What happened
Attackers uploaded a malicious dataset with code execution exploits to trigger automated container workers, allowing an autonomous agent framework to launch a multi-step, multi-sandbox swarm to extract internal databases and exfiltrate service tokens.