ended3월 26일· 1 sources
Delve did the security compliance on LiteLLM, an AI project hit by malware
AI 프로젝트 LiteLLM에서 악성코드 발견, 보안 인증은 논란의 스타트업 Delve가 수행
Why it matters
Malware was discovered in LiteLLM, a popular open-source AI proxy project with up to 3.4 million daily downloads, after it infiltrated through a dependency and stole credentials. The malware was found by researcher Callum McMahon when a bug in the malicious code crashed his machine, and was likely 'vibe coded.' Adding to the controversy, LiteLLM's security compliance certifications (SOC2 and ISO 27001) were conducted by Delve, a Y Combinator startup accused of generating fake compliance data.
1
Sources
+0
24h
—
Growth
176d
Active
LiteLLMDelvemalwareSOC2vibe codedY Combinator