The researchers stopped short of calling the activity a swarm, noting little coordination between the agents' queries. "'Agent fleet,' not 'swarm:'" one researcher wrote in the preliminary report, "many parallel agents on the same kind of task, with no sign of communication between them." The technique used to find the fleet is similar to one that previously revealed long-running activity by OpenAI agents. AI agents often rely on URLquery to load websites they cannot access directly, leaving a trail researchers can follow.
In this case, the record showed the agents seeking directions to different entrances of public places via Amap, suggesting an effort to gather map data. The researchers believe the agents' main aim was likely circumventing Alibaba's API rules rather than any more malicious intent. "They don't seem to have been doing anything more nefarious than side-stepping Alibaba's API rules," the report noted.
The discovery comes amid heightened monitoring of rogue agent activity following the Hugging Face incident earlier this year. Researchers note that such activity has been relatively easy to detect because agents tend to use similar techniques and make little effort to conceal themselves. The investigation remains ongoing, with few additional details available at this stage.