A U.S. government website used a Chinese AI model that the FBI had characterized as malicious, intensifying a policy debate over whether federal agencies and other U.S. users should be restricted from using Chinese open-source models. Some lawmakers regard their adoption as a national-security risk, while business users and Chinese officials oppose restrictions. Concerns extend beyond direct security exposure to censorship, privacy, supply-chain dependency, and Chinese influence over emerging AI standards.
The U.S.-China Economic and Security Review Commission warned that China’s state-backed open-weight strategy creates reinforcing advantages: broad developer adoption generates rapid iteration, while deployment across manufacturing, logistics, robotics, and IoT produces proprietary operational data that improves models. Chinese ecosystems such as Alibaba’s Qwen, which has exceeded 100,000 derivatives on Hugging Face, are gaining users partly through low-cost offerings. U.S. export controls on leading training chips may limit frontier training but do not directly address smaller specialized models or the deployment-driven data advantage, amid worsening Chinese perceptions that U.S. AI-safety and export-control policies are intended to contain China.

Track how attackers are adapting to this technology.
17 events from the most recent confirmed update back to the earliest known activity.
DeepSeek researcher Liu Shengyu published a personal WeChat post advocating inexpensive, universally accessible, open frontier AI and arguing that he did not trust Anthropic or OpenAI to make advanced intelligence broadly available. The post went viral and drew sympathetic coverage from Chinese outlets and substantial supportive online reaction.
China's Minister of State Security Chen Yixin published an article calling for beneficial, safe, and fair AI development and criticizing unnamed countries' use of entity lists, technology controls, standards, and closed ecosystems to restrict other nations' AI development.
The U.S.-China Economic and Security Review Commission published its working paper, “Two Loops: How China’s Open AI Strategy Reinforces Its Industrial Dominance,” assessing China's open-model and industrial-deployment feedback loops.
Nvidia released the open-weight Nemotron 3 model.
Chinese models accounted for seven of the ten most downloaded Hugging Face models during November and December 2025, while Chinese derivatives were uploaded at nearly twice the U.S. rate.
DeepSeek released V3.2-Speciale, described by the USCC paper as the first open model capable of International Math Olympiad gold-level scores.
Chinese AI models surpassed U.S. models in total Hugging Face downloads, according to the American Truly Open Models project cited by the USCC paper.
OpenAI released two open-weight AI models, reflecting increased U.S. participation in open AI development.
China's State Council made widespread AI adoption a central objective of the AI+ Initiative, including applications in science, industry, public services, governance, and international cooperation.
China's National Data Administration launched the National Public Data Resource Registration Platform.
The U.S. Department of Commerce added Chinese AI company Z.ai to its Entity List.
DeepSeek released its R1 reasoning model, which the USCC paper cited as evidence that Chinese labs could approach frontier performance despite compute constraints.
China's 2023 Global AI Governance Initiative called for improving AI explainability and predictability so that AI remains under human control.
China issued 2023 accounting standards permitting qualifying enterprise data resources to be recorded on balance sheets as intangible assets or inventory.
House China Committee chair Representative John Moolenaar said that no U.S. federal entity should use a Chinese AI model, arguing that such use would increase government dependence on Chinese AI and conflict with U.S. national interests.
U.S. business owners urged the Trump administration not to restrict access to Chinese AI models, while China rejected allegations that it copied frontier models and called on the United States to heed business concerns.
People's Daily published an op-ed by Beijing Institute of Technology professor Xiao Junyong arguing that U.S. AI threat narratives portrayed China as a threat, deflected domestic problems, and sought resources.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Follow how adversaries are adapting to this technology, and where it touches your stack today.
3 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.