accessing those models citing security concerns, forcing Anthropic to disable them globally despite ongoing negotiations with White House officials.

Today's Top Stories

© 2026 TheOutpost.AI All rights reserved