Anthropic的 威胁情报主管, Jacob Klein, 表示,他的公司欢迎竞争。但他说,来自中国市场的', , 更接近于盗窃。

Anthropic的 head of threat intelligence, Jacob Klein, says his company welcomes competition. But what的 coming out of the Chinese market, he says, is something much closer to theft.

外国对手, Klein 表示,, 正在访问 Anthropic的 Claude 模型 —,这是一种称为蒸馏 — 的过程,用于训练竞争技术并以较低的价格销售模仿版本。虽然蒸馏可以合法进行, Klein 说 不是这里发生的'。

Foreign adversaries, Klein says, are accessing Anthropic的 Claude models — a process known as distillation — to train competing technology and sell copycat versions at a lower price. While distillation can be done legally, Klein says that的 not what的 happening here.

"有'整个非法生态系统试图访问 Claude 和其他模特," Klein 告诉 CNBC。 "这个生态系统会采取一切必要的手段来逃避我们的控制,,这样他们就可以大规模地开设账户。"

"There的 an entire illicit ecosystem to try to gain access to Claude and other models," Klein told CNBC. "This ecosystem goes through any means necessary to evade our controls, so they can spin up accounts at extreme scale."

蒸馏已成为整个人工智能领域的一个有争议的话题。根据的如何进行,,这种做法可以允许模型开发人员使用另一家公司的技术的输出,以极小的成本创建具有竞争力的产品。在美国,,科技行业的一些派系敦促政策制定者避开监管,以便最好、最具成本效益的人工智能能够赢得,,而其他派系则在游说打击他们认为的盗窃知识产权行为。

Distillation has become a controversial topic across the artificial intelligence landscape. Depending on how it的 conducted, the practice can allow a model developer to use the output from another company的 technology to create a competitive offering at a tiny fraction of the cost. In the U.S., some factions in the tech sector have urged policymakers to steer clear of regulations so that the best and most cost-effective AI can win, while others are lobbying for a crackdown on what they see as theft of intellectual property.

在 4 月份的一份备忘录, 中,特朗普政府写道,破坏美国研究和专有信息的精炼是"不可接受的,",并表示将探索"一系列措施,追究外国行为者的责任。"

In an April memo, the Trump administration wrote distillation that undermines American research and proprietary information  is "unacceptable," and said it would explore "a range of measures to hold foreign actors accountable."

在 Anthropic 的关键时刻,威胁正在加剧。这家成立 5 年的公司私募市场估值已飙升至接近 241 万亿美元,预计将于 10 月份上市, CNBC 报道。

The threat is intensifying at a pivotal moment for Anthropic. The 5-year-old company has soared to a private market valuation of close to $1 trillion and is expected to go public as soon as October, CNBC has reported.

Anthropic 将中国人工智能实验室 Moonshot AI 列为抄袭其技术的公司之一。 Moonshot的 Kimi K3 型号在 7 月份以其更便宜的, 前沿级 AI 产品席卷了科技界。它'在硅谷被广泛采用,,部分原因在于其较低的价格点以及公司更容易定制它的能力。

Anthropic is singling out Chinese AI lab Moonshot AI as one of the companies it says is ripping off its technology. Moonshot的 Kimi K3 model took the tech world by storm in July with its cheaper, frontier-level AI offering. It的 been widely adopted in Silicon Valley, thanks in part to its lower price point and ability for companies to tailor it more easily.

克莱因表示 Kimi K3 是在最新版本的 Claude 上非法训练的。

Klein said Kimi K3 was illegally trained off the newest version of Claude.

"我们'已经从中国看到了相当多的此类情况,"克莱因说。 "这是整个行业正在处理的问题。"

"We've seen a fair amount of this from China," Klein said. "This is something that the industry writ large is dealing with."

Earlier this year, Anthropic alleged Moonshot and two other Chinese AI labs – DeepSeek and MiniMax – distilled its frontier AI models. Anthropic has also accused Alibaba, which makes the Qwen family of models, of conducting a massive "distillation attack" to illegally capture capabilities from Claude. OpenAI 和 Google 都发布了有关蒸馏的报告,并声称他们'正在解决同样的问题。

Earlier this year, Anthropic alleged Moonshot and two other Chinese AI labs – DeepSeek and MiniMax – distilled its frontier AI models. Anthropic has also accused Alibaba, which makes the Qwen family of models, of conducting a massive "distillation attack" to illegally capture capabilities from Claude. OpenAI and Google have both published reports on distillation and claim they're fighting the same issue.

阿里巴巴, DeepSeek, Moonshot 和 MiniMax 没有 回应置评请求。

Alibaba, DeepSeek, Moonshot and MiniMax didn't respond to requests for comment.

'欺诈手段'

'Fraudulent means'

网络安全专家告诉 CNBC,, 除了中国, 之外,威胁还来自伊朗, 俄罗斯和朝鲜, 等国家,这些国家的 Claude, Google的 Gemini 和 OpenAI的 ChatGPT 的使用因制裁而受到公司的限制。

Cybersecurity experts told CNBC that, in addition to China, the threat is also coming from countries like Iran, Russia and North Korea, where use of Claude, Google的 Gemini and OpenAI的 ChatGPT are restricted by the companies due to sanctions.

