The U.S. State Department has fired a diplomatic salvo across global posts, naming Chinese AI outfits DeepSeek, Moonshot AI, and MiniMax in accusations of pilfering American artificial intelligence models. A cable dated April 24 instructs envoys to alert foreign counterparts about “concerns over adversaries’ extraction and distillation of U.S. A.I. models.” This marks an upgrade from broad White House warnings to pointed naming of players. Boom.
Distillation. Extraction. These aren’t lab experiments gone wrong. They’re techniques where rivals flood U.S. models with queries—millions of them—via fake accounts and proxies, then train cheaper knockoffs on the responses. Costs plummet. Benchmarks match. But safety rails? Often vanish. Anthropic laid it bare in February: DeepSeek, Moonshot, and MiniMax ran 24,000 fraudulent accounts, generating over 16 million exchanges with Claude. MiniMax alone hit 13 million. Moonshot targeted agentic reasoning, coding, vision tasks with 3.4 million hits. Anthropic’s report called it systematic.
OpenAI echoed the alarm. DeepSeek “free-riding” on their tech, they told lawmakers. White House OSTP Director Michael Kratsios penned a memo Thursday to agencies: “foreign entities, principally based in China, are engaged in deliberate, industrial-scale campaigns to distill U.S. frontier AI systems.” Proxy accounts evade bans. Jailbreaks expose secrets. The result? Chinese models like DeepSeek-V3 and R1 rival ChatGPT at slash prices, dodging U.S. chip curbs. That memo vows intel sharing with labs, accountability probes.
China pushes back hard. The embassy in Washington: Beijing “attaches great importance to the protection of intellectual property rights.” No company comments yet from DeepSeek, Moonshot, or MiniMax, per Reuters. But timing stings. Trump meets Xi in May. Tensions simmer ahead of that.
And distillation works. Train a small model on a big one’s outputs—no need for massive datasets or GPUs. U.S. firms pour billions into frontier systems. China skips the bill, launches disruptors. DeepSeek’s V4 preview runs on Huawei Ascend chips now, flexing self-reliance. Yet these copies falter on complexity, hallucinate more, miss generalization, insiders note.
State’s cable sets the stage. “Warn of the risks of utilizing AI models distilled from U.S. proprietary AI models, and lay the groundwork for potential follow-up.” A demarche hit Beijing directly. Lawmakers eye Economic Espionage Act, Computer Fraud and Abuse Act violations. Bipartisan sanctions bills advance. Entity list additions loom for the accused firms.
Flashback. Google flagged 100,000+ prompts cloning Gemini earlier this year. Not just China, but mostly. OpenAI saw most attacks from there too. Anthropic blocked the flood but warned: distillation strips safeguards, risks misuse in cyber, bio threats. White House calls it bypassing export controls entirely. BBC coverage ties it to broader theft patterns.
Industry feels the squeeze. U.S. labs profit from API fees during attacks—tens of millions, perhaps—but lose edge. Chinese models flood markets cheap. DeepSeek tops app stores, undercuts on cost. Moonshot’s Kimi, MiniMax’s offerings gain traction. Yet without original training, limits show. Benchmarks shine. Real-world depth? Lacking.
So what now? Diplomats fan out. Allies get the word: shun distilled goods. U.S. coordinates defenses—rate limits, anomaly detection, geo-fencing tweaks. Labs like Anthropic already hardened Claude. OpenAI too. But scale’s the killer. 16 million queries. Industrial.
Trump admin shifts gears. From chips to smarts. OSTP memo commits: protect innovation. Share tactics with firms. Explore laws. Ahead of Xi talks, this hardens lines. China denies. U.S. doubles down. AI cold war heats. Models as munitions.
Fragmented defenses won’t cut it. Global posts now amplify. Risks flagged: cheap copies without controls. National security hangs. Enterprises eye tainted models warily. Benchmarks deceive. True capabilities? Buyer beware.
DeepSeek launched V4 Friday amid the storm. Aggressive pricing. Huawei compatibility. Defiance? Or coincidence. State names them lead actor. Moonshot, MiniMax follow. Cable’s clear: this theft undercuts U.S. lead, empowers foes. Nextgov/FCW details the campaigns.
Beijing calls slander, per Ars Technica. Demands cooperation. U.S. sees espionage. Distillation: legal gray zone morphs black. Terms violated. But court-tested? Not yet. Cable pushes that boundary.
And here’s the rub. China builds AI might sans the grind. U.S. funds the frontier. Outputs siphoned. Cycle repeats. Trump’s team vows breaks. Allies looped in. Tech rivalry goes full diplomatic. Watch May summit. Stakes: AI supremacy.


WebProNews is an iEntry Publication