Blogerroom logoBlogerroom
AI
AI

White House Accuses Moonshot of Stealing Anthropic AI

AB
Mr. Aayush BhattJuly 25, 20265 min read
๐ŸŒ Language

White House Accuses Moonshot of Stealing Anthropic AI

The White House accused Moonshot AI of covertly distilling Anthropic's Fable model to build Kimi K3, and Treasury is threatening sanctions.

Six days after Moonshot AI released Kimi K3 to widespread praise for closing the gap with America's best AI models, the White House offered its own explanation for how the Chinese company pulled it off: it didn't, according to the administration, do it cleanly. On Wednesday, July 22, 2026, Michael Kratsios, director of the White House Office of Science and Technology Policy, posted on X that the government has information showing Moonshot covertly distilled Anthropic's Fable model to build K3.

Treasury Secretary Scott Bessent backed the claim within hours, warning that sanctions and Entity List designations remain on the table for Chinese firms crossing the line from legitimate AI development into what he called industrial-scale intellectual property theft. Open source, he wrote, is not open season on American IP.

An Accusation Posted Before Any Evidence

What's notable about this dispute is what's missing from it. Kratsios alleged that Moonshot built a sophisticated internal platform specifically designed to conduct large-scale distillation against US models, switching between different access methods to avoid detection. He didn't explain how the government obtained this information, and the White House hasn't released supporting technical evidence that would let independent researchers verify the claim on their own. Moonshot AI has not issued a public response to the allegations as of this writing.

That's an unusual sequence for an accusation this serious. Normally, technical claims about model theft come with some form of forensic evidence, output comparisons, training data fingerprints, something a third party could examine. Here, the public record so far consists of a government official's statement and a Treasury Secretary's warning, without the underlying analysis attached.

What Distillation Actually Means, and Why It's Not Automatically Theft

Kratsios was careful to draw a distinction in his own statement, and it's worth taking seriously. Distillation, in AI development, is a widely used and legitimate technique where a smaller, cheaper model learns by training on the outputs of a larger, more capable one. Companies do this constantly, including American ones, to make efficient models without repeating the enormous cost of training a frontier system from scratch. Kratsios explicitly acknowledged that legitimate distillation plays a vital role in the broader AI ecosystem.

What he alleged Moonshot did instead is different in scale and method: large-scale, covert extraction from a proprietary US model, using access methods deliberately structured to avoid detection, rather than a normal API relationship. That distinction, between using a model's public outputs at a reasonable scale and systematically extracting its capabilities at industrial scale through obscured access, is the entire legal and ethical crux of the accusation. It's also exactly the kind of claim that's difficult to prove or disprove without the technical evidence nobody outside the government has seen yet.

A Second, Separate Allegation

The distillation claim wasn't the only accusation Kratsios made. He also alleged Moonshot obtained restricted, Blackwell-generation Nvidia chips through Thailand, chips subject to US export controls specifically meant to limit China's access to the most advanced AI hardware. If accurate, that would be a separate violation entirely, involving hardware smuggling rather than software extraction, and it broadens the accusation from an IP dispute into an export-control enforcement matter, the kind of allegation that typically carries more immediate legal consequences than a distillation dispute alone.

Why the Timeline Doesn't Quite Add Up

Independent AI researchers examining the public timeline have raised a genuine technical objection. Anthropic's Fable 5 was taken offline for a period earlier this year under a separate US government order tied to unrelated safety concerns, before being restored with restrictions still in place for some users. Kimi K3 was released in early July 2026. For Moonshot to have conducted the kind of large-scale, systematic distillation the White House describes, it would have needed sustained, high-volume access to Fable 5's outputs over a meaningful stretch of time, exactly the kind of access that would have been hardest to maintain during the periods Fable 5 was restricted or offline. That mismatch doesn't disprove the accusation, but it's the specific reason experts cited in reporting on this story describe the public timeline as difficult to reconcile with the scale of distillation being alleged.

What K3's Own Marketing Says About Itself

There's a useful reality check sitting in Moonshot's own public materials. The company describes Kimi K3 on its website as the first open 2.8-trillion-parameter model, emphasizing lower token costs alongside near-frontier performance. Moonshot's own language acknowledges that K3's overall performance still trails Claude Fable 5 and GPT-5.6 Sol, even while claiming it consistently outperforms other tested models. That's a company positioning its model as a strong, cost-efficient alternative, not as an equal to the very system the White House says it copied. Independently, K3 did reach first place on the Frontend Code Arena coding benchmark on July 17, scoring 1,679 against Fable 5's 1,631, the kind of specific, benchmark-topping result that likely drew serious attention inside Washington regardless of how it was achieved.

The Bigger Pattern This Fits Into

This accusation doesn't stand alone. It arrives amid a broader pattern of 2026 disputes between US AI companies and Chinese competitors over training data and model access, including Anthropic's own congressional testimony earlier this month accusing a different Chinese company of running tens of thousands of fake accounts to extract millions of Claude conversations for training purposes. Whether or not the Moonshot allegations hold up under scrutiny, they reflect a US policy environment increasingly willing to treat competitive AI benchmarks not just as engineering achievements, but as potential evidence of theft, backed by the threat of real economic consequences rather than just public criticism. For a company like Moonshot, riding genuine technical momentum from K3's launch into an approaching IPO, an unproven but unresolved federal accusation is its own kind of liability, independent of whether the underlying claim is ever confirmed.

ShareWhatsAppTwitterLinkedIn
AB

Written by

Mr. Aayush Bhatt

Software Engineer interested in how models work and where they fail.

โ† Back to AI