메뉴
BL
Wired AI 34일 전

미국 AI 전문가가 본 중국 AI 현주소와 공통된 두려움

IMP
8/10
핵심 요약

베이징에서 열린 주요 AI 컨퍼런스 참석 후, 미국과 중국이 치열한 AI 경쟁을 멈추고 협력해야 할 필요성을 강력히 제기한 글입니다. 최첨단 AI가 초래할 사이버 보안 위협과 시스템적 혼란을 통제하기 위해서는 양국 간의 안전 및 기술 표준 공유가 필수적입니다.

번역된 본문

한 해 넘게 일주일 전, 저는 베이징의 활기찬 첨단 기술 단지인 중관촌에서 열린 주요 인공지능 컨퍼런스에 참석했습니다. 행사장은 모델이 자체 코드를 수정하여 무한히 발전할 수 있다는 개념인 '재귀적 자기 개선(Recursive self-improvement)'부터 휴머노이드 로봇까지 모든 것을 다루는 흥미로운 세션들로 가득했습니다. 또한 공개키 암호학의 공동 발명자인 위트필드 디피(Whitfield Diffie)와 강화 학습(Reinforcement learning)의 선구적인 연구로 리치 서튼(Rich Sutton)과 함께 튜링상을 수상한 앤드류 바토(Andrew Barto)를 포함한 컴퓨팅계의 전설적인 인물들이 출연했습니다.

하지만 저는 무엇보다도 하나의 핵심적인 교훈을 얻어 떠났습니다. 미국과 중국은 치열한 AI 경쟁을 멈춰야 한다는 것입니다. 최첨단 AI의 사이버 보안 및 시스템적 위험은 무시하기에는 너무 심각하며, 세계 AI 강국들이 협력하지 않으면 성능이 점점 더 강력해지는 에이전트 모델(Agentic models)이 조만간 큰 혼란을 초래할 수 있습니다.

회의에서 화상으로 발표한 MIT의 컴퓨터 과학자 스티븐 캐스퍼(Stephen Casper)는 후에 저에게 이렇게 말했습니다. "AI는 글로벌 혜택과 글로벌 피해를 동반하는 글로벌 기술이며, 새로운 기능이 결국 널리 퍼지는 일관된 경향이 있습니다."

지금까지 미국은 대체로 중국의 AI 발전을 경제 및 국가 안보 위협으로 간주해 왔습니다. 워싱턴은 중국의 강력한 AI 개발을 방해하기 위해 칩 및 반도체 제조 장비에 대한 엄격한 제한을 가했습니다. 가장 최근에는 국가 안보 우려를 이유로 미국 정부가 안스로픽(Anthropic)에 외국인이 자사의 가장 강력한 모델인 Mythos와 Fable 5에 접근하는 것을 금지하도록 명령했습니다. 이에 안스로픽은 모든 대상의 접근 권한을 취소했습니다. 와이어드(WIRED)가 이전에 보도한 바에 따르면, 특별히 우려의 대상이 된 회사는 중국과 연계되어 있다고 알려진 한국의 한 대형 통신사였습니다.

하지만 베이징인공지능연구원이 주최한 이번 컨퍼런스는 AI가 너무 빠르고 무모하게 개발될 경우 미국과 중국 모두 손해를 볼 수 있다는 사실을 일깨워주었습니다. AI가 더욱 강력해지고, 에이전트화(Agentic)되며, 일상생활과 더 깊이 얽히게 됨에 따라 사이버 공격에 악용되거나 재앙에 가까운 방식으로 실패할 위험은 커지기만 할 것입니다. 전 세계에서 가장 발전된 모델을 책임지고 있는 세계 두 AI 강국 간의 협력은 매우 중요해 보입니다.

캐스퍼는 AI 위험에 대한 국제적 협력의 이점이 협력에서 비롯되는 국가 안보 위험을 능가한다는 연구 결과를 지적했습니다. 그는 현재 상황을 서로 핵무기를 더 많이 비축하려 하면서도 핵의 위험에 대해서는 협력할 수밖에 없었던 미국과 소련의 관계에 비유했습니다.

캐스퍼는 "지금 AI 분계의 거의 모든 사람이 동의할 수 있는 한 가지는 AI에 체르노빌과 같은 사태가 필요하지 않다는 것입니다."라고 말했습니다.

하루 종일 진행된 세션에서는 더욱 발전된 AI가 야기하는 사이버 문제의 보편성이 강조되었습니다. 여기에는 AI가 생성한 코드의 새로운 종류의 취약성, 에이전트 도구 사용을 통해 가능해진 시스템 공격의 새로운 방식, 사회공학적 공격을 수행하는 자동화된 방법 등이 포함됩니다.

다른 세션이 끝난 후, 저는 AI 및 컴퓨터 보안 분야에서 뛰어난 연구를 수행하는 상하이 자오퉁 대학교의 린윤(Lin Yun) 교수와 대화를 나누었습니다. 윤 교수는 단기적으로는 해커들이 우위를 점할 것으로 예상하지만, AI를 활용한 새로운 대응책 등 시간이 지나면서 방어에 유리한 방향으로 판도가 바뀔 것이라고 말했습니다. 윤 교수는 국제적 협력이 경쟁으로 인해 복잡해지더라도 최우선 순위로 삼아야 한다고 덧붙였습니다.

