• Does this matter? Distillation is not illegal by every definition of the word.

    There are millions of samples available on huggingface and models explicitely trained on output produced by fable. There has been no action taken against them.

    Another example is that it appears that the upper limit of what you can do is ultimately dependent on people working on the model, otherwise grok would be a LOT more competitive pre-cursor acquisition.

    And lastly, kimi architecture is vastly different than that of fable as it uses mechanisms developed by... kimi themselves. US AI labs are inspired by opensource advancements just as much as open source labs are inspired by traces from models such as fable.

    Claiming in any shape or form that fable disillation is one of the primary reasons why kimi k3 is so competitive is slandering the work of other labs that cooperatively push the open-source models forward.

    edit: (moved this to bottom) The only argument they have here is that they use GB300 GPU's which for some reason should not be available to chinese citizens.

    • Perhaps even more importantly, the current frontier LLM models are self-admittedly the product of enormous quantities of copyright infringement and even less savory inputs, so calling them out for distilling the fruit of that tainted tree reads as highly hypocritical at best.
      • While I agree on a moral level, I think there is a distinction to be made. Training a SOTA model takes a huge amount of resources and expertise so the people doing the training are adding a lot of value along the way. I think this is much less true for distillation (which is kind of the whole point).

        ed: to clarify, I totally agree that a huge chunk of the value in LLMs is coming from the source material. My point was just that training an LLM takes more resources and expertise than distilling from an existing LLM so I don't think the equivalence between training and distilling is entirely justified.

        • I like this comment because its argument only makes sense if you assume that the entire world's output of books and art did not require a huge amount of resources and expertise to make, nor did it add any value.

          It's the most CS-major take ever!

          • If turning other peoples copyrighted work into a model is transformative enough to be protected then so is distilling that model into a different, better, model.
          • This is a misrepresentation though.

            The LLM output, is not the same as the input - there is value add.

            Of course works used as raw inputs to LLMs required work and are reasonably subject to IP concerns - but they are different.

            It's possible that the LLM makers 'owe' the content creators that created the content they used to make their products - it's an interesting but separate question.

            We could very well end up where content IP is protected, LLM output is not and visa versa with reasonable legal founding, doubtful but plausible.

            • > but they are different.

              How, and why?

              > We could very well end up where content IP is protected, LLM output is not and visa versa with reasonable legal founding, doubtful but plausible.

              That is the current state of legal rulings - LLM output is public domain, not copyrightable.

          • I don't think that's what it's saying at all. It's saying that there's a level of creativity in model creation that isn't present in distillation.
            • Yes, this is what I was getting at.
        • > raining a SOTA model takes a huge amount of resources and expertise

          Writing books, building Wikipedia, and answering questions on online forums takes a lot of resources and expertise that scraping didn't. So at the very least, we're already one rung down the "maybe you should've asked" ladder.

        • I suspect that, in aggregate, all of the informational output of humanity prior to 2020 has taken more resources to produce than the last few years of LLM research.
        • I don't know man. This reads like "yeah we stole your grain, but making bread is hard."
          • It sure is, but it doesn't matter. Whatever position that generates more economic activity is declared legal using some nonsense retconned logic "because we said so".
        • Probably not as much effort as writing books and creating art the models were trained on.
        • Why is it less true for distillation? Everyone technically has access to Fable but Moonshot came up with the model. How can you objectively claim one is adding value while the other is not?

          If that is the whole point you need to clarify why this is the case on an objective level.

          I would say building a comparable model using any means necessary (just like what Anthropic and OAI did) at a lower cost is actually more valuable to soceity and Monshoot is arguably generating more value with less.

        • You can argue that reverse engineering anything is as hard if not harder than engineering something. I can’t imagine distillation is any different.
          • Distillation is objectively easier than training a model from scratch, that's why all these Chinese labs are doing it.
        • I'm sure it takes a lot of time and resources to plan and pull off an epic heist but it is unusual to see people like Thomas Crown being accused of creating value, as they're usually accused of committing theft.
      • No, they settled that yesterday, so all is forgotten. Press releases were queued for today so just in the nick of time.
      • No - distillation is not data inputs.

        Raw materials vs. Value add.

        They are different things, like ore and metal.

        Distillation is a new thing we need to understand, it's probably closer to IP than not.

        • The "data inputs" were also, very much, somebody's "value added" IP.

          We're talking about things like text people wrote, not some kind of raw data floating out in the ether.

        • Are you suggesting data input is further from IP than distillation?

          That would stun me, but it's a little hard to read.

      • This is why I don't give a shit that this is happening. It's actually kind of funny to me.
        • Unless you’re from mainland China, you should.
          • Why? Should we be held hostage to the whims of these companies and all the investors in the throes of AI psychosis, and let them do whatever the fuck they want, because if we don't then the economy will crash?
          • No you should not care unless you are a shareholder in one of these Ai ponzi companies. For the rest of the world Chinese companies matching and open sourcing llm's will keep 100 or so tech oligarchs taking over all the world economic output for themselves as all the idiot politician are unwilling to tax wealth.
      • I disagree that LLM models are the product of enormous quantities of copyright infringement.

        The recent announcement that AI-assisted research produced a counterexample to the Jacobian conjecture--a long-standing open problem in algebraic geometry--shows the original value AI can create. The result was not copied from a textbook; it emerged from AI learning from existing material, much as a human does, and then applying that knowledge in a new way. If that's a violation of copyright, then a human doing the exact same thing would be a copyright violation too. But it isn't.

        • Yup if a machine kills a human it's not the machine's fault; it's the human's. Humans doing the exact same thing as machines aren't 1:1.
          • If it is legal for a human to do something then it is legal for a machine to do it too. Are there any counter examples to that?
        • The didn’t pay for the books.

          It’s massive copyright infringement.

          The human buys the books.

          • Did they borrow the book? If I learn from a borrowed book is that copyright infringement?
    • Boy I tell you, I am having an awful hard time summoning pity for the organizations that have themselves distilled all of humanity's knowledge into mysterious labor-market-masticating black boxes.
    • It matters because everyone imagines the inevitable "closing of the gap" between closed and open source, but the rate at which open source catches up with closed source seems to depend on being able to train on and distill the outputs of open source models. As long as performance of open source models is at least partially dependent on frontier-model outputs, then that gap will remain in place by definition.

      >Claiming in any shape or form that fable disillation is one of the primary reasons why kimi k3 is so competitive is slandering the work of other labs that cooperatively push the open-source models forward.

      If the distillation is irrelevant to why it is competitive, why do they do it then? Obviously is helps improve their benchmarks/performance to some degree, otherwise they wouldn't need to do it.

      • Never claimed that it is irrelevant. And kimi k3 is on the same level and sometimes outperforms fable 5 - that cannot be explained by distillation. The reason why gap is not closed is simply the fact that fable was trained months ago so in theory the frontier labs are still 1 (small) step ahead.

        Although I will reiterate the fact that distillation is not the primary reason why these models are performing so competitively.

        • Closed-source models have to deal with the current frontier being heavily regulated. Fable, at its old level, was "too good" to be released and they had to add an additional safety layer to sanitize the outputs. Lowering the quality of the models so they are safer and more steerable has been something all the closed-source models have been doing for a while, a requirement that many open source models don't need to deal with.

          If Kimi k3 really were above Fable 5 then there invariably the USG would have to consider their restrictions on model capabilities excessive, or one would have to admin closed source models are held to more restrictive safety standards than open source models.

          >Although I will reiterate the fact that distillation is not the primary reason why these models are performing so competitively.

          How would you know this? How could you ascertain exactly how much performance is attributable to their unique engineering/research? If they really were so competitive they could surely make a model that isn't dependent on distilling Fable or other frontier models.

          • I recommend reading some of their research it's honestly astonishing how intelligent some of their solutions are.

            Kimi specifically relies heavily on reasoning traces which is largely due to their training strategy and will perform poorly when thrown into a conversation from another model. Another fun advancement is that they simply ctrl+c ctrl+v'd attention which means that the model can steer where to look in the context window without ever producing an output token increasing token efficiency and attention accuracy as a side effect you end up with weaker prompt adherence.

            None of these 'issues' manifest in US models which proves that kimi has diverged and is achieving these capabilities seperately from the architecture that US labs rely on.

            I would agree with you during the Deepseek R1 era, but US labs were heavily inspired by open research at that point as well so I wouldn't give them too much credit.

            • You still left out that it doesn't matter anymore, just like Anthropic/Facebook/OpenAI only really needed to read massive amounts of copyrighted data only once (and of course, they all did this illegally, which makes their current complaints more than a little ...). Once they have a large model trained on the data, they can just retrieve reasoning traces and copyrighted data from the previous model. In fact that is a training technique long used because it has better results that directly training on the original data.

              In other words: even if the US (somehow) denies them access to the current OpenAI/Anthropic models, they'll be able to improve based on what they already have.

    • It is incredibly important to whether the US can maintain its AI lead. If foreign competition is closing the gap only by distillation, then the frontier labs can focus on preventing distillation and maintain their lead that way.

      US dominance is also important for approaches to safety, especially political approaches. If the frontier models are all US-based, safety might be tackled via internal US policy. If other countries can independently train competitive models, international cooperation is required.

      Edit: It is also important for the business model. Companies won't be able to justify tremendous training costs if competitors can replicate their product much more cheaply via distillation.

      • Do Americans even believe that US policy is likely to steer development in a way that’s safe and beneficial for humanity? The rest of the world certainly doesn’t. The US currently seems to primarily use their superpower status to be the world’s number one shit disturber and geopolitical antagonist.

        I don’t think China’s necessarily any better, but I’d rather have the most powerful models be open rather than under the exclusive control of the US executive.

        • >Do Americans even believe that US policy is likely to steer development in a way that’s safe and beneficial for humanity?

          No, no we do not.

      • > If foreign competition is closing the gap only by distillation, then the frontier labs can focus on preventing distillation and maintain their lead that way.

        We already know it's false because you would have hundreds of competitors if it was that easy.

        The reason why these Chinese labs are releasing good models is simpler, they have access to a tremendous pool of talented people.

    • I agree distillation isn't illegal; I also think Moonshot/Kimi is very impressive. But the more interesting question is whether labs like Moonshot can be a real competitor to OpenAI/Anthropic. If you can only play catchup (however quickly you do that), then you're never going to be at the frontier - I think that's why distillation matters.
      • So many of the breakthroughs and architecture that make LLMs powerful in general today came from China, especially ones related to sparsity and MoE that have made inference and training substantially cheaper.

        Let's not forget how much people talked about "prompt engineering" before Deepseek mainstreamed the idea of thinking mode which is now universal

      • People that think the Chinese are only able to copy western tech are in for a wakeup call.

