AI Firm Braintrust Prompts API Key Rotation After Data Breach

https://www.securityweek.com/wp-content/uploads/2023/11/AI_Risks.jpg

AI evaluation and observability platform Braintrust urged customers this week to rotate API keys that may have been compromised after hackers accessed an AWS account.

The incident, the company says, was discovered on May 4, after receiving a report of suspicious behavior, and was communicated to customers via email on May 5. The message also included indicators of compromise (IOCs) and remediation steps.

Immediately after learning of the incident, Braintrust locked down the compromised account, audited related systems and restricted access to them, rotated internal secrets, and launched an investigation into the matter.

The internal AWS account used by its systems, Braintrust says, likely provided the attackers with access to API keys that organizations use to access AI models.

“As a precaution, we recommend that all customers rotate any org-level AI provider keys used with Braintrust,” the company said in an incident notice.

According to the company, at least...

Copyright of this story solely belongs to securityweek.com. To see the full text click HERE

Read more

https://techcrunch.com/wp-content/uploads/2025/06/GettyImages-1480808838.jpg?resize=1200,800

Stability AI releases a new family of audio models called Stability Audio 3.0 that is trained on licensed data; the top model can generate six-minute songs

Sponsor Posts Niantic Spatial: World models need real-world data — Scaniverse is the gateway to spatial services — self-serve and built for AI and robotics. Large-area 3D reconstruction from 360° cameras and precise localization, anywhere machines operate. App Spotlight: Quo for Zoho CRM — App Spotlight brings you hand-picked solutions that enhance your