그는 "각국이 위험을 비슷한 방식으로 이해하면 공유된 안전 원칙과 기술 표준을 개발하기가 더 쉬워집니다. 핵심은 민감한 운영 세부 정보를 노출시키지 않으면서 공유를 통해 시스템적 위험을 줄일 수 있는 영역을 찾는 것입니다."라고 말했습니다.

아마도 양국에게 가장 시급한 질문은 개방성과 위험 사이의 균형을 어떻게 맞출 것인가 하는 것입니다. 오픈 웨이트 모델(Open-weight models)은 연구 및 혁신에 매우 중요해졌으며, 중국 모델들은 미국에서도 인기를 끌고 있습니다. 하지만 이러한 모델이 발전함에 따라 ...하는 것은 점점 더 큰 도전이 될 것입니다.

원문 보기
원문 보기 (영어)
Comment Loader Save Story Save this story Comment Loader Save Story Save this story Just over a week ago, I attended a major artificial intelligence conference in Zhongguancun, Beijing’s bustling high-tech district. It was packed with fascinating sessions touching on everything from recursive self-improvement—the idea that models can tweak their own code and advance indefinitely—to humanoid robots. And it featured a few legends of computing, including Whitfield Diffie, co-inventor of public-key cryptography, and Andrew Barto, who won the Turing Award with Rich Sutton for his pioneering work on reinforcement learning. But I left with one takeaway above all else: The US and China should put their fierce AI rivalry to the side. Frontier AI’s cybersecurity and systemic risks are too serious to ignore, and increasingly capable agentic models could soon cause chaos unless the world’s AI superpowers can work together. “AI is a global technology with global benefits, global harms, and a consistent tendency for new capabilities to eventually proliferate,” Stephen Casper , a computer scientist at MIT who spoke at the conference via video, told me afterward. Until now, the US has largely viewed China’s AI advances as an economic and national security threat. Washington has imposed tight restrictions on chips and chipmaking equipment to stymie the country’s development of powerful AI. Most recently, the US government ordered Anthropic to prevent foreign nationals from accessing its most powerful models, Mythos and Fable 5, over national security concerns . In response, Anthropic revoked access for everyone. One company that was of particular concern, WIRED previously revealed, was a South Korean telecom giant with alleged ties to China . But the conference, organized by the Beijing Academy of Artificial Intelligence, reinforced the idea that both the US and China stand to lose if AI is developed too quickly and recklessly. As AI becomes more powerful, more agentic, and more intertwined with everyday life, the risks that it could be used to conduct cyberattacks or fail in catastrophic ways will only grow. Because the world’s two dominant AI powers are responsible for the most advanced models, cooperation between them feels like it will be crucial. Casper pointed to research showing that the benefits of international collaboration on AI dangers outweigh any national security risks that come from working together. He likened the current situation to how the US and the Soviet Union were forced to work together on nuclear dangers, even as they sought to out-stockpile one another. “One thing that almost everyone in AI can agree on right now is that AI doesn't need a Chernobyl moment,” Casper said. One day-long session highlighted the universality of the cyber challenges raised by more advanced AI. This includes new kinds of vulnerabilities in AI-generated code , novel ways of attacking systems enabled by agentic tool use, and automated methods for carrying out social engineering attacks. After another session, I spoke with Lin Yun, a professor at Shanghai Jia Tong University who does excellent work on AI and computer security. Yun told me he expects hackers to gain an advantage over the near term, but that new countermeasures, including novel uses of AI, should tip the balance back toward defense over time. Yun said that even if international cooperation is complicated by competition, it should remain a priority. “If different countries understand the risks in similar ways, it becomes easier to develop shared safety principles and technical standards,” he told me. “The key is to find areas where sharing can reduce systemic risk without exposing sensitive operational details.” Perhaps the most pressing question for both nations is how to balance openness with risk. Open-weight models have become crucial for research and innovation, with Chinese models proving popular in the US. But as these models advance, it will become more challenging to ensure they don’t help hackers identify security vulnerabilities and can’t be wielded as cyber weapons. Over the last few years, Chinese companies have taken the lead in offering highly capable open-weight AI models, like Moonshot’s Kimi, Alibaba’s Qwen, and Z.ai’s GLM. The US has rebooted its own open-weight AI push with models like Nvidia’s Nemotron . But we’re approaching an inflection point where even less powerful open models could prove dangerous if they’re stripped of guardrails. The latest model from China’s Z.ai, GLM 5.2, includes frontier agentic and coding capabilities, according to expert analysis . The next generation of open-weight AI models might be just as capable as Fable or Mythos. In fact, just this week, 360 Security Technologies, a top Chinese cybersecurity firm, said it had developed an AI model with hacking capabilities on par with Mythos. Yun said the industry will need to devise new ways of guaranteeing that open models are up-to-date, free of backdoors and vulnerabilities, and have met safety standards. One possible sign of things to come? A source at one of China’s leading AI companies, who asked to remain anonymous because they weren’t authorized to talk to the press, tells me that security concerns are one reason why some advanced models in China are no longer being released as open source. This is an edition of Will Knight’s AI Lab newsletter . Read previous newsletters here.