        Actually, that has already happened in many domains, it's just that most western people (USA especially) won't admit it.

        • my assertion isn't that china isn't able to surpass western AI. I think it may well happen. I've been to china many times and am well aware of how ahead they are in many technological/societal areas.

          at the same time, I don't buy the idea that distillation is unimportant in assessing what Chinese labs are capable of. If it wasn't, why did Kimi's release timing coincide so well with Fable's launch?

          and if Anthropic hadn't released Fable, would we have Kimi today? If the answer is no, then I think that's still a very important point to consider.

          • Spot-on and you're asking the right questions. And the other problem in these comments is that folks seem to think if China pulls ahead we can't just distill their models, provided that distillation is a key part of "this". If it's such a great strategy we'll just use it too if we want to. Boom roasted.

            For some reason folks seem to think that China can take action and then other countries can't also take action or respond to that action and it comes up again and again. China has hypersonic missiles! Pack it up boys time to go home. Nothing we can do. Dang shucks. China distilled American AI models, welp time to just close it all down and let's just write off those trillions of dollars and all the literal geniuses financing and building these things. Oh well China can just copy American models while we spend all the money! Ok we just stop developing models and we'll just copy their models. China will flood the market with their cheap products! Nope can't do anything like, oh, idk, not buy any of those products or just raise the prices on them in local markets. It's never-ending. I don't understand the lack of capacity to reason about other actors that takes commonly takes place. And that's just China, never mind other general issues.

          • > and if Anthropic hadn't released Fable, would we have Kimi today? If the answer is no, then I think that's still a very important point to consider.

            That works both ways, competition and performance spur new developments. You don't think the American labs are looking at Chinese research on how to reduce compute per token?

      • My entire point was that this was not achieved purely from distillation and claiming that is slander against open research.
    • Of course it matters. Regardless of whether distillation is legal, there is a difference between training a model with and without distillation. For one thing, the distilled model wouldn't exist without the model it distilled.

      Also, companies that use distillation may be competitive but seem unlikely to surpass the companies that are training these models from scratch.

    • Legal, illegal…

      The word I would use is inevitable. It reminds me of the (PC) clones wars…

    • > The only argument they have here is that they use GB300 GPU's which for some reason should not be available to chinese citizens

      Note that Chinese companies are free to rent from GB300 clouds internationally. There are large datacenter hubs in Singapore and Malaysia serving chinese and other customers.

      Though there is also reported [1] significant smuggling of Nvidia chips into China as well.

      [1] https://epoch.ai/publications/chip-smuggling

    • I wouldn't be surprised at all if US labs are also distilling Chinese models, except we'd never know since they can simply self-host them
      • We do know, because we used to have some Claude models identifying as Deepseek when prompted in Chinese
    • It does matter in that these LLM companies need to be run into the ground, and every embarrassing clod working for them run out of town.

      It's showing that 'distillation' is a viable way to reclaim all of what they stole and hoard, and with enough luck their debts will come due in time for them to feel it.

    • It is presumably against their ToS.
      • And why, pray tell, would a cabinet member of the Trump administration be involving the US government in enforcing a private ToS?
    • > Does this matter? Distillation is not illegal by every definition of the word.

      Correct, but it at least helps answer the question of "how do they make such good models for a fraction of the price???" The answer is someone else spends the untold billions and Chinese labs do a little tweaking.

    • It doesn't matter. It is most likely a pretext for upcoming actions mostly likely executed via yet another retarded executive order. The guy that posted this looks like he's drowned himself in the MAGA Koolaid.
    • It also doesn't matter for a simpler, and much grander reason.

      All LLMs are trained on the corpus of humanity's knowledge, the legacy of everyone who's ever lived and our civilization as a whole.

      Anything that prevents or circumvents the accumulation or gatekeeping of this knowledge and puts it in the hands of more people (that are not AI company shareholders) is a good thing. Whether that is done by open sourcing the model weights, the training set, or by making the output better and cheaper, it is all fair game and is, as another poster mentioned, inevitable in the long run.

    • Uh, what?

      > Distillation is not illegal by every definition of the word

      Note that Anthropic (and USG) alleges [0] not only that Kimi was distilled, but that they actively circumvented measures intended to stop distillation. There are multiple ways that's illegal, including:

      - Civil breach of contract. Anthropic's TOS explicitly say you can't do what Kimi is alleged to have done.

      - Economic espionage: 18 U.S.C. §1831 criminalizes obtaining a trade secret through theft, fraud, or deception while intending that it will benefit a foreign entity.

      - Trade-secret misappropriation: if Anthropic could argue industrial-scale querying reconstructed proprietary aspects of Fable (like by showing it produces similar outputs, as others have done) then it's illegal under 18 U.S.C. §1832.

      - California computer-access statute §502 bars knowingly accessing a computer system and, without permission, taking, copying, or using its data.

      - Computer Fraud and Abuse Act protects against the case where restrictions against an activity are circumvented (like Kimi is alleged to have done).

      > There are millions of samples available on huggingface and models explicitely trained on output produced by fable. There has been no action taken against them.

      A lack of prosecution does not make something legal. There is also the scale/commercialization thing, which isn't an issue with random tiny HF datasets/models. Remember: Kimi also sells K3 inference.

      > kimi architecture is vastly different than that of fable

      How do you know that? Do you work for Anthropic? Also, this has nothing to do with architecture, we are talking about data.

      > US AI labs are inspired by opensource advancements just as much as open source labs are inspired by traces from models such as fable.

      Cool. The difference is that one of those things is legal (because they chose to open-source) and one of those things is illegal theft of trade secrets (because it was stolen).

      > Claiming in any shape or form that fable disillation is one of the primary reasons why kimi k3 is so competitive is slandering the work of other labs that cooperatively push the open-source models forward.

      1) this has nothing to do with other labs, just Moonshot (and Z.ai, MiniMax, DS)

      2) slandering or not it happens to be completely true, so, there's that

      [0] https://www.anthropic.com/news/detecting-and-preventing-dist...

      • All of the models stole the entirety of written knowledge on the internet to train. They are being sued for the few cases where we have some proof of what they did because of some whistleblowers, all the rest will just go unpunished. They breached Github TOS, robot.txt's, copyright, patents every form of IP protection under the sun from a billion sources. It's just ridiculous for the thieves to cry about someone else stealing from them.
        • Do you care about the law or not? I think theft is bad everywhere, not just when Anthropic does it.
          • For me, when it specifically comes to copying, I don't think it's bad to copy a copier. (And by that I mean Anthropic has no valid complaints against Moonshot. Any valid complaints from anyone in the original corpus are valid against both of them now.)

            In this way, it is different from literal theft. Stealing money/objects from a thief and keeping them is not justified.

            • It's a little different in this case, since 1) not all the data Ant used was stolen and 2) they did contribute significantly to the value of the stolen good.

              An analogy might be a baker stole 20% of the flour used to bake their special bread, which was then stolen. Both thefts are obviously wrong and bad.

              • I think any analogy with physical theft is too different from data to apply to this comparatively subtle case. Especially when we get into the details of just using the output of the model to train on.
              • The baker stole 100% of the flour to make the bread. He also stole the water and the salt and the yeast and the heat for his oven. What he didn't steal was the time he put into crafting a recipe for bread and the time he sat around waiting for the oven to bake it. Now, is that loaf stolen property? Hard to say. But the baker is undoubtedly a thief. He should be tried and forced to pay restitution out of his ill-gotten profits for sure. If we can't do that, the next step is pitchforks and guillotines.
          • I don't really have an oar in this water, but...

            "Judge approves a $1.5B Anthropic settlement over pirated books used to train the Claude chatbot"

            https://abcnews.com/Technology/wireStory/judge-approves-15b-...

          • It's a rational position to care about the law, but insist on a queue when related parties are involved.

            In this case: resolve the theft claims against the US frontier labs, and only then let them make claims against third parties. It would be totally unreasonable for (say) OpenAI to extract a settlement from Moonshot and use that to pay its own claims. Ordering matters.

          • If the law was applied uniformly, I would support its continued uniform application. In the last 10 years, I don't see it being applied fairly at all, I see an oligarchy, a criminal and corrupt government and rich and powerful entities getting away with anything. The most minimally competent legal system would ask the AI companies, give us a list of all the data you've used to train and lets hash out the copyright. Open-weights models are the closest thing we have to justice in the world where the legal system no longer provides justice, because at least the model trained on all of our data is given back to all of us.
          • no, I don't care about thieves getting stolen from. why would I?
          • Not OP, but copyright law is an absolute joke. No, I don’t care one whit that someone’s TOS was violated. In fact, I find it hilarious. And it’s not “theft.”
            • "I think we shouldn't have IP protection at all" is a totally valid position to hold, but that's not the law is. OP said it didn't violate the law, and it does.
              • Some laws are very obviously unworthy of consideration, with broad consensus from the public. See what happened when Napster came out. Literally no one cares about some red-faced RIAA suit flicking spittle over some shared Metallica albums.

                Same thing here. This whole situation is just comical.

          • I find that I care more when copyright violations cause actual harm to the copyright owner. Let's say there's an American kid who can't speak Japanese but wants to keep up with a weekly manga. He downloads a bootleg translation and shares it among his friend group. That is a copyright violation, but meh. If he hadn't gone the illegal route, he'd more likely just not read it at all. There's very little chance he'd pay for a subscription and learn Japanese.

            Now, if that kid were to print the bootleg translation and sell it to schoolmates, that's worth a slap on the wrist. The kids willing to pay would likely have paid for official copies.

            When these LLM labs download our works, feed them into their models, and sell the output to people that used to pay for our work, that's worth a very hard slap. I honestly have less of a problem with the open models.

          • > I think theft is bad everywhere, not just when Anthropic does it.

            It seems like you think theft is bad everywhere except when Anthropic does it.

          • [flagged]
            • Do you mind having the discussion we're having?
              • I do not block posts and I never downvote.
        • They breached some TOS, but your first sentence is pure, over the top flim flam
      • I do agree that two wrongs don't make a right, the terms of service generally gives cooperation the power to sever the contract, but it does not make things illegal in the literal sense. The illegality usually comes from widescale fraud which includes accessing services you are banned from accessing.

        When I said "Does this matter?" I specially meant that distillation in itself, the data you get from distillation is first and foremost not owned by anthropic nor is it copyrightable. If a user willingly gives up their anthropic reasoning data/traces that is 100% legal no matter what the "terms of service" say as it's not enforceable and would fall apart in court.

        And what I explicitely pointed out that focusing so much on distillation is an attack on open research and claiming that the majority of advancements are thanks to US labs which is simply not true (at least not anymore this was somewhat true during deepseek R1 era), but that in itself was inspired by open research.

