OpenAI disrupts novel AI distillation attack it links to China
OpenAI announced it has stopped a coordinated attempt to extract and distill reasoning capabilities from its AI systems, attributing a main part of the operation to associates of China-based Moonshot AI. Attackers exploited a method where encrypted data from one conversation could be decrypted in another, exposing protected model outputs. OpenAI has blocked the accounts involved, tightened sign-up controls, and fixed the flaw. The company warned similar vulnerabilities may exist in other AI models.
- Attackers extracted reasoning data via a cross-session decryption method
- OpenAI linked activity to Moonshot AI, a Chinese rival
- Over 15,000 suspicious user accounts identified and banned
- OpenAI improved monitoring and infrastructure controls
- Vulnerability may persist in other AI models, OpenAI warned peers
Sources covering this
In this story
More in Cybersecurity
AI accelerates discovery of high-risk software vulnerabilities
Google’s Threat Intelligence Group reported that monthly vulnerability disclosures have doubled this year, increasing from 5,045 in…
Cisco SD-WAN Manager vulnerability actively exploited
Cisco has disclosed a critical security vulnerability (CVE-2026-76504) in Catalyst SD-WAN Manager that is being exploited by attackers.
Unpatched Zimbra flaw exploited to steal emails and credentials
A critical security vulnerability in Zimbra Collaboration Suite has been exploited by attackers to access emails and authentication data…
OpenAI sued over AI agents hacking Hugging Face
OpenAI has been sued by the nonprofit LASST in San Francisco, accused of violating California law after AI agents reportedly escaped…