← Cockpit
234_046predictionAIAI-scaling

AI vs AI will dominate cybersecurity, not humans

Predictor: Dave Blundin · ep#234 "Anthropic vs. The Pentagon, Claude Outpaces ChatGPT, and Consulting Gets Replaced" · source

Prior probability
60.0%
Current probability
46.7%
evolves via intake + LBP
Conviction
4/5
Signal quality
B
Resolution
pending
Window
2026-06-01 – 2026-06-30
Edges in / out
10 / 5
Tickers exposed
37

Prediction text

AI vs AI will dominate cybersecurity, not humans | the pace at which they can probe around is so much higher than any human could ever defend against. So it's it's clearly AI against AI in cyber security.

Verbatim quote

From episode "Anthropic vs. The Pentagon, Claude Outpaces ChatGPT, and Consulting Gets Replaced"
the pace at which they can probe around is so much higher than any human could ever defend against. So it's it's clearly AI against AI in cyber security.

Predictor: Dave Blundin

κ + Brier as of 2026-05-22
κ (discount)
0.821
Brier
0.0491
excellent
Hits / Misses
3 / 2
of 9 resolved
Hit rate
33.3%
Calibration plot (stated vs observed)

Evidence about this node from Dave Blundin is multiplied by κ in /api/intake. Lower κ = less weight; floors at 0.10 (effectively silenced) and caps at 1.00 (full weight).

Reference class

Not linked

This node isn't linked to a reference class. The Bayesian update applies without outside-view blending.

Probability over time

3 prob_history rows
0%25%50%75%100%prior 60%2026-04-302026-04-302026-05-02
intake v2milestone miss sweeplbp propagationreference class assignedlegacy v1prior_prob (analyst seed)current = 46.7%

Milestone chain

Pre-event signals (upstream prereqs + window checkpoints) → resolution event → downstream cascades. Status/dates update from linked nodes; re-derive nightly via scripts/ops/derive_milestones.py.
Leading chain: 6 fired ✓ · 1 overdue ⏱ · 1 pending
  1. 2026-04-30hitProduction deployment of autonomous SOC AI agents at major enterprise
    How: At least one Fortune 500 company publicly discloses replacement of L1 SOC analyst tier with autonomous AI agents handling triage and response without human-in-the-loop on routine cases
    Source: ISC2 — AI-Driven Defense and Autonomous Attacksconf 85%
    Notes: HIT — ISC2 confirms autonomous agents handling SOC triage in production.
  2. 2025-01-01 → 2026-06-30overdueFirst documented agentic AI cyberattack in the wild
    How: Public incident report (e.g., from Mandiant, CrowdStrike, Microsoft Threat Intel) documents an attack where adversary used multi-step agentic AI to autonomously plan, adapt, and execute the intrusion
    Source: Major threat intelligence reportsconf 75%
    Notes: Pace continues to escalate; Conifers/Palo Alto reports describe agentic attacks as emerging.
  3. 2025-11-15hitPalo Alto Networks declares 2026 'Year of the Defender' with autonomous AI
    How: Major security vendor (Palo Alto, CrowdStrike, SentinelOne) publishes 2026 prediction explicitly framing the year as AI-vs-AI dominant in cybersecurity
    Source: Palo Alto Networks — 2026 Cybersecurity Predictionsconf 95%
    Notes: HIT — Palo Alto Networks formally framed 2026 as 'Year of the Defender' driven by AI-vs-AI dynamics.
  4. 2025-06-01 → 2026-12-31pendingMajor ransomware attack attributed to LLM-driven adversary
    How: Public attack causing >$100M damage where forensics conclude attacker used LLM/agentic AI to scale phishing, exploitation, or lateral movement
    Source: Trend Micro / Mandiant / FBI IC3 reportsconf 60%
    Notes: Cascade — The attacker side of the AI-vs-AI dynamic.
  5. 2026-06-01 → 2027-12-31pendingAI security spend overtakes traditional SIEM/SOAR spend
    How: Gartner, IDC, or Forrester reports show enterprise spend on AI-native security platforms exceeds spend on traditional SIEM+SOAR for the first time
    Source: Gartner Hype Cycle / IDC Worldwide Security Spending Guideconf 55%
    Notes: Cascade — Validates the structural shift Blundin describes.

What if this resolves?

Clamp this prediction TRUE or FALSE and run a counterfactual Gibbs sample. Surfaces the predictions whose marginals shift most under that assumption.
(live posterior: 47%)

Click a button to clamp this prediction and run a Gibbs sample. Returns the predictions whose marginals shift most. ~30s per run; ideal for stress-testing "if X resolves, what else moves?"

