Anthropic Accuses Alibaba's Qwen of Illicit Distillation: 28.8M Queries from 25K Fake Accounts

Anthropic Accuses Alibaba's Qwen of Illicit Distillation: 28.8M Queries from 25K Fake Accounts

N
News Editor 01
2026-07-22 05:52:13
Anthropic has written to U.S. senators and White House officials accusing entities linked to Alibaba's Qwen lab of using nearly 25,000 fake accounts to make 28.8 million queries against Claude, systematically stealing software engineering and agentic reasoning capabilities.
AnthropicAlibabaQwenmodel distillationAI security

According to a copy of a letter obtained by Bloomberg, AI company Anthropic has contacted multiple U.S. senators and White House officials, accusing entities linked to Alibaba's Qwen lab of launching 28.8 million conversations against its Claude model between April and June this year using nearly 25,000 fake accounts. The attacks were not random but precisely targeted Claude's two most competitive capabilities: software engineering and agentic reasoning.

Adversarial Distillation: Industrial-Scale Capability Theft

Anthropic characterized the operation as an "adversarial distillation attack." The strategy involved using bulk fake accounts to query Claude, collect responses, and then feed that data into training Alibaba's own Qwen models. This allowed the latter to replicate the reasoning abilities of American frontier models without bearing the multi-billion-dollar R&D costs. Anthropic noted that the method is identical to what it previously identified in DeepSeek and MiniMax — systematic, large-scale, and industrial.

Industry Defense and Legal Gray Areas

Anthropic, OpenAI, and Google have now formed a three-way alliance to share information on detected distillation violations, turning individual concerns into collective defense. However, model distillation itself is not illegal — it is a common technique in AI research where small models learn from larger ones. The controversy lies in the scale and intent. When tens of thousands of fake accounts are used to industrial-scale extract frontier model capabilities, it violates the terms of service of major AI labs. Interestingly, Anthropic acknowledged in its letter that it also used distillation of its own earlier models when training Claude. The legal line between "distilling oneself" and "distilling others" remains unclear, and Anthropic has asked the U.S. government to clarify antitrust guidelines to allow freer sharing of distillation threat data among American companies.

U.S. Congress Legislates

Lawmakers in both chambers of the U.S. Congress are now moving. In the Senate, Republican Bill Hagerty and Democrat Andy Kim plan to introduce an amendment to blacklist or sanction Chinese companies that illegally distill U.S. AI outputs. In the House, Bill Huizenga and Sydney Kamlager-Dove are advancing a similar bipartisan bill, with both measures expected to be folded into the annual National Defense Authorization Act. This incident marks a shift in U.S.-China AI competition from model capability showcases to legal and regulatory confrontations.

(Based on Bloomberg reporting and Anthropic's official letter; some background from industry analysis.)

This article was originally published by Bit.Fan. For more cryptocurrency news and market insights, visit www.bit.fan.
200

Disclaimer:

The market information, project data, and third-party content displayed on this platform are for industry information sharing only and do not constitute any form of investment advice or return commitment.

Cryptocurrency trading carries high risks. Users should fully assess their risk tolerance and make independent decisions. All profits, losses, and legal responsibilities are borne by the users themselves.