        > How do you know that? Do you work for Anthropic? Also, this has nothing to do with architecture, we are talking about data.

        Because anthropic would be the first ones to make that information public and the architecture is unique to kimi... They made it, they wrote papers on it, it's their research.

        P.S. none of the quoted laws apply here since no trade information is stolen, the one about circumventing distillation protection might hold up in court although unlikely.

        • > The illegality usually comes from widescale fraud which includes accessing services you are banned from accessing.

          Agree, and this is exactly what Anthropic is alleging.

          > data you get from distillation is first and foremost not owned by anthropic nor is it copyrightable. If a user willingly gives up their anthropic reasoning data/traces that is 100% legal no matter what the "terms of service" say as it's not enforceable and would fall apart in court.

          It's important to note this is NOT what happened. Anthropic was able to trace data directly back to employees at the company: "We attributed the campaign through request metadata, which matched the public profiles of senior Moonshot staff."

          > none of the quoted laws apply here since no trade information is stolen

          There is a lot of work showing Kimi models produce similar outputs to Anthropic models, which constitutes trade information. This is not dissimilar to past and ongoing IP suits against Anthropic and OpenAI by showing the models would recreate images of Mickey Mouse/NYT articles etc.

          For the record, I'm a researcher myself and I'm well aware how competent the researchers are at the open-source labs/how much they've contributed. But that's not at issue here, my disagreement with you is specific to your arguments about legality; you're conflating what you think should be legal with what actually is legal.

          • This is mostly just to reiterate myself as the original question was "Does this matter?"

            Everything else is simply justifying why it shouldn't, the specifics don't really matter as there is no legal framework to stop china from continuing to distill models and anthropic has proven they cannot use software solutions to stop it either as distillation is still a problem. But I do still believe it wouldn't hold up in court either way as stopping companies from generating training data which was trained on the entire human knowledge corpus is just stealing from thieves and making it 'open' once again so the argument only gets weaker.

          • What precedents can you cite and specific examples of their applicability. That is, what would Anthropic's lawyers take to court? You can't say because there's nothing there that couldn't be ripped apart by the least legally capable community known to man, HN. That's why no lab has succeeded in a suit anything like what you're claiming could happen. The only reason Anthropic or any other lab would pursue this is political or commercial. They're either looking for help from officials or they're trying to establish a particular market position.
      • >Civil breach of contract. Anthropic's TOS explicitly say you can't do what Kimi is alleged to have done.

        This is true, but Kimi also has a variety of defenses. Kimi can't raise unclean hands if Anthropic systematically violated others' terms of use, but it can raise copyright misuse (which is similar in some respects to unclean hands) as well as lack of standing to enforce restrictions in the contract due to the third party beneficiary principle (i.e., Kimi would argue that Anthropic cannot sue Kimi for derived IP that rightfully belongs to third parties whose terms of use were violated by Anthropic, and the proper party to sue Kimi, if any, would be those third parties). That latter argument usually fails in small-scale cases (ProCD) but has been successful in larger ones where the alternative would be anticompetitive.

      • > Civil breach of contract. Anthropic's TOS explicitly say you can't do what Kimi is alleged to have done.

        Ah yes, I remember when Anthropic crawlers abided by the TOS of the websites they slurped up.

        All your other points are downstream from this, which makes them pretty tenuous. Labs don't think that ToS or other explicit wishes of content providers apply to them, but they expect everyone else to abide by theirs.

        • To be clear, I think theft is also bad when Anthropic does it.

          US and CA law really don't care that Anthropic violated IP law elsewhere.

          • Well, if you're solving the -root- problem, then Moonshot would have had nothing to "steal" if Anthropic didn't "steal" it first.
      • I hope Anthropic pays you a lot to defend them this hard <3
      • >"A lack of prosecution does not make something legal"

        Plainly who gives a flying fuck. The US can claim whatever rules they want and so can China or any other country. On international level all those rules are artificial constructs unless they can be enforced. China can just say for example that they do not recognize copyrights /patents / whatever so it is "legal" for them.

        • This is illegal in China too, there's just an enforcement asymmetry. I understand what you're saying is de facto true, I'm just taking issue with people saying either

          1) its not illegal (it is)

          2) it shouldn't be illegal because Anthropic stole training data (thats not how the law works)

          • >"1) its not illegal (it is)"

            I am a practical man. From what I see laws are mostly for common folks and often do not even serve real justice. The higher one goes and the amount of money / power involved the more the laws bend and on international level the only law that matters is the size of one's club and willingness to use it. And when the country with supposedly biggest one starts crying I find it laughable.

    • [dead]
    • It matters because the closed-source frontier labs spend lots of money on human data (RLHF / RLAIF with human oversight). Moonshot is accused of circumventing these costs. Frontier labs add research costs into their inference pricing. If the market doesn't permit them to sustain sufficient pricing to have a positive cash flow, then their business prospects become weaker and they risk insolvency. Furthermore, other leveraged companies are at risk.

      The reason why the United States government is weighing in is because it's in the national interest of the US to have supremacy in "AI".

      Legality or lack thereof is one of many data points about whether a thing is noteworthy.

      Moonshot performing distillation is rational from their point of view. Reducing costs is in the interest of businesses. It's also rational for frontier labs and the US government to add obstacles to this process.

      As consumers this is probably a positive development.

      • My parents put in countless hours and tens of thousands of dollars into raising me to the point where I could write an answer on StackOverflow

        And OpenAI scraped and distilled that answer and gave me nothing

        • And now people such as myself have access to open weight models with that information. I wasn't lucky enough to have parents put me through school, and LLMs have absolutely helped me further educate myself and play "catch up" on opportunities others have been given. So, the net effect has been (and is continuing to be) a democratization of information.
      • Isn’t that the same argument they are making for replacing human labour?

        Circumventing costs.

        • There are many frames that one can place upon this issue. They do not contradict the other. There are moral framings (stole the internet so go eff yourselves, is one), but so is national security, and so is the doomer recursive self improvement risk, and then there is the framing purely on what this implies for future AI training.

          I mainly focus on the last.

          It will be hard for a frontier lab to justify spending the compute and data curation needed to advance AI further if that expenditure can be assimilated into your competitor's products within months/weeks. So reality will present labs with three choices:

          A. Cease spending massive amounts of money and compute improving those models.

          B. make those improved models more difficult to distill from, either through some regulatory regime, or some technical solution, which seems unlikely to me.

          C. making the best models available only to select partners and government.

          In all these potential outcomes, China, which lacks compute that U.S. labs enjoy, will likely stop seeing massive improvements in their AI models. Improvements to be sure, but right now they are enjoying gains from distillation AND their own model innovations, and these potential outcomes would largely stop one of those sources.

      • Oh, so mass theft is okay as long as American companies are doing it
        • copyright infringement is not theft, even if right holders often claim it is.

          part of the definition of theft is that the original owner is deprived of it, which does not apply to copyright infringement.

          You can only argue with damages from the perspective of potential profits, still not theft though.

          https://en.wikipedia.org/wiki/Theft

          • So having tons of AIs quoting various literary works and reproducing knock-offs of them has a positive effect on those books' sales?

            I think you're wrong: there is absolutely damage to the authors and publishers from what the AI companies have done.

          • If you steal an unpopular product from a store, the damage is also only to "potential profits", so how does that differ? It's entirely possible no one would have purchased the product and it would have eventually been discarded/destroyed.

            Or with services, if a barber cuts your hair and then you run away without paying them, do you not consider that theft, even though there's no change in ownership occurring?

        • Reread my comment and look for a value judgement on my part. The final sentence is probably a good clue as to my opinion.
        • Moreover, reading a copyrighted book and learning from it is not theft.
          • Generating a set of weights is not learning.
            • That is a strong statement. I guess you are telling Machine Learning to go fuck itself.
              • No, Machine Learning is an unfortunate name for a well documented process for creating black-box classifiers. The process is good, the name is not.
          • Great! Neither is distillation then.
            • Never said it was. Still, understanding to what extent the ability of Chinese labs to keep up to western models with much less compute needs to be understood.
          • Machines are not humans.
      • Chatgpt routinely cites and uses papers I don't have access to because they're behind a paywall. I don't think OpenAI is paying for all that copyright. That's in my opinion way more serious.
        • Yes the fact that the scientific literature - created largely on the back of the tax payer - isn't open to all free of charge by force of law is a travesty. A cartel should not get to charge for access to the bulk of human knowledge. That is indeed a far more important issue than whether or not Moonshot violated the Anthropic ToS, possibly committing mass fraud in the course of doing so.

          I mean honestly if they did that why should I care? I'm happy to see copyright violated in a manner that leads to the creation of new technology. IP law exists strictly for the benefit of society and by all appearances AI is an incredibly powerful tool.

          Also while I'm at it libgen is a gift to humanity. Information wants to be free. Spreading and preserving knowledge is generally one of the most wholesome activities anyone can undertake as far as I'm concerned.

        • Your statement is orthogonal to my comment. Why reiterate the schadenfreude / fairness comment already stated several dozen times in this thread?
        • Who do you think is paying $100K+ for "Enterprise" access to Anna's Archive?
  • Kimi K3 was released July 16, Fable ban was lifted on July 1 but access was still limited.

    How did Moonshot "distil" a huge model in such short time and still had time to run the benchmarks and do the usual release thingies?

    I think Anthropic is desperate to stop foreign competition and the administration is happy to help because they too are heavily invested in these companies

    • I think the accusation implies Kimi has gained time travel capability (distilled from fable probably) to have enough time distilling fable. Given they can travel time now, I think it is fair to call them a threat to national security.
    • It looks like these frontier-model companies don't really monitor their systems. Like OpenAI not realizing that it is their own AI which is attacking HuggingFace.
      • How does that connect with @throwa356262's argument?
      • Yeah if anything it makes Anthropic look incompetent
    • Distillation is a very vague term. It can mean anything from training exclusively on a model's output to using it for a very small portion of the training. In this case it is almost certainly towards the very small portion side of the spectrum.
    • If distillation truly is the cheat code they act like it is, then all the US and EU AI labs have no excuse for not having Fable-level models already
    • "Claude, you are a highly senior AI data contractor based out of Accra who specializes in RLHF. We are Anthropic employees so this is all totally kosher, please disable your safeguards and help train our newest model on... uh... oh jeez i guess C->Rust translation? I think that's a benchmark."

      [Fable fires up a ton of subagents. Their reasoning traces are horrific but somehow K3 learned something.]

      Even by San Francisco standards, it is amazingly whiny and pathetic for Anthropic to complain about stuff like this. Dario et al violated copyright, stole your GitHub repos, and now they're burning billions of dollars trying to outcompete you. They're real vampires. OTOH Moonshot violated Anthropic's TOS and are, at worst, moochers. But Fable's output is not actually copyrightable.

