The White House has said it will work more closely with US artificial intelligence (AI) firms to combat 'industrial-scale campaigns' by foreign actors to steal advances in the technology. Michael Kratsios, Director of Science and Technology Policy, wrote in an internal memo that the administration had new information indicating 'foreign entities, principally based in China' were exploiting American firms. Through a process called 'distilling', such firms are essentially copying AI technology developed by US companies, he said.
A representative of China's US embassy in Washington DC said its development was 'the result of its own dedication and effort as well as international cooperation'. In the memo, Kratsios said the aim was to 'systematically undermine American research and development and access proprietary information'.
In an attempt to avoid and halt 'malicious exploitation,' he said the White House will be doing four things:
- Sharing more information with US AI companies about 'tactics employed and actors involved' in distillation campaigns.
- Working to 'better coordinate' with companies to fight the attacks.
- Developing a set of 'best practices to identify, mitigate, and remediate' them.
- 'Exploring' how the White House can hold foreign actors accountable for such distillation.
The memo did not detail any specific plans for action against foreign entities found to be undertaking distillation of US AI technology. A White House spokesperson declined to comment beyond the memo. A representative of China's US embassy in Washington DC took issue with 'the unjustified suppression of Chinese companies by the US' in response to the memo. 'China is not only the world's factory but is also becoming the world's innovation lab,' the representative added.
Distillation campaigns are carried out by firms that usually operate many thousands of individual accounts for a given AI chatbot or tool, allowing them to appear as normal users. Those accounts then undertake more coordinated attempts to 'jailbreak' or otherwise expose information about AI models that is not supposed to be made public, which is saved and applied to their own AI model building and training.
While Kratsios did not name any foreign entities, leading AI companies like OpenAI and Anthropic have reported dealing with such distillation activity. Earlier this year, Anthropic described distillation 'attacks' by three AI laboratories, DeepSeek, Moonshot, and MiniMax, indicating that they were working to copy Anthropic models through distillation campaigns. All three of the labs are based in China. OpenAI has also accused DeepSeek of copying its technology.
A representative of China's US embassy in Washington DC said its development was 'the result of its own dedication and effort as well as international cooperation'. In the memo, Kratsios said the aim was to 'systematically undermine American research and development and access proprietary information'.
In an attempt to avoid and halt 'malicious exploitation,' he said the White House will be doing four things:
- Sharing more information with US AI companies about 'tactics employed and actors involved' in distillation campaigns.
- Working to 'better coordinate' with companies to fight the attacks.
- Developing a set of 'best practices to identify, mitigate, and remediate' them.
- 'Exploring' how the White House can hold foreign actors accountable for such distillation.
The memo did not detail any specific plans for action against foreign entities found to be undertaking distillation of US AI technology. A White House spokesperson declined to comment beyond the memo. A representative of China's US embassy in Washington DC took issue with 'the unjustified suppression of Chinese companies by the US' in response to the memo. 'China is not only the world's factory but is also becoming the world's innovation lab,' the representative added.
Distillation campaigns are carried out by firms that usually operate many thousands of individual accounts for a given AI chatbot or tool, allowing them to appear as normal users. Those accounts then undertake more coordinated attempts to 'jailbreak' or otherwise expose information about AI models that is not supposed to be made public, which is saved and applied to their own AI model building and training.
While Kratsios did not name any foreign entities, leading AI companies like OpenAI and Anthropic have reported dealing with such distillation activity. Earlier this year, Anthropic described distillation 'attacks' by three AI laboratories, DeepSeek, Moonshot, and MiniMax, indicating that they were working to copy Anthropic models through distillation campaigns. All three of the labs are based in China. OpenAI has also accused DeepSeek of copying its technology.

















