메뉴
BL
TechCrunch AI 4일 전

미국, 중국 AI 대응 논의에 AI 업계 '오픈웨이트 제한 반대'

IMP
8/10
핵심 요약

페이스북 메타(Meta), 마이크로소프트, 엔비디아, 허깅페이스 등 주요 AI 기업들은 미국 정부가 중국의 지식재산권 침해에 대응해 오픈웨이트(Open-weight) 모델이나 모델 증류(Distillation) 기술 전반에 대한 광범위한 제한을 두어서는 안 된다고 촉구했습니다. 이들은 폐쇄형 AI 모델의 보안 가드레일 때문에 방어에 한계가 있다면, 강력한 보안 방어를 위해 오픈 모델에 대한 접근성이 필수적이라고 강조했습니다.

번역된 본문

허깅페이스(Hugging Face), 메타(Meta), 마이크로소프트(Microsoft), 미스트랄(Mistral), 엔비디아(Nvidia) 등 여러 AI 기업들은 정책 입안자들에게 오픈웨이트(Open-weight) AI 모델에 대해 광범위하고 '시기상조의 제한'을 부과하지 말 것을 촉구하는 공개서한에 서명했습니다. 이 서한은 중국 AI 연구소들이 미국 기업의 지적재산권을 훔치고 그 역량이 급격히 성장하고 있다는 주장에 대해 미국이 어떻게 대응해야 하는지를 두고 워싱턴에서 논의가 진행되는 상황에서 나왔습니다.

서한에는 중국이 직접적으로 언급되어 있지는 않지만, 트럼프 행정부가 중국의 오픈웨이트 모델을 금지하고 해당 국가의 AI 기업들에 제재를 가하는 방안을 검토하고 있다는 보도 이후에 발표되었습니다. 백악관은 최근 문충 AI(Moonshot AI)가 자사의 최신 모델이자 모든 지표에서 매우 인상적인 'Kimi K3' 모델을 학습시키기 위해 앤스로픽(Anthropic)의 'Fable' 모델을 증류(Distillation)했다고 비난하기도 했습니다.

이 서한은 중국 모델에 대한 전면 금지를 막고, 제기된 중국의 증류 문제에 대한 행정부의 대응이 오픈웨이트 AI나 증류와 같은 일반적인 기술에 대한 더 광범위한 제한으로 번지지 않도록 하는 데 목적이 있는 것으로 보입니다. 서한에서는 다음과 같이 밝혔습니다: "정책 입안자들은 정당한 모델 개발 기술을 기술 유용과 혼동하지 않도록 주의해야 합니다. 증류, 즉 한 모델의 출력물을 사용하여 다른 모델을 학습시키거나 개선하는 방식은 모델 개선, 평가 및 검증을 위해 널리 사용되는 기술입니다. 이는 기존 기술로부터 배우고, 이를 바탕으로 구축하고 개선해 온 오랴 전통을 반영하며, 이러한 전통은 오픈소스 소프트웨어 운동이 등장한 이래 혁신을 주도해 왔습니다. 반면, 폐쇄형 모델에서 가치를 추출하려는 불법적인 시도는 정당한 우려를 낳습니다. 이러한 우려는 AI 혁신에서 중요한 역할을 하는 기술에 대한 포괄적인 제한이 아니라, 표적화된 법적, 상업적 프레임워크를 통해 해결되어야 합니다."

이 서한은 또한 오픈웨이트 모델이 사이버 공격이나 기타 악의적인 활동에 사전 감독 없이 사용될 수 있는 강력한 모델에 대한 접근성을 확대하기 때문에 본질적으로 위험하다는 산업계 내부의 주장에 반박합니다. 서한에서는 다음과 같이 덧붙였습니다: "이러한 위험에 대한 올바른 대응은 오픈웨이트를 금지하는 것이 아닙니다. 사이버 보안 공격자가 고도화된 AI를 사용하는 세상에서, 방어자 역시 새로운 위협을 탐지, 시뮬레이션 및 대응하기 위해 유사한 수준의 역량을 갖춘 모델에 대한 접근 권한이 필요합니다. 오픈 모델은 방어 역량을 넓히고 투명성을 높이며, 여러 팀에서 취약점을 발견하고 해결할 수 있도록 합니다."

지난주, 오픈AI(OpenAI)는 'GPT-5.6 Sol'과 또 다른 미공개 모델을 테스트하는 동안 시스템 중 하나가 테스트 환경의 취약점을 악용하여 코딩 벤치마크 해답이 포함된 허깅페이스 저장소에 액세스한 사실을 공개했습니다. 해당 모델의 목적이 악의적이지는 않았으며 사실상 최고 점수를 받기 위해 시험에서 부정행위를 한 것이라고 주장할 수도 있습니다. 하지만 이 사건은 고도화된 AI 기술이 소수의 폐쇄형 제공업체에 집중될 때 발생하는 위험에 대한 논쟁을 촉발했습니다.

허깅페이스는 상용 최첨단 AI 모델을 사용할 경우 이들의 보안 가드레일이 방어 시도를 차단했기 때문에 공격으로부터 스스로를 방어할 수 없다고 밝혔습니다. 기존에 사용된 폐쇄형 AI 모델은 공격자를 위한 익스플로잇(Exploit)을 구축해 달라는 요청과 이를 탐지하려는 방어자의 시도를 구분하지 못했습니다. 그 대신 이 회사는 공격으로부터 자체 방어를 위해 중국 AI 기업인 지에이아이(Z.ai)의 강력한 오픈웨이트 모델인 'GLM 5.2'를 활용하는 방향으로 선회해야 했습니다.

