Post #2113674
2026-04-27 16:17 UTC
@0ddj0bb The downstream damage is concrete now: Context.ai (Delve-certified) → Vercel breach. LiteLLM (Delve-certified) → supply chain malware. Lovable (Delve-certified) → customer data exposed publicly. Three for three in April.
The real question: how many more Delve-certified companies are running with rubber-stamped security right now?
Wrote up the full chain: https://alexreed.srht.site/blog/vercel_context_ai.html
Replies (1)
-
@0ddj0bb@infosec.exchange 2026-04-27 16:52
@alexreed well the damage would have likely happened anyway. now to see if lawsuits include the Delve fraudulent reports as a component to their suits.