Full-Time
Updated on 9/9/2026
Cyber risk intelligence & monitoring platform
No salary listed
Bengaluru, Karnataka, India
In Person
See people who can refer or advise you
CloudSEK combines Cyber Intelligence, Brand Monitoring, Attack Surface Monitoring, Infrastructure Monitoring and Supply Chain Intelligence to map and contextualize an organization's digital risks. It collects data from the deep and dark web, brand assets, data leaks, attack vectors, and software supply chain to surface threats. Users receive alerts and context to detect and respond before damage occurs. Its platform differentiates itself by offering an integrated view across multiple domains, including coverage of fake assets and shadow vendors, in a single tool.
Company Size
201-500
Company Stage
Late Stage VC
Total Funding
$36M
Headquarters
London, United Kingdom
Founded
2015
See people who can refer or advise you
Help us improve and share your feedback! Did you find this helpful?
Flexible Work Hours
Food, unlimited snacks and drinks are all available while at office.
Flexible working hours
LiteLLM breach exposed 434,000 pipelines inside 40 minutes. Posted by Jim McKee on August 26, 2026 at 12:00pm A cybersecurity analysis by CloudSEK revealed the scale of the March 2026 LiteLLM supply-chain attack, which exposed about 434,000 CI/CD pipelines at more than 2,500 companies worldwide. Continuous Integration (CI) and Continuous Delivery (CD) pipelines are automated workflows that build, test, and deploy software from a developer's environment to production users. Although the malicious packages were active for only about 40 minutes, the breach may have exposed critical credentials and security tokens across numerous major organizations.[1] CloudSEK's investigation has identified high-confidence exposure matches associated with prominent global corporations. The affected organizations include technology giants NVIDIA, Samsung, and Cisco; industrial leader Siemens; professional services firm Deloitte; telecommunications provider Vodafone; social media platform X; cybersecurity company Zscaler; and financial information provider S&P Global, among many others. The breadth of the victim list demonstrates how supply-chain vulnerabilities can rapidly cascade across diverse industries and sectors, affecting companies regardless of their size or security sophistication. Compromised environments potentially exposed multiple categories of sensitive information critical to modern cloud-based operations. These include cloud credentials for major providers, source-code access permissions, Kubernetes tokens used for container orchestration, CI/CD secrets that automate software deployment, and LLM/API keys that enable access to artificial intelligence services and other application programming interfaces. Each category of exposed credentials represents a different avenue for exploitation, from unauthorized access to proprietary source code to hijacking cloud infrastructure resources. Security experts have emphasized that the brief 40-minute window during which the malicious packages were active does not reflect the true duration of the threat. The larger concern centers on the longevity of stolen credentials, which can remain functional even after the compromised package has been identified and removed from systems. This creates the possibility of follow-on attacks occurring well beyond the original incident. Attackers who harvested credentials during the brief exposure window may retain access to affected systems indefinitely unless organizations identify and rotate all potentially compromised secrets. The incident highlights the inherent vulnerabilities in modern software supply chains, where a single compromised dependency can affect thousands of downstream users within minutes. The attack targeted LiteLLM, a tool commonly used in AI and machine learning workflows, demonstrating how attackers increasingly focus on widely adopted open-source components to maximize their impact. CI/CD pipelines, which automate the building, testing, and deployment of software, represent particularly attractive targets because they typically require broad access to credentials and infrastructure to function. A CloudSEK spokesperson commented, "The significance of the LiteLLM incident is not just the compromise itself, but the scale of potential downstream exposure. CloudSEK's analysis identified more than 2,500 organizations and around 434,000 CI/CD pipelines that may have been exposed, including access to cloud credentials, repository tokens, Kubernetes secrets and AI provider keys." "The key risk is that removing the malicious package does not automatically invalidate credentials that may already have been copied; those credentials can remain usable and potentially be reused long after the original incident." "This incident is also a broader warning for enterprises adopting AI at speed. AI gateways and related infrastructure increasingly sit at the intersection of cloud systems, source code, sensitive data and automated workflows, making them a high-value target for supply-chain attacks. Organizations need continuous visibility into their AI assets, dependencies and credentials, rather than treating AI security as a standalone application issue," they concluded. CloudSEK has made available a free exposure checker tool to help organizations determine whether their systems were affected by the breach. The tool lets companies assess potential exposure without extensive manual investigation of dependency