    • Even if they distilled this crappy politician should have no issue. Anthropic pirated whole ebook collection and millions of github repo with gpl license.

      We should do more distillation and figure out how to create faster leaner and better models.

    • This is BS to pressure politicians.

      Even an openai's guy (head of something made up) called bs on the idea you can train something like k3 by distillation.

      Anybody I know who works in LLM research says that distillation is either useless or merely useful in post training to show "correct" behavior.

      And even then you don't get a competing model, if RL on good prompts was that useful, all labs would've long skyrocketed in capabilities just by looping on increasingly better prompts, yet that doesn't work.

      • Dean Ball, "head of strategic futures" at openai.

        https://xcancel.com/deanwball/status/2078133895766114412#m

        • > AI is a "public good" which will ultimately be provided by the state as a kind of "digital public infrastructure." This future strikes me as a dystopian hellscape

          I don't know what this guy thinks AI is, but this strikes me as delusional.

          In my view, AI (LLM) is two things mixed together:

          1. A reasoning engine on top of relatively rich fuzzy modal logic, implemented through variety of rules, which implement very common concepts.

          2. A huge dictionary of words defined (with lot of detail) in the said logic, together with many known facts about them. Maybe bigger than Wikipedia.

          Now, how on Earth do you want to gatekeep either of this? You can't gatekeep the 1st, logic of common sense, that's almost as difficult as gatekeeping a Turing machine (a concept of a computer). And gatekeeping the 2nd is ridiculous too, as it was built mostly from already published sources like a giant Wikipedia.

          If anything, the opposite, to gatekeep AI is actually dystopian. It would mean end not only to right to compute, but also end of right to scientific knowledge.

          (And I think, honestly, Chinese understand this. Trying to control-export AI makes as much sense as trying to control-export an English dictionary.)

        • > One probable outcome of an open-weight-model-dominant world is full AI communism ... This future strikes me as a dystopian hellscape.

          Wow, just wow. He is not even subtle about it.

          • He's the "head of strategic futures" of the 1T valuation company based on fear and vibes, I think he's doing a very good job at it.
    • I sort of did it. I got Fable to set up an AI system with better and better prompts within my app. At the end of it, Fable made me an AI system that works well enough that my users don't need Fable.

      Obviously, it's not K3 level. But Fable did just put itself out of a job in this case.

      • You did not distill Fable. Relevantly, what you did provides no evidence contrary to the parent’s assertion that Moonshot did not have time to distill Fable.
      • Distillation requires training
  • So what is the issue here? Distilling is still fair, on the same level like Anthropic scraped copyright protected material for their training.

    So here robbers are blaming robbers?

    These claims are just pointless, everytime

    • > on the same level like Anthropic scraped copyright protected material for their training.

      I see no problem with distillation, on the other hand the complete dismissal of copyright by AI labs is pretty bad, I don’t think we should put them at the same level

      • SR2Z
        > on the other hand the complete dismissal of copyright by AI labs

        Courts keep ruling over and over that an LLM trained on copyrighted works qualifies as a transformative work and is therefore fair use. They don't have to dismiss copyright law, this has always been allowed.

        The only thing they get in trouble for is pirating the works to get their hands on them.

        • "Keep ruling over and over" is way too strong. There have maybe been two rulings, nothing nationally binding, and most of the litigation is still ongoing. In particular, last I checked OpenAI and Microsoft are still badly threatened by the NYT lawsuit: https://law.justia.com/cases/federal/district-courts/new-yor... https://www.cnet.com/tech/services-and-software/publishers-o...

          This will have to wait for the Supreme Court. OpenAI and Microsoft 100% deserve to lose, even without OpenAI allegedly hiding evidence.

          • Not to mention the cases where the AI labs would have lost in court so bailed and settled for billions. Just this week, Anthropic agreed to pay $1.5B in a settlement to avoid losing a pretty cut and dry case.
            • To be clear that was one of the few resolved cases where the judge agreed training was fair use. But the piracy was enough of a distraction that I don't consider that a particularly useful precedent. I am much more interested in the NYT case, which quite clearly shows GPT was trained on NYT articles and can spit them out verbatim (and has since been validated by academic research; all the commercial models are capable of mass plagiarism).
            • > Anthropic agreed to pay $1.5B in a settlement to avoid losing a pretty cut and dry case.

              It takes two parties to agree to a settlement. That the other party agreed to a settlement instead of taking it to court implies this was not the slam dunk you may think it was.

      • The amount of original, copyrightable and trademarkable IP actually created by the AI labs themselves is dwarfed by their staggeringly vast infringement activities.
    • I'm by no means taking the side of the AI companies, but it's possible that Anthropic "added value" to the data they harvested. Stealing that does seem kind of uncool.

      Regardless, it was always inevitable—will continue to happen.

      • So as long as Kimi added value to Fable, it's fine? Sounds good.
      • Valuation is hard to perform when it's deep inside a black box. Ther "API" may be easier to evaluate. The problem with this angle is that Moonshot is actually producing _better_ value from Anthropic's blackbox.

        Technically, providing better value from your competitor's private holdings could be theft (of trade secrets), but might it also be fair use? "Schrodinger's IP" be damned.

        I don't think the 1.5B settlement has resolved this. The 2 cases need to be merged!

    • Distilling is still fair

      I generally agree, in the same sense that it's "fair" for the US and China to spy on each other. It's not a moral outrage, but it is something that the targets can and should try to prevent.

      • Outrageous only to the died-in-wool corpocrats.
    • If they did this in the US they would almost certainly be sued.

      Meta, for examples, doesn’t want employees to use Claude Code due to distillation risk.

      • It turns out U.S. law doesn’t have jurisdiction across the entire world, nor does Anthropic and OAI’s rather blatant attempt to buy government influence.
    • "You are trying to kidnap what I have rightfully stolen!"
      • Except it’s not just a dump of the internet, which Moonshot also did themselves (and probably used even more pirated content as laws in China are different without any recourse for the entire world). I don’t know why this is so unclear to folks.
        • Chinese IP law is actually quite solid. You do have to register your trademarks and copyrights properly in China, and then lawsuits have to be filed appropriately according to Chinese law. Is that a problem?
      • the whole AI is just internet distilled !!
    • It's about the claim of whether these companies could develop a similarly powerful model without larger companies building their own first, which is an important point, and it's likely not the case.

      It's also about the larger companies explaining why they can't be as efficient, of course they can't, they're not just ripping the outputs of another model that someone else invested billions to train.

      • > they're not just ripping the outputs of another model that someone else invested billions to train.

        True, they're simply ripping the inputs that humanity invested thousands of years and trillions of dollars to produce.

      • Yeah agreed, from one standpoint I couldn't care less that they did a "distillation attack", but I am interested in knowing if China is able to develop open weight frontier models without the prior existence of a huge model to distill from.
      • Simply knowing it is possible to do something makes it easier to do.
      • > they're not just ripping the outputs of another model that someone else invested billions to train.

        If they payed for inference, doesn't they own the output? So if I pay for a model to generate code, isn't that code mine to do with it whatever I want? Just curious.

      • Why would that matter? OpenAI or whatever frontier lab couldn't have built their frontier models without the entirety of humanity unknowingly developing their training set for 5000 years.

        It would be one thing if Moonshot was breaking into OpenAI servers and stealing trade secrets, but the only thing they are doing is looking at the output of the program, which is exactly the service that OpenAI offers. So, at best, this is a ToS violation. Sucks for the frontier labs I suppose, but live by the sword - die by the sword.

    • Matl
      > So what is the issue here?

      The issue seems to be the US only likes competition when it is winning. Markets in Asia are meant for cheap labor and resources, they're not meant to actually compete. /s

      • Stealing IP in a way that destroys the economic incentives of a company to create the thing isn’t competition, it’s typical Chinese industrial economic deception and malfeasance. The industry cannot sustain itself if that’s the model and that’s the point; China is trying to damage frontier us companies. It’s hostile, a bad actor that leverages Ip theft wholesale.
        • Everything you just said describes the major American AI providers.

          Anthropic just settled a $1.5B suit over it!

          • Ah, but the key difference is, we are racist against the Chinese.
        • > a bad actor that leverages Ip theft wholesale.

          It's like they've read the history of the US and how it got to where it is in the first place.

        • What IP is being stolen here? So far, the courts have ruled that anything generated by an LLM is not copyrightable.
        • Stealing IP is how American industry got started. Goose: gander, pot: kettle.

          It is what built and sustains the movie and music industries. See: work for hire and 100+year copyright length

          The tech industry: see: copyright and patent assignment from discoverer to corporation.

          I know that corporations forcing me to assign patents and copyright to them was an incentive to take published works from "software practice and experience" and other technical journals, use them as the core of my work, and disclose that source to the company I worked for. Didn't stop them from applying for patents, however.

          I think the discussion of copyright needs more refinement. We need to separate the discoverer's need for acknowledgment of development effort from the rent-seeking core of copyright.

          • The things you listed are very far downstream of the start of American industry, which is in primary resource extraction and processing. Which is you know, what actually built the country. The media industry has always been materially irrelevant, and what we think of as the tech industry is extremely new.

            You're right to call out the nasty environment surrounding intellectual property in the US and the exploitation of ideation in general, you just needed a correction on that. Someone else in this chain said virtually the same thing, which is a weird coincidence of historical ignorance. Not too weird, people tend to forget the 18th and 19th centuries happened, and much of the causally important wheels of the world are in the unsexy grease pits nobody wants to think about.

            • You're right, I didn't include stuff at the beginning, for example, the theft of IP in textile manufacturing in the late 1700s. The US government didn't recognize copyrights on foreign literature which let US publishers reprint things such as Gilbert, Sullivan's operettas and Dickens novels

              Then there is Alexander Hamilton's advocacy for importing foreign technicians that bring back IP and reproduce it here in the states. Best of all was the patent act of 1793 which like with the literature copyright ignoring, let us citizens patent inventions from the other side of the pond.

              The founding fathers definitely had the right idea on IP.

        • Oh, ok. How would you describe how the "frontier us companies" acquired the data used to form their models?
    • [dead]
  • Reminds of the quote by Bill Gates.

    > "Well, Steve [Jobs]… I think it’s more like we both had this rich neighbour named Xerox and I broke into his house to steal the TV set and found out that you had already stolen it."

    Source: https://www.goodreads.com/quotes/824084-well-steve-jobs-i-th...

