logo

AI Startup Mercor Hit by Supply Chain Attack Linked to LiteLLM

ID: 2e31b44a-ac07-5693-ba3f-7428e6e8d628

STIX ID: report--2e31b44a-ac07-5693-ba3f-7428e6e8d628

Feed Name: The Cyber Express

Threat Score
72/100

Date Published: 2026-04-01

Date Updated: 2026-04-23

Author: Ashish Khaitan

...
...

Mercor confirmed it was impacted by a supply-chain compromise tied to malicious code in the widely used LiteLLM open-source project; the breach is under investigation, Mercor says it was “one of thousands” affected, attribution has been linked to TeamPCP while extortion claims were made by Lapsus$, and the company engaged third-party forensics to contain the incident though the extent of data exposure remains unclear.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.