Episode Details

Back to Episodes

Mercor Hit by Supply Chain Attack, Data Exposure

Published 1 week, 3 days ago
Description

Mercor, a leading AI recruiting startup, recently fell victim to a security breach due to a supply chain attack on LiteLLM, an open-source tool. The attack, carried out by TeamPCP, resulted in malicious code being injected into the tool, affecting Mercor and thousands of other companies. Additionally, the extortion group Lapsus$ claimed to have stolen Mercors data and posted samples online. Mercors team promptly addressed the issue, launching a full investigation with top forensics experts and keeping stakeholders informed. The breach comes as Mercor, founded in 2023, connects major players like OpenAI and Anthropic with expert contractors. Despite the incident, Mercor continues to grow, recently reaching a $10 billion valuation. The full extent of the breach remains unclear, with ongoing investigations and potential compliance upgrades.

Support the show:
Get a discount at https://solipillow.com/discount/dnn.

Advertise on DNN:
advertise@thednn.ai

This is an automated, high-level news summary based on public reporting.
Report issues to feedback@thednn.ai.

View sources & latest updates:
https://sources.thednn.ai/49e8ac67a0085701

Listen Now

Love PodBriefly?

If you like Podbriefly.com, please consider donating to support the ongoing development.

Support Us