<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[US says Chinese firms extracted billions of tokens from frontier AI models]]></title><description><![CDATA[<p dir="auto">U.S. cybersecurity and intelligence agencies have accused six Chinese AI firms of running industrial-scale distillation attacks against American frontier AI models since at least late 2024. The operation reportedly siphoned billions of tokens from these systems — a scale that suggests coordinated, persistent targeting rather than isolated research experiments.</p>
<p dir="auto">Distillation attacks involve querying a model extensively to extract its outputs and behavior, then using that data to train a competing model at a fraction of the original cost. The agencies claim the Chinese companies leveraged this technique to effectively replicate the capabilities of leading U.S. models, potentially undermining the competitive edge of American AI developers. The extracted data could also be used to map model weaknesses or bypass safety guardrails.</p>
<p dir="auto">While the official statement does not name the specific models targeted, the scale of token extraction points to large-scale, automated abuse of API access. The advisory emphasizes that such attacks are not merely intellectual property concerns but also pose systemic risks to AI supply chains and national security. Affected organizations are urged to monitor for anomalous API usage patterns, such as high-volume requests from single sources, repeated identical prompts, or sudden spikes in token consumption.</p>
<ul>
<li>Monitor API logs for traffic originating from known hosting ranges or VPN endpoints.</li>
<li>Implement rate limiting and anomaly detection on model endpoints to flag batch extraction attempts.</li>
<li>Review access logs for patterns consistent with systematic prompt repetition.</li>
<li>Enforce stricter authentication and usage policies for high-privilege API keys.</li>
</ul>
<p dir="auto">The advisory reinforces a growing concern among security researchers that model distillation is evolving from a niche technical issue into a staple of state-sponsored economic espionage. This is not the first time U.S. authorities have warned about AI-related IP theft, but the explicit mention of billions of tokens marks a significant escalation in the reported scope of such operations.</p>
<p dir="auto">Source: <a href="https://www.bleepingcomputer.com/news/security/us-says-chinese-firms-extracted-billions-of-tokens-from-frontier-ai-models" target="_blank" rel="noopener noreferrer nofollow ugc">Unknown</a></p>
<p dir="auto">Does your organization have visibility into API-level token usage, and what thresholds would you set to detect a distillation attempt before it reaches billions of requests?</p>
]]></description><link>https://xploitlk.com/topic/276/us-says-chinese-firms-extracted-billions-of-tokens-from-frontier-ai-models</link><generator>RSS for Node</generator><lastBuildDate>Sat, 12 Sep 2026 05:50:29 GMT</lastBuildDate><atom:link href="https://xploitlk.com/topic/276.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 09 Sep 2026 18:30:33 GMT</pubDate><ttl>60</ttl></channel></rss>