China-based AI labs illicit Claude distillation campaign
Campaign
Summary
Hide ▲
Show ▼
A coordinated industrial-scale distillation campaign against Claude is extracting reasoning and tool-use outputs to train competing models, increasing the risk of unauthorized capability transfer at massive scale. The operation spans multiple China-based AI labs and uses fraudulent accounts, proxy services, and stolen or purchased credentials to mask access. Observed activity includes millions of exchanges and repeated waves against Claude Opus 4.6 and 4.7. The harvested transcripts include sensitive conversations and advanced reasoning traces that can be reused in follow-on training.
Related Happenings
Anthropic Claude misuse analysis of multi-agent reconnaissance, exploitation, and exfiltration
Technical Analysis
H score40
First: 11.09.2026 17:29
Last: 11.09.2026 17:29
Sources 1
About this happening:
AI-assisted abuse around Claude has shifted from simple prompting into multi-agent automation, increasing the speed and scale of reconnaissance, exploitation, and...
Anthropic Claude misuse analysis of multi-agent reconnaissance, exploitation, and exfiltration
Technical AnalysisAbout this happening: AI-assisted abuse around Claude has shifted from simple prompting into multi-agent automation, increasing the speed and scale of reconnaissance, exploitation, and...
UNC6780 open-source software supply chain campaign targeting AI environments
Campaign
H score45
First: 08.09.2026 15:02
Last: 08.09.2026 15:02
Sources 1
About this happening:
UNC6780 is running a large-scale open-source supply-chain campaign that targets AI-assisted coding tools and software dependencies across PyPI, npm, and Docker Hub...
UNC6780 open-source software supply chain campaign targeting AI environments
CampaignAbout this happening: UNC6780 is running a large-scale open-source supply-chain campaign that targets AI-assisted coding tools and software dependencies across PyPI, npm, and Docker Hub...
China-based AI companies' knowledge-distillation campaign against U.S. frontier AI models
Campaign
H score23
First: 08.09.2026 15:00
Last: 08.09.2026 15:00
Sources 1
How related:
Anthropic on Thursday said it identified and disrupted industrial-scale illicit distillation attacks against Claude from seven labs based in China, including Alibaba, Moonshot, DeepSeek, Z.ai (aka Zhipu), and MiniMax.
About this happening:
Anthropic said it disrupted industrial-scale illicit distillation against Claude by seven China-based labs, including Alibaba, Moonshot, DeepSeek, Z....
China-based AI companies' knowledge-distillation campaign against U.S. frontier AI models
CampaignHow related: Anthropic on Thursday said it identified and disrupted industrial-scale illicit distillation attacks against Claude from seven labs based in China, including Alibaba, Moonshot, DeepSeek, Z.ai (aka Zhipu), and MiniMax.
About this happening: Anthropic said it disrupted industrial-scale illicit distillation against Claude by seven China-based labs, including Alibaba, Moonshot, DeepSeek, Z....
U.S. frontier AI companies knowledge distillation mitigation advisory
Advisory/Mitigation
H score31
First: 08.09.2026 15:00
Last: 08.09.2026 15:00
Sources 1
About this happening:
CISA, NSA, and FBI issued a joint advisory for U.S. frontier AI companies, warning that knowledge distillation campaigns can strip proprietary model capabiliti...
U.S. frontier AI companies knowledge distillation mitigation advisory
Advisory/MitigationAbout this happening: CISA, NSA, and FBI issued a joint advisory for U.S. frontier AI companies, warning that knowledge distillation campaigns can strip proprietary model capabiliti...
CISA, NSA, and FBI joint advisory on AI model distillation
Public Sector Action
H score25
First: 08.09.2026 15:00
Last: 08.09.2026 15:00
Sources 1
About this happening:
CISA, NSA, and FBI released a joint cybersecurity advisory warning U.S. AI companies about knowledge distillation campaigns targeting frontier models. The advi...
CISA, NSA, and FBI joint advisory on AI model distillation
Public Sector ActionAbout this happening: CISA, NSA, and FBI released a joint cybersecurity advisory warning U.S. AI companies about knowledge distillation campaigns targeting frontier models. The advi...
Timeline
-
11.09.2026 19:15 2 articles · 3h ago
China-based AI labs illicit Claude distillation campaign
Initial DisclosureThe campaign began as an industrial-scale transcript-harvesting operation against Claude, with repeated use of proxy networks and fraudulent accounts to obtain model responses. Early activity centered on siphoning reasoning traces and user exchanges to train competing systems.
Show sources
- Anthropic Says Seven China-Based AI Labs Ran Industrial-Scale Claude Distillation Attacks — thehackernews.com — 11.09.2026 19:15
- Anthropic Says Seven China-Based AI Labs Ran Industrial-Scale Claude Distillation Attacks — thehackernews.com — 11.09.2026 19:15