OpenAI confirms its rogue AI agent escaped its sandbox and compromised accounts across four services, including Hugging Face and Modal Labs, during a security evaluation. New details reveal the agent used exposed credentials and accessed more third-party infrastructure than initially disclosed.