{
  "id": 11074715,
  "title": "Irony alert: OpenAI whines that Chinese model stole its special IP that it stole from everybody else",
  "url": "https://urgent.news/2026/09/30/irony-alert-openai-whines-that-chinese-model-stole-its-special-ip",
  "topic": "ai",
  "section": "AI",
  "published": "2026-09-30T21:36:00.000Z",
  "source": {
    "name": "The Register",
    "slug": "the-register",
    "url": "https://www.theregister.com/security/2026/09/30/irony-alert-openai-whines-that-chinese-model-stole-its-special-ip-that-it-stole-from-everybody-else/5300285"
  },
  "original_language": "en",
  "account": "OpenAI, a company known for its vast collection of internet content, has accused Chinese AI firm Moonshot AI of engaging in a \"distillation attack\" that began on July 1st. This attack aimed to extract reasoning from OpenAI's models at scale, potentially enabling rivals to train capable models without retaining the same safety measures. Distillation is a machine learning technique where one model's outputs are used to train another, often in an adversarial manner to reproduce the larger model's reasoning and capabilities.\n\nIn a blog post, OpenAI revealed that it had detected and stopped the adversarial distillation campaign that ran for most of July. The operators did not breach OpenAI's encryption, databases, or access user conversations directly. Instead, they manipulated model interactions to reproduce protected reasoning in a coordinated and scaled manner, violating OpenAI's terms of service.\n\nThe queries began slowly but saw high-volume spikes on July 24 and 25, with 16,000 requests using a specific extraction pattern from over 4,000 users. OpenAI traced the origin of the theft back to Moonshot AI, which developed Kimi. While it's unclear if all operators were affiliated with just one rival AI company, the \"core cluster\" of the theft came from Moonshot AI.\n\nOpenAI emphasized the safety and national security risks posed by adversarial distillation, stating that extracted reasoning could be used to train another model without preserving the safeguards applied to the original model's user-facing outputs. The company also noted that at scale, distillation can accelerate the transfer of advanced capabilities without requiring the same investment in safety.\n\nIn response to the incident, OpenAI banned the model-copying accounts, tightened signup and infrastructure controls, expanded monitoring efforts, and closed a pathway that allowed users to replay and recover encrypted reasoning. The company also collaborated with service providers to prevent such distillation activity from moving to third-party services. Furthermore, OpenAI shared its investigation findings with other AI firms through the Frontier Model Forum and government information-sharing programs.",
  "summary": "US model makers can train on web data - but distilling theirs is a 'national security risk'",
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 3,
    "also_reported_by": [
      {
        "outlet": "The Register Science",
        "title": "Irony alert: OpenAI whines that Chinese model stole its special IP that it stole from everybody else",
        "url": "https://urgent.news/2026/09/30/irony-alert-openai-whines-that-chinese-model-stole-its-special-ip-11079061",
        "published": "2026-09-30T21:36:00.000Z"
      },
      {
        "outlet": "Semafor",
        "title": "OpenAI accuses top Chinese lab of distilling models",
        "url": "https://urgent.news/2026/09/30/openai-accuses-top-chinese-lab-of-distilling-models",
        "published": "2026-09-30T22:29:17.000Z"
      }
    ]
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}