Valued at $10 billion, AI data company Mercor confirms a major data breach involving clients such as OpenAI, Anthropic, and others.

robot
Abstract generation in progress

Deep Tide TechFlow message, April 03, according to Fortune, Mercor, a startup that provides training data to AI companies such as OpenAI, Anthropic, and Meta, has confirmed it suffered a major security vulnerability. The incident was caused by a supply chain attack targeting the open-source library LiteLLM, which is widely used by developers to connect AI services, with daily downloads reaching several million times.

The attack was launched by the hacker group TeamPCP, which inserted malicious code into LiteLLM to steal credentials. Another hacker group, Lapsus$, later claimed to have obtained up to 4TB of Mercor data, including source code, database records, internal Slack communications, and platform chat video recordings, among other things. According to unverified reports, some customers’ datasets and their confidential AI project information may have been exposed. Mercor said it quickly took steps to contain the situation and has initiated a third-party forensic investigation.

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin