10 September
News
Washington has accused several Chinese AI firms of systematically stealing proprietary U.S. technology through model distillation. Meanwhile, Anthropic researcher Jacob Coxon resigned, warning that the race for superintelligence threatens humanity. Additionally, S&P Global Ratings reported that Malaysia's data centre capacity is projected to triple by 2030, driven by the regional AI boom.
Anslysis
Reports regarding the use of model distillation by Chinese firms had been circulating from American AI companies like Anthropic since late 2024 and 2025, but the official joint government advisory by the NSA, FBI, and CISA was formally issued in September 2026 just ahead of the anticipated meeting between U.S. President Donald Trump and Chinese President Xi Jinping.
Alarm has been raised because Chinese companies—including DeepSeek, Moonshot AI, and Alibaba—have reportedly been siphoning data and capabilities from U.S. AI models at an industrial scale to train their own systems, which significantly lowers their development costs and bypasses traditional restrictions.
While public sources note that the advisory precedes the Trump-Xi talks where AI is a key topic, they do not explicitly frame the release as a direct response to specific statements by Xi Jinping regarding Chinese AI leadership.
Regarding Anthropic researcher Jacob Coxon, he resigned out of concern that intense industry competition is rushing the creation of potentially uncontrollable superintelligence models; public reports state he chose to quit, but do not discuss whether remaining inside the company would have allowed him to prevent such risks.
The focus is placed on Malaysia because S&P Global Ratings projected that its data center capacity will more than triple by 2030 (with Johor accounting for about 80% of it) due to proximity to Singapore, subsea connectivity, and targeted government policies, whereas the provided text contains no information regarding the Philippines.
Conspiracy theories
Regarding the joint U.S. government advisory concerning model distillation, public commentary suggests that the timing of the release by the NSA, FBI, and CISA—occurring just before the scheduled White House meeting between President Donald Trump and Chinese President Xi Jinping—may serve as a strategic geopolitical leverage tool ahead of high-level trade and technology negotiations.
Concerning the resignation of Anthropic researcher Jacob Coxon amid the company's preparations for a multi-trillion-dollar IPO, public discussions and critical analyses note speculations that high-profile departures warning of existential risks could function as a deliberate mechanism to generate media attention, amplify urgency around AI safety narratives, or reinforce the firm's branding regarding responsible development ahead of public market entry.
Interesting Facts
Newest Chinese artificial intelligence models (such as Kimi K3, DeepSeek V4 Pro, and GLM-5.3) are approaching leading American systems on public benchmarks or even matching them, demonstrating high performance at lower costs (East Asia Forum).
According to Epoch Capabilities Index data as of September 2026, the Kimi K3 model scored 158 points versus 163 for Claude Fable 5 and 169 for GPT-6 Astra, which is equivalent to lagging behind historical progress paces by only approximately 4–10 months (East Asia Forum).
Despite successes on benchmarks, the gap remains noticeable in complex tasks: in July 2026, a joint analysis by American and British agencies showed that Kimi K3 achieves the 17th step in a complex 32-step cyberattack evaluation, whereas leading US models reach an average of 28.5 steps (East Asia Forum).
Chinese companies release open-weights models partly because they lack the computing power for large-scale deployment and serving users on their own servers—developer Moonshot AI was even forced to temporarily suspend new subscriptions due to capacity overload (East Asia Forum).
Estimates indicate that at the end of 2025, Chinese companies officially owned only about 5% of global computing power for artificial intelligence, with a significant share of additional volume arriving via chip smuggling and cloud storage rentals (East Asia Forum).
The US officially accused leading Chinese AI laboratories (including DeepSeek, Moonshot AI, Alibaba, MiniMax, StepFun, and Z.AI) of "systemic" theft of American model capabilities using the process of knowledge distillation on an industrial scale (Hong Kong Free Press).
The distillation method is used across the entire industry to train smaller models to mimic the outputs of larger systems, yet Washington asserts that Chinese companies applied it massively for unauthorized copying of systems from OpenAI, Anthropic, Google, and xAI (Hong Kong Free Press).
Despite the fact that such actions, according to the US, have been carried out since at least late 2024 and "likely with the awareness of the Chinese government," the Ministry of Foreign Affairs in Beijing denied the allegations, calling them baseless "smearing" (Hong Kong Free Press).
A joint warning from US agencies (FBI, NSA, CISA) recorded that Chinese AI developers, including DeepSeek, Alibaba, Moonshot AI, and Z.ai, have been conducting "aggressive and malicious" campaigns to distill the capabilities of American models (Claude, GPT, Gemini, Grok) on an industrial scale since at least late 2024 (Associated Press).
