CyberIntel ⬡ News
★ Saved ◆ Cyber Reads
← Back ◍ Incident Response & DFIR Jul 08, 2026

Mercor ups cybersecurity after data breach investigation - Staffing Industry Analysts

Staffing Industry Analysts Archived Jul 08, 2026 ✓ Full text saved

Mercor ups cybersecurity after data breach investigation Staffing Industry Analysts

Full text archived locally
✦ AI Summary · Claude Sonnet


    MERCOR UPS CYBERSECURITY AFTER DATA BREACH INVESTIGATION Mercor ups cybersecurity after data breach investigation Jake Tiger | July 8, 2026 MAIN CONTENT Mercor, an AI staffing firm, implemented additional cybersecurity measures after completing an investigation into a data breach in March, the company announced Tuesday. The probe also found that the leak affected few contractors and customers and no employees. The cybersecurity enhancements include an audit of third-party dependencies, more restrictive access policies, penetration testing and constant network monitoring. While the investigation found Mercor employee data was not breached, the company is facing multiple lawsuits from its employees alleging the hack compromised personal information. One of six suits, Esson v. Mercor.io Corp., said the group behind the leak, Lapsus$, stole four terabytes of company data. The San Francisco-based firm was one of thousands of companies affected by the breach, stemming from an attack on LiteLLM, an open-source coding library for popular large-language models. Lapsus$ executed the attack by publishing malicious versions of the software that swiped credentials from any systems that installed them. Mercor said only a “limited subset” of its 5 million experts had sensitive information leaked, and many customers were unaffected by the leak. Wired magazine reported that Meta ceased all work with Mercor when the attack was discovered. Law enforcement, industry experts and multiple cybersecurity firms contributed to the investigation, Mercor said. When contacted for comment, Mercor, which was valued at $10 billion and announced a $350 million series C funding round in October 2025, did not say if it has continued to use LiteLLM since the breach.
    💬 Team Notes
    Article Info
    Source
    Staffing Industry Analysts
    Category
    ◍ Incident Response & DFIR
    Published
    Jul 08, 2026
    Archived
    Jul 08, 2026
    Full Text
    ✓ Saved locally
    Open Original ↗