ended4월 1일· 1 sources

Mercor Becomes Latest Victim of LiteLLM Supply Chain Attack Affecting Thousands

AI 채용 플랫폼 Mercor, 대규모 공급망 공격으로 데이터 유출

Why it matters

Mercor, a $10 billion AI recruiting platform, has been compromised as part of a widespread supply chain attack targeting the popular open-source library LiteLLM, affecting thousands of companies globally. The incident was amplified when the notorious Lapsus$ hacking group claimed involvement and published stolen data samples, revealing potential unauthorized access to sensitive company records and customer interactions. This breach underscores the critical risk enterprises face when relying on third-party open-source components, particularly in the rapidly growing AI sector where security vulnerabilities can have far-reaching consequences.

1
Sources
+0
24h
Growth
172d
Active
MercorLiteLLMsupply chain attackLapsus$data breach

Sources

Related Issues