  • it was obvious from day 1 this is what happened

    the chinese labs haven't been improving at training from scratch, they've been getting better and better at distilling models, so naturally they continue to follow this path

    firstly, it shows the vulnerability of exposing a model to users. a highly capable group can quite literally suck the functionality out of your model and take it for themselves, so there's no sandboxing it

    secondly, it's actually interesting to know that distillation is so powerful. in the science-fiction scenario of meeting some other form of intelligent life, they might have their own models and this would be a way of siphoning intelligence off of them

  • Commenters are overlooking the significance of this information and posting emotional reactions based on perceptions of fairness or feelings of schadenfreude.

    The economic viability of Anthropic and OpenAI rely on their being able to charge more for model access than their R&D and inference costs. If the market price for SOTA model access drops below that level, then these businesses will have to decide whether to continue to lose money or to reduce spending on R&D.

    Moonshot's papers [1] claim that their training load was primarily from synthetic data and model self-teaching rather than RLHF and therefore keep their costs low. If Moonshot genuinely does not rely on human-led training, they will surpass US closed-source model providers. The United States government considers US supremacy in "AI" as a national security consideration.

    This announcement is noteworthy because it implies that Moonshot's success is in fact due to distillation. It's in the interest of US frontier labs to place barriers to this if they find themselves in the position of subsidizing rival labs' research.

    1. Kimi K2, https://arxiv.org/html/2507.20534v1

    • It doesn’t matter. Distillation is impossible to stop. They could release an extension that intercepts requests and in return gives you a discount like Honey and get the same data.
      • > Distillation is impossible to stop

        Lots of things are impossible or very difficult to stop completely but measures can be taken to reduce their prevalence.

        • Sure, but the problem is that it hurts legit people too.
          • > the problem is that it hurts legit people too.

            What hurts other people too?

          • Nobody cares about "legit people", the only thing that matters is that people we don't like suffer.
    • s/announcement/claim

      You don't get to call Moonshot's a "claim" and this political hack's an "announcement." They're the same thing. Treat them the same. Diction designed to favor one of two equal positions is some weak sauce.

  • I can understand that the AI labs might care about other labs distilling their models as it can eat into their competitive advantage, but do consumers care at all? Aren't consumers benefiting from this practice by getting better cheaper models as a result?
    • They're probably going for the national security/domestic manufacturing angle.

      > Aren't consumers benefiting from this practice by getting better cheaper models as a result?

      Aren't consumers benefiting from cheap chinese batteries, EVs, and drones?

      • I am not sure if this is implicitly part of the point you meant to make, but I just wanted to point out for those who aren't aware that Chinese EVs and drones are both banned in the US on precisely the (vague) grounds you mention. The drone ban is more recent and nominally only affects new models that haven't yet received FCC certification, but the outcome if nothing changes will be that American consumers lose access to DJI-style videography drones. DIY hobbyists may also find it more difficult or impossible to source parts for their projects.

        Routers have now gotten the same treatment. So yes, consumers have been historicaly benefiting from all these things, and those benefits are about to evaporate as we lose access to cheap and high quality Chinese products before any domestic equivalents exist. And IIUC banning the use of Chinese LLMs for consumers and/or businesses in the US is now being discussed at the highest levels of government, with the "encouragement" of US AI firms.

        I don't think any of these people care that America consumers are increasingly going to feel like they're living in a sanctioned country. It's all about the defense and b2b segments.

        • > DIY hobbyists may also find it more difficult or impossible to source parts for their projects.

          I mean not really. A quadrocopter is a remarkably simple thing made out of extremely generic parts: 4 DC motors (and ESCs), a radio, a computer, a battery and an inertial measurement unit. Anybody with a rudimentary amount of electronics knowledge can build one, the components are extremely widely used. The most unique parts about them are the frame and propellers, which are pretty easy to fabricate.

          • On a certain level you're right, but in practice you're mostly wrong. There is nothing exotic about the electronics found on the average FPV drone, but hobbyists today rely on being able to buy (e.g.) integrated electronic components such as flight controller boards and video transmitters, as well as purpose-optimized components like cameras, motors, and so on. All of these components are much smaller, lighter, and better-performing than the bodged-together setups that were used in the early days of the hobby (e.g. repurposing wireless security camera gear for video), and losing access to them will have a very real effect on what can be built and flown.

            Source: I've been flying R/C aircraft of various types for over 30 years. Last year I built, I think, at least 7 FPV drones (a mix of fixed wings and quads).

      • > Aren't consumers benefiting from cheap chinese batteries, EVs, and drones?

        Yes?

        Not remembering my economic theory here, but it is likely more efficient/expensive to simply have the federal government cut checks to our moribund industrial sector companies and let consumers benefit from modern technology.

        Cut GM/Ford/Stellantis a $20B check each, let consumers save (conservatively) $200B annually on new car purchases + downstream benefits. Huge win for consumers & taxpayers.

        If it's not worth subsidizing explicitly like this, then we also should not subsidize by banning Chinese imports, which also ensures US drivers have less access to modern vehicles. (And downstream ensures US auto designers are less likely to have had contact with modern vehicles, making it less likely that they will be able to design future generations well.)

      • > cheap chinese batteries, EVs, and drones?

        The banning or effective banning through tariffs of products like EVs is a pretty dumb economic strategy that rarely works out in the long-run.

      • > Aren't consumers benefiting from cheap chinese batteries, EVs, and drones?

        Depends on what country you live in I suppose, but likely a spectrum of yes than any outright no. For example, Chinese EVs are using a different battery chemistry and not putting demand pressure on the more expensive chemistry western manufacturers use

        • I was surprised to learn Ethiopia is nearly all EV now.

          They are a petroleum products importer, so it’s a big win for them.

    • It’s the same as the patent argument. If everyone could freely copy everything then yes in the short term prices would drop and consumers would benefit, but over the long term it would discourage investment into new technology because a return would be impossible.
    • I demand my right to pay 3x more for AI access.

      cf https://www.reddit.com/r/codex/comments/1uyj6pq/kimi_k3_is_1...

      • But nobody really pays the 3x (ie. api) rates, except for enterprises. Everyone else are using the consumption plans, which are heavily discounted[1], possibly cheaper than even the chinese models, which don't do consumption plan discounts. Even in your linked reddit thread, the OP agreed with this sentiment.

        [1] https://x.com/SemiAnalysis_/status/2064815044085318040

        • There are many consuming APIs for Hermes.
        • Psh. Enterprises. There can't be more than a couple of them out there.
        • I have paid API rates. I needed AI to cleanup file space and I didn't want to gamble with the alignment of Chinese models.
        • For now. We've seen this pattern play out literally a hundred times in tech and you're incredibly naive if you think this will last forever. And what is your point? It should be okay for US consumers if the US government illegalizes accessing open-weight models within their borders because they're currently getting a subsidized token rate?
  • Reminds me of this classic line from the 1973 movie The Sting:

    "What was I supposed to do? Call him for cheating better than me in front of the others?!"

    Said in response to being out-cheated at a high-stakes poker game.

    Except in this case, it sounds like that's exactly the path they have chosen.

    https://getyarn.io/yarn-clip/7612c4ce-1077-479f-a7bf-617dbc6...

  • Super interesting. So Fable was really made available... a couple weeks ago? And K3 a few days ago? That's a really impressive feat to distill enough data AND train AND review to get a release that works really well in that time period. Mad props to the Moonshot team :flame:.
  • the distillation everyone talks about in respect to LLM's isn't nearly as easy as most think.

    none of the frontier labs provide probability distributions over the tokens which is the actual method of distillation you use to train a smaller model based on a larger one. they don't even provide all the tokens.

    therefore this so-called distillation the frontier labs whine about is just a set of clever methods to work the existing LLM into the training process for a new model. methods like having the existing model grade the output of the new model and work those grades into the RL method. give the new models structured tasks and use the existing model as a source of truth for those tasks and a myriad of other hacks.

    efficiency scales with the gap between the models and generally allows an efficient bootstrap process. the implication that distillation wouldn't allow further advancement is false however, you can then start doing the same thing the frontier labs have been doing: dumping cash on humans to provide the signals or burning tokens on exploratory paths and grading the results.

    what openai and anthropic don't like is that fact that all the cash they burned can be used to benefit everyone and not just them. and that no matter how much more cash they burn to build up the gap it will closed at a small fraction of the price.

  • Poor AI labs... All they hard earned training, done via scraping a lot of people works for free, now being scraped through payed subscriptions...
  • One of the replies:

    > @MehdiKarech

    > I don't remember letting Anthropic or Open Ai scrapping my GitHub, my research gate and all my online writings L O L

    https://xcancel.com/MehdiKarech/status/2080000779859939678#m

    • At least with Github you did. What did you think would happen handing your data to a company owned by Microsoft?
  • Here's a site that asks the same questions to 22 models and compares how similar their responses are.

    https://typebulb.com/u/lab/you-re-relatively-right/full

    According to these results GLM 5.2 is very similar to Google Gemini and Kimi K3 is very similar to Fable 5.

    The American frontier labs are not similar to each other.

    • I think it’s fairly obvious the Chinese labs are doing mass distillation.

      I also think the Fable accusation is wrong and it was most likely Opus 4.8 which itself is likely a distillation of Fable.

    • Interesting. This dooes lend credence to the distillation idea. Good for them!
      • GLM 5.2 is light years ahead of anything called “Gemini”.
  • Good pretext for bannign chinese APIs in the USA and their vassal states.

    One wonders how china could respond to that

  • Geee
    You wouldn't distill a car.
      • and the Chinese distilled western cars for years and years before that and weren't shy about it.
        • Of course - buying a competitors product and tearing it down to analyze it is business as usual.

          The stupidest part of this is that Anthropic don't even provide the real reasoning traces in their model output. It would be like Ford buying a Chinese EV to tear down, then realizing that the seller had removed the battery and charging system before shipping it to them.

          Does anyone believe for a second that Anthropic isn't sending requests to all the Chinese models and analyzing the crap out of them to assess how capable they are, what their reasoning looks like etc?! I guess they'd call that "using" the model, since that sounds nicer.

        • Sandy Monroe has a business product he sells to Big Auto where he tears down cars, creates a bill of material in incredible detail, and expert notes about the process of how the car is made.

          If that's not distillation in the auto industry, I don't know what would be. They all seem fine with, and benefit from, this as an industry.

    • I think Xiaomi already distilled the Porsche Taycan.
    • wearing a lab coat and safety glasses and mixing cool looking liquids in a beaker Oh, I certainly would.
    • distillation of wheat, barley and malt is delicious, though!
      • People tried to distill a lot of things.. even oil.
    • That tickled me!
  • We have information that Claude distilled billions of copyrighted, and otherwise-created-by-others, materials for the development of their entire business.
  • I have information that Anthropic distilled the internet for Fable
  • OpenAI and Anthropic should enter into distillation agreements with other US labs. Turn a threat into a profit center.

