Random Image Display on Page Reload

I Met With China’s Top AI Experts. They’re Freaking Out, Too

I Met With China’s Top AI Experts. They’re Freaking Out, Too

The AI arms race between China and the US has researchers on both sides worried about a “Chernobyl moment.”

Image may contain Body Part Hand Person and Adult
Photo-Illustration: WIRED Staff; Getty Images

Just over a week ago, I attended a major artificial intelligence conference in Zhongguancun, Beijing’s bustling high-tech district.

It was packed with fascinating sessions touching on everything from recursive self-improvement—the idea that models can tweak their own code and advance indefinitely—to humanoid robots. And it featured a few legends of computing, including Whitfield Diffie, co-inventor of public-key cryptography, and Andrew Barto, who won the Turing Award with Rich Sutton for his pioneering work on reinforcement learning.

But I left with one takeaway above all else: The US and China should put their fierce AI rivalry to the side.

Frontier AI’s cybersecurity and systemic risks are too serious to ignore, and increasingly capable agentic models could soon cause chaos unless the world’s AI superpowers can work together. “AI is a global technology with global benefits, global harms, and a consistent tendency for new capabilities to eventually proliferate,” Stephen Casper, a computer scientist at MIT who spoke at the conference via video, told me afterward.

Until now, the US has largely viewed China’s AI advances as an economic and national security threat. Washington has imposed tight restrictions on chips and chipmaking equipment to stymie the country’s development of powerful AI. Most recently, the US government ordered Anthropic to prevent foreign nationals from accessing its most powerful models, Mythos and Fable 5, over national security concerns. In response, Anthropic revoked access for everyone. One company that was of particular concern, WIRED previously revealed, was a South Korean telecom giant with alleged ties to China.

But the conference, organized by the Beijing Academy of Artificial Intelligence, reinforced the idea that both the US and China stand to lose if AI is developed too quickly and recklessly. As AI becomes more powerful, more agentic, and more intertwined with everyday life, the risks that it could be used to conduct cyberattacks or fail in catastrophic ways will only grow. Because the world’s two dominant AI powers are responsible for the most advanced models, cooperation between them feels like it will be crucial.

Casper pointed to research showing that the benefits of international collaboration on AI dangers outweigh any national security risks that come from working together. He likened the current situation to how the US and the Soviet Union were forced to work together on nuclear dangers, even as they sought to out-stockpile one another.

“One thing that almost everyone in AI can agree on right now is that AI doesn't need a Chernobyl moment,” Casper said.

One day-long session highlighted the universality of the cyber challenges raised by more advanced AI. This includes new kinds of vulnerabilities in AI-generated code, novel ways of attacking systems enabled by agentic tool use, and automated methods for carrying out social engineering attacks.

After another session, I spoke with Lin Yun, a professor at Shanghai Jiao Tong University who does excellent work on AI and computer security. Yun told me he expects hackers to gain an advantage over the near term, but that new countermeasures, including novel uses of AI, should tip the balance back toward defense over time.

Yun said that even if international cooperation is complicated by competition, it should remain a priority. “If different countries understand the risks in similar ways, it becomes easier to develop shared safety principles and technical standards,” he told me. “The key is to find areas where sharing can reduce systemic risk without exposing sensitive operational details.”

Perhaps the most pressing question for both nations is how to balance openness with risk. Open-weight models have become crucial for research and innovation, with Chinese models proving popular in the US. But as these models advance, it will become more challenging to ensure they don’t help hackers identify security vulnerabilities and can’t be wielded as cyber weapons.

Over the last few years, Chinese companies have taken the lead in offering highly capable open-weight AI models, like Moonshot’s Kimi, Alibaba’s Qwen, and Z.ai’s GLM. The US has rebooted its own open-weight AI push with models like Nvidia’s Nemotron. But we’re approaching an inflection point where even less powerful open models could prove dangerous if they’re stripped of guardrails. The latest model from China’s Z.ai, GLM 5.2, includes frontier agentic and coding capabilities, according to expert analysis. The next generation of open-weight AI models might be just as capable as Fable or Mythos. In fact, just this week, 360 Security Technologies, a top Chinese cybersecurity firm, said it had developed an AI model with hacking capabilities on par with Mythos.

