TLDR
- Alibaba stands accused of orchestrating an unprecedented AI “distillation attack” targeting Anthropic’s Claude system
- Approximately 28.8 million fraudulent interactions occurred via roughly 25,000 bogus accounts from April 22 through June 5, 2026
- The operation’s objective was to replicate Claude’s sophisticated features for developing Alibaba’s proprietary AI technology
- Anthropic contacted US Senators Elizabeth Warren and Tim Scott requesting stronger regulatory measures
- Subsequently, the Commerce Department imposed worldwide restrictions on Anthropic’s Mythos and Fable AI systems
The San Francisco-headquartered artificial intelligence developer Anthropic has leveled serious allegations against Chinese technology conglomerate Alibaba, claiming the company orchestrated a massive intellectual property theft operation targeting its Claude AI platform. According to Anthropic, Alibaba employed what’s known as “distillation attacks” to siphon valuable AI-generated outputs for training its own inferior models.
🚨Anthropic Accuses Alibaba of Massive AI Model Extraction Campaign
Anthropic has accused Alibaba of orchestrating the largest known attempt to extract capabilities from its Claude AI models through a massive network of fraudulent accounts.
The allegations were disclosed in a… pic.twitter.com/FLLccsaFcE
— Bull Theory (@BullTheoryio) June 25, 2026
The alleged operation unfolded over a 45-day period spanning April 22 to June 5, 2026. Throughout this timeframe, entities connected to Alibaba and its artificial intelligence division, Alibaba Qwen, produced upwards of 28.8 million interactions with Claude using approximately 25,000 fraudulent user accounts.
According to Anthropic, this represents the most extensive known assault of this nature the company has ever documented.
Understanding Distillation Attacks
Distillation attacks function by submitting prompts to a sophisticated AI system and leveraging the responses to enhance a less advanced model. This technique enables bad actors to replicate cutting-edge AI functionalities without investing in the costly research and development that created them.
Anthropic contends that the perpetrators specifically targeted Claude’s most prized capabilities. These encompassed its proficiency in managing intricate, extensive tasks and its sophisticated reasoning methodology.
The organization characterized these operations as occurring at an “industrial scale,” effectively converting hundreds of billions of dollars invested in American AI innovation into assets exploitable by geopolitical adversaries.
Appeal to Congressional Leaders
On June 10, Anthropic dispatched correspondence to US Senators Elizabeth Warren and Tim Scott. Both legislators serve on the Senate Banking Committee, which had scheduled an AI-focused hearing during that period.
Within the correspondence, Anthropic advocated for Congressional action to impose penalties on entities conducting such operations and to reinforce safeguards protecting American AI innovations.
This isn’t Anthropic’s first warning about such threats. In February, the organization reported identifying comparable campaigns orchestrated by Chinese AI companies including DeepSeek, Moonshot AI, and MiniMax. DeepSeek’s operation generated more than 150,000 interactions, while MiniMax’s campaign exceeded 13 million exchanges.
Alibaba has not issued any response to inquiries seeking comment. The corporation was recently added to the Pentagon’s registry of Chinese entities with military connections and is currently contesting this classification through legal channels.
White House officials stated in April that China was conducting systematic theft of American AI intellectual property at an industrial magnitude. OpenAI has similarly alleged that Chinese organizations have employed identical distillation tactics.
Just two days following Anthropic’s letter on June 12, the US Commerce Department implemented restrictions affecting Anthropic’s Mythos and Fable AI systems. Authorities cited concerns that these models could potentially be exploited by military intelligence operations in China and other nations. In response, Anthropic terminated worldwide access to both systems.





