TL;DR: Looks like there was a server with an unpatched Jenkins instance running, which allowed RCE. [0]
Someone (presumably a developer) was connected to that compromised server via SSH, and had forwarded their SSH agent to it. [1]
Apparently that person had root access to the production servers, allowing the attacker to login via the forwarded agent. Yikes.