- H.R. 10171August 27, 2026
- H.R. 10156August 27, 2026
- H.R. 10172August 27, 2026
- H.R. 10160August 27, 2026
- H.R. 10181August 27, 2026
- H.R. 10176August 27, 2026
- H.Res. 1496August 27, 2026
- H.R. 10164August 27, 2026
- H.R. 10170August 27, 2026
- H.Res. 1494August 27, 2026
- H.R. 10163August 27, 2026
- H.R. 10157August 27, 2026
- Administration
- Agriculture
- Agriculture, Nutrition, And Forestry
- Appropriations
- Armed Services
- Banking, Housing, And Urban Affairs
- Budget
- Commerce, Science, And Transportation
- Education and Workforce
- Energy And Commerce
- Energy And Natural Resources
- Environment And Public Works
- Ethics
- Finance
- Financial Services
- Foreign Affairs
- Foreign Relations
- Health, Education, Labor, And Pensions
- Homeland Security
- Homeland Security And Governmental Affa…
- Indian Affairs
- Indian and Insular Affairs
- Intelligence
- Judiciary
- Natural Resources
- Oversight And Government Reform
- Permanent Select Intelligence
- Rules
- Rules And Administration
- Science, Space, And Technology
- Select Intelligence
- Small Business
- Small Business And Entrepreneurship
- Subcommittee on Aviation
- Subcommittee on Border Security and Enf…
- Subcommittee on Coast Guard and Maritim…
- Subcommittee on Commodity Markets, Digi…
- Subcommittee on Conservation, Research,…
- Subcommittee on Counterterrorism and In…
- Subcommittee on Cybersecurity and Infra…
- Subcommittee on Disability Assistance a…
- Subcommittee on Economic Development, P…
- Subcommittee on Economic Opportunity
- Subcommittee on Emergency Management an…
- Subcommittee on Energy and Mineral Reso…
- Subcommittee on Federal Lands
- Subcommittee on Forestry and Horticultu…
- Subcommittee on General Farm Commoditie…
- Subcommittee on Health
- Subcommittee on Highways and Transit
- Subcommittee on Livestock, Dairy, and P…
- Subcommittee on Nutrition and Foreign A…
- Subcommittee on Oversight and Investiga…
- Subcommittee on Oversight, Investigatio…
- Subcommittee on Railroads, Pipelines, a…
- Subcommittee on Transportation and Mari…
- Subcommittee on Water Resources and Env…
- Subcommittee on Water, Wildlife and Fis…
- Transportation And Infrastructure
- Veterans' Affairs
- Ways And Means

S. 5252
U.S. Senate•In Senate Committee
Summary
S. 5252, the BLADE Act, was introduced in the Senate on Aug 5, 2026 by Sen. Bill Hagerty (R) with 5 co-sponsors. It was referred to Banking, Housing, And Urban Affairs, and last saw action on Aug 5, 2026: Read twice and referred to the Committee on Banking, Housing, and Urban Affairs.
