Skip to main content
LLMgram · AI News · 2026-09-11

Anthropic Says Chinese Labs Used Millions of Claude Exchanges to Train Models

Anthropic Says Chinese Labs Used Millions of Claude Exchanges to Train Models

Anthropic has accused Chinese AI labs of secretly using millions of Claude exchanges to train rival models, framing the activity as large-scale illicit distillation rather than routine API use. Reporting tied to the Wall Street Journal and Techmeme names DeepSeek and Moonshot, alleging thousands of fake accounts and millions of real user queries routed through overseas transfer stations outside China. Bloomberg separately reports Moonshot covertly sent user requests to Claude and repackaged the outputs as its own. Reuters adds that Anthropic disrupted Russian and Chinese campaigns targeting Claude, and the company published a broader threat intelligence report covering cyber operations, influence work, surveillance, and biological misuse. The disclosures mark a shift from terms-of-service enforcement toward active counter-distillation monitoring, though independent verification of training use and detection methods remains limited in the public record.

Sources

Anthropic Says Chinese Labs Used Millions of Claude Exchanges to Train Models

Anthropic Says Chinese Labs Used Millions of Claude Exchanges to Train Models

CNBC reports Anthropic alleges Chinese AI labs secretly used millions of Claude exchanges to train their models. Reuters separately reports Anthropic disrupted Russian and Chinese AI campaigns targeting Claude.

Key takeaway

Frontier API providers now face industrial-scale distillation attempts that bypass contractual limits, forcing technical enforcement beyond trust-based access controls.

What happened

CNBC reports Anthropic alleges Chinese AI labs secretly used millions of Claude exchanges to train their models, describing an unauthorized distillation effort at scale rather than isolated misuse.

Wall Street Journal reporting summarized by Techmeme says DeepSeek and Moonshot used thousands of fake accounts and millions of real user queries sent via transfer stations outside China, while Bloomberg reports Moonshot routed user requests through Claude and passed off responses as its own.

Evidence

  • Anthropic alleges Chinese AI labs secretly used millions of Claude exchanges to train their models.

    CNBC AI · attributed

    CNBC reports Anthropic alleges Chinese AI labs secretly used millions of Claude exchanges to train their models.

  • DeepSeek and Moonshot used thousands of fake accounts and millions of real user queries in a distillation effort routed through transfer stations outside China.

    Techmeme · attributed

    Anthropic says DeepSeek and Moonshot used thousands of fake accounts and millions of real user queries in 'distillation' effort to clone its AI capabilities

  • Moonshot covertly routed user requests to Claude and passed off the responses as its own.

    Bloomberg Technology · attributed

    Anthropic PBC accused China's artificial intelligence champion Moonshot AI of covertly routing thousands of user requests to the US firm's Claude models and passing off the responses as its own in a bid to gain an edge in the AI race.

  • Anthropic disrupted Russian and Chinese AI campaigns targeting its Claude models.

    Reuters AI · attributed

    Reuters separately reports Anthropic disrupted Russian and Chinese AI campaigns targeting Claude.

  • Anthropic published a threat intelligence report on disrupted misuse spanning cyberattacks, influence operations, surveillance, and illicit distillation.

    Techmeme · attributed

    Anthropic publishes a threat intelligence report on how it disrupted efforts to misuse Claude for cyberattacks, influence operations, surveillance, and more

Why it matters

The episode shows closed-model providers treating API traffic as an active intelligence and enforcement surface amid geopolitical competition over frontier AI capabilities.

Limits and uncertainties

Public excerpts do not specify how Anthropic detected the activity or independently verify that scraped exchanges were used in rival model training.

Bloomberg and Techmeme accounts rest on Anthropic allegations without disclosed technical proof in the packet.

Practical implications

API operators should assume high-volume query patterns may be monitored for distillation signatures and plan rate limits, account integrity checks, and output controls accordingly.

Builders relying on third-party model APIs need tighter logging and anomaly detection because proxy routing via overseas transfer stations can mask origin traffic.

What to watch

Whether Anthropic, regulators, or named firms publish technical attribution details, enforcement actions, or responses from DeepSeek and Moonshot.

Follow-on reporting on additional disrupted Russian and Chinese campaigns described in the threat intelligence release.

Sources

LLMgram editorial selection and synthesis · @llmgram. LLMgram is not the original publisher of this information.
Continue on LLMgram: Open in AI Signal →
Original reporting: Chinese AI labs secretly used millions of Claude exchanges to train their models, Anthropic says - CNBC