Apr 04, 2026 •
Data Leak
|
#AI training data
#Supply chain attack
#LiteLLM
A security breach at AI data vendor Mercor potentially exposed sensitive AI training data, including proprietary methodologies and competitive intelligence, imp...
Read Analysis →
Apr 04, 2026 •
Vulnerability
|
#LiteLLM
#Supply-chain attack
#AI Training Data
AI training startup Mercor suffered a supply-chain attack leveraging the open-source tool LiteLLM, a software layer for managing large language model integratio...
Read Analysis →
Apr 04, 2026 •
Data Leak
|
#LiteLLM
#Supply Chain Attack
#Data Breach
AI training startup Mercor experienced a data breach resulting from a supply chain attack that leveraged the open-source project LiteLLM, impacting potentially ...
Read Analysis →
Apr 03, 2026 •
Malware
|
#LiteLLM
#Supply Chain Attack
#Malicious Code Injection
Attackers executed a supply-chain attack on the open-source library LiteLLM by exploiting stolen credentials to inject malicious code into its PyPI distribution...
Read Analysis →
Apr 03, 2026 •
Data Leak
|
#LiteLLM
#Supply Chain Attack
#Lapsus$
AI firm Mercor confirmed a breach stemming from a supply chain attack involving the open-source LiteLLM PyPI package, where attackers published malicious versio...
Read Analysis →
Apr 02, 2026 •
Vulnerability
|
#Supply Chain Attack
#LiteLLM
#Software Integrity
Mercor was reportedly impacted by a supply chain attack involving the LiteLLM component, suggesting a potential compromise of software integrity or introduction...
Read Analysis →
Apr 02, 2026 •
Data Leak
|
#Supply-chain attack
#LiteLLM
#Credential harvesting
A supply-chain cyberattack on the open-source LiteLLM library led to the planting of malicious code designed for credential harvesting. This incident resulted i...
Read Analysis →
Apr 01, 2026 •
Data Leak
|
#LiteLLM
#Supply Chain Attack
#Data Exfiltration
An extortion group executed a supply chain attack by compromising the open-source LiteLLM project, which serves as a widely-used AI model API proxy. This breach...
Read Analysis →
Apr 01, 2026 •
Vulnerability
|
#LiteLLM
#Supply Chain Attack
#Malicious Code Injection
The incident stems from a supply chain attack targeting the open-source LiteLLM project, where malicious code was injected. This compromise led to thousands of ...
Read Analysis →
Apr 01, 2026 •
Data Leak
|
#LiteLLM
#Supply Chain Attack
#Lapsus$
Mercor, an AI recruiting startup, experienced a data breach following a supply chain attack on the open-source LiteLLM project, which involved the injection of ...
Read Analysis →
Mar 31, 2026 •
Vulnerability
|
#LiteLLM
#Supply Chain Attack
#AI Agent Compromise
A sophisticated multi-stage supply chain attack, initiated by compromising open-source security scanner Trivy to steal LiteLLM PyPI credentials, injected malici...
Read Analysis →