Yun said the industry will need to devise new ways of guaranteeing that open models are up-to-date, free of backdoors and vulnerabilities, and have met safety standards.

One possible sign of things to come? A source at one of China’s leading AI companies, who asked to remain anonymous because they weren’t authorized to talk to the press, tells me that security concerns are one reason why some advanced models in China are no longer being released as open source.


This is an edition ofWill Knight’sAI Lab newsletter. Read previous newslettershere.

You Might Also Like

Will Knight is a senior writer for WIRED, covering artificial intelligence. He writes the AI Lab newsletter, a weekly dispatch from beyond the cutting edge of AI—sign up here. He was previously a senior editor at MIT Technology Review, where he wrote about fundamental advances in AI and China’s AI … Read More
Senior Writer

Read More

How People in China Keep Outsmarting Anthropic’s Geolocation Restrictions

As Anthropic tightens restrictions on access to Claude in China, users keep finding new workarounds, from proxy services to fake identities sourced on Telegram.
Zeyi Yang

‘Dangerous’ AI Models Are Coming No Matter What

The US government crackdown on Anthropic’s Claude Fable 5 and Mythos 5 hides a glaring truth: AI models with advanced hacking capabilities will soon be the norm.
Lily Hay Newman

Anthropic Walks Back Policy That Could Have ‘Sabotaged’ AI Researchers Using Claude

The company changed course after researchers spoke out against the policy, which would have covertly limited Claude’s ability to develop competing AI models.
Maxwell Zeff

OpenAI Has New AI Models. Here’s Why You Can’t Use Them

The White House asked OpenAI to delay the rollout of its GPT-5.6 AI models, two weeks after Anthropic had to take its most advanced AI models offline.
Maxwell Zeff

The White House Is Making Up Its Rules for AI in Real Time

Anthropic still can’t distribute Claude Mythos or Fable 5 after running afoul of the Trump administration. But no one can say exactly what the company did wrong.
Maxwell Zeff

Meta Pauses Employee-Tracking Program Following Internal Data Leak

The move comes after the company left potentially sensitive data from the initiative exposed internally.
Paresh Dave

Anthropic Says It’s Taking Claude Fable 5 Offline to Comply With US Government Order

“The government believes it has become aware of a method of bypassing, or ‘jailbreaking’ Fable 5,” the company said in a blog post.
Maxwell Zeff

CISA Tells US Agencies to Fix Security Bugs in as Little as 3 Days Thanks to AI Threats

“Defenders cannot afford to take weeks to patch,” one Cybersecurity and Infrastructure Security Agency official warned on Wednesday.
Lily Hay Newman

Operating a Humanoid With Your Body Is a Hot Job in China’s Hardware Capital

In Shenzhen, workers at IO-AI Tech control humanoid robots using a VR rig reminiscent of Ready Player One.
Will Knight

Anthropic Thinks Its Own Success Is Key to Making AI Safe

Anthropic's critics argue it's rapidly accumulating power. The company says that's what responsible AI development looks like.
Maxwell Zeff

Meta Contractors Posed as Teens to Prompt Rival Chatbots About Suicide, Sex, and Drugs

Hundreds of contractors working on a project for Meta pretended to be kids in order to see how other chatbots like Gemini and ChatGPT would respond to high-risk subjects, WIRED found.
Dhruv Mehrotra

Anthropic Is Still at Odds With the White House Over Claude Fable 5

Anthropic leaders flew to Washington, DC, to meet with White House officials on Monday. After high-level talks, they’re still split on the risk Claude Fable 5 presents.
Hugo Lowell

*****
Credit belongs to : www.wired.com

Check Also

Can Cursor Remain a Platform for OpenAI and Anthropic’s Models Inside SpaceX?

Can Cursor Remain a Platform for OpenAI and Anthropic’s Models Inside SpaceX?

Maxwell Zeff Business Jul 2, 2026 2:01 PM Can Cursor Remain a Platform for OpenAI …