ended3월 26일· 1 sources

Delve did the security compliance on LiteLLM, an AI project hit by malware

AI 프로젝트 LiteLLM에서 악성코드 발견, 보안 인증은 논란의 스타트업 Delve가 수행

Why it matters

Malware was discovered in LiteLLM, a popular open-source AI proxy project with up to 3.4 million daily downloads, after it infiltrated through a dependency and stole credentials. The malware was found by researcher Callum McMahon when a bug in the malicious code crashed his machine, and was likely 'vibe coded.' Adding to the controversy, LiteLLM's security compliance certifications (SOC2 and ISO 27001) were conducted by Delve, a Y Combinator startup accused of generating fake compliance data.

1
Sources
+0
24h
Growth
176d
Active
LiteLLMDelvemalwareSOC2vibe codedY Combinator

Sources

Related Issues