US Accuses Chinese AI Firms of Model Distillation

US agencies accused a group of leading Chinese AI developers of using “industrial-scale” model distillation to siphon off training data from American frontier systems, escalating a technology fight that could shape export controls, compliance costs and the competitive balance in global artificial intelligence.
The joint warning from the NSA, CISA and the FBI said DeepSeek, Moonshot AI, Alibaba, MiniMax, StepFun and Z.AI may have gathered billions of data fragments through millions of prompts to models from Anthropic, OpenAI, Google and xAI since late 2024, with the Chinese government potentially helping facilitate the activity. The agencies framed the practice as a national security issue, arguing that models built this way may lack safety guardrails.

Model distillation is a standard and often legitimate AI development tool, but the US says it is being abused at scale to copy capabilities from American leaders without permission. That raises the stakes for frontier developers that have spent billions building proprietary models, and it increases pressure on them to tighten access controls, monitor abuse and defend intellectual property.
The allegation lands just before planned US-China talks on AI safety in September and adds another flashpoint to already strained technology relations. Reuters has previously reported OpenAI accused DeepSeek of unauthorized data use, while Anthropic has warned that illegally distilled models could pose national security risks because they may not include proper safeguards.
Investors are likely to view the dispute as supportive for US AI incumbents in the near term, even as it underscores the fragility of the global AI supply chain and the risk of tighter policy action. Semiconductor and cloud names tied to the AI build-out, including Nvidia and Microsoft, remain exposed to any escalation in restrictions, while Chinese AI firms face a higher chance of scrutiny, slower commercialization and more expensive model development.
The immediate focus now shifts to whether Washington uses the allegations to justify fresh limits on Chinese access to US AI systems or to press for new verification rules in bilateral talks. Any retaliation or broader export-control response could ripple through AI software, chips and cloud infrastructure on both sides of the Pacific.
| Entity | Gains | Losses |
|---|---|---|
| US AI developers | ▲Stronger IP defense | ▼Higher security costs |
| Chinese AI firms | ▲Access to cheaper tactics | ▼US scrutiny and limits |
| Nvidia, Microsoft, peers | ▲More demand for secure frontier AI | ▼Policy and export-control risk |
| Investors in AI leaders | ▲Better moat narrative | ▼More geopolitical volatility |