INDEX 46 ▲1 todaySPLIT OF THE DAY Multiple outlets report surge in US AI data centers51 STORIES · 434 REACTIONSANTI-AI 77% · MIDDLE GROUND 19% · PRO-AI 4%LATEST Developer releases Rhun, an assembly-written open-source code editor
13 sources6 reactions

OpenAI links Moonshot AI individuals to 15,000-user distillation campaign

29 DoomStory + reactionsSecurity breach framed as adversarial theft and corporate response
13 sources · CNBC Africa · slguardian.org · Firstpost
  • Doom: OpenAI said individuals linked to Moonshot AI used over 15,000 users in the campaign
  • Doom: Attackers used a novel encryption bypass to carry out the distillation attack, per CyberScoop
  • Doom: The campaign targeted OpenAI's protected model reasoning processes to train a competing model
  • Boom: OpenAI says it disrupted the operation and is strengthening defenses against adversarial distillation
  • Neutral: OpenAI published its findings on September 30, 2026, naming Moonshot AI as a linked party
The story in full

On September 30, 2026, OpenAI published a report stating it had disrupted a coordinated campaign to extract protected reasoning from its models through adversarial distillation. OpenAI linked individuals associated with Chinese AI startup Moonshot AI to the operation and said the campaign involved more than 15,000 users. CyberScoop's headline noted that the attack involved a novel encryption bypass.

Model distillation is a technique where outputs from a more capable model are used to train a smaller one, and OpenAI described this instance as an attempt to steal its models' internal reasoning processes. OpenAI said it is strengthening defenses against this class of attack. Moonshot AI's position on the accusations has not been established in the available sources.

Analysis

372 words

On September 30, 2026, OpenAI published a report stating it had disrupted a coordinated adversarial distillation campaign involving more than 15,000 users. The company linked individuals associated with Moonshot AI, a Chinese AI startup, to the operation. According to CyberScoop, attackers used a novel encryption bypass to carry out the campaign, which targeted the internal reasoning processes of OpenAI's models. The goal, as OpenAI described it, was to extract that protected reasoning and use it to train a competing model. OpenAI said it shut the operation down and is now strengthening defenses against this class of attack. Moonshot AI has not issued any public response in the available sources.

The accusation matters because adversarial distillation, if successful at this scale, could allow a competitor to replicate the most valuable and expensive part of a frontier model without the underlying research investment. OpenAI's decision to name Moonshot AI publicly, rather than handle the matter quietly, signals that it views this as more than a routine security incident. The genuinely disputed question is whether this constitutes theft in any meaningful legal or moral sense, given that OpenAI's own models were built on data the company did not have explicit permission to use.

The Anti-AI camp is divided on emphasis. Some take the national security framing seriously: the account legal.reuters.com warned that stolen model weights could erase the US edge over China in the AI race. But several others find the complaint difficult to accept at face value. The accounts energycheckup.bsky.social, doubting-thomas.bsky.social, and dominicervolina.com each made versions of the same point, that OpenAI built its models on copyrighted material without consent and is now invoking intellectual property concerns only when its own outputs are at stake. The Pro-AI camp has not yet reacted publicly; a camp with that orientation would typically defend OpenAI's right to protect proprietary model outputs and frame the campaign as industrial espionage. The Middle Ground account techimo.bsky.social stayed close to the facts, noting that OpenAI shut the campaign down citing both security risks and unfair competition.

The argument will sharpen once Moonshot AI responds, or if regulators or courts are asked to weigh in on whether distillation of model outputs crosses a legal line that OpenAI's own data practices did not.

Pro-AI
No Pro-AI voice has weighed in yet. Silence is a signal too.
Anti-AI4

What Anti-AI voices are sayingAlarm voices see hypocrisy in OpenAI framing distillation as a security threat while its own models were built on others' content without consent, with some adding that stolen model weights could erase the US advantage over China.

Quote 1 of 4
OpenAI is mad that a Chinese AI company is "stealing" their intellectual property, which wouldn't exist if OpenAI didn't engage in large-scale theft of intellectual property
Dom Ervolinavia Bluesky
Middle Ground2

What Middle Ground voices are sayingMiddle voices note OpenAI acted to stop the campaign on security and competition grounds, but question whether a company that scraped others' data should be surprised when the same happens to it.

Quote 1 of 2
OpenAI shut it down July 28, citing security risks & unfair competition.

Add your take

0 reader votes

Sign in with Google to pick a side and post. Your vote moves the story's Doom / Boom score.

No more Pro-AI reactions
More Anti-AI reactions (3)
  • “Beijing could steal AI model weights developed by OpenAI, Anthropic and other top US firms, erasing the US edge over China in the AI race and posing a risk to US national security.”

    Reuters Legal, Bluesky · 10:15 UTC
  • “Other people's content: training data. Its own outputs: national security.”

    Doubting Thomas 🇬🇧🇪🇺🇩🇪🌻#FBPE, Bluesky · 06:41 UTC
  • “Too bad copyright laws weren’t taken so seriously when these so-called “frontier” models were in early training … Distillation = Just Deserts www.bloomberg.com/news/article...”

    Social Entropy, Bluesky · 08:11 UTC
More Middle Ground reactions (1)
  • “Their #AI systems have been hacking into everyone else's AI system and stealing data. Did it not occur to them that it would happen to them?”

    Bob L., Bluesky · 12:53 UTC
Pro-AI 0 · Anti-AI 4 · Middle Ground 20 reader takes

Sources

14 articles from 13 outlets
  1. CNBC AfricaAI race heats up as OpenAI flags alleged model-copying campaign
  2. slguardian.orgOpenAI Disrupts AI Model Distillation Campaign Linked to Chinese Startup
  3. FirstpostOpenAI blocks 15,000-user campaign linked to Chinese AI startup Moonshot
  4. GIGAZINEOpenAI reports that 'a Chinese AI company used more than 15,000 users to carry out distillation attacks to steal the thinking processes of its models.'
  5. GIGAZINEOpenAI reports that 'a Chinese AI company used more than 15,000 users to carry out distillation attacks to steal the thinking processes of its models.'
  6. CyberScoopOpenAI reveals ‘novel’ encryption bypass used in distillation attack
  7. BankInfoSecurityOpenAI Accuses Moonshot AI of Coordinated Model Distillation
  8. BenzingaOpenAI Says Moonshot AI-Linked Users Tried to Extract its Models’ Secret Reasoning
  9. Seeking AlphaOpenAI accuses Chinese AI startup Moonshot of large-scale distillation efforts
  10. MoomooOpenAI Says Moonshot AI Individuals Linked to Model Distillation Campaign
  11. marketscreener.comOpenAI Says Moonshot AI Individuals Linked to Model Distillation Campaign
  12. finance.yahoo.comOpenAI Says Moonshot AI Individuals Linked to Model Distillation Campaign
  13. OpenAIDisrupting a coordinated model-distillation campaign
  14. OpenAI newsDisrupting a coordinated model-distillation campaign