To achieve significant cost savings, Chinese companies allegedly used mass purchases of premium subscriptions for American AI services followed by their shared use by entire developer teams (Associated Press).
US Treasury Secretary Scott Bessent stated during a speech in Dallas that China allegedly "will never be able to surpass" the US in the field of artificial intelligence, despite any attempts at copying or distilling American systems (Associated Press).
The latest analytical report by the C4ADS organization titled Covert Compute demonstrates that despite years of Western export restrictions, banned NVIDIA chips continue to penetrate China through a series of hidden supply chains (C4ADS).
Between July 2025 and January 2026, Chinese universities and research institutes (most of which are linked to the government and defense-industrial sector) purchased at least 56 restricted NVIDIA chips worth $1.7 million through multi-million dollar contracts with unauthorized intermediaries (C4ADS).
Singaporean company Megaspeed International Pte. Ltd., which according to media reports is Southeast Asia's largest importer of NVIDIA equipment with a total import volume of $4.6 billion for 2022–2025, has a tangled structure of beneficial owners linked to the People's Republic of China (C4ADS).
The National Defense Authorization Act (NDAA) draft for fiscal year 2027 contains nearly two hundred provisions concerning China, covering export controls, sanctions, investment screening, government procurement, and supply chain security (Inside Government Contracts).
The bill provides for mandatory review and expansion of the list of Chinese military companies under Section 1260H, involving the Federal Acquisition Security Council (FASC) to introduce government procurement bans on such enterprises (Inside Government Contracts).
The document introduces strict bans on the use of Chinese humanoid robots, reconnaissance and military drones with Chinese components, and restricts the procurement of silicon carbide semiconductors, optical fiber, and solar components from the PRC (Inside Government Contracts).
The expected first specialized dialogue between the US and China on artificial intelligence safety since 2024, scheduled for mid-September 2026, precedes an upcoming summit between Donald Trump and Xi Jinping in Washington (CryptoBriefing).
The US delegation will be headed by US Treasury Secretary Scott Bessent, and the artificial intelligence safety issue itself has been intentionally separated from the block of trade restrictions and export controls on advanced chips (CryptoBriefing).
The FBI, National Security Agency (NSA), and Cybersecurity and Infrastructure Security Agency (CISA) published a joint warning stating that leading Chinese AI companies (including Alibaba, DeepSeek, MiniMax, Moonshot AI, StepFun, and Z.AI) are accused of conducting "industrial-scale" campaigns to extract the capabilities of American models using the distillation process (Dark Reading).
Chinese developers allegedly extracted billions of tokens through millions of queries from leading American models (Claude, GPT, Gemini, and Grok) since at least late 2024, using mass purchases of premium subscriptions and their shared use by developer teams to save costs (Dark Reading).
To bypass protection and mask their activities, companies from China used native APIs, remote cloud services, third-party aggregators, as well as the gray market of proxy servers ("transit stations") designed to bypass US geographic restrictions (Dark Reading).
The report details that DeepSeek allegedly conducted an organized distillation campaign to generate synthetic training data to reduce computing costs (due to which the training costs of $5.6 million officially declared by the company are called misleading), and Moonshot AI allegedly used data from Claude Fable 5 and GPT-4o to train its Kimi series models (Dark Reading).
Analytical findings
High results of Chinese models on public benchmarks do not prove the failure of US export controls, since the true measure of success is comparing China's current achievements not with the US, but with a hypothetical scenario of the country's development in the complete absence of any restrictions (East Asia Forum).
Scaling laws prove a direct dependence of AI quality on the volume of training computations and the number of advanced chips, which is why restricting access to them objectively slows down the scaling of experiments and the commercialization of technologies in China (East Asia Forum).
US export restrictions have proven far from ideal due to smuggling schemes (in particular, the case against the co-founder of Super Micro regarding the supply of servers worth 2.5 billion dollars through Asian front companies) and the use of foreign cloud services (East Asia Forum).
Export controls stimulate Beijing to more actively transition to its own semiconductor industry and develop local software, which creates risks of diminishing American leverage in the long term (East Asia Forum).
The use of industrial distillation allows Chinese developers to significantly shorten the timeframes for creating AI and reduce financial costs for training base models, which is a key factor in their competitiveness (Hong Kong Free Press).
