Mercor says it was hit by cyberattack tied to compromise of open source LiteLLM project
Summary
Mercor, an AI recruiting startup, has confirmed it was affected by a supply chain attack involving the open-source project LiteLLM. The company is one of thousands potentially impacted by the compromise, which was linked to a group known as TeamPCP. While the hacking group Lapsus$ has claimed responsibility for a data breach at Mercor and shared sample data, the company has not confirmed the extent of the impact or whether customer data was exfiltrated. Mercor is currently working with third-party forensics experts to investigate the incident and remediate the situation.
(Source:TechCrunch)