{"id":94602,"date":"2026-02-24T11:44:39","date_gmt":"2026-02-24T08:44:39","guid":{"rendered":"https:\/\/forklog.com\/en\/?p=94602"},"modified":"2026-02-24T11:46:58","modified_gmt":"2026-02-24T08:46:58","slug":"anthropic-accuses-chinese-ai-labs-of-data-theft","status":"publish","type":"post","link":"https:\/\/forklog.com\/en\/anthropic-accuses-chinese-ai-labs-of-data-theft\/","title":{"rendered":"Anthropic accuses Chinese AI labs of &#8216;data theft&#8217;"},"content":{"rendered":"<p>Anthropic <a href=\"https:\/\/www.anthropic.com\/news\/detecting-and-preventing-distillation-attacks\">accused<\/a> three Chinese AI startups \u2014 DeepSeek, Moonshot and MiniMax \u2014 of running a large-scale campaign to use Claude to improve their own models.<\/p>\n<p>Labs from China generated more than 16 million interactions with the chatbot via roughly 24,000 fraudulent accounts, violating terms of use and regional restrictions.<\/p>\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p>\u201cWe have a high degree of confidence linking each campaign to a specific firm based on correlations of IP addresses, request metadata, infrastructure signals and confirmations from partners in the industry. They targeted the most unique capabilities of Claude: agentic reasoning, tool use and programming,\u201d Anthropic said.<\/p>\n<\/blockquote>\n<p>The firms used distillation \u2014 training a less powerful neural network on the outputs of a stronger one.<\/p>\n<p>It is a widely used and legitimate method. Leading AI labs regularly distil their own models to create compact, cheaper versions for clients.<\/p>\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p>\u201cHowever, it can also be used illegally: competitors improve capabilities at the expense of another\u2019s <span data-descr=\"large language model\" class=\"old_tooltip\">LLM<\/span> in a fraction of the time and cost compared with developing on their own,\u201d the Anthropic blog says.<\/p>\n<\/blockquote>\n<p>The company stressed that the window to respond to such \u201ctheft\u201d is narrow, and the threat extends beyond a single firm or region. Addressing it will require swift, coordinated action by industry, regulators and the global AI community.<\/p>\n<h3 class=\"wp-block-heading\">Why this is dangerous<\/h3>\n<p>Anthropic set out the risks. Illegally distilled models do not retain necessary safety mechanisms \u2014 creating national-security concerns.<\/p>\n<p>American firms are deploying systems to prevent the use of AI in developing biological weapons, conducting malicious cyberattacks and other dangerous acts. Models created through unlawful distillation do not receive such constraints.<\/p>\n<p>Foreign labs can integrate unprotected capabilities into military and intelligence systems, enabling authoritarian governments to use advanced AI for cyberattacks, disinformation and mass surveillance, the company added.<\/p>\n<h3 class=\"wp-block-heading\">Countermeasures<\/h3>\n<p>Anthropic experts backed <a href=\"https:\/\/forklog.com\/en\/news\/us-lifts-software-export-restrictions-for-chip-design-in-china\">export controls<\/a> to preserve US leadership in AI. In their view, distillation attacks undermine these measures, allowing overseas labs to narrow the technology gap.<\/p>\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p>\u201cWithout transparency into such attacks, the rapid progress of Chinese labs is mistakenly read as proof that export controls are ineffective. In practice, their achievements largely depend on extracting capabilities from American models, and scaling this approach requires access to cutting-edge chips,\u201d the company blog says.<\/p>\n<\/blockquote>\n<p>Anthropic listed its own countermeasures:<\/p>\n<ul class=\"wp-block-list\">\n<li>improving detection of distillation patterns;<\/li>\n<li>sharing technical indicators with other labs and cloud providers;<\/li>\n<li>tightening verification of educational and research accounts;<\/li>\n<li>deploying countermeasures that reduce the effectiveness of unlawful distillation.<\/li>\n<\/ul>\n<p>This is not the first such allegation. In January 2025, shortly after the <a href=\"https:\/\/forklog.com\/en\/news\/deepseek-the-new-ai-front-runner-and-culprit-behind-cryptos-sell-off\">explosive debut<\/a> of DeepSeek\u2011R1, the company was <a href=\"https:\/\/forklog.com\/en\/news\/deepseek-suspected-of-stealing-openai-data\">suspected<\/a> of stealing data from OpenAI.<\/p>\n<h2 class=\"wp-block-heading\">Continuing clash with the Pentagon<\/h2>\n<p>Anthropic CEO Dario Amodei <a href=\"https:\/\/www.axios.com\/2026\/02\/23\/hegseth-dario-pentagon-meeting-antrhopic-claude\">will meet<\/a> Defence Secretary Pete Hegseth at the Pentagon to discuss ways the company\u2019s AI models could be used by the military.<\/p>\n<p>The sides have <a href=\"https:\/\/forklog.com\/en\/news\/wsj-u-s-military-used-claude-in-raid-to-capture-maduro\">fallen out<\/a> of late \u2014 Anthropic opposes using AI for mass surveillance of US citizens and for building autonomous weapons. The Defence Department has made clear it intends to use LLMs \u201cfor all lawful scenarios\u201d without restrictions.