Record
Text
S. 5252 has 5 co-sponsors.
sb5252/introduced-in-senate.txt119 S5252 IS: Blocking Large-scale Adversarial Distillation Efforts Act of 2026U.S. Senate2026-08-05text/xmlENPursuant to Title 17 Section 105 of the United States Code, this file is not subject to copyright protection and is in the public domain.II 119th CONGRESS 2d Session S. 5252 IN THE SENATE OF THE UNITED STATES August 5, 2026 Mr. Hagerty (for himself, Mr. Kim , Mr. Scott of South Carolina , and Ms. Cortez Masto ) introduced the following bill; which was read twice and referred to the Committee on Banking, Housing, and Urban Affairs A BILLTo prevent foreign adversaries from threatening the national security of the United States by extracting key technical features of closed-source, United States-owned artificial intelligence models, and for other purposes.1.Short titleThis Act may be cited as Blocking Large-scale Adversarial Distillation Efforts Act of 2026 or BLADE Act .2.Sense of CongressIt is the sense of Congress that—(1)artificial intelligence models owned by United States private sector entities are essential for advancing economic and national security interests of the United States;(2)many of the most advanced artificial intelligence models owned by United States entities are closed-source models whose unique technical characteristics are not openly shared or published;(3)the unauthorized acquisition of model capabilities, such as model weights, model architectures, and other technical characteristics of closed-source artificial intelligence models, by persons of concern through model extraction attacks represents a threat to the national security and foreign policy interests of the United States, as well as the intellectual property rights and economic competitiveness of United States entities;(4)the United States Government, in cooperation with private owners of closed-source artificial intelligence models, should take steps to identify, punish, and deter model extraction attacks on the protected capabilities of closed-source artificial intelligence models by persons of concern;(5)model extraction attacks against United States closed-source artificial intelligence models allow foreign adversaries a short cut to acquiring advanced artificial intelligence capabilities; and(6)authorized model training practices that adhere to the terms of service or are otherwise consistent with contractual terms set by the owners of closed-source artificial intelligence models are a legitimate research method that play an important role in artificial intelligence research and are fundamentally distinct from model extraction attacks addressed by this Act.3.DefinitionsIn this Act:(1)Appropriate congressional committeesThe term appropriate congressional committees means—(A)the Committee on Foreign Affairs of the House of Representatives; and(B)the Committee on Banking, Housing, and Urban Affairs of the Senate.(2)Closed-source artificial intelligence modelThe term closed-source artificial intelligence model means any artificial intelligence model with the following characteristics:(A)Proprietary key technical information, such as underlying model weights, that are necessary to reproduce and independently recreate the model and that are not willingly shared with third parties or otherwise made publicly available by the owner of the model.(B)Access and use governed by terms of service or contractual agreements that are established by the owner of the model.(C)Access that is provided via an application program interface or another consumer-facing, owner-controlled interface without enabling third parties to obtain, modify, or host the closed-source artificial intelligence model on their own data servers or other technology unless specifically authorized by the owner of the model.(3)Country of concernThe term country of concern means—(A)the People’s Republic of China, including the Hong Kong and Macau Special Administrative Regions;(B)the Russian Federation; and(C)any other foreign country—(i)listed in Country Group D:5 in Supplement No. 1 to part 740 of title 15, Code of Federal Regulations, as published on January 1, 2026, that is designated by the Secretary of Commerce as a country of concern for purposes of this section and for which notice of such designation has been published in the Federal Register; and(ii)identified by the Secretary of Commerce, acting through the Under Secretary of Commerce for Industry and Security, pursuant to an assessment required by subsection (a) or (e) of section 4.(4)Person of concernThe term person of concern means any foreign person that—(A)is located or headquartered in, or the ultimate parent company of which is headquartered in, a country of concern;(B)is operating under the direction or control of any entity located or headquartered in, or the ultimate parent company of which is headquartered in, a country of concern; or(C)is conducting or attempting to conduct a model extraction attack against closed-source artificial intelligence models owned by United States persons and outside of authorized model training practices.(5)Foreign personThe term foreign person means a person that is not a United States person.(6)Fraudulent account network provider(A)In generalThe term fraudulent account network provider means any foreign person that knowingly and intentionally creates, obtains, maintains, sells, brokers, or otherwise provides access to an account that allows a person of concern to access a closed-source artificial intelligence model that the entity would otherwise be prohibited from accessing as a result of location restrictions in the terms of service or a contractual agreement created by the owner of the model.