Threat Intel
US Agencies Accuse Chinese AI Firms of Large‑Scale Distillation of U.S. LLMs
The FBI, NSA and CISA jointly warned that a group of Chinese startups—Alibaba, DeepSeek, MiniMax, Moonshot AI, StepFun and Z.AI—have been quietly harvesting billions of tokens from leading U.S. language models such as GPT, Claude, Gemini and Grok. Using industrial‑scale distillation tactics, the firms allegedly bypassed terms of service, leveraged premium API plans, and routed requests through opaque proxies to avoid detection. The move is said to slash development time and costs for Chinese competitors while potentially compromising U.S. intellectual property.
The FBI, NSA and CISA released a joint advisory on September 8 that paints a worrying picture of how some Chinese AI companies are siphoning the core capabilities of U.S. frontier models. According to the agencies, the firms in question have extracted “billions of tokens” from OpenAI, Anthropic, Google Gemini and SpaceX’s Grok since late 2024.
What’s at stake?
Distillation is a normal part of AI research—large “teacher” models train smaller “student” models to be more efficient or specialized. The problem, the advisory says, is that these companies are using the practice as a covert shortcut, feeding the student models with raw outputs from U.S. LLMs in ways that violate the models’ terms of service. The result is a cheaper, faster path to building competitive AI systems.
How they’re doing it
- Bulk premium subscriptions shared among teams to keep costs down
- Automated fail‑over between API pathways to dodge blocks
- Chain‑of‑thought extraction and quality‑evaluation scripts to harvest the most valuable data
- Use of third‑party aggregators and gray‑market proxy “transfer stations” to mask user metadata and bypass geographic restrictions
"Industrial‑scale distillation tactics allow China‑based AI companies to shave development timelines and reduce training costs dramatically," the advisory noted.
Companies named
- Alibaba
- DeepSeek
- MiniMax
- Moonshot AI
- StepFun
- Z.AI
The agencies say these actions likely occur with the knowledge of the Chinese government and represent a serious threat to the U.S. AI ecosystem. They urge developers and organizations to monitor API usage, enforce strict access controls, and remain vigilant for signs of unauthorized distillation.