Find notable cyber news and cases, enriched with sources, timelines, and signals.

CISA, NSA, and FBI joint advisory on AI model distillation

Public Sector Action
First reported
Last updated
Happening score
H score 25
3 unique sources, 3 articles

Summary

Hide ▲

CISA, NSA, and FBI released a joint cybersecurity advisory warning U.S. AI companies about knowledge distillation campaigns targeting frontier models. The advisory says the activity has been unfolding since at least late 2024 and involves extraction of billions of tokens across millions of exchanges/requests. It directs AI providers to strengthen detection, response, and cross-org intelligence sharing to blunt the abuse.

Related Happenings

China-based AI labs illicit Claude distillation campaign

Campaign
H score27 First: 11.09.2026 19:15 Last: 11.09.2026 19:15 Sources 1

About this happening: A coordinated industrial-scale distillation campaign against Claude is extracting reasoning and tool-use outputs to train competing models, increasing the risk of unauthor...

U.S. frontier AI companies knowledge distillation mitigation advisory

Advisory/Mitigation
H score31 First: 08.09.2026 15:00 Last: 08.09.2026 15:00 Sources 1

How related: The advisory recommends that AI companies improve behavioral and infrastructure-level detection, modify responses when distillation operations are suspected, and share intelligence about these campaigns with all stakeholders.

About this happening: CISA, NSA, and FBI issued a joint advisory for U.S. frontier AI companies, warning that knowledge distillation campaigns can strip proprietary model capabiliti...

China-based AI companies' knowledge-distillation campaign against U.S. frontier AI models

Campaign
H score23 First: 08.09.2026 15:00 Last: 08.09.2026 15:00 Sources 1

How related: The joint advisory noted that Chinese AI firms like DeepSeek, Moonshot AI, Alibaba, MiniMax, StepFun, and Z.AI have extracted billions of tokens across millions of exchanges/requests from U.S. frontier AI models, including variants of Anthropic Claude, OpenAI GPT, Google Gemini, and SpaceXAI Grok, since at least late 2024, likely with the blessing of the Chinese government.

About this happening: Anthropic said it disrupted industrial-scale illicit distillation against Claude by seven China-based labs, including Alibaba, Moonshot, DeepSeek, Z....

US government Gold Eagle vulnerability management launch

Public Sector Action
H score29 First: 16.07.2026 11:50 Last: 16.07.2026 11:50 Sources 1

About this happening: The US government launched Gold Eagle to coordinate vulnerability management and speed exploit detection and remediation across government and private-sector defen...

Willow raises $7M seed round for AI agent IAM platform

Industry Action
H score10 First: 04.06.2026 17:22 Last: 04.06.2026 17:22 Sources 1

About this happening: Willow emerged from stealth with $7 million in seed funding, giving the startup new capital to scale an identity and access platform for enterprise AI agents. The comp...

Timeline

  1. 08.09.2026 15:00 4 articles · 13d ago

    CISA, NSA, and FBI warn of industrial-scale knowledge distillation against U.S. frontier AI models

    Initial Disclosure

    CISA, NSA, and FBI released a joint cybersecurity advisory warning U.S. frontier AI companies that China-based AI companies including DeepSeek, Moonshot AI, Alibaba, MiniMax, StepFun, and Z.AI have been using knowledge distillation to extract proprietary capabilities from models including Claude, GPT, Gemini, and Grok since at least late 2024. The advisory says the campaigns involved billions of tokens across millions of exchanges or requests and urges AI providers to detect anomalous prompts, accounts, networks, and behaviors, alter responses to suspected distillation attempts, and share intelligence across organizations.

    Show sources