(B)ExceptionFor purposes of subparagraph (A), an entity that creates or transmits location information to enable persons within countries of concern to access the internet for purposes of freedom of expression is not, on the basis of that activity alone, a fraudulent account network provider.(7)Model extraction attack(A)In generalThe term model extraction attack means the unauthorized extracting of the capabilities of a closed-source artificial intelligence model to replicate, develop, train, or improve another artificial intelligence model, if such extraction—(i)circumvents technical, contractual, or other access controls, identity verification requirements, or geographic access restrictions implemented by the owner of the model;(ii)is conducted through fraudulent, misrepresented, or unauthorized credentials; or(iii)violates the terms, conditions, or restrictions governing access to or use of the model, as established by the owner, that specifically prohibit the use of model outputs or interactions to replicate, develop, train, or improve another artificial intelligence model.(B)Inference of purposeFor purposes of subparagraph (A), the purpose of extraction may be inferred from the totality of circumstances, including—(i)the volume, structure, pattern, coordination, or timing of the extraction activity;(ii)the concentration of extractions on specific model capabilities;(iii)the use of multiple accounts in a coordinated manner; or(iv)the correlation of extraction activity within the development timeline of another artificial intelligence model.(C)ExclusionFor purposes of subparagraph (A), model training activities conducted in compliance with the terms, conditions, and restrictions governing access to and use of a closed-source artificial intelligence model, or otherwise conducted within a permitted exception or the express authorization of the owner of the model, are not model extraction attacks.(8)Operating Committee for Export PolicyThe term Operating Committee for Export Policy means the Operating Committee for Export Policy referred to in section 1763(c) of the Export Control Reform Act of 2018 ( 50 U.S.C. 4822(c) ).(9)OwnerThe term owner means, with respect to a closed-source artificial intelligence model, the person that—(A)holds intellectual property rights (including trade secret, copyright, patent, or other proprietary rights), contractual rights, or a combination thereof, sufficient to authorize or restrict third-party access to, use of, extraction from, or reproduction of the model, or any version, instance, or deployment the model, whether such rights were obtained through development, acquisition, assignment, license, or otherwise; and(B)is a United States person.(10)PersonThe term person means individual or entity.(11)United states personThe term United States person means—(A)a United States citizen or an alien lawfully admitted for permanent residence to the United States;(B)an entity organized under the laws of the United States or any jurisdiction within the United States, including a foreign branch of such an entity; or(C)any person located in the United States.4.Assessment of model extraction attacks and fraudulent account network providers(a)In generalNot later than 180 days after the date of the enactment of this Act, the Secretary of Commerce, acting through the Under Secretary of Commerce for Industry and Security and in coordination with the head of each agency that is a member of the Operating Committee for Export Policy, shall complete an assessment to determine—(1)which, if any, persons of concern have conducted or are currently conducting model extraction attacks against closed-source artificial intelligence models owned by United States persons; and(2)which, if any, persons of concern are fraudulent account network providers.(b)Matters To be includedThe assessment required by subsection (a) shall include the following:(1)A determination of which persons of concern—(A)have either previously or are currently engaging in model extraction attacks; or(B)are fraudulent account network providers.(2)A determination of the countries, if any—(A)from which model extraction attacks have originated; and(B)in which fraudulent account network providers exist.(3)An identification of which, if any, agencies or instrumentalities of governments of countries of concern have provided or are providing material assistance to entities identified pursuant to paragraph (1).(4)An analysis of the methods employed by persons of concern identified pursuant to paragraph (1), including—(A)the role of fraudulent account network providers in model extraction attacks, including, to the extent possible, the physical location of offices and data centers of such providers; and(B)a determination, to the extent possible, of the number of attempted model extraction attacks that occurred during the 2 calendar years preceding the date on which the Secretary of Commerce, acting through the Under Secretary of Commerce for Industry and Security, begins the assessment required by subsection (a).(5)An examination of the strengths and weaknesses of various detection approaches that can be used to determine whether a model extraction attack has occurred or is occurring.