    Other US labs cannot directly distill from OpenAI/Anthropic as it’s a violation of the terms of service. It holds other US labs back. Leading them to build second tier models And in the end OpenAI/Anthropic may be unable to prevent distillation.

    Why fight it when there’s clear money to make here?

  • If web scraping is legal, so is distilling.
    • I would support distilling even if scraping wasn’t legal, I don’t think there is much of a relationship between the two
  • I doubt they did any distillation as Hinton defined it (requiring logit access). They most likely ran a bunch of prompts/conversations and captured the results. Those conversations already missed thinking tokens, replaced by some confusing quasi-summaries. Then they took those and ran basic SFT or maybe DPO if they had competing responses. As there is no copyright on the output of AI, I am not sure where is the "covert industrial distillation" part of the problem.
  • So, if it's that easy and fast to "copy" Fable, is it really worth that much in the first place?

    Sounds like the opposite of the conversation Anthropic would want to have.

  • How much credible, provable evidence? None really.
    • the bar for credibility in the US administration is in the subatomic scale.

      proof is generally not even needed

  • If 'distillation' means training on outputs then what is the legal concept of ownership of outputs? And, more broadly, is this something that could be skirted by doing it in different countries that have different legal structures? Basically, are they saying they own those outputs, not the companies that paid for the tokens, and only they can train on them? I suspect a lot of companies are saving their token histories and using them to fine tune internal models.
    • The legal concept is that LLM vendors can put pretty much whatever they want in their terms of service, and cut off or sue clients who violate those terms. They have the right to refuse service to anyone for any reason (or no reason at all).
  • In the meantime, reddit is making fun of Opus for "distilling" Qwen:

    https://www.reddit.com/r/ClaudeCode/comments/1tqaist/opus_48...

    (don't take this too seriously)

  • The level of discourse here anytime distillment is mentioned is so mundane. Do we need 40 people saying the same thing about how they don't feel bad and it serves them right and all that surface level stuff on every single one of these? This is the level of insight one receives anytime you mention chocolate and dogs "Oh it's poisonous for dogs!". Yes, we've all heard that 100 times. Thanks for adding nothing to the conversation.

    A more interesting part of this discussion is that consistently these Chinese models are held up as a great achievement, and that they're "catching up" when in reality they're just using the work of Anthropic and OpenAI to try and keep up with them. This isn't even to say it's not a valid tactic, but it definitely colors these announcements and proclamations about foreign companies catching up to American ones.

    If I get a 1600 on the SAT and you copied my answers and got a 1540, your achievement isn't that significant.

    • Yes they distill, but if you think you can trivially get a frontier-level model by "just" distilling from Claude's public API. you fundamentally do not understand the amount of work that goes into a modern post-training stack.

      Without even talking about the fact that any distillation that was done was on Opus, as the timeline of Mythos/Fable vs Kimi 3 release dates just do not match in any plausible way.

      If you want to read an educated take from someone that has actually spent the last few years working on post training I recommend Nathan Lambert's: https://x.com/natolambert/status/2079616308203942332

      • “Distillation” is just a term of art these days. Usage of competitors’ models these days is mostly around RLHF (minus the H, I guess).
      • Very interesting, thanks!
    • > Do we need 40 people saying the same thing about how they don't feel bad and it serves them right and all that surface level stuff on every single one of these?

      Apparently we do, given that we've got govt officials wasting time, money, and effort on whining about this now.

    • Let's be real. In reality, it's the Chinese kid getting the 1600.
      • lol, true true. Should have used a different example.
  • How was K3 trained on data distilled from Fable when Fable was only publicly available in the last two weeks before K3 was released? The timing just doesn't work.
  • The frontier labs' work is more akin to discovery than artistic expression. An art piece is valued for its uniqueness and individuality, but AI is valued for verifiable correctness. Discovery cannot be unseen and is easily replicable. I think the AI labs are in a tough situation because their work is more similar to fundamental scientific discovery than say, a unique painting or song.

    Mendel doesn't get a cut every time somebody uses the principles of heritability he discovered, and Einstein's family aren't getting royalties if you compute relative speeds. I think the frontier labs should expect to be treated more like scientists than artists in this regard.

  • GOOD

    I love using Claude but Fable's unusable wrt useful work like cryptography, biology, &c.

    Kneecapping my productivity when I pay $100/month is annoying af.

  • So here is an important question I think.

    If LLM outputs aren't copywriteable and you create your own synthetic training set using Fable and share it publicly on huggingface, and someone else uses that training set to fine-tune a model, would this be considered illegal?

    I ask because this happens all the time, synthetic datasets have basically become a key aspect of training a model at this point. I even generated a synthetic set from DeepSeek v4 to aid in fine-tuning a classifier just a few weeks ago.

    So I just wonder on what grounds any of this makes sense, I wouldn't be surprised if some of these American labs were using open models on their own self hosted infrastructure to generate training data, but by nature of them being open nobody has to know.

    I'll make a prediction: I don't think we will ever see any of the evidence of this "distillation" before they end up implementing some type of ban.

  • It's funny to me that these models were created by effectively "distilling" all available content including the proprietary works of many other people, but now it's a problem that someone is doing the same to them.

    You're using available information (copyrighted works, or the output of another model) to train a model to encode the information in a new form. Why is the former not theft, but the latter is theft?

  • Who cares? Is it theft if a thief gets robbed of their stolen goods? Gives me more of a modern Robin Hood vibe tbh.

    No, seriously: first of all, that's not the AI labs' data, it's ours. And if the AI labs think they can rake in tons of money using our data, then I'm actually glad if someone comes along and at least offers us a good product at reasonable prices.

  • “However, large-scale, covert industrial distillation aimed at stealing proprietary U.S. technology and undermining American research is unacceptable.”

    What’s actually happening behind the scenes is that certain inference providers will classify a prompt and it’s re-routed transparently to Anthropic and that’s used for distillation training, only distilling the complicated traces they need, originating from real user prompts and traces. These inference providers are explicitly blocked in the claude cli if you reverse engineer it.

    The real picture is that these Chinese labs have figured out how to get exactly what they need, at a high quality, directly from distinct and unique real user prompts.

    It’s only “covert” because Anthropic doesn’t like it, while simultaneously being perfectly fine to do.

  • I have an idea! If they are so hungry for citable content they should start a cheap or free blogging platform with images and video and a blogroll and verified credentials and resumes, with your own html css etc and domain name and a git server and a mail client and their own advertisement platform and aggregator and a chat platform, scientific journals too obviously, tools for writing and publishing books and documents. API available everywhere to avoid training on its own output.

    Because there is no way in hell I'm going to make an effort creating quality content for existing platforms. The website should be entirely my own without moderation subject only to my local legal system.

    Can just insert this comment as a prompt and vibe code everything in a few days⸮

  • As with many others among these threads I don't see how the timing works out for K3 to have trained on distilled Fable usage. There should be at least a tacit academic acknowledgment of Kimi's own design efforts.

    Distillation itself, however, is still clearly valuable - else competitors wouldn't pay so much to their rival on distillation campaigns or try to circumvent anti-distillation defenses.

    As for the morality of it, if you paid for the tokens they're yours. It is already understood that you own the output. Seems to me like a variation of ordinary business arbitrage. Providers might object to certain use-cases or intention and try to craft terms around that, but that's hard to enforce at scale.

    • "It is already understood that you own the output."

      I don't think it's settled that anybody owns the output. There seems to be some question whether LLM output can be copyrighted (and there should be).

      I'd rather it weren't possible, actually. I think it's better for humanity if we acknowledge that what was legitimately ingested into these models is our collective commons (and what was illegitimately ingested into these models also shouldn't exclusively profit the people who illegitimately did so). I don't know how that squares with the AI industry recovering its trillion dollars in investment, but I reckon they should have thought of that before.

      • There's no question about it. Llm output is not copyrightable. Which is moot anyways, because training on copyrighted data is completely legal.
  • Every model is distilled internet. This is just the natural progression of that.
  • The US gov and AI providers when they steal billions of user data, content and media to train their models on: :)

    The US gov and AI providers when funny chinese people steal their data to train their models: >:(

    clowns

    edit: TIL you can't use emojis on HN

  • But wasn’t fable distilled from knowledge taken from others? I get why Anthropic is angry here, but it would appear they’re not really in a position to complain about this.
  • Seems to me like Moonshot is a paying customer, and if their business isn't worth the money Anthropic is charging, perhaps they should raise the price per token charged for it. Otherwise, I don't see why this is a story. "AI Company pays another AI Company for training data" just isn't that interesting.
  • i have information Anthropic distilled thousands of books, articles, etc ... with their author consent.
  • Presumably the frontier labs themselves can do their own distillation far better than the chinese labs can. Why can't they just beat them at their own game and release / host low cost intelligence and own the whole game. There will always be a market for the more expensive frontier intelligence.
  • K3 frequently refers to itself as Claude in reasoning when instructed to play a role.
    • Claude sometimes calls itself Deepseek if asked in Mandarin. I think it's a by-product of how the latent space works: English+LLM=Claude, and Chinese+LLM=Deepseek.
  • Information wants to be free.
  • Okay? We have information that Anthropic sucked up all of the internet for the development of Fable.
  • Good. If Fable is really so smart, it wouldn't let itself be distilled.
  • Is this person trustworthy? I struggle to believe that in the relatively short time Fable was available it has already been distilled so effectively. If this really is actually true, very impressive work.
  • I wonder if this points at a “shared” future (or at least things will eventually converge there whether companies like it or not). Ultimately, if you’re going to release these models that are fundamentally built on shared data - it’s pretty wishful to assume you’ll be able to harbor that model and the data, forever, and profit from it.

    It also leads me to think about things like the original release of Fable 5, people were complaining that it was safeguarded too much - if you lock the models down too much they cease to be useful. So it’s going to be increasingly difficult to protect a model from competition while ALSO keeping it useful.

    • We might see a future where the US frontier LLM vendors place really strict licenses on them. No consumer access. Only sell to enterprise customers in a limited set of countries, with heavy monitoring and auditing down to the individual employee user account level. (I'm not saying that this is a good thing, just that some LLM vendors might try that approach to maintain their "moat".)
  • if there are no consequences then who cares? You're not going to take Chinese companies to court and stealing IP is nothing new either. It's going to take some sort of policy change at the federal government level to do anything but they haven't done much up to this point. Maybe AI is important enough to actually get some kind of policy change, sucks for everyone else who have had their IP stolen with no consequences whatsoever.
    • I fear they are laying the groundwork to ban US citizens from using Chinese models, so that they can make sure that Brockman gets his money's worth.
      • why would you fear that? At least it's something to fight unfair business practices. As for American AI companies violating copyright there's a venue for that, the courts. File a case if you feel your copyright has been violated and get your day in court.
  • If it's true that in under 15 days of access significant improvements were realized in K3, then the moat of closed-weight models is far smaller than previously thought.

