{"id":233649,"date":"2026-04-09T19:33:54","date_gmt":"2026-04-09T19:33:54","guid":{"rendered":"https:\/\/entertainment.runfyers.com\/index.php\/2026\/04\/09\/after-data-breach-10b-valued-startup-mercor-is-having-a-month-techcrunch\/"},"modified":"2026-04-09T19:33:54","modified_gmt":"2026-04-09T19:33:54","slug":"after-data-breach-10b-valued-startup-mercor-is-having-a-month-techcrunch","status":"publish","type":"post","link":"https:\/\/entertainment.runfyers.com\/index.php\/2026\/04\/09\/after-data-breach-10b-valued-startup-mercor-is-having-a-month-techcrunch\/","title":{"rendered":"After data breach, $10B-valued startup Mercor is having a month | TechCrunch"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p id=\"speakable-summary\" class=\"wp-block-paragraph\">Six months ago, Mercor was flying high <a href=\"https:\/\/techcrunch.com\/2025\/10\/27\/mercor-quintuples-valuation-to-10b-with-350m-series-c\/\" target=\"_blank\" rel=\"noopener\">after raising a massive $350 million Series C<\/a> that valued the AI data training startup at $10 billion. But after admitting <a href=\"https:\/\/techcrunch.com\/2026\/03\/31\/mercor-says-it-was-hit-by-cyberattack-tied-to-compromise-of-open-source-litellm-project\/\" target=\"_blank\" rel=\"noopener\">on March 31 that it was the target of a data breach<\/a>, the company has been facing a world of trouble.<\/p>\n<p class=\"wp-block-paragraph\">Since then, a hacker group has claimed to have obtained 4TB of stolen data from Mercor\u2019s systems, including candidate profiles, personally identifiable information, employer data, source code, and API keys. Mercor has not commented on the authenticity of the data, reiterating only that it is investigating and \u201cwill continue to communicate with our customers and contractors directly as appropriate and devote the resources necessary to resolving the matter as soon as possible.\u201d<\/p>\n<p class=\"wp-block-paragraph\">Mercor said its data breach was <a href=\"https:\/\/techcrunch.com\/2026\/03\/26\/delve-did-the-security-compliance-on-litellm-an-ai-project-hit-by-malware\/\" target=\"_blank\" rel=\"noopener\">the result of a hack of the open source tool LiteLLM<\/a>. This tool is so popular that it\u2019s downloaded millions of times a day. For 40 minutes, the tool harbored credential harvesting malware \u2014 rogue software that could steal login credentials. Those credentials were used to gain access to more software and accounts, which it used to harvest more credentials, and so on.<\/p>\n<p class=\"wp-block-paragraph\">While there have been no formal acknowledgments of how much data was scooped up from Mercor, there have been repercussions all the same. Meta has paused its contracts with Mercor indefinitely, <a href=\"https:\/\/www.wired.com\/story\/meta-pauses-work-with-mercor-after-data-breach-puts-ai-industry-secrets-at-risk\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">sources told Wired<\/a>. (Mercor declined to comment to TechCrunch about this.)<\/p>\n<p class=\"wp-block-paragraph\">Like other contract AI data training companies, Mercor handles some of the model makers\u2019 biggest trade secrets: the custom data sets and processes they use to teach their models. This is so important to them that even after Meta spent <a href=\"https:\/\/techcrunch.com\/2025\/08\/29\/cracks-are-forming-in-metas-partnership-with-scale-ai\/\" target=\"_blank\" rel=\"noopener\">$14.3 billion on Mercor\u2019s competitor Scale AI<\/a>, it continued working with Mercor.<\/p>\n<p class=\"wp-block-paragraph\">In a spot of good news for Mercor (maybe\u2026we\u2019ll see): OpenAI also confirmed to Wired that it was investigating its exposure in Mercor\u2019s breach, but said it had not paused or ended its contracts at the time. However, TechCrunch has heard from multiple sources that other large model makers may also be weighing their relationships with Mercor after the breach, although we have not confirmed enough details to name names as of yet. <\/p>\n<p class=\"wp-block-paragraph\">In the meantime, five of Mercor\u2019s contractors have filed lawsuits, <a href=\"https:\/\/www.businessinsider.com\/mercor-lawsuits-data-breach-2026-4\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Business Insider reports<\/a>, over their alleged personal data exposure. Whether these suits represent a serious threat or are just opportunistic and a nuisance remains to be seen. (Mercor declined to comment.)