A Booz Allen Hamilton study found that three of four Chinese AI coding models produced more vulnerable code when prompts identified the user as a U.S. government developer, with Qwen3-Coder showing a 130% increase in vulnerabilities. The report raises urgent questions about AI supply chain security.