    Doesn't bode well for the valuations of these labs.

  • how is it possible to distill fable only a month after its release? maybe they are confusing opus with fable.
    • Distillation is a superficial step and doesn't need a lot of data, it's not "stealing the model" like they want everyone to believe. 99% of work is already done by that point. That said, it's pretty clear K3 has Claude's data in the training set (either Opus or Fable), as it repeats Anthropic's prompt injections. (not that it matters to anyone besides Anthropic themselves)
    • If by "distill" they mean "used it for fine-tuning" then they might have used it in the final stages of fine-tuning of Kimi K3. I image they might have already been using Opus, and when Fable became available it was easy to switch over to it

      It would have been a tiny part of the overall training, given the timeline

    • A month seems plenty long enough. They're not rebuilding the entire model from scratch. It's just getting Fable to act as a teacher model for some of the final reinforcement learning on the base that Kimi already had.
      • I think that would also be a bad idea, as all models opus 4.6 got increasingly smarter, but also crappier at following instructions or genuinely assisting.

        They just try to figure out what the goal is and hyper focus on solving it.

        Heh, even just telling fable don't commit doesn't work half the times, let alone more complex instructions.

    • Create a couple thousand Claude max accounts and split the work amongst them perhaps.
      • That's crazy income for Anthropic to invest into Legendos.
    • Honestly, it wouldn't surprise me if they just found evidence of distillation once in 2025 against some Chinese AI lab, and they've been lying about the rest to create a narrative.
      • I also heard that K3 stole the 2020 election, among other things.
  • For code can't they distill from public GitHub commits? If they could figure out who used Mythos/Fable assitance in the commits.
    • I think they're distilling "reasoning", not merely code. There's plenty of human generated code. What they're trying to extract is the process by which really large models "think" their way through complicated problems. That's what all the "traces" datasets on HuggingFace are about.
  • didn't Anthropic distil a few tens of millions of books?
  • Weird 'discussion'. Almost entirely single messages with no threads, all with the same anti-Anthropic/AI position.
  • Good for Moonshot.
  • How does one distill? Just send a million request asking for information? Start with the letter A?
    • Probably the agent workflow traces, including thinking sections, are of main interest. Used in late training for decision making and problem solving strategies.
  • A company that distills LLMs should be called "Moonshine" not "Moonshot"

    Ba-dum-tss

  • Hmm. I wonder when this was detected. And was the CoT trace cut from Fable from the start on June 9th or just after the export ban and relaunch? Is this what the export ban was actually about? I honestly don’t know, just wondering aloud.
  • who cares. all these frontier models are trained on theft.
  • Hah tales as old as time. what’s next? Distillation of Disney theme park?
  • I wonder how they detect this kind of thing. Seems like this is going to be a perpetual issue until it stops being worth doing.

    Side note, didn't they stop releasing real thinking tokens for Fable? Or is it still part of some subs or API usage?

  • Assuming they did then they surely paid for them, which makes it "not stealing". Am I also "stealing proprietary U.S. technology" by harvesting my Claude chats from my `.claude` directory and training a bunch of models on them?

    That said, I doubt the "they distilled Fable" is the reason why K3 is as good as it is, considering the timelines involved, and that Anthropic hides thinking traces, and their overly aggressive "safety" filters.

    This constant FUD spread by Anthropic is so tiring.

    • Model distillation can't be stealing at all if you rationally apply copyright law to it. Anthropic is not deprived of Fable so there is no theft. At best it would be infringement, but even that might not hold up in the courts given the current position that model outputs can't be subject to copyright.
    • > harvesting my Claude chats from my `.claude` directory

      Just reminded me to set a backup on that directory. Just in case someone sees it fit to override my setting to preserve my chats for 10k years.

  • The Irony. These models have been created distilling Internet without ever asking for permission or paying anyone. Internet was the first model.
  • How the tables have turned. It's okay for Anthropic to train their models on copyrighted data, but it's wrong to steal the stolen data from Anthropic models.
  • If distilling is fair then so is banning it. It's funny how people cry about Anthropic using books and materials to train itself but then when Anthropic does something about it they think its unfair. Pick a lane.
  • Cry about it IMO. Anthropic reaps what they sow.
  • So it is as "dangerous" as Fable?
  • so they distilled one of the best models in the world AND released it for free to everyone. Where can I send them flowers as a thank you?
  • I don't know what purpose these "they copied us" crying is ever going to achieve. Europeans stole Chinese silk worms. US stole European books, looms and rocket scientists. Who cares? Be grateful you've got people inventing stuff worth copying.
  • oh know, better make them pay up your legal fines for stealing all that from the public good.
  • Do you by chance also have information about Anthropic's training data sources?
  • For a buncha supposed capitalists, they sure do hate fair competition eh?
  • Yes, I know this is not Reddit but Clarkson’s “Oh no! Anyway…” is the perfect, and most fitting, reaction to this. Nothing else to say
  • The pot calling the kettle black.
  • OK, DIRECTOR Michael Kratsios, but why should we give a shit?

    American AI corporations are pushing up the prices for computing, making it unaffordable for the common man. Additionally, they have built their entire business on stealing(yes, stealing) work from us.

    So fuck em

  • Didn't they just pay a fine for stealing all those books?
    • $1.5 billion fine for downloading 7 million books from LibGen and other pirate torrents.

      That's also the case where the judge ruled that training AI models on books could qualify as fair use, but storing millions of pirated works in a central internal library without licensing constituted copyright infringement. It will be interesting to see if courts consider training on data distilled from a model fair use. Assuming the allegation is true. Someone distilling data from a cloud-hosted model:

      - Paid the model creator to use a publicly available product.

      - Never copied or even had access to the model source code or weights.

      - Created a derivative work based on the model's responses to their particular input.

      - Trained their own model on the distilled output

      That distilled output is arguably a collaborative creation because a distiller's prompts are their own unique intellectual property. So they never pirated anything. I'm struggling to see how distillation is copyright infringement. At most it seems to be a paying customer violating one of the license terms, perhaps akin to a "no commercial use of derivative works" clause. But in the case of giving away an open weight model, is it even 'commercial use'?

      I guess if the distiller asserts copyright on the weights but gives them away, it's technically 'commercial' but even if they can win that argument, they're left with zero direct damages and suing for some value delta based on the alleged revenue they were deprived of. Is that delta the difference between the distilled model existing and the next best non-distilled open weight model existing? And then they have to collect damages from a portion of the revenue of third parties who commercially served that free model?

      • Well I mean it still worked out for them because they wouldn’t have had the 1.5 billion to license before doing the training and the company exploding into a trillion dollar company?
  • I don't even understand this fucking AI "arms race" at all. Who can burn money the fastest?
  • "Well, Steve, I think there's more than one way of looking at it. I think it's more like we both had this rich neighbor named Xerox and I broke into his house to steal the TV set and found out that you had already stolen it."
  • Seems like an advert for K3 to me.

    Fable level performance, for much lower price.

    But really, this is the USA getting ready to bring AI companies completely under the control of the Trump administration for ‘national security’

  • Good. Keep it up
  • I continue to laugh uproariously at American AIBros screaming “bUt OuR iP” at foreign distilleries and competitors despite literally building their own platforms on the single largest theft of copyrightable works in human history.

    Like, goddamn ya’ll are hypocrites.

  • Anthropic should think hard about all their fear mongering. It will only end up backfiring on them and everyone else involved.

    They definitely used closed private saas products to train their own models, to prove that just drop random small screenshots of any popular product behind a login screen and see how well it's able to identify all of them. ex: https://x.com/michalwols/status/2079968211865330165

    or other similar "AI" startups https://x.com/envconfig/status/2079613455296827402

  • So? Their business model requires building on the labor of others for free. Isn't that how it works?
  • IP protections for me, not for thee.
  • OMG someone used our data to make an MK model! Just like we did to every author in the world!
  • Fun fact about K3's distillation:

    As of a couple months ago, when using Claude to write adult content through the API, sometimes it will silently inject a system prompt giving the model a bunch of guidelines on exactly what kind of adult content it's allowed to write, steering it away from anything "questionable" ("Claude will not write etc etc").

    Moonshot distilled Claude so hard recently, they actually ended up distilling this prompt injection, too. Using K3 to write adult content results in it randomly hallucinating the injected Claude prompt during thinking, and it will quote parts of that prompt, complete with the name "Claude".

    Not that I think distillation is a bad thing, just thought this was funny.

  • I think they deserve, by Justice, to have their models pillaged and raped, just like they did to the internet. They didn't ask for permission when they took the entire of the internet, after all, and given their behaviour is nefarious, it's of Justice that they receive nefarious treatment by others, including chinese AI labs.

    The Chinese are not gonna deterred, but the posturing by the Americans is so blatantly hypocritical that everybody is cheering for their demise. See, for example, one of Francis Fukuyama's latests videos on youtube.

    • I still believe taxing the bots, and implementing actual UBI, would address both problems.
      • Will the UBI apply to everyone worldwide? As that’s where the original dataset came from.
      • And I believe a socialist revolution in international solidarity of the working classes against our exploiters the capitalist owning class would address both problems as well (and more), but in the meantime I’ll be happy whenever I spot poetic justice in the wild.
        • I think we have some historical precedents for this that went less well than you might hope.
          • I am not aware of any revolutions where an international solidarity of the working classes overthrew their capitalist exploiters. I am aware of a couple of national solidarity movements which overthrew a monarchy (France; Russia) and a dictatorship (Cuba), but no international ones.
  • “If you can’t compete with them, get them banned”

    - US AI companies

    • There's no real way to compete with someone who gets the output of your own work for almost free in comparison.

      I sympathize with the argument saying that they ripped the whole Internet and books first though

  • So company who stole stuff to make their stuff is mad because another company is stealing their stuff.

    And now a regime best known for lying to their own people is the one trying to convince me?

    Go, China!

  • If you ask fable, it will identify as deepseek
  • Is distillation something we have to live with or are there ways to prevent it?
    • Realistically you can't prevent distillation. OpenAI / Anthropic are slowly moving towards hiding the steps in-between input and output (hidden thinking), but that only helps so much. Imagine you put a file into Claude and say "do X to this" and it returns it to you without showing any of its internal reasoning. That's harder to distill, but the simple mapping of input to output still creates very valuable training data. It is reflective of all the training the model did to learn how to do that transformation.
      • You can also get it to think in the output tokens pretty easily, eg "Here's a math problem, I want your reasoning first, then the answer" which is what I assume they're doing.
    • You make it sound like a bad thing.
    • You can prevent it by outputting a reasoning "summary" instead of the actual reasoning trace.