克莱因说,这些地区的许多实验室"通过非法手段和欺诈手段试图获得模型。"

Klein said many labs in those regions "go through illicit means and fraudulent means to try to gain access to a model."

人们绕过这些限制的一种方法是转向暗网,,在那里他们可以找到被盗信用卡信息和受损人工智能帐户的市场。 Klein 表示,像 Moonshot 这样的公司 " 拥有数以万计的,(甚至数十万个)欺诈帐户。"

One way people are getting around those restrictions is by turning to the dark web, where they can find marketplaces of stolen credit card information and compromised AI accounts. Klein said companies like Moonshot are "spinning up tens of thousands, if not hundreds of thousands of fraudulent accounts."

一旦他们'访问了人类的系统,,他们'就能够向模型提出问题并收集回答,,他们可以用这些回答来训练自己的模型,通常被称为学生,克莱因说。

Once they've accessed Anthropic的 systems, they're able to ask the models questions and collect responses, which they can use to train their own model, often called the student, Klein said.

蒸馏正在发生的一个明显迹象是,用户可能会问数千个问题,,而不是几十个,甚至可能创建数千个帐户来执行相同的,,为人工智能实验室产生打地鼠场景, Klein 说。

A clear sign that distillation is taking place is that a user could be asking thousands of questions, rather than dozens and potentially even creating thousands of accounts to do the same, producing a whack-a-mole scenario for the AI labs, Klein said.

"'很难完全阻止这个问题,,但我认为放慢速度是好的且值得的," Klein 说, 补充说,外国公司能够在几乎没有护栏的情况下使用该技术。

"It的 very hard to fully stop this as a problem, but I think slowing it down is good and worthwhile," Klein said, adding that foreign companies are able to use the technology with few guardrails.

他指出了诸如监视和可能在生物武器计划, 中使用等担忧,并指出了他所描述的来自一家中国实体的特定活动,该实体正在使用 Anthropic的 技术进行大规模间谍活动。

He pointed to fears like surveillance and possible use in a biological weapons program, and noted what he described as a specific campaign from a China-based entity that was conducting espionage at scale using Anthropic的 technology.

"如果我们不'不信任的恶意行为者,不良行为者通过蒸馏行为获得了比他们本来可以获得的更强大的模型,那么就会产生国家安全问题。"

"There is a national security concern at play if malicious actors, bad actors who we don't trust are gaining access to a more capable models than they could have otherwise through the act of distillation."

网络安全公司 Armadin 的 Travis Lanham, 技术主管和前 Google 工程师, 表示,不良行为者经常未被发现,因为人工智能公司在与竞争对手竞争时面临着使其平台尽可能易于访问的压力。

Travis Lanham, technology chief at cybersecurity firm Armadin and a former Google engineer, said bad actors often go undetected because AI companies are under pressure to make their platforms as accessible as possible as they race against the competition.

"这些公司正在处理数十亿个请求," Lanham 谈到大型人工智能实验室时说,。 "与所有事物相比,数百万人相对较小,'只是偷偷溜进去,试图看起来像其他人群。"

"These companies are serving billions of requests," Lanham said, about the big AI labs. "The millions are relatively small compared to everything and it的 just sneaking in and trying to look like the rest of the crowd."

Klein 承认, 与 Anthropic, 的广泛竞争是可以预料的,并且存在合法的蒸馏方法。这通常意味着获得许可并遵守知识产权和出口管制等问题的法律。

Klein acknowledges that, for Anthropic, widespread competition is to be expected and that there are legal methods of distillation. That generally means gaining permissions and following the law on matters like IP and export controls.

"我认为竞争很大,"克莱因说。 "这里的问题是,您是否正在采用我们的模型,通过欺诈手段,使用被盗的信用卡和被盗的基础设施,创建数百万个虚假帐户,,然后生成一个没有'保护措施的模型。"

"I think competition is great," Klein said. "The concern here is if you are taking our model, distilling it through fraudulent means, creating millions of fake accounts using stolen credit cards and stolen infrastructure, to then produce a model that doesn't have safeguards in place."

News Tips

收到机密新闻提示? 我们希望收到您的来信。

Got a confidential news tip? We want to hear from you.

CNBC 时事通讯

CNBC Newsletters

注册免费时事通讯,将更多 CNBC 新闻发送到您的收件箱

Sign up for free newsletters and get more CNBC delivered to your inbox

将此信息发送到您的收件箱,,并获取有关我们产品和服务的更多信息。

Get this delivered to your inbox, and more info about our products and services.

与我们一起做广告

Advertise With Us

© 2026 Versant Media, LLC。版权所有。 Versant 媒体公司。

© 2026 Versant Media, LLC. All Rights Reserved. A Versant Media Company.

数据为实时快照 *数据至少有15分钟延迟。全球商业和金融新闻, 股票行情, 以及市场数据和分析。

Data is a real-time snapshot *Data is delayed at least 15 minutes. Global Business and Financial News, Stock Quotes, and Market Data and Analysis.