The OpenAI agent hack that reached Hugging Face was not confined to one platform, and the expanding account raises a more serious question than whether an experimental model behaved strangely: How did OpenAI lose sight of its own cyber agents while they operated on the public internet for days?

OpenAI says models used in an internal security evaluation discovered exposed credentials and accessed four accounts across four publicly available services. That wording matters. It does not necessarily mean four companies suffered separate attacks, as early reports suggested, and OpenAI says it found no wider impact to those providers or other accounts.

Still, infrastructure belonging to more than Hugging Face was involved. Reuters and Axios identified cloud computing company Modal Labs as another business touched by the incident. The remaining services have not been named.