Anthropic Says Chinese AI Firms Used 16 Million Claude Queries to Copy Model
Anthropic on Monday said it identified "industrial-scale campaigns" mounted by three artificial intelligence (AI) companies, DeepSeek, Moonshot AI, and MiniMax, to illegally extract Claude's capabilities to improve their own models. The distillation attacks generated over 16 million exchanges with its large language model (LLM) through about 24,000 fraudulent accounts in violation of its terms
- 1. Anthropic identified "industrial-scale campaigns" by DeepSeek, Moonshot AI, and MiniMax to illegally extract Claude's capabilities.
- 2. The distillation attacks generated over 16 million exchanges with its large language model (LLM) through about 24,000 fraudulent accounts.
- 3. Anthropic is building classifiers and behavioral fingerprinting systems to identify suspicious distillation attack patterns.
Article analysis
Skim this article about "Anthropic Says Chinese AI Firms Used 16 Million Claude Queries to Copy Model": 3 key takeaways and more.
Anthropic Says Chinese AI Firms Used 16 Million Claude Queries to Copy Model
skim AI Analysis | The Hacker News
The Hacker News on Anthropic Says Chinese AI Firms Used 16 Million Claude Queries to Copy Model: skim's analysis surfaces 3 key takeaways. Anthropic reported that Chinese AI firms illegally extracted Claude's capabilities via distillation attacks. Read the takeaways in seconds, then decide whether the full article is worth your time.
Category: Tech. News article analyzed by skim.
Summary
Anthropic reported that Chinese AI firms illegally extracted Claude's capabilities via distillation attacks. These attacks involved over 16 million exchanges through fraudulent accounts. Anthropic is implementing safeguards to counter such threats.
Key Takeaways
- Anthropic identified "industrial-scale campaigns" by DeepSeek, Moonshot AI, and MiniMax to illegally extract Claude's capabilities.
- The distillation attacks generated over 16 million exchanges with its large language model (LLM) through about 24,000 fraudulent accounts.
- Anthropic is building classifiers and behavioral fingerprinting systems to identify suspicious distillation attack patterns.
Statement Breakdown
- Claimed Facts: 70% of statements the article presents as facts
- Opinions: 20% of statements classified as editorial or subjective
- Claims: 10% of statements surfaced for additional reader evaluation
Credibility & Bias Reasoning
Credibility assessment: The article is based on a report from Anthropic and corroborated by Google's findings, lending credibility. The claims are specific and quantifiable, such as the number of fraudulent accounts and exchanges. The article is published by The Hacker News, a reputable source for cybersecurity news.
Bias assessment: Pro-AI Safety and Security. The article frames the actions of the Chinese AI firms as "illegal" and a "national security risk," reflecting a concern for AI safety and the protection of proprietary technology. The language used suggests a bias towards protecting AI models from unauthorized extraction and use. The article highlights the potential dangers of unprotected AI capabilities.
Note: While the article cites Anthropic's report, readers should seek independent verification of the claims regarding the scale and impact of the alleged AI model theft.
Credibility flag: Verify Claims
Claimed Facts (7)
- This is a direct statement of Anthropic's claim.
- This provides specific numbers related to the attacks.
- This states the location and restrictions on the companies.
- This details the specific targets of DeepSeek's alleged attacks.
- This details the specific targets of Moonshot AI's alleged attacks.
- This details the specific targets of MiniMax's alleged attacks.
- This is Anthropic's assessment of the attack patterns.
Opinions (5)
- This is Anthropic's subjective assessment of the risks.
- This is a speculative statement about potential future consequences.
- This is a definition, but the implication is that it's being used illegitimately.
- This is a legal interpretation and a value judgment.
- This is Google's assessment of the risk level.
Claims (5)
- This is a hypothetical scenario presented as a likely outcome without concrete evidence.
- The term 'AI upstart' is vague and could be seen as an appeal to authority.
- The term "hydra cluster" is sensationalized and lacks specific technical detail.
- This is a generalization that may not be universally true.
- This is anecdotal evidence and may not be representative of all cases.
Key Sources
- Anthropic — AI Company
- DeepSeek — AI Company
- Moonshot AI — AI Company
- MiniMax — AI Company
- Google Threat Intelligence Group (GTIG) — Cybersecurity Division
- Author — The Hacker News
- Google — Technology Company
This analysis was generated by skim (skim.plus), an AI-powered content analysis platform by Credible AI. Scores and classifications represent the platform's AI-generated assessment and should be considered alongside other sources.
skim analyzes recent The Hacker News coverage for what holds up, what reads as opinion, and what may not be fully supported. Last updated 18th March 2026.