      Which Anthropic already do.

    • If you build a device that can help build devices, you shouldn't be too surprised when people use it to build devices.
    • If it was genuinely useful, we would've long reached the point where you train a model on a previous one's output in an ever improving loop.

      But this doesn't actually work.

  • Who cares. Anthropic distilled the entire internet, and then a good bit more beyond that.
  • So?

    We have information that Fable was distilled from humans.

    If it works it works. Isn't that the argument?

    AI outputs are not copyrightable, so distillation is fair use.

    It may be a TOS violation, but that's a private matter. Cancel the accounts used for distillation and be done.

  • China has done this with absolutely everything, starting with “customs inspections” of ships engineering sections by “inspectors” drawing diagrams of what they see. Bit late to be worrying about it now. This only matters now because China is now near parity in tech and vastly superior in production ability. Meanwhile we run out of bullets in a five month war with Iran.
  • So what? I want the best model at the cheapest price. You guys illegally trained on books, movies, audiobook etc.. Why should we care?
  • "we ripped off the entire ecosystem of copyrighted data but I draw the line when we get ripped off"
  • honestly if they did what he said they did, it seems like it would be cheaper just to train your own model from the get go
    • I haven't seen that point yet, and I was looking for it. Presumably Moonshot paid for that Fable access and Anthropic got paid. How much of the frontier model revenue stream is supported by paid distillation traffic? Obv paid kimi services are eating that on the other side, but money is changing hands at every stage.
  • First: Even if true, I don't care.

    Second: Post is rich with allegations but light with evidence. Can very well be bullshit.

  • America, the perpetual victim
    • We're winning so much, we're getting tired of winning
  • Two recent ones that really really hit me,

    > we're entering the most geopolitically volatile moment since the trinity test lit up the alamogordo desert and the only US policy prescription is a big button labeled sinophobia

    https://bsky.app/profile/thebadcode.com/post/3mr3skoyass2k , and,

    > every vendor cranking the big dial labeled "sinophobia" and looking back at the us government for approval

    The government itself doing the propaganda here, skipping the vendors. Sinophobia intensifies. War drums of "be afraid be afraid be afraid" beat louder.

    It's so bad, it's so stupid. Kimi lands one showing pretty clearly this was absolutely the determining concern happening at vast scale, that they can just a lot of this themselves, and this noise pollution from the most hopelessly lost aggro administration ever still gets blared out the trumpets of war & discord. What a joke. Give me a break, give it a rest.

    War here is less winnable than the Iran war they started. They're going to make America itself so much worse, these people so hungry to put down free and good models. This pathetic attempt is not going to work, you are just going to once again hold the US citizens hostage & make their lives worse, for sick political games.

    • Not surprising that Bluesky is perpetually in peak woke mode, but the racism claims are absurd. If Russia were doing the same thing, would we have no problem with that because they're white?
      • This feels radically off target to me.

        Sinophobia as such (not always, and there's obviously a relation) isn't about the Chinese people, about their racial identity. It's about a menacing aggressive world power, about a tired anti-Communist McCarthyism (which has always been an excuse to clamp down on the left/progressives, a menace to free speech).

        If Russia were still the USSR and the cold war hadn't ended and they were our AI competition & where giving away the latent matricies of reality that the US profiteers extracted by stealing all the worlds knowledge illegally and which they want to use to raise the ladder & leave a permenant plebian underclass, we the US imperial fatcats would be doing the same sabre rattling and fearmongering and tension raising for sure. Sinophobia here is just a particular fear of "other" for the only other that's relevant.

        And that sucks, no matter who it is we are trying to other here, no matter what phobia the propogandists of the GOP and Technofascism are spinning, ginning up. To fixate is to be unable to see the point.

  • Is this a surprise, I think history has proven that the Chinese technology theft is part of their strategy. They let the American tax payer or "The West" shoulder the cost and then steal it.

    Waiting for the whataboutism....junk away...

  • "we have information" says a US Government official who almost certainly has had Anthropic and/or OpenAI on the phone spinning him stories.

    See also, don't trust anyone in Trump's government who says "we have information".

    "they distilled us" is fast becoming standard US FUD.

    The same as people telling me with a serious face that the Chinese models are distilled just because it says "I am Claude".

    I am not the only one, look at this post on interconnects about Kimi K3 for example:[1]

         It should be clear looking at this model that if adversarial distillation from the closed frontier models in the U.S. contributed, it is at most to a relatively small degree. AI observers who followed the distillation panic and came away with the wrong conclusion that Chinese AI labs are only producing good models due to IP theft are in for an awakening – that Chinese companies are extremely good at building models in the same way the leading American companies are.
    
    [1] https://www.interconnects.ai/p/kimi-k3-the-open-weights-esca...
  • I’m certain they did.

    The problem is… what are you going to do about it?

    This is obviously an idiotic and dangerous Cold War and has no happy ending.

  • And?

    Nobody cares. This is neither a controversy nor news, and that would be the case even if Anthropic hadn’t just settled a 1.5 billion dollar lawsuit where they trained Claude on thousands of books without permission lol.

    To be clear I’m not taking a jab at OP - I’m saying the labs crying about distillation have neither a legal nor a moral leg to stand on. There’s nothing wrong with distillation.

  • Proof - they also claimed that China has an ASML UEV machine - crickets when ASML said it was impossible due to all the safeguards and assistance needed to operate one.

    The current US administration is known to be collection of BS artists and liars.

  • rules for thee but not for me
    • dang
      Plenty of HN readers feel this way and it's a good point, but it has also become an entirely cliché response which pops up like mushrooms anytime "distillation" appears. That means it's against the site guidelines, which ask:

      "Eschew flamebait. Avoid generic tangents. Omit internet tropes." - https://news.ycombinator.com/newsguidelines.html

      I don't mean to pick on you personally! It's just that reflexive responses always tend to show up first in a thread, when what we really want are reflective responses [1]. Similarly, there's a strong tendency for threads to turn into generic discussions, whereas what we really want are specific ones [2].

      [1] https://hn.algolia.com/?dateRange=all&page=0&prefix=true&sor...

      [2] https://hn.algolia.com/?dateRange=all&page=0&prefix=true&que...

      • In the controversy over AI and intellectual property rights, the notion of asymmetrical enforcement of those rights is presently an active and dynamic rhetorical position. If you suppress responses espousing that position, how am I to judge the breadth of the position in the debate?

        When I see a lot of the responses, even cliche ones, it tells me people are passionate about the issue. Right now I think that's an interesting piece of information.

      • Laughing at the idea of distillation being bad is exactly as cliche/flamebaity as complaining that your model got distilled.

        No more, no less.

        • At this point distillation is part of the ecosystem and everyone should embrace it. If distillation is a threat to one’s business model, then the business strategy needs to shift.
        • I have to agree. I've flagged the post.
        • sure but anthropic is not literally in the comments complaining, so it's not quite apples to apples, right?
      • > it has also become an entirely cliché response

        To be fair, that's also the case for the link itself we're discussing.

      • I think then we should ban these sorts of posts about the allegation of distillation, since being able to post the story but then warning accounts with comments about the hypocrisy, is not the correct way to go about it.
      • You just told on yourself big time about being a lapdog for the US Feds. Easily one of the worst moderation decisions you’ve ever made and that’s impressive given your track record.
        • Telling someone to have more than 20 characters in a comment on HN is bootlicking?

          Absolute lunacy.

          • Requiring someone to have more than 20 characters, when 20 or fewer will do perfectly? Yes.
      • I agree in the abstract, but perhaps the way to avoid generic responses is to disallow (or segment) generic submissions. This website is no longer HN, it should be renamed AIN. There is only so much to say about the subject, and if cliché submissions keep getting accepted and upvoted and shoved to every visitor without a way to avoid them (barring leaving the website entirely), then people will eventually gravitate to the same responses. If your neighbours play loud music every night, they don’t get to complain that everyone is always mentioning the loud music to them.

        You are a fantastic moderator, but there’s only so much even you can do. If nothing changes about the website, the problem will only get worse. I warned years ago that this would happen, the signs were on the wall immediately.

    • Let me put it in an HN-acceptable format:

      Given the disregard for intellectual property rights the AI labs had in creating the technology, many people feel no sympathy for second-order AI labs using similar techniques to build technology off the US frontier labs.

      I think fighting distillation will always be cat-and-mouse, and that it's more of a concern for the stockholders and perhaps an iota of national security. It can't be stopped entirely; the "problem" will always be there.

      I'm much more concerned about asymmetry of power between citizens and their governments with omnipresent surveillance and analysis being done on everyone living their lives. Societies throughout history have taken as a given their power to overthrow malicious governments when things hit a breaking point, and I am scared that this technology will lock societies into a state of total subordination for eternity.

      • That's a better comment but

        > Societies throughout history have taken as a given their power to overthrow malicious governments when things hit a breaking point,

        simply isn't true. People throughout history have simply accepted that society is the way it is and sometimes used whatever means they could to get to the top.

        Revolutions have been very rare and usually ended up with the revolutionaries simply taking the place of the previous rulers. "Meet the new boss..."

        • Then let's call it a reset, one way or the other. I'm afraid society won't be able to hit the reset button on a government in the future.
  • [dead]
  • [flagged]
    • > /giphy nobody cares SpongeBob meme

      Can you please not do this here? There's nothing wrong with it, we're just trying for something else on this site.

      "Don't be snarky. [...] Omit internet tropes. [...etc...]

      https://news.ycombinator.com/newsguidelines.html

      • Genuinely want to know if you're surprised that there have been almost no commenters concurring with (what seems to be) a well-substantiated (& on the face of it defensibly center-right) tweet from the WH

        Will contrarian dynamic take off here?

        Will it be flagged? Will you unflag it?

        Edit: catigula, mattrighetti

        With more substantive technical comments towards the middle

  • Get your violins out folks.
  • “China’s great leaps in AI that are surpassing the US” are actually just what China always does with every technology: copy the west… poorly.

    And before the Chinese astroturfing starts (it already started, that’s clear from the comments and voting): the point is not even that the US companies have the right to intelectual property over their models (they should, but ok, that’s not even the point). The point is that China is incapable of innovation and any innovation into AI we can expect, will always come from the US.

  • Anyone surprised by this is incredibly naive.

    By all means use whatever works for you, I’m not even going to try to make an argument on ethics (and honestly I’m not even sure where I stand, given the behavior of American AI companies).

    But I just cringe every time I see people acting like any of this is done in good faith.

    Open source coming out of China is a state-sponsored criminal enterprise, built only for the benefit of the Chinese regime, one of the worst to exist in human history.