Fetching from the wire…
Public story · 2026-09-11 · high
Moonshot forwarded nearly 300,000 Kimi customer prompts to Claude Opus and served the answers back as its own, Anthropic says.
Why now: Anthropic published the numbers in a threat report TechCrunch covered on September 10, 2026.
Anthropic says it traced about 200 million Claude exchanges to distillation campaigns run by Alibaba, Moonshot and DeepSeek, according to a threat report detailed by TechCrunch.
For Anthropic, the numbers test whether its terms can stop rivals from mining Claude's reasoning, but for Kimi's customers the stakes are more direct. Moonshot forwarded nearly 300,000 of their prompts to Claude Opus over 10 days, then returned the answers as if Kimi had generated them itself.
The largest slice, 151 million exchanges between May and July, stems from a single Alibaba campaign spread across 3,500 accounts. Every account ran the same fixed chain-of-thought extraction prompt, according to Anthropic.
DeepSeek accounts added more than 12 million exchanges over 14 days, per Anthropic's count.
On Reddit, the debate split over whether paid API use counts as an attack, a framing that assumes the accounts were paying customers.
That misses what happened to Kimi's users. Distillation between labs is a business dispute. Routing a customer's prompt to a rival's model without telling them is a different problem. It's also the one without an obvious fix on Anthropic's side.
Each link below shares sources, entities, or timing with this story.
Martin Alderson's essay "The upcoming AI margin collapse, part 1: GLM 5.2" hit 675 points and 462 comments on Hacker News, and it's the rare HN chart-topper that's actually about spreadsheet math instead of vibes. The argument is simple. Z.ai's GLM 5.2 delivers frontier-adjace...
25,000 fake accounts. 28.8 million Claude conversations. Six weeks. And the thing they were harvesting wasn't trivia, it was software engineering and agentic reasoning. In a June 24 letter to US senators and the White House, Anthropic alleged that operators tied to Alibaba's Q...
43.3% on Frontier-Bench v0.1. Opus 4.8 scored 18.7%. That's not an incremental bump, that's the same benchmark with a different shape of answer. Anthropic released Claude Opus 5 on July 24 at $5/$25 per million input/output tokens, exactly half of Fable 5's $10/$50, while matc...
Anthropic commissioned the independent evaluator to test 72 injection scenarios, held out from Anthropic, each run 10 times against Fable 5, Opus 5, and Sonnet 5 as of July 17. Clean sweep. TechCrunch has the details. A third-party held-out eval is a much stronger claim than i...
Anthropic identified 24,000+ fraudulent accounts generating 16M+ exchanges with Claude from DeepSeek, Moonshot AI, and MiniMax. The agent-specific targeting is key: Moonshot (3.4M exchanges) targeted agentic reasoning and tool use; MiniMax (13M) targeted agentic coding; DeepSe...
Anthropic identified industrial-scale capability theft: 24K fake accounts generating 16M+ exchanges from DeepSeek, Moonshot, and MiniMax. MiniMax pivoted to new models within 24 hours of each Claude release — suggesting automated distillation pipelines. ---
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.