<\/p>\n<p>It has gone so far that the Pentagon <a href=\"https:\/\/forklog.com\/en\/news\/spacex-and-xai-to-compete-in-pentagons-autonomous-drone-software-contest\">said<\/a> it may terminate its contract with Anthropic.<\/p>\n<h2 class=\"wp-block-heading\">An AI vulnerability scanner<\/h2>\n<p>Shares of leading publicly listed cybersecurity firms fell after Anthropic launched <a href=\"https:\/\/claude.com\/solutions\/claude-code-security\">Claude Code Security<\/a> \u2014 an AI code vulnerability scanner.<\/p>\n<p>The company says the new service \u201canalyses the entire codebase for vulnerabilities, verifies each finding to minimise false positives and proposes fixes\u201d.<\/p>\n<p>Claude conducts analysis \u201clike an experienced security researcher\u201d: it understands context, traces data flows and detects vulnerabilities.<\/p>\n<p>According to <a href=\"https:\/\/venturebeat.com\/security\/anthropic-claude-code-security-reasoning-vulnerability-hunting\">VentureBeat<\/a>, Claude Opus 4.6 identified more than 500 critical vulnerabilities that had persisted for decades despite expert reviews.<\/p>\n<p>The five largest US publicly traded cybersecurity firms by market value posted double-digit declines over the past five days amid the arrival of an AI competitor:<\/p>\n<ul class=\"wp-block-list\">\n<li>Palo Alto Networks \u2014 -14%;<\/li>\n<li>CrowdStrike \u2014 -18%;<\/li>\n<li>Fortinet \u2014 -12%;<\/li>\n<li>Cloudflare \u2014 -18%;<\/li>\n<li>Zscaler \u2014 -19%.<\/li>\n<\/ul>\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"784\" src=\"https:\/\/forklog.com\/wp-content\/uploads\/img-b9c42529bfafef9c-7138750016673368-1024x784.png\" alt=\"image\" class=\"wp-image-275692\" srcset=\"https:\/\/forklog.com\/wp-content\/uploads\/img-b9c42529bfafef9c-7138750016673368-1024x784.png 1024w, https:\/\/forklog.com\/wp-content\/uploads\/img-b9c42529bfafef9c-7138750016673368-300x230.png 300w, https:\/\/forklog.com\/wp-content\/uploads\/img-b9c42529bfafef9c-7138750016673368-768x588.png 768w, https:\/\/forklog.com\/wp-content\/uploads\/img-b9c42529bfafef9c-7138750016673368.png 1055w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">Palo Alto Networks share-price chart. Source: <a href=\"https:\/\/finance.yahoo.com\/quote\/PANW\/\">Yahoo Finance<\/a>.<\/figcaption><\/figure>\n<p>Wedbush analysts <a href=\"https:\/\/finance.yahoo.com\/news\/anthropic-claude-code-security-launch-200400637.html\">said<\/a> the sell-off reflects worries over the so-called <span data-descr=\"analysts\u2019 term for a situation where investors start selling shares en masse out of fear that AI will \u2018ghost\u2019 their business \u2014 even before any real damage\" class=\"old_tooltip\">AI Ghost Trade<\/span>. In their view, the market\u2019s reaction is mistaken, and Palo Alto, CrowdStrike and Zscaler will prove their effectiveness in 2026.<\/p>\n<p>In February, OpenAI together with Paradigm <a href=\"https:\/\/forklog.com\/en\/news\/openai-unveils-benchmark-for-ai-agents-ability-to-hack-smart-contracts\">introduced<\/a> EVMbench \u2014 a benchmark to assess AI agents\u2019 ability to identify, fix and exploit flaws in smart contracts.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Anthropic accused three Chinese AI startups \u2014 DeepSeek, Moonshot and MiniMax \u2014 of using Claude at scale to improve their own models.<\/p>\n","protected":false},"author":1,"featured_media":94603,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"select":"1","news_style_id":"1","cryptorium_level":"","_short_excerpt_text":"Anthropic says Chinese labs used Claude en masse to distil capabilities into rival models.","creation_source":"","_metatest_mainpost_news_update":false,"footnotes":""},"categories":[3],"tags":[1434,438,133],"class_list":["post-94602","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news-and-analysis","tag-anthropic","tag-artificial-intelligence","tag-china"],"aioseo_notices":[],"amp_enabled":true,"views":"177","promo_type":"1","layout_type":"1","short_excerpt":"Anthropic says Chinese labs used Claude en masse to distil capabilities into rival models.","is_update":"","_links":{"self":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts\/94602","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/comments?post=94602"}],"version-history":[{"count":1,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts\/94602\/revisions"}],"predecessor-version":[{"id":94604,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts\/94602\/revisions\/94604"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/media\/94603"}],"wp:attachment":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/media?parent=94602"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/categories?post=94602"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/tags?post=94602"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}