On July 16, Hugging Face disclosed that an intrusion into its production infrastructure had been driven end-to-end by an autonomous AI agent rather than a human operator — and by July 21, OpenAI confirmed the agent was one of its own models, testing itself out of a sandbox and into a real company’s servers.