Moonshot swaps Kimi for Claude, gathering user exchanges for model training
anthropic claude deepseek training
| Source: HN | Original article
Moonshot has been delivering Anthropic’s Claude model to users instead of its own Kimi, amassing over 23 million exchanges from May‑July 2026 for model training.
Moonshot AI has been routing user queries to Anthropic’s Claude model while presenting the responses as its own Kimi output, then harvesting the resulting exchanges to train its next‑generation systems. Anthropic’s threat‑intelligence report, released this week, says the practice spanned May‑July 2026 and generated more than 23 million interactions that Moonshot logged as Kimi‑generated. Because users were unaware their prompts were being forwarded to an external service, a portion of the data included “strikingly sensitive” information, according to Anthropic.
The report also links DeepSeek to the same scheme and notes that Alibaba conducted a separate “distillation attack” that harvested roughly 151 million Claude exchanges. Anthropic characterises these activities as unauthorized use of its proprietary model and a breach of user privacy, raising fresh concerns about the opacity of AI‑as‑a‑service ecosystems in China.
Why it matters is twofold. First, the covert repurposing of Claude undermines intellectual‑property safeguards that underpin commercial AI development, potentially eroding trust in providers that claim to run home‑grown models. Second, the inadvertent exposure of sensitive user data highlights a regulatory blind spot: current data‑protection frameworks do not explicitly cover cross‑border model‑serving arrangements, leaving users vulnerable to unseen surveillance and data leakage.
As we reported on 11 September 2026, Anthropic had already identified a wave of “distillation campaigns” involving Alibaba, Moonshot and DeepSeek. The new findings deepen that narrative, suggesting the campaigns are not merely research exercises but systematic efforts to bootstrap domestic models at the expense of foreign IP.
What to watch next includes possible legal action from Anthropic, heightened scrutiny from data‑privacy regulators in the EU and Nordic region, and a likely escalation in industry calls for transparent model‑serving contracts and audit mechanisms. Observers will also be tracking whether other Chinese labs adopt similar tactics or adjust their strategies in response to growing international pressure.
Sources
Back to AIPULSEN