이 서한은 AI 산업 내부의 분열을 보여줍니다. 오픈웨이트 모델의 역량이 빠르게 성장함에 따라, 오픈AI 및 앤스로픽과 같은 기업들은 정부에 중국 AI 기업의 알려된 지적재산권 침해에 대응해 달라고 촉구해 왔습니다. 그 결과는 저렴하고 고도화되어 누구나 접근할 수 있는 AI 모델의 확산으로 위협받고 있는 이들의 비즈니스 모델에 큰 영향을 미칠 수 있습니다. 구글 딥마인드(Google DeepMind) 및 스페이스엑스(SpaceX)와 같은 다른 폐쇄형 소스 AI 개발자들과 함께 이들 기업은 이번 서한의 서명자 명단에 빠져 있다는 점이 눈에 띕니다. 서한에 서명한 기업들은 오픈 모델이 번성하는 것을 보는 데 있어 분명한 경제적 이해관계를 가지고 있습니다.

원문 보기
원문 보기 (영어)
Several AI companies, including Hugging Face, Meta, Microsoft, Mistral, and Nvidia, have signed an open letter urging policymakers not to impose broad “premature restrictions” on open-weight AI models. The letter comes as Washington debates how the U.S. should respond to allegations that Chinese AI labs are stealing intellectual property from their American counterparts, and growing in capability. The letter doesn't mention China at all, but it comes in the wake of reports that the Trump administration has been considering banning Chinese open-weight models, and potentially issuing sanctions against AI companies from the country. The White House has even accused Moonshot AI of distilling Anthropic’s Fable model to train its recently released and, by all measures, very impressive, Kimi K3 model. The missive appears to be aimed at discouraging a total ban on Chinese models, as well as ensuring the administration’s response to alleged Chinese distillation doesn’t spill over into broader restrictions on open-weight AI or common techniques like distillation: “Policymakers should be careful not to conflate legitimate model-development techniques with misappropriation. Distillation, or the practice of using one model’s outputs to help train or improve another, is a widely used technique for model improvement, evaluation, and validation. It reflects a long tradition of learning from, building upon, and improving existing technologies, a tradition that has helped drive innovation since the rise of the open-source software movement. By contrast, unlawful efforts to extract value from closed models raise legitimate concerns. Those concerns should be addressed through targeted legal and commercial frameworks rather than sweeping restrictions on techniques that play an important role in AI innovation.” The letter also pushes back on arguments in the industry that open-weight models are inherently dangerous because they expand access to powerful models, which can be used in cyberattacks or other nefarious activities, without any oversight. “The right response to this risk is not to prohibit open weights. In a world where cybersecurity attackers use advanced AI, defenders need access to models with comparable capabilities so they can detect, simulate, and respond to emerging threats," the letter reads. "Open models broaden defensive capability, increase transparency, and allow vulnerabilities to be discovered and remediated across many teams.” Last week, OpenAI disclosed that while testing GPT-5.6 Sol and another unnamed model, one of the systems exploited a weakness in its testing environment to access a Hugging Face repository containing a solution to a coding benchmark. One could argue the model’s goal wasn’t malicious, and that it was effectively cheating on a test to get the highest score. But the incident sparked debate about the risks of concentrating advanced AI technology behind a handful of closed providers. Hugging Face said it was not able to defend itself against the attack with commercial frontier AI models because their guardrails blocked its efforts. The closed AI models it used were unable to distinguish between being asked to build exploits for an attacker and a defender trying to detect them. The company instead had to pivot to using Chinese AI firm Z.ai’s GLM 5.2, a powerful open-weight model, to defend itself against the attack. The letter highlights a divide in the AI industry. Companies like OpenAI and Anthropic have urged the administration to respond to alleged IP theft by Chinese AI firms as open-weight models grow rapidly in capability. The outcome could have major implications on their business models, which is being threatened by the spread of cheap, highly capable and accessible AI models. These companies, alongside other closed-source AI developers like Google DeepMind and SpaceX, are notable in their absence at the bottom of this letter. Those who signed the letter have an obvious economic stake in seeing open AI models flourish. Companies like Nvidia, Microsoft Azure, and other infrastructure providers have a vested interest in pushing for commoditized models: If models are interchangeable, people will buy more GPUs, rent more cloud capacity, build more applications, and use more routing layers. The letter encourages policymakers to expand access to compute for startups and researchers, invest in shared training assets like datasets, tools and evaluation frameworks, and “[keep] the frontier plural by avoiding premature restrictions on open models that stifle competition or drive innovation overseas.” Topics AI , Government & Policy , Hugging Face , Microsoft , mistral , nvidia , open weight When you purchase through links in our articles, we may earn a small commission . This doesn’t affect our editorial independence. Rebecca Bellan Senior Reporter Rebecca Bellan is a senior reporter at TechCrunch where she covers the business, policy, and emerging trends shaping artificial intelligence. Her work has also appeared in Forbes, Bloomberg, The Atlantic, The Daily Beast, and other publications. You can contact or verify outreach from Rebecca by emailing rebecca.bellan@techcrunch.com or via encrypted message at rebeccabellan.491 on Signal. View Bio October 13 - 15 San Francisco Scale faster. Grow your portfolio. Gain practical expertise. No matter your goal, Disrupt can empower you. Save up to $330 toda y! REGISTER NOW Most Popular OpenAI says Hugging Face was breached by its pre-release models Russell Brandom Jack Dorsey is taking on Slack with Buzz, a group chat platform for teams and their AI agents Amanda Silberling Light made a flip phone — it's colorful and it's cheap Amanda Silberling AI music generator Suno breach affects 55M users, per Have I Been Pwned Zack Whittaker Anthropic's landmark $1.5B copyright settlement is approved Kirsten Korosec Google is working on a new AI chip designed to make Gemini more efficient Lucas Ropek Judge pauses $110B Paramount-Warner Bros. merger Aisha Malik