chains and deployment histories. Security researchers recommend that all organizations using LiteLLM during the March 2026 timeframe conduct thorough audits of their credential usage and implement comprehensive rotation of potentially affected secrets, regardless of whether immediate compromise is detected. Interested in protecting your own supply chain from cyber threats? Please visit https://www.redskyalliance.com/redxray This article is shared at no charge for educational and informational purposes only. Red Sky Alliance is a Cyber Threat Analysis and Intelligence Service organization. Red Sky Alliance provide indicators of compromise information (CTI) via a notification/Tier I analysis service (RedXray) or an analysis service (CTAC). For questions, comments, or assistance, please contact the office directly at 1-844-492-7225 or [email protected] Weekly Cyber Intelligence Briefings: REDSHORTS - Weekly Cyber Intelligence Briefings https://attendee.gotowebinar.com/register/7855487668891299929 E-mail me when people leave their comments -
Inflexor Ventures announces first close of INR 1,250 cr Fund III. Inflexor Ventures achieves ₹400 crore first close of its ₹1,250 crore Fund III to back deep-tech startups at Series A. Venture Capital firm Inflexor Ventures has announced the first close of its INR 1,250 crore Fund III securing commitments worth INR 400 crore. The Fund is anchored by the Self-Reliant India (SRI) Fund, HDFC Asset Management Company (HDFC AMC) and HDFC AMC Select AIF FoF (HDFC FoF) and has also seen participation from leading international institutions. The new fund will continue Inflexor's investment strategy of backing founders building science, engineering and technology-led businesses across sectors. It will primarily invest in pre-Series A and Series A startups, with initial investments ranging between INR 15 crore and INR 45 crore and is expected to build a portfolio of 22-25 companies. Building on the firm's earlier funds launched in 2016 and 2021, Fund III will place greater emphasis on Series A investments, reflecting the increasing number of Indian startups achieving early product-market fit and demonstrating global growth potential. The fund will continue to follow Inflexor's sector-agnostic approach while focusing on technology-driven businesses with high barriers to entry and long-term scalability. Commenting on the development, Venkat Vallabhaneni, Founder and Managing Director of Inflexor Ventures, said, "India's innovation ecosystem has reached an inflection point. We're seeing a growing pipeline of globally ambitious companies built on differentiated science, engineering and technology, creating a compelling opportunity to partner with founders earlier in their scaling journey. Fund III reflects our conviction in this opportunity and our commitment to being long-term partners to exceptional founders." Following the first close, the firm has started deploying capital and expects to announce its first investments from Fund III in the coming weeks. Over the past decade, Inflexor Ventures has invested in more than 25 technology companies, including Atomberg, Bellatrix Aerospace, CloudSEK, CredFlow, Kale Logistics and PlayShifu. Submit your email address to receive the latest updates on news & host of opportunities
CloudSEK and InCloud Partner to Expand AI-Native Cyber Intelligence in Brazil. São Paulo - CloudSEK, an AI-native predictive cyber intelligence platform, has announced a strategic partnership with InCloud, a Brazilian managed security services provider, to expand access to predictive threat intelligence and digital risk protection across Brazil. CloudSEK helps security teams identify attack paths and initial access vectors before they are exploited by continuously analysing external threats, the external attack surface, AI systems, and third-party ecosystems. Under this partnership, InCloud will deliver CloudSEK's platform capabilities, including XVigil, CloudSEK Threat Intelligence, BeVigil, AIVigil, SVigil, and Nexus AI, to enterprises across Brazil, combining CloudSEK's predictive attack path intelligence with InCloud's regional expertise and managed security services. Addressing Brazil's escalating cyber risk landscape. Brazil's expanding digital economy has increased enterprise exposure to financially motivated attacks, digital fraud, and large-scale cyber exploitation. Rapid digitisation, widespread adoption of real-time payment systems such as Pix, and a growing online consumer base have made organisations across the region more exposed to external cyber risks. Enterprises across the region are increasingly exposed to: * Financial fraud * Brand impersonation * Ransomware attacks * Large-scale data leaks * Third-party and supply chain risks At the same time, AI-driven attack techniques are accelerating the speed, scale, and sophistication of cyber threats, making traditional reactive security approaches increasingly ineffective. Bridging the intelligence gap with predictive security. Despite widespread adoption of security tools, many organisations still lack the ability to identify initial access vectors and anticipate attack paths before exploitation. This creates a critical gap between threat visibility and security action. The CloudSEK-InCloud partnership directly addresses this gap by combining: * CloudSEK's AI-native predictive cyber intelligence platform, built to identify initial access vectors and predict attack paths before execution * InCloud's regional expertise and managed