Skip to main content
News .Prompt in the News — Read on Under30CEO
AI Security

Anthropic Caught Alibaba Using 25,000 Fake Accounts to Steal Claude AI, The Identity Crisis in AI Just Got Real

The Largest AI Model Extraction Attack in History

Today, Anthropic sent a bombshell letter to U.S. lawmakers accusing Chinese tech giant Alibaba of orchestrating the largest known AI model extraction attack in history, using 25,000 fake accounts and generating 28.8 million queries to distill Claude AI’s capabilities.

This isn’t a corporate dispute. It’s the wake-up call the AI industry has been dreading.

What Actually Happened

Alibaba allegedly created thousands of fake accounts to query Claude at massive scale, then used the outputs to train a smaller clone model. The technique is called distillation. It lets bad actors effectively steal an AI’s capabilities without ever accessing its underlying code, weights, or training data.

Think of it like this: you can’t replicate a master chef’s recipe, but if you order 28.8 million dishes and analyze every ingredient, you can reverse-engineer something close enough to sell as your own. That’s what happened here, except the “recipe” is one of the most advanced language models on the planet.

According to Anthropic’s letter, the scale was staggering. 25,000 accounts. 28.8 million queries. A coordinated, industrialized effort to extract Claude’s reasoning, tone, and capability, then package it as Alibaba’s own.

The Broader Context: AI Under Pressure From All Sides

This attack lands at a moment when AI security is already under intense scrutiny. The Trump administration recently asked OpenAI to slow-roll GPT 5.6’s release over safety concerns. Anthropic itself disabled two of its models after a federal directive. The AI landscape is shifting overnight, and not just technologically.

Model extraction isn’t new. Researchers have demonstrated distillation attacks in academic settings for years. But the scale of this alleged operation is unprecedented. This wasn’t a research paper. It was a state-adjacent commercial entity running what appears to be the most sophisticated IP theft in AI history.

And the industry has no clean answer for it.

The Core Problem: Identity Is Broken

Here’s the question nobody in AI wants to answer right now: How do you prove which model is the original?

In a world where AI models are the most valuable intellectual property on the planet, provenance is nearly impossible to verify. A distillation attack produces a model that behaves like the original. It responds similarly. It reasons similarly. But it’s a copy, and there’s no certificate of authenticity.

This goes beyond models. Consider the AI agents and tools now deploying across enterprises. How do you verify that a prompt, an agent, or an AI tool is genuinely from the creator it claims to be? How do you know the code you’re integrating wasn’t trained on stolen outputs? How do you trust the tool that just accessed your database?

The AI ecosystem has an identity crisis. And Alibaba just proved how dangerous that crisis has become.

Where Digital Identity Enters the Equation

This is the problem the .PROMPT domain was designed to solve.

When AI models, agents, and tools need verifiable provenance, they need more than a .com or a GitHub repo. They need a domain that signals authenticity within the AI ecosystem itself.

Imagine a future where every verified AI model carries a .PROMPT domain as its digital fingerprint. Where before you trust an agent, you check its .PROMPT. Before you integrate a tool, you verify its .PROMPT. Before you train on an output, you confirm the source.

The.PROMPT TLD isn’t just a domain, it’s the identity layer the AI industry desperately needs. It creates a namespace where provenance is built into the address itself. You can’t fake a.PROMPT domain registration any more than you can fake a domain registrar’s DNS records. The identity is structural, not decorative.

Anthropic learned today what happens when identity has no foundation. 25,000 fake accounts. 28.8 million queries. One of the most advanced AI models in the world, extracted, cloned, and deployed by a competitor that never built it.

The future of AI runs on verified identity.

Secure your AI brand’s digital home at promptdomains.ai before someone else does.

Leave a Reply

Your email address will not be published. Required fields are marked *