Distillation Diplomacy: State Department’s Cable Names Chinese AI Firms in US IP Theft Escalation

U.S. State Department cable targets DeepSeek, Moonshot AI, and MiniMax for distilling American AI models via massive query floods, escalating IP theft claims into global diplomacy amid White House vows for crackdowns.
Distillation Diplomacy: State Department’s Cable Names Chinese AI Firms in US IP Theft Escalation
Written by Juan Vasquez

The U.S. State Department has fired a diplomatic salvo across global posts, naming Chinese AI outfits DeepSeek, Moonshot AI, and MiniMax in accusations of pilfering American artificial intelligence models. A cable dated April 24 instructs envoys to alert foreign counterparts about “concerns over adversaries’ extraction and distillation of U.S. A.I. models.” This marks an upgrade from broad White House warnings to pointed naming of players. Boom.

Distillation. Extraction. These aren’t lab experiments gone wrong. They’re techniques where rivals flood U.S. models with queries—millions of them—via fake accounts and proxies, then train cheaper knockoffs on the responses. Costs plummet. Benchmarks match. But safety rails? Often vanish. Anthropic laid it bare in February: DeepSeek, Moonshot, and MiniMax ran 24,000 fraudulent accounts, generating over 16 million exchanges with Claude. MiniMax alone hit 13 million. Moonshot targeted agentic reasoning, coding, vision tasks with 3.4 million hits. Anthropic’s report called it systematic.

OpenAI echoed the alarm. DeepSeek “free-riding” on their tech, they told lawmakers. White House OSTP Director Michael Kratsios penned a memo Thursday to agencies: “foreign entities, principally based in China, are engaged in deliberate, industrial-scale campaigns to distill U.S. frontier AI systems.” Proxy accounts evade bans. Jailbreaks expose secrets. The result? Chinese models like DeepSeek-V3 and R1 rival ChatGPT at slash prices, dodging U.S. chip curbs. That memo vows intel sharing with labs, accountability probes.

China pushes back hard. The embassy in Washington: Beijing “attaches great importance to the protection of intellectual property rights.” No company comments yet from DeepSeek, Moonshot, or MiniMax, per Reuters. But timing stings. Trump meets Xi in May. Tensions simmer ahead of that.

And distillation works. Train a small model on a big one’s outputs—no need for massive datasets or GPUs. U.S. firms pour billions into frontier systems. China skips the bill, launches disruptors. DeepSeek’s V4 preview runs on Huawei Ascend chips now, flexing self-reliance. Yet these copies falter on complexity, hallucinate more, miss generalization, insiders note.

State’s cable sets the stage. “Warn of the risks of utilizing AI models distilled from U.S. proprietary AI models, and lay the groundwork for potential follow-up.” A demarche hit Beijing directly. Lawmakers eye Economic Espionage Act, Computer Fraud and Abuse Act violations. Bipartisan sanctions bills advance. Entity list additions loom for the accused firms.

Flashback. Google flagged 100,000+ prompts cloning Gemini earlier this year. Not just China, but mostly. OpenAI saw most attacks from there too. Anthropic blocked the flood but warned: distillation strips safeguards, risks misuse in cyber, bio threats. White House calls it bypassing export controls entirely. BBC coverage ties it to broader theft patterns.

Industry feels the squeeze. U.S. labs profit from API fees during attacks—tens of millions, perhaps—but lose edge. Chinese models flood markets cheap. DeepSeek tops app stores, undercuts on cost. Moonshot’s Kimi, MiniMax’s offerings gain traction. Yet without original training, limits show. Benchmarks shine. Real-world depth? Lacking.

So what now? Diplomats fan out. Allies get the word: shun distilled goods. U.S. coordinates defenses—rate limits, anomaly detection, geo-fencing tweaks. Labs like Anthropic already hardened Claude. OpenAI too. But scale’s the killer. 16 million queries. Industrial.

Trump admin shifts gears. From chips to smarts. OSTP memo commits: protect innovation. Share tactics with firms. Explore laws. Ahead of Xi talks, this hardens lines. China denies. U.S. doubles down. AI cold war heats. Models as munitions.

Fragmented defenses won’t cut it. Global posts now amplify. Risks flagged: cheap copies without controls. National security hangs. Enterprises eye tainted models warily. Benchmarks deceive. True capabilities? Buyer beware.

DeepSeek launched V4 Friday amid the storm. Aggressive pricing. Huawei compatibility. Defiance? Or coincidence. State names them lead actor. Moonshot, MiniMax follow. Cable’s clear: this theft undercuts U.S. lead, empowers foes. Nextgov/FCW details the campaigns.

Beijing calls slander, per Ars Technica. Demands cooperation. U.S. sees espionage. Distillation: legal gray zone morphs black. Terms violated. But court-tested? Not yet. Cable pushes that boundary.

And here’s the rub. China builds AI might sans the grind. U.S. funds the frontier. Outputs siphoned. Cycle repeats. Trump’s team vows breaks. Allies looped in. Tech rivalry goes full diplomatic. Watch May summit. Stakes: AI supremacy.

Subscribe for Updates

AISecurityPro Newsletter

A focused newsletter covering the security, risk, and governance challenges emerging from the rapid adoption of artificial intelligence.

By signing up for our newsletter you agree to receive content related to ientry.com / webpronews.com and our affiliate partners. For additional information refer to our terms of service.

Notice an error?

Help us improve our content by reporting any issues you find.

Get the WebProNews newsletter delivered to your inbox

Get the free daily newsletter read by decision makers

Subscribe
Advertise with Us

Ready to get started?

Get our media kit

Advertise with Us