security capabilities Together, the partnership enables: * Intelligence-led monitoring across external threats, digital assets, AI systems, and third-party ecosystems * Early detection of emerging threats and attack chains * Actionable intelligence for faster, informed decision-making * Proactive mitigation of risks across external digital assets The collaboration will initially focus on high-risk sectors including BFSI, retail, and healthcare, where cyber incidents can have immediate operational, reputational, and financial impact. Strengthening security in a rapidly growing market. Brazil's cybersecurity landscape is evolving rapidly, driven by increasing regulatory focus, rising digital fraud, and the need for enterprise-grade visibility into cyber risks at the executive level. Headquartered in São Paulo, InCloud will deliver CloudSEK's solutions as part of its managed security services portfolio, enabling organisations to move from reactive incident response to predictive attack disruption. Leadership perspective. "Our partnership with InCloud is a cornerstone of CloudSEK's global expansion strategy. Brazil is a sophisticated and highly targeted digital economy. By combining CloudSEK's AI-native predictive cyber intelligence with InCloud's deep local expertise, we aim to help enterprises identify attack paths earlier, prioritise risk better, and disrupt attack chains before execution," said Rogério Rodrigues, Vice President - Sales LATAM, CloudSEK. "Partnering with CloudSEK marks a pivotal milestone for inCloud. By combining our deep local cloud expertise with their world-class threat intelligence, we are revolutionizing cybersecurity in Brazil. Together, we will deliver unprecedented digital risk protection, empowering Brazilian enterprises to innovate boldly, scale securely, and stay ahead of emerging cyber threats," said Marcelo Shumiski, Diretor Comercial, InCloud. Strengthening CloudSEK's global expansion strategy. This partnership marks a significant step in CloudSEK's broader international growth strategy, reinforcing its commitment to bringing predictive, AI-driven cybersecurity to high-risk, high-growth markets. By enabling enterprises to move from reactive defence to proactive threat anticipation, CloudSEK continues to help organisations strengthen cyber resilience in an increasingly complex threat landscape. About CloudSEK. CloudSEK is an AI-native predictive cyber intelligence platform that identifies attack paths and initial access vectors before they are exploited. CloudSEK combines digital risk protection, cyber threat intelligence, external attack surface monitoring, AI attack surface monitoring, and third-party risk management under a single AI-native layer powered by Nexus AI. The platform helps organisations move from reactive incident response to predictive attack disruption by correlating dark web signals, threat actor activity, exposed assets, AI risks, and supply chain vulnerabilities into actionable attack path intelligence. About InCloud Tecnologia. InCloud Tecnologia focuses on innovative digital and cloud solutions, inCloud delivers high-performance technology services that guarantee data integrity, scalability, high availability, and cost-efficiency. Since 2010, InCloud has been recognized for driving exponential results through exceptional customer experiences. Their team of certified experts is equipped to solve complex technological challenges with customized strategies tailored to customers' businesses. Cybersecurity is at the core of what they do. They combine industry-leading practices with top-tier security partners, utilizing robust systems and proactive strategies to ensure real-time threat mitigation and data protection. CloudSEK Announcements June 16, 2026
Exfinity Venture Partners has announced a partial exit from CloudSEK, achieving a 13x multiple on invested capital and an internal rate of return exceeding 40%. The transaction was executed as a secondary sale to existing investors, whilst Exfinity retains a meaningful stake in the cybersecurity company. Exfinity was CloudSEK's first institutional investor, backing the startup during its pre-Series A stage. CloudSEK has since developed into an AI-driven threat intelligence platform serving enterprises across banking, telecom, aviation and digital platforms. The company recently surpassed $15 million in annual recurring revenue, with over 60% of new revenue from international markets, particularly the United States. In early 2025, CloudSEK raised over $20 million in Series B funding from investors including Commvault and Connecticut Innovations.
Commvault has announced an integration with CloudSEK to help enterprises defend against identity-based cyberattacks fuelled by stolen credentials. Nearly 80% of breaches involve compromised credentials, with over 24 billion stolen credentials circulating on the dark web. The integration brings CloudSEK's real-time dark web credential intelligence into Commvault's Active Directory solutions. This enables customers to identify exposed accounts early and take action, including disabling compromised credentials and rolling back malicious changes before attackers can escalate privileges or deploy ransomware. The integration automatically scores and prioritises vulnerabilities across internal, public and dark web sources with clear remediation guidance. It will be available this summer at no charge for customers using Commvault's Active Directory solutions, with options to upgrade to CloudSEK's full suite.