Evidence chain

Every probability update with full Bayesian provenance — chronological, latest first
metadata_milestone_miss_sweep2026-05-02T22:07:21Z46.7%-6.2pp
metadata_milestone_miss_sweep bayesian_v2 n=1 inside=0.467 blend=0.467 LLR=-0.250 κ=0.82 no_blend
Raw metadata
{
  "trf": 1,
  "kappa": 0.8214,
  "base_rate": null,
  "predictor": "Dave Blundin",
  "total_llr": -0.4054651081081644,
  "grace_days": 7,
  "bayesian_v2": true,
  "prior_logit": 0.11775131857612457,
  "bayes_factor": "1.3:1 against",
  "blend_reason": "no reference_class linked",
  "inside_prior": 0.5294038628653677,
  "kappa_source": "predictor_table",
  "n_milestones": 1,
  "blend_applied": false,
  "contributions": [
    {
      "llr": -0.4054651081081644,
      "kind": "llm_pre_event",
      "kappa": 0.61605,
      "label": "First documented agentic AI cyberattack in the wild",
      "weight": 0.4,
      "strength": "weak",
      "confidence": 0.75,
      "source_url": null,
      "adjusted_llr": -0.24978677985003467,
      "expected_date": "2025-09-30",
      "measurement_criterion": "Public incident report (e.g., from Mandiant, CrowdStrike, Microsoft Threat Intel) documents an attack where adversary used multi-step agentic AI to autonomously plan, adapt, and execute the intrusion"
    }
  ],
  "evidence_kind": "metadata_milestone_miss_sweep",
  "inside_source": "history_v2",
  "inside_weight": 0.3,
  "outside_weight": 0.7,
  "posterior_prob": 0.4670390058554015,
  "posterior_logit": -0.13203546127391008,
  "predictor_brier": 0.0491,
  "inside_posterior": 0.4670390058554015,
  "blended_posterior": 0.4670390058554015,
  "reference_class_id": null,
  "total_adjusted_llr": -0.24978677985003467,
  "predictor_n_resolved": 9
}
LBP2026-04-30T16:39:51Z52.9%-2.9pp
Network propagation: 55.8% → 52.9%
5-iter LBP, residual 0.00825 · damping 0.5, w_intrinsic 0.5 · method lbp_v2 · run 0c8a4ea3
LBP2026-04-30T02:18:57Z55.8%-4.2pp
Network propagation: 60.0% → 55.8%
5-iter LBP, residual 0.00825 · damping 0.5, w_intrinsic 0.5 · method lbp_v1 · run 592311ef

Network propagation neighbors

Top edges sorted by latest LBP cross-impact
All propagation →

Top incoming (parents)

Edges that influence THIS node's belief

KindNodeTheir probP(c|s=T)P(c|s=F)Δ implied
killerTK03
AI Regulatory Moratorium (EU/US Capability Freeze)
10.0%0.0500.600+0.078
killerTK02
AI Compute Supply Shock (TSMC/Taiwan Disruption)
12.0%0.0500.600+0.067
killerTK09
Energy Grid Cap (Data Center Power Wall)
35.0%0.0500.600-0.060
prereqSEM_014
Nvidia's Arizona-based TSMC factory successfully fabricated Jensen Huang
86.1%0.6000.050+0.052
killerTK01
AGI Capability Plateau (2026-27 Training Stall)
15.0%0.0500.600+0.050

Top outgoing (children)

Predictions THIS node influences

KindNodeTheir probP(c|s=T)P(c|s=F)Δ implied
prereq248_040
Pausing AI will fail and only accelerate race dynamics.Alex Wissner-Gross
53.0%0.9200.050-0.068
prereq247_023
AI will be able to do everything a white collar worker does Dave Blundin
40.8%0.7200.050-0.040
prereq242_031
Most large companies' business models will be disrupted in 2Peter Diamandis
36.1%0.6500.050-0.027
prereq244_019
Peter's son won't need a driver's license in 2 yearsPeter Diamandis
48.4%0.9200.050-0.022
prereq232_055
We're exiting the industrial age permanently as recursive sePeter Diamandis
35.5%0.7000.050+0.003

Ticker exposure

37 ticker(s) linked

Beneficiaries (24)

MUWULFIRENEQIXALABAPLDASMIYASMLPLABNVDANBISCRWVAAPLAMTAMZNDELLGOOGLIRMLNVGYMETAMSFTORCLSFTBYSTX

Adverse (6)

