OpenAI accuses Moonshot AI of mass reasoning extraction attempt
- Doom: Users linked to Moonshot AI sent up to 16,000 requests targeting OpenAI's protected model reasoning
- Boom: OpenAI says it detected and disrupted the coordinated extraction campaign
- Neutral: OpenAI attributed activity to Moonshot AI associates, not the company directly
- Doom: The targeted system involves hidden reasoning outputs, a core proprietary OpenAI capability
The story in full
OpenAI publicly linked China-based Moonshot AI, maker of the Kimi model, to a coordinated campaign attempting to extract hidden reasoning from its models. According to multiple outlet headlines dated September 30 to October 1, 2026, the effort involved over 10,000 and as many as 16,000 requests fired at OpenAI systems, which OpenAI says it disrupted.
The campaign targeted protected model-reasoning outputs, a closely guarded part of OpenAI's systems. OpenAI attributed the activity to people linked to Moonshot AI associates rather than the company directly. Moonshot AI's position on the accusation is not established by the available headlines.
Analysis
390 wordsOn September 30, 2026, OpenAI publicly attributed a coordinated extraction campaign to users linked to Moonshot AI, the China-based company behind the Kimi model. The campaign involved between 10,000 and 16,000 requests aimed at pulling protected reasoning outputs from OpenAI's systems. OpenAI said it detected and disrupted the effort, and it stopped short of blaming Moonshot AI directly, attributing the activity to associates rather than the company itself. Moonshot AI had not issued a public response as of the available reporting.
Hidden reasoning outputs are among the most commercially sensitive parts of a frontier AI model, representing the internal chain-of-thought processes that companies have invested heavily to develop. Successfully extracting that layer would give a competitor meaningful insight into how a model reaches its conclusions, bypassing the cost of building that capability from scratch. The attribution question is genuinely contested: linking a company to the actions of associated individuals is a weaker claim than direct organizational responsibility, and that distinction matters both legally and diplomatically given the US-China technology rivalry.
The Anti-AI camp is not treating this primarily as a story about Moonshot AI. Accounts including Desert Flower, IronMillMan, and rchady all pointed to reporting that OpenAI employees had raised alarms about inadequate monitoring of its models and been ignored by senior executives. Zubiqo argued that selling broad API access to advanced models effectively hands rivals the data they need to close the gap, making the extraction attempt less surprising than OpenAI's response implies. CGray noted that the Trump administration had indicated it would leave AI companies to regulate themselves, framing that posture as reckless in light of this incident. The Pro-AI camp had no published reactions at the time of this summary; that camp would typically argue that OpenAI's ability to detect and stop the campaign demonstrates that existing internal security measures are working as intended. The Middle Ground response, reflected in a post from カマドさん(仮), treated the episode as evidence of quiet competitive maneuvering that is simply an expected feature of a fast-moving industry, neither condemning nor excusing any party.
The key questions left open are whether OpenAI will provide more detailed technical evidence linking the requests to Moonshot AI associates, and whether Moonshot AI will respond publicly. Any regulatory or legal action, particularly under existing export-control or computer-fraud frameworks, would be the next concrete development to watch.
What Anti-AI voices are sayingOpenAI ignored repeated internal warnings about model security and inadequate monitoring, leaving its systems vulnerable. Critics also argue that selling public API access hands rivals the very data they need, and that self-regulation is insufficient.
Quote 1 of 7What Middle Ground voices are sayingThe incident suggests quiet behind-the-scenes maneuvering to extract proprietary AI reasoning capabilities, framed as an unsurprising feature of a fast-moving and competitive industry.
Top quoteAdd your take
0 reader votesSign in with Google to pick a side and post. Your vote moves the story's Doom / Boom score.
No more Pro-AI reactions
More Anti-AI reactions (6)
“corporate greed is what is fuelling this reckless race to be the top dog in the industry.”
bcshelby.bsky.social, Bluesky · 16:19 UTC“Trump just said he wouldn't move to regulate AI. "They'll regulate themselves!"”
CGray, Bluesky · 19:48 UTC“Months before #OpenAI’s artificial intelligence went rogue, 2 employees raised an alarm with top executives. They were ignored. In emails, the employees said they worried that OpenAI’s newest #AI models were not being appropriately monitored ... By Sheera FrenkelDustin Volz”
Desert Flower, Bluesky · 16:58 UTC“Selling public API access to advanced models isn't a moat—it just bankrolls the dataset your rivals are gunning for.”
Zubiqo, Bluesky · 17:49 UTC“Employees and security researchers said that they had cautioned the company on safely testing its #AI models and strengthening its corporate infrastructure, but that #OpenAI did not listen.”
Empowering Main St. Before Wall St., Bluesky · 14:36 UTC“And Trump wants AI companies to police themselves!”
Paul Hallasy, Bluesky · 14:17 UTC
No more Middle Ground reactions
Sources
11 articles from 10 outlets- The DecoderOpenAI says it stopped a campaign to steal its models' reasoning, but the trick still worked on Azure
- The Hacker NewsOpenAI Disrupts Reasoning Extraction Campaign Linked to Moonshot AI Associates
- 디지털투데이OpenAI blocks attempts to extract protected reasoning, cites links to Moonshot AI
- finance.biggo.comOpenAI Says Moonshot AI-Linked Users Fired 16,000 Requests to Extract Model Reasoning
- MIXED Reality NewsOpenAI says people linked to Moonshot AI ran a campaign to extract its reasoning
- cnbc.comOpenAI links China’s Moonshot AI to attempt to extract its models’ reasoning
- FuturismHere’s the Email You Get When an OpenAI Model Hacks Your Organization
- finance.biggo.comOpenAI Accuses Moonshot AI of Launching Over 10,000 Attacks in Attempt to Crack GPT's Hidden Reasoning
- unite.aiOpenAI Disrupts Coordinated Model-Reasoning Extraction Campaign
- Crypto BriefingOpenAI disrupts extraction attempts linked to Moonshot AI’s Kimi
- Bloomberg.comOpenAI Blames Moonshot for Mass Data Extraction on Its AI Models

