Mercor Data Breach Halts Meta AI Work
Analysis based on 9 articles · First reported Apr 03, 2026 · Last updated Apr 05, 2026
The security breach at Mercor, a critical AI data vendor, has led to Meta Platforms pausing its collaboration and other major AI labs reevaluating their partnerships. This incident highlights significant vulnerabilities in the AI supply chain, potentially impacting the valuations of AI infrastructure companies and increasing scrutiny on third-party vendor security.
Mercor, a San Francisco-based AI data startup valued at $10 billion, suffered a major security breach via a supply chain attack involving a poisoned version of the LiteLLM open-source library. This breach may have exposed proprietary training methodologies for large language models, affecting Mercor's clients including Meta Platforms, OpenAI, and Anthropic. Meta Platforms has indefinitely paused its collaboration with Mercor, leading to immediate job insecurity for contractors working on Meta projects. Other AI labs are reevaluating their relationships with Mercor. The incident has triggered broader investigations across the AI industry, underscoring the critical importance of data security and the vulnerabilities inherent in relying on third-party vendors and open-source infrastructure for AI development. TeamPCP is identified as the likely attacker.
Set up alerts, explore entity relationships, search across thousands of events, and build custom intelligence feeds.
Open Dashboard