Industry·3 min read

Congress Pushes to Sanction Chinese Firms Stealing American AI Models

New legislation targets foreign entities using distillation attacks and espionage to replicate US AI models, backed by a House Select Committee report detailing China's systematic campaign to acquire frontier AI capabilities.

Congress Pushes to Sanction Chinese Firms Stealing American AI Models
Share:

The U.S. House of Representatives is advancing legislation to punish foreign entities — principally in China — that extract capabilities from American AI models through what the bill's sponsors call industrial-scale fraud. The Deterring American AI Model Theft Act of 2026 (H.R. 8283), introduced by Representative Bill Huizenga, would direct the federal government to identify and sanction companies using improper query-and-copy techniques to replicate the outputs of leading U.S. AI systems, in addition to traditional theft through espionage.

The push follows a bipartisan investigation by the House Select Committee on China, whose report — titled "Buy What It Can, Steal What It Must" — details how Chinese state and private actors have combined chip smuggling, industrial espionage, and large-scale model distillation attacks to build AI capabilities they could not develop domestically at pace. The report identifies the 2025 release of DeepSeek R1 as the first major public example of a distillation attack: a model trained extensively on outputs from frontier American AI systems to approximate their behavior at a fraction of the development cost.

The legal dimension of AI theft has already produced convictions in U.S. federal courts. In January 2026, a jury found former Google software engineer Linwei Ding guilty on seven counts of economic espionage and seven counts of trade secret theft, after prosecutors established that between 2022 and 2023 he had stolen more than 2,000 pages of Google's AI-related trade secrets. Intelligence assessments shared with Congress describe "foreign entities, principally based in China," conducting large-scale extraction of American AI technology — including through fake research accounts that systematically query commercial API endpoints to map model behavior.

The House Foreign Affairs Committee has advanced a broader slate of bipartisan export control bills alongside H.R. 8283 that would tighten restrictions on AI-related technology flowing to China and Russia. The urgency has intensified as the competitive gap narrows: the Stanford HAI AI Index 2026 found that U.S. and Chinese frontier models are now trading positions at the top of global benchmarks, with performance margins as thin as 2.7 percentage points — compared to a gap of roughly 17 points two years ago.

Critics of aggressive export controls caution that restricting model access could fragment the global AI research ecosystem without meaningfully slowing Chinese development, since the underlying scientific literature is largely published openly. The White House has so far held back on sweeping new curbs, creating tension with members of Congress who argue that voluntary restraint cedes the initiative to adversaries already operating without self-imposed limits. The outcome of the legislative push could determine whether AI model outputs are ultimately treated as a form of intellectual property with enforceable international protections, or whether distillation attacks remain a legal gray zone that frontier labs must defend against on their own.

Want AI news before everyone else?

The morning's most important AI stories, straight to your inbox. No fluff.

Related Articles

417–3 in the House. One objection in the Senate. Editorial illustration of the stalled Ratepayer Protection Act, H.R. 9340. A large 417–3 House vote meets a single red senator and a closed stop line. Below, AI data centres drawing 100 MW or more connect through a transmission tower to a home and an electricity bill. Amber conduits link the industrial load, grid upgrades and household costs. The proposed large-load standard would assign full incremental grid-upgrade costs to data centres, but a senator blocked unanimous consent, objecting that states were only asked to consider the standard. H.R. 9340 RATEPAYER PROTECTION ACT 417–3 HOUSE VOTE ONE SENATOR. BILL BLOCKED. The objection: states only asked to “consider”. AI DATA CENTRES 100 MW+ GRID UPGRADES WHO PAYS? BILL $ HOUSEHOLD BILLS BITSMINDS.COM
Industry

House Votes 417–3 to Make Data Centers Pay for the Grid

Hacktron: from an image upload to an internal repository An oversized HEIC photo file is connected by an electric green line to two glass security gates, labelled Forum and SSO, then to a dark repository cabinet bearing the OpenAI emblem and a pull-request symbol. A separate Claude Opus 5 plaque credits the model used by the researchers. The top caption says disclosed and patched. This is a conceptual illustration of Hacktron's reported security research and vulnerability chain. The two gates represent the two reported flaws, and their open padlocks are a visual metaphor. Original vector editorial illustration for BitsMinds, hacktron-claude-opus-5-openai-exploit-chain. 18 September 2026. Conceptual architecture based on the article, not a real interface or technical system diagram. HACKTRON / SECURITY RESEARCH DISCLOSED & PATCHED .HEIC IMAGE UPLOAD 01 FORUM IMAGE PROCESSING 02 SSO SIGN-IN TRUST INTERNAL REPO PULL REQUEST OPENED CLAUDE OPUS 5 RESEARCH ASSISTANT TWO FLAWS. ONE CHAIN. BITSMINDS.COM
Industry

Claude Opus 5 Wrote the Exploit That Broke Into OpenAI

Pew's global AI survey: uncertainty about the future of work An empty ochre office chair faces a computer in a quiet evening office. Beyond the window, buildings of unequal heights suggest an uneven economy. A large globe on the left is surrounded by 37 separate markers: 34 amber and three neutral. They represent surveyed publics, not individual respondents, countries mapped to locations, job counts or measured job losses. The caption states that in 34 of 37 publics, more people expect job losses than gains. This is an editorial illustration of public expectations reported in the Pew survey, not a prediction of what AI will actually do. Original vector illustration for BitsMinds, pew-global-ai-survey-2026-jobs-inequality. 17 September 2026. Survey finding, not observed labour-market outcomes. PEW / GLOBAL AI SURVEY 34 / 37 PUBLICS More expect job losses than gains AI BITSMINDS.COM
Industry

Most of the World Expects AI to Cost Jobs, Pew Finds