AI Distillation Attacks: Inside China's Race to Extract U.S. AI Capabilities
A new EdgeTheory assessment on the fastest-growing flashpoint in the U.S.-China AI race
AI distillation - the technique of training a smaller "student" model on a powerful "teacher" model's outputs - has become one of the most contested issues in global AI competition. Anthropic and OpenAI allege that Chinese firms including Moonshot AI, DeepSeek, MiniMax, and Alibaba have run industrial-scale campaigns to extract reasoning, coding, and agentic capabilities from U.S. frontier models like Claude - using tens of thousands of fraudulent accounts and tens of millions of exchanges. At the same time, PLA-linked research institutions have published work applying distillation to military and security applications.
EdgeTheory's latest assessment cuts through the noise to separate legitimate model distillation from suspected unauthorized extraction, and explains why this fight matters for the future of U.S. AI leadership.
What You'll Learn
- How distillation attacks actually work - the technical mechanics behind how a "student" model learns from a "teacher" model's outputs, and why reasoning traces and agentic trajectories are far more valuable to extract than simple answers.
- Who's behind the alleged campaigns - a breakdown of the key suspected actors, including Moonshot AI, DeepSeek, MiniMax, Alibaba/Qwen, and PLA-linked research institutions, and what's actually been proven versus alleged.
- Why this threatens the U.S. AI advantage - how distillation shifts the competition from controlling advanced chips to protecting model capabilities, and what that means for the future of export controls.
- The geopolitical fallout for the global AI race - how distillation could accelerate China's AI catch-up, expand its global influence, and drive deeper U.S.-China technology fragmentation.
- The real national-security stakes - how commercially developed AI capabilities could diffuse into military, cyber, surveillance, and intelligence applications, and what policymakers are already proposing in response.
Understanding these dynamics is no longer optional for anyone tracking U.S.-China technology competition.
As the fight over AI shifts from silicon to software, the actors, methods, and policy responses covered in this report will shape how the next phase of the AI race is won - or lost.
Download the report