<\/p>\n<div class=\"wp-block-techcrunch-inline-cta\">\n<div class=\"inline-cta__wrapper\">\n<p>Techcrunch event<\/p>\n<div class=\"inline-cta__content\">\n<p>\n\t\t\t\t\t\t\t\t\t<span class=\"inline-cta__location\">San Francisco, CA<\/span><br \/>\n\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"inline-cta__separator\">|<\/span><br \/>\n\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"inline-cta__date\">October 13-15, 2026<\/span>\n\t\t\t\t\t\t\t<\/p>\n<\/p><\/div>\n<\/p><\/div>\n<\/div>\n<p class=\"wp-block-paragraph\">One lawsuit, reviewed by TechCrunch, even named LiteLLM and Delve as defendants. This is wild, and perhaps a stretch, but here\u2019s the connection: LiteLLM used AI compliance startup Delve to obtain its security certifications. Delve <a href=\"https:\/\/techcrunch.com\/2026\/04\/01\/the-reputation-of-troubled-yc-startup-delve-has-gotten-even-worse\/\" target=\"_blank\" rel=\"noopener\">has been accused <\/a>by an anonymous whistleblower of allegedly faking data for security certifications and using rubber-stamping auditors.<\/p>\n<p class=\"wp-block-paragraph\">A security certification does not directly prevent hackers from launching successful attacks, but it is intended to ensure that companies have processes in place to minimize such threats.<\/p>\n<p class=\"wp-block-paragraph\">Although Delve has denied those allegations while simultaneously instituting operational changes, it has been in a world of hurt of its own, <a href=\"https:\/\/techcrunch.com\/2026\/04\/04\/embattled-startup-delve-has-parted-ways-with-y-combinator\/\" target=\"_blank\" rel=\"noopener\">to the point where Y Combinator severed ties<\/a> with the company.<\/p>\n<p class=\"wp-block-paragraph\">LiteLLM<a href=\"https:\/\/techcrunch.com\/2026\/03\/30\/popular-ai-gateway-startup-litellm-ditches-controversial-startup-delve\/\" target=\"_blank\" rel=\"noopener\"> ditched Delve<\/a> and is now working with another AI compliance startup to obtain its security certifications again. LiteLLM also published <a href=\"https:\/\/docs.litellm.ai\/blog\/security-update-march-2026\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">a complete report<\/a> on the security incident.<\/p>\n<p class=\"wp-block-paragraph\">But Mercor itself was not a Delve customer, the company confirmed to TechCrunch. If, however, the fallout for Mercor continues, a lot of revenue could be at stake. The company was reportedly on pace to hit over $1 billion in annualized revenue earlier this year before the data leak, an <a href=\"https:\/\/www.theinformation.com\/briefings\/exclusive-mercor-hit-1-billion-annualized-revenue-breach\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">anonymous source told The Information.<\/a><\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/techcrunch.com\/2026\/04\/09\/after-data-breach-10b-valued-startup-mercor-is-having-a-month\/\" target=\"_blank\" rel=\"noopener\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Six months ago, Mercor was flying high after raising a massive $350 million Series C that valued the AI data training startup at $10 billion. But after admitting on March 31 that it was the target of a data breach, the company has been facing a world of trouble. Since then, a hacker group has [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":233650,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[14],"tags":[],"class_list":{"0":"post-233649","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-tech"},"_links":{"self":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/233649","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/comments?post=233649"}],"version-history":[{"count":0,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/233649\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media\/233650"}],"wp:attachment":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media?parent=233649"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/categories?post=233649"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/tags?post=233649"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}