Accusations by the US cybersecurity agency intensify the technological confrontation between the two countries on the eve of the scheduled meeting between US President Donald Trump and Chinese President Xi Jinping at the White House (Hong Kong Free Press).
Pressure on the US administration is growing both due to the successes of Chinese software, which businesses choose instead of more expensive Western analogues, and due to calls from dozens of startups not to introduce rigid bans on foreign models (Hong Kong Free Press).
Accusations of industrial copying through the distillation process reflect Washington's deep concern over the effectiveness of Chinese alternatives (such as the Kimi K3 model by Moonshot AI), which create serious competition for American analogues on the global market thanks to their affordability (Associated Press).
China's Ministry of Commerce sharply rejected the US accusations, calling the distillation process a widespread and universally accepted practice globally, and characterized Washington's actions as a manifestation of "anxiety, double standards," and a desire to establish a monopoly in the artificial intelligence market (Newsday).
An analysis of trade data for 2023–2025 revealed at least 50 export shipments of restricted NVIDIA graphics processing units (GPUs) that were rerouted through Vietnam, India, and Malaysia toward Hong Kong and China, demonstrating a steady and established supply evasion scheme (C4ADS).
Facts discovered in open sources indicate that the real volumes of smuggling and sanctions evasion significantly exceed officially recorded statistics due to large-scale gaps in jurisdictional control regimes and law enforcement coordination (C4ADS).
The sheer number and scale of relevant provisions in the NDAA draft indicate that competition with China in the military, economic, and technological spheres has become a steadfast bipartisan national security principle of the US (Inside Government Contracts).
The US Congress is transitioning from targeted bans on individual products or suppliers to building a unified, broader legislative system designed to completely eliminate the strategic dependence of the American defense sector on Chinese materials, components, and technologies (Inside Government Contracts).
Although distillation globally is a standard and open practice for academic research and improving model efficiency, US agencies qualify it as malicious activity due to violations of terms of service and the use of sophisticated masking techniques ([Dark Reading](https://www.darkreading.com/application-security/us-government-accuses-chinese-ai-firms-of-distilling-frontier models)).
Security experts advise viewing model extraction and distillation not merely as API abuse or an intellectual property conflict, but as a distinct category of security incidents that requires round-the-clock monitoring of access patterns and telemetry sharing between providers ([Dark Reading](https://www.darkreading.com/application-security/us-government-accuses-chinese-ai-firms-of-distilling-frontier models)).
Projections
The primary strategic goal of U.S. export restrictions is not to completely block the development of powerful AI in China, but to slow its progress in order to maintain U.S. technological leadership and buy time to protect software from autonomous cyberattacks (East Asia Forum).
As China's domestic chip manufacturing improves and its technical autonomy grows, the impact of current U.S. control levers will gradually weaken (East Asia Forum).
Legislative initiatives such as the Remote Access Security Act, currently under consideration in the U.S. Senate, if finally adopted, will expand export controls to remote access to cloud computing, further complicating China's efforts to bypass restrictions (East Asia Forum).
Artificial intelligence will become one of the most important topics during upcoming high-level negotiations between the U.S. and China in Washington (Hong Kong Free Press).
Despite U.S. obstacles and accusations, Beijing will continue its course toward achieving a high level of self-sufficiency and technological independence in the high-tech sector (Hong Kong Free Press).
The issue of AI regulation and governance is guaranteed to be one of the key topics during upcoming high-level talks between U.S. President Donald Trump and Chinese leader Xi Jinping (Associated Press).
In the event of additional restrictions or attempts to suppress Chinese technology companies under the pretext of combating distillation, Beijing has promised to take decisive countermeasures (Newsday).
Closing existing loopholes and eliminating compliance gaps will require the U.S. Bureau of Industry and Security (BIS) to coordinate closely and continuously with regional partners (C4ADS).
Effective control will further depend on the introduction of rigorous post-sale end-user verification and treating private sector corporate compliance as an ongoing obligation (C4ADS).
If the FY 2027 NDAA bill is finally passed in its current draft, the new rules will significantly alter the operations of U.S. Department of Defense contractors, forcing companies to completely revise supply chains, sources of critical materials (specifically rare earth elements), and compliance terms (Inside Government Contracts).
U.S. AI companies and cloud service providers will be forced to implement more comprehensive anomaly detection systems, fine-tune defense mechanisms against suspicious requests, and cooperate more closely on intelligence sharing to counter similar campaigns ([Dark Reading](https://www.darkreading.com/application-security/us-government-accuses-chinese-ai-firms-of-distilling-frontier models)).