# Anthropic Detects Largest Known AI Model Distillation Attack Linked to Alibaba

> Anthropic says it uncovered the largest known distillation attack against a frontier model, in which roughly 25,000 fraudulent accounts generated more than 28.8 million interactions with Claude between late April and early June 2026. The goal was not to use the assistant but to harvest its outputs and train a competing model on them, effectively copying Claude's behavior without paying for research access. Anthropic links the operation to people connected with Alibaba's Qwen lab. Distillation, training a smaller model on a stronger one's answers, is a normal technique, but doing it covertly at this scale to clone a rival is a new kind of industrial espionage. Anthropic responded by requiring government-issued IDs and live selfies before granting certain access, and it is lobbying Congress for stronger legal protections and information sharing among US labs. The episode shows how a model's own responses have become a valuable asset worth stealing, and how leading labs are starting to treat their APIs less like open products and more like guarded factories.

_Section: [Daily AI Updates](https://www.wortins.com/daily-ai) · Source: Crypto Briefing · Published Tuesday, July 14, 2026_

## Wortins' read

Anthropic says it uncovered the largest known distillation attack against a frontier model, in which roughly 25,000 fraudulent accounts generated more than 28.8 million interactions with Claude between late April and early June 2026. The goal was not to use the assistant but to harvest its outputs and train a competing model on them, effectively copying Claude's behavior without paying for research access. Anthropic links the operation to people connected with Alibaba's Qwen lab. Distillation, training a smaller model on a stronger one's answers, is a normal technique, but doing it covertly at this scale to clone a rival is a new kind of industrial espionage. Anthropic responded by requiring government-issued IDs and live selfies before granting certain access, and it is lobbying Congress for stronger legal protections and information sharing among US labs. The episode shows how a model's own responses have become a valuable asset worth stealing, and how leading labs are starting to treat their APIs less like open products and more like guarded factories.

## Source

[Read the full story at Crypto Briefing](https://cryptobriefing.com/anthropic-closes-loopholes-chinese-access-claude/)

## Related coverage

- [IBM and NASA release an open-source lunar foundation model](https://www.wortins.com/story/ibm-and-nasa-release-an-open-source-lunar-foundation-model-0522b9e8) — [The Next Web](https://thenextweb.com/news/nasa-ibm-lunar-foundation-model-open-source)
- [A look at why the oft-discussed predictions that AI will deliver double-digit GDP growth in advanced economies are extremely unlikely over the next 10-15 years (Ghosts of Electricity)](https://www.wortins.com/story/a-look-at-why-the-oft-discussed-predictions-that-ai-will-del-6241fa38) — [Techmeme](https://www.techmeme.com/260910/p10#a260910p10)
- [Sequoia doubles down on Cymphony as AI agents create new enterprise security risks](https://www.wortins.com/story/sequoia-doubles-down-on-cymphony-as-ai-agents-create-new-ent-e2ff7229) — [TechCrunch](https://techcrunch.com/2026/09/09/sequoia-doubles-down-on-cymphony-as-ai-agents-create-new-enterprise-security-risks/)
- [Inception launches Mercury 2.5 at 1,107 tokens per second](https://www.wortins.com/story/inception-launches-mercury-2-5-at-1-107-tokens-per-second-7999ed1b) — [TestingCatalog](https://www.testingcatalog.com/inception-launches-mercury-2-5-at-1-107-tokens-per-second/)
- [Top AI spenders cut per-employee costs by nearly 10 percent in August](https://www.wortins.com/story/top-ai-spenders-cut-per-employee-costs-by-nearly-10-percent--b31ffb0b) — [The Decoder](https://the-decoder.com/top-ai-spenders-cut-per-employee-costs-by-nearly-10-percent-in-august/)
- [Researchers used AI to build a WeChat worm that spreads through phone calls](https://www.wortins.com/story/researchers-used-ai-to-build-a-wechat-worm-that-spreads-thro-8bf3f469) — [The Next Web](https://thenextweb.com/news/wechat-worm-ai-calif-tencent-zero-click)

---

_Curated and written by [Wortins](https://www.wortins.com) — The daily AI briefing. Every story links to its original source; the "Wortins read" on each is our own original analysis. [About Wortins & our editorial approach](https://www.wortins.com/about)._