(6)An assessment of the economic and national security consequences of successful model extraction attacks by persons of concern that occurred during the 2 calendar years preceding the date on which the Secretary of Commerce, acting through the Under Secretary of Commerce for Industry and Security, begins the assessment required by subsection (a).(7)Steps detailing how the United States Government is assisting owners of closed-source artificial intelligence models that have been the target or victim of model extraction attacks in detecting model extraction attacks, deterring future model extraction attacks, and punishing persons of concern that engage in model extraction attacks or are fraudulent account network providers.(8)A diplomatic strategy to leverage allies and partners of the United States in detecting and preventing model extraction attacks by persons of concern.(c)Public consultation(1)In generalIn conducting the assessment required by subsection (a), the Secretary of Commerce, acting through the Under Secretary of Commerce for Industry and Security and in coordination with the head of each agency that is a member of the Operating Committee for Export Policy, shall consult with owners of closed-source artificial intelligence models that have been the targets or victims of model extraction attacks, academic experts, industry fora, and other appropriate entities—(A)to identify patterns of behavior and methods of attackers to better inform efforts of the United States Government and the private sector to detect model extraction attacks;(B)to develop best practices for defending against model extraction attacks; and(C)to develop best practices for identifying activities of fraudulent account network providers that facilitate model extraction attacks.(2)Voluntary participationThe participation of owners of closed-source artificial intelligence models described in paragraph (1) in consultations under that paragraph shall be voluntary.(d)Report(1)In generalNot later than 210 days after the date of the enactment of this Act, the Secretary of Commerce, acting through the Under Secretary of Commerce for Industry and Security and in coordination with the head of each agency that is a member of the Operating Committee for Export Policy, shall submit to the appropriate congressional committees a report that contains the findings of the assessment required by subsection (a).(2)UpdatesNot later than one year after submitting the report required by paragraph (1), and annually thereafter for 3 years, the Secretary of Commerce, acting through the Under Secretary of Commerce for Industry and Security, shall submit to the appropriate congressional committees an update to the report listing any additional persons of concern identified pursuant to subsection (a).(3)FormThe report required by paragraph (1), and each update required by paragraph (2), shall be submitted in unclassified form, but may contain a classified annex.(e)Routine assessmentThe Secretary of Commerce, acting through the Under Secretary of Commerce for Industry and Security and in coordination with the head of each agency that is a member of the Operating Committee for Export Policy, shall routinely assess for—(1)model extraction attacks directed against owners of closed-source artificial intelligence models that occur after the date of completion of the assessment required by subsection (a);(2)fraudulent account network providers that facilitate model extraction attacks after that date; and(3)any material changes related to other matters specified in subsection (b).(f)Industry coordinationThe Secretary of Commerce, acting through the Under Secretary of Commerce for Industry and Security and in coordination with the head of each agency that is a member of the Operating Committee for Export Policy, shall establish an information-sharing mechanism that allows owners of closed-source artificial intelligence models to voluntarily, quickly, and confidentially share information about model extraction attacks and fraudulent account network providers with the Department of Commerce.(g)AI model extraction attackers list(1)In generalThe Secretary of Commerce, acting through the Under Secretary of Commerce for Industry and Security and in coordination with the head of each agency that is a member of the Operating Committee for Export Policy, shall—(A)maintain a list, to be known as the AI Model Extraction Attackers List , that displays information about specific persons of concern identified pursuant to an assessment required by subsection (a) or (e) as having conducted or directed model extraction attacks in the past year; and(B)publish the list on a publicly available website of the Department of Commerce.(2)Protection of confidential informationThe Secretary of Commerce, acting through the Under Secretary of Commerce for Industry and Security, may not, in publishing the list required by paragraph (1) on a publicly available website of the Department of Commerce, disclose confidential information provided by the owner of a closed-source artificial intelligence model without the express permission of the owner.(h)Public guidance(1)In generalNot later than 210 days after the date of the enactment of this Act, the Secretary of Commerce, acting through the Under Secretary of Commerce for Industry and Security and in coordination with the head of each agency that is a member of the Operating Committee for Export Policy, shall publish a report comprising of best practices to detect, prevent, and respond to model extraction attacks.