AI Startup Mercor Hit by Supply Chain Attack Linked to LiteLLM
ID: 2e31b44a-ac07-5693-ba3f-7428e6e8d628
STIX ID: report--2e31b44a-ac07-5693-ba3f-7428e6e8d628
Feed Name: The Cyber Express
Threat Score
Mercor confirmed it was impacted by a supply-chain compromise tied to malicious code in the widely used LiteLLM open-source project; the breach is under investigation, Mercor says it was “one of thousands” affected, attribution has been linked to TeamPCP while extortion claims were made by Lapsus$, and the company engaged third-party forensics to contain the incident though the extent of data exposure remains unclear.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
