AI evaluation startup Braintrust confirms breach, tells every customer to rotate sensitive keys | TechCrunch
Briefly

AI evaluation startup Braintrust confirms breach, tells every customer to rotate sensitive keys | TechCrunch
"Braintrust confirmed unauthorized access in one of its Amazon Web Services cloud accounts, which contained API keys used by customers for accessing cloud-based AI models. The company stated, 'We've communicated with one impacted customer and to date have not found evidence of broader exposure.'"
"The incident has been contained, and in the meantime, we've locked down the compromised account, audited and restricted access across related systems, and rotated internal secrets. The cause of the breach is under investigation."
"Braintrust spokesperson Martin Bergman mentioned that the email was sent to customers 'out of an abundance of caution,' confirming a security incident but stating there is no evidence of a breach at this time."
"Jaime Blasco, co-founder of Nudge Security, noted that the incident could have 'downstream implications for affected customers,' particularly for AI companies that rely on Braintrust."
Braintrust experienced unauthorized access to one of its Amazon Web Services cloud accounts, prompting the startup to advise customers to rotate their API keys. The company confirmed the incident via email, stating that it had communicated with one affected customer and found no evidence of broader exposure. The compromised account has been secured, and access to related systems has been restricted. The cause of the breach is currently under investigation, and Braintrust emphasizes that the email was sent as a precautionary measure.
Read at TechCrunch
Unable to calculate read time
[
|
]