(2)Public accessThe report required by paragraph (1) shall be publicly available.(3)Protection of confidential informationIn making the report required by paragraph (1) publicly available, the Secretary may not disclose confidential information provided by the owner of a closed-source artificial intelligence model without the express permission of the owner.5.Deterring model extraction attacks and fraudulent account network providers(a)Consideration of addition to Entity List(1)In generalNot later than 210 days after the date of the enactment of this Act, the Under Secretary of Commerce for Industry and Security, in coordination with the head of each agency that is a member of the End-User Review Committee, shall add each entity described in paragraph (2) to the Entity List maintained by the Bureau of Industry and Security and set forth in Supplement No. 4 to part 744 of title 15, Code of Federal Regulations, or any successor regulations.(2)Entities describedAn entity described in this paragraph is—(A)an entity that is a person of concern identified, under subsection (a) or (e) of section 4, as having conducted model extraction attacks or having facilitated such attacks via fraudulent account networks; or(B)a subsidiary of such an entity (to be determined by ownership of 50 percent or more in the aggregate, directly or indirectly).(b)Imposition of sanctions(1)In generalThe President shall, pursuant to the International Emergency Economic Powers Act ( 50 U.S.C. 1701 et seq. ), block and prohibit all transactions in all property and interests in property of each person of concern identified under subsections (a) and (e) of section 4 if such property and interests in property are in the United States, come within the United States, or are or come within the possession or control of a United States person.(2)Exceptions(A)Exception relating to the provision of humanitarian assistanceSanctions under paragraph (1) may not be imposed with respect to transactions or the facilitation of transactions for—(i)the sale of agricultural commodities, food, medicine, or medical devices;(ii)the provision of humanitarian assistance; or(iii)transporting goods or services that are necessary to carry out operations relating to humanitarian assistance.(B)Exception for intelligence, law enforcement, and national security activitiesSanctions under this subsection shall not apply to any authorized intelligence, law enforcement, or national security activities of the United States.(3)Waiver(A)In generalThe President may, subject to subparagraph (B), waive the application of subsection (a) or (b) with respect to a person if, before issuing the waiver, the President submits to Congress—(i)a certification in writing that the issuance of the waiver is in the national interests of the United States; and(ii)a report explaining the basis for the certification.(B)Form of reportEach report required by subparagraph (A) shall be submitted in unclassified form but may include a classified annex.(4)PenaltiesA person that violates, attempts to violate, conspires to violate, or causes a violation of this subsection or any regulation, license, or order issued to carry out that subsection shall be subject to the penalties set forth in subsections (b) and (c) of section 206 of the International Emergency Economic Powers Act ( 50 U.S.C. 1705 ) to the same extent as a person that commits an unlawful act described in subsection (a) of that section.
Tracker
The tracker indicates the progress of this legislation as it moves through the legislative process.
- Introduced2026-08-05
- Passed Senate
- Passed House
- Conference
- To President
- Became Law
A bill to prevent foreign adversaries from threatening the national security of the United States by extracting key technical features of closed-source, United States-owned artificial intelligence models, and for other purposes.
Sponsors
Sen. Bill Hagerty (R) sponsors S. 5252, and 5 members have co-sponsored it, 3 of them from the day it was introduced.

Sen. · R–TN · Sponsor
Introduced Aug 5, 2026

Sen. · D–NV · Co-sponsor
Joined Aug 5, 2026 · Original

Sen. · D–NJ · Co-sponsor
Joined Aug 5, 2026 · Original

Sen. · R–SC · Co-sponsor
Joined Aug 5, 2026 · Original

Sen. · R–PA · Co-sponsor
Joined Aug 7, 2026

Sen. · D–NH · Co-sponsor
Joined Aug 7, 2026
Committees
S. 5252 went before 1 committee: Banking, Housing, and Urban Affairs.

Actions
S. 5252 has taken 2 actions since Aug 5, 2026.
| Chamber | Action | |||
|---|---|---|---|---|
Aug 5, 2026 | Senate | Read twice and referred to the Committee on Banking, Housing, and Urban Affairs.Banking, Housing, and Urban Affairs Committee | ||
Aug 5, 2026 | — | Introduced in Senate |
Votes
S. 5252 has not gone to a roll call.
Titles
S. 5252 goes by 4 titles, 2 of them short titles.
- BLADE Act — Display Title
- BLADE Act — Short Title(s) as Introduced
- Blocking Large-scale Adversarial Distillation Efforts Act of 2026 — Short Title(s) as Introduced
- A bill to prevent foreign adversaries from threatening the national security of the United States by extracting key technical features of closed-source, United States-owned artificial intelligence models, and for other purposes. — Official Title as Introduced
Classification
The Congressional Research Service files S. 5252 under Foreign Trade and International Finance, one of its 31 policy areas.
CRS Subjects
CRS assigns every bill one policy area from its 31; S. 5252’s is Foreign Trade and International Finance.
s5252/policy-areas.txtSource: congress.gov · legiscan.com