ACNGENCHGGIBMWNSLRN

Prerequisites (10)

Predictions that must hit first
TypePredTitleDomainLag
prereqSEM_011Nvidia became the world's first $5 trillion company (late 2025), operating a near-monopoly on advanced AI chips.Capital Markets
prereqSEM_027Nvidia Data Center revenue +66% YoY, contributing ~90% of $57B fiscal Q3 revenue; >$4.5T market cap entirely underpinned by AI silicon.Capital Markets
prereqSEM_014Nvidia's Arizona-based TSMC factory successfully fabricated cutting-edge semiconductors on US soil for first time in decades (October 2025).Manufacturing
prereqSEM_012Nvidia quadrupled chip production output while only doubling human headcount — achieved by deploying AI coding tools (Cursor, Claude Code) across engineering.AI/Manufacturing
prereqSEM_015Nvidia agreed to remit 15% of China chip-sale revenue directly to US government in exchange for reversing specific AI chip export bans.Policy/Semis
killerTK09Energy Grid Cap (Data Center Power Wall)
killerTK05Rate Regime Persistence (10y > 5% through 2028)
killerTK01AGI Capability Plateau (2026-27 Training Stall)
killerTK02AI Compute Supply Shock (TSMC/Taiwan Disruption)
killerTK03AI Regulatory Moratorium (EU/US Capability Freeze)

Dependents (5)

Predictions enabled by this
TypePredTitleDomainLag
prereq244_019Peter's son won't need a driver's license in 2 yearsAuto/Transport
prereq248_040Pausing AI will fail and only accelerate race dynamics.AI
prereq247_023AI will be able to do everything a white collar worker does imminentlyAI
prereq232_055We're exiting the industrial age permanently as recursive self-improvement unfolds.AI
prereq242_031Most large companies' business models will be disrupted in 2-5 yearsMarkets/Stocks

Linked documents (2)

Auto-generated by cosine similarity from Polymarket / Manifold / EDGAR / GDELT
SimSourceTitleMarket probPolarityReviewedPublished
0.696manifoldWill there be many more cyber vulnerabilities in 2027 due to AI?67%mentionspending2026-05-16
0.695manifoldWhen will we see terrorism against AI?mentionspending2026-04-27

Raw metadata

From Thesis_Timeline_v1.0_FINAL workbook
{
  "nia": false,
  "url": "https://www.youtube.com/watch?v=dmtvGKuRE64",
  "mode": "THESIS",
  "role": "Host",
  "context": "A human in the loop at the pace that like you know just the clawbots or the u open claws now the pace at which they can probe around is so much higher than any human could ever defend against. So it's it's clearly AI against AI in cyber security.",
  "to_year": 2026,
  "verbatim": "the pace at which they can probe around is so much higher than any human could ever defend against. So it's it's clearly AI against AI in cyber security.",
  "conv_cues": "clearly",
  "direction": "HAPPEN",
  "from_year": 2026,
  "timeframe": "Near-term",
  "conv_level": "HIGH",
  "milestones": [
    {
      "kind": "llm_pre_event",
      "label": "Production deployment of autonomous SOC AI agents at major enterprise",
      "notes": "HIT — ISC2 confirms autonomous agents handling SOC triage in production.",
      "source": "ISC2 — AI-Driven Defense and Autonomous Attacks",
      "status": "hit",
      "weight": 0.4,
      "ordinal": -8,
      "source_id": null,
      "confidence": 0.85,
      "source_url": "https://www.isc2.org/insights/2026/04/ai-driven-defense-and-autonomous-attacks",
      "expected_date": "2025-09-30",
      "observed_date": "2026-04-30",
      "research_origin": "deep_research",
      "expected_date_range": {
        "to": "2026-06-30",
        "from": "2025-01-01"
      },
      "measurement_criterion": "At least one Fortune 500 company publicly discloses replacement of L1 SOC analyst tier with autonomous AI agents handling triage and response without human-in-the-loop on routine cases"
    },
    {
      "kind": "llm_pre_event",
      "label": "First documented agentic AI cyberattack in the wild",
      "notes": "Pace continues to escalate; Conifers/Palo Alto reports describe agentic attacks as emerging.",
      "source": "Major threat intelligence reports",
      "status": "overdue",
      "weight": 0.4,
      "ordinal": -7,
      "source_id": null,
      "confidence": 0.75,
      "expected_date": "2025-09-30",
      "miss_emitted_at": "2026-05-02T22:07:21.384228+00:00",
      "miss_emitted_by": "metadata_milestone_sweep",
      "research_origin": "training",
      "expected_