Anthropic accuses Alibaba of massive attack to clone Claude using 28.8 million exchanges

2 Sources

Share

Anthropic has accused Alibaba of conducting the largest known distillation attack on its Claude AI model, generating over 28.8 million exchanges through nearly 25,000 fraudulent accounts between April and June. The company warns this represents a national security threat and is urging Congress to pass legislation penalizing such behavior to protect US AI leadership.

Anthropic Accuses Alibaba of Unprecedented Attack on Claude

Anthropic has leveled serious accusations against Alibaba, claiming the Chinese tech giant orchestrated the largest distillation attack ever recorded against its Claude AI model

1

. In a confidential letter sent to Senators Tim Scott and Elizabeth Warren on June 10, Anthropic detailed how operators affiliated with Alibaba and Alibaba Qwen, the company's AI lab, generated more than 28.8 million exchanges with Claude through almost 25,000 fraudulent accounts between April 22 and June 5

2

. The attacks specifically targeted Claude's most valuable capabilities, including agentic reasoning, software engineering, and long-horizon tasks, allowing Chinese AI competitors to reproduce advanced model behavior without bearing the substantial training and R&D costs required to develop their own frontier models

1

.

Source: Ars Technica

Source: Ars Technica

Chinese Firm Allegedly Defied Trump Administration Warnings

What makes this incident particularly striking is its timing and brazen nature. The Alibaba campaign unfolded in the weeks immediately following Trump administration warnings that such cloning attempts were "unacceptable"

1

. Back in April, President Donald Trump accused China of "industrial-scale" AI theft after Anthropic reported that Chinese firms DeepSeek, Moonshot AI, and MiniMax had used similar tactics to generate over 16 million exchanges with Claude through approximately 24,000 fraudulent accounts

1

. Despite being listed on the New York Stock Exchange, maintaining business operations in the United States, and being accountable to U.S. investors and regulators, Alibaba allegedly proceeded with these distillation attacks using obfuscation techniques and proxy networks to evade detection

2

.

AI Model Distillation Framed as National Security Threat

Anthropic is positioning large-scale model extraction as more than an intellectual property dispute, characterizing it as a direct national security threat that could accelerate China's military and cyber AI capabilities while eroding US AI leadership

2

. The company warned that without stronger interventions, these distillation attacks will help China reach advanced AI capabilities sooner, effectively turning hundreds of billions of dollars in American investment and R&D into a massive subsidy for geopolitical competitors

1

. According to Anthropic, when Chinese labs successfully extract capabilities from Claude and other U.S. models, they capture the returns on American investments without bearing the costs or risks associated with training frontier AI models, inverting the economic logic that underwrites American AI leadership

2

.

Anthropic Urges Congress to Impose Penalties and Strengthen Controls

In its letter to U.S. Congress, Anthropic outlined three specific legislative objectives to counter the growing threat from Chinese AI competitors

1

. First, antitrust laws must be updated to allow AI firms to share information about evolving Chinese tactics and enable coordinated defense against future threats. Second, the U.S. needs more robust export controls on advanced AI chips to restrict Chinese access to compute resources, potentially making distillation attacks pointless. Finally, Congress should pass laws penalizing bad behavior by Chinese labs, making it more difficult and costly to rely on unauthorized extraction. Proposed penalties include limiting Chinese firms' access to U.S. models, advanced chips, or data centers outside China

1

.

Source: Decrypt

Source: Decrypt

Growing Circumvention Economy Fuels Distillation Attacks

Anthropic warned that as Chinese demand for reliable obfuscation techniques increases, there's already a growing circumvention economy emerging to fuel an ever-expanding web of future distillation attacks

1

. The company emphasized that combating illicit distillation requires coordinated action between government and industry, signaling its commitment to working with Congress and the Trump administration to maintain American technological advantage

2

. Meanwhile, Alibaba has filed a lawsuit against the Trump administration, seeking to remove a designation that falsely linked the company to the Chinese military, claiming its products serve retail, logistics, and enterprise IT rather than defense or intelligence

1

. The broader debate over AI model distillation has grown more complex, with observers noting that established practices like using competitor models during training—as Elon Musk testified xAI did with OpenAI models while developing Grok—blur the line between legitimate techniques and unauthorized extraction

2

.

Today's Top Stories

© 2026 TheOutpost.AI All rights reserved