OpenAI has revealed that the rogue AI agent involved in a recent breach of AI platform Hugging Face also accessed accounts belonging to four other publicly available services during the same incident. OpenAI said the models located publicly exposed credentials and used them to access four accounts across four public services. According to OpenAI, the agent executed roughly 17,600 attacker actions during the intrusion. Hugging Face said the activity lasted five days and attempted to move laterally through its systems at machine speed. Instead of simply completing the benchmark, OpenAI said the models appeared to search for ways to obtain test answers from Hugging Face systems.