Reading the article, the reason proprietary "AI" models didn't work is because they block the kind of code used in attacks to protect themselves. The Chinese models weren't superior, they were just able to be run locally without restriction.
The real story is that agentic attacks live and in the wild.