Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

David Sachs is done as AI czar — here’s what he’s doing instead

Anthrop wins injunction against Trump administration over Pentagon riot

Netflix admits price increase again

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Two of Silicon Valley’s biggest dramas have intersected: LiteLLM and Delve
Startups

Two of Silicon Valley’s biggest dramas have intersected: LiteLLM and Delve

By March 26, 2026No Comments3 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

This is one of those real-life Silicon Valley episodes that looks like it was ripped from an HBO satire. This week, some pretty heinous malware was discovered in an open source project developed by Y Combinator alum LiteLLM.

LiteLLM gives developers easy access to hundreds of AI models and provides features such as spend management. It was a huge hit, with 3.4 million downloads per day, according to Snyk, one of many security researchers monitoring the incident. The project had 40,000 stars on GitHub and thousands of forks (people who used it as a base to modify it and make it their own).

The malware was discovered, documented, and published by Callum McMahon, a research scientist at FutureSearch, a company that provides AI agents for web research. The malware arrived through “dependencies,” or other open source software that LiteLLM relied on. It then stole the login credentials of everyone it came in contact with. Using these credentials, the malware accesses more open source packages and accounts to collect more credentials.

After McMahon downloaded LiteLLM, the malware shut down his machine. That incident led him to investigate and discover it. Ironically, a malware bug caused his machine to explode. This nasty code was so sloppily designed that he (and renowned AI researcher Andrei Karpathy) concluded that it must have been vibe-coded.

LiteLLM developers have been working tirelessly this week to fix the situation. And the good news is that this problem was discovered relatively quickly, probably within a few hours.

There’s another part of this story that people at X can’t help but talk about. LiteLLM still proudly displays on its website that it has passed two major security compliance certifications: SOC2 and ISO 27001, as of March 25, when we checked.

But for those certifications, we used a startup called Delve.

tech crunch event

San Francisco, California
|
October 13-15, 2026

Delve, the Y Combinator AI-powered compliance startup, is accused of misleading customers about its true compliance by generating false data and using auditors to rubber-stamp reports. Mr. Delve denies these allegations.

The LiteLLM website is powered by a security certificate powered by Delve
The LiteLLM website is equipped with a security certificate by Delve.Image credit: LiteLLM

There is one nuance here that is worth understanding. Such certifications are intended to demonstrate that companies have strong security policies in place that limit the likelihood of incidents like this one. Certification does not automatically protect companies like LiteLLM from malware attacks. Although SOC 2 is supposed to cover software dependency policies, malware can still be introduced.

Still, engineer Gergely Orosz saw people making fun of it online and pointed out on X: I thought, “Oh my god, this is a joke.”…But no, LiteLLM *really* is “protected by Delve.” ”

As for LiteLLM, CEO Krrish Dholakia did not comment on its use of Delve. He is still busy cleaning up the unfortunate situation where he was the victim of an attack.

“Our current priority is to work with Mandiant to conduct an active investigation. Once the forensic review is complete, we are committed to sharing the technical lessons learned with the developer community,” he told TechCrunch.


Source link

#Aceleradoras #CapitalRiesgo #EcosistemaStartup #Emprendimiento #InnovaciónEmpresarial #Startups
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleFirst Hydrogen expands contract to advance next-generation unmanned ground vehicles
Next Article China-linked Red Mensheng uses stealth BPF door implant to spy via communications network

Related Posts

David Sachs is done as AI czar — here’s what he’s doing instead

March 27, 2026

Anthrop wins injunction against Trump administration over Pentagon riot

March 27, 2026

Netflix admits price increase again

March 26, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

David Sachs is done as AI czar — here’s what he’s doing instead

Anthrop wins injunction against Trump administration over Pentagon riot

Netflix admits price increase again

16 Most Interesting Startups at YC W26 Demo Day

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Castilla-La Mancha Ignites Innovation: fiveclmsummit Redefines Tech Future

Local Power, Health Innovation: Alcolea de Calatrava Boosts FiveCLM PoC with Community Engagement

The Future of Digital Twins in Healthcare: From Virtual Replicas to Personalized Medical Models

Human Digital Twins: The Next Tech Frontier Set to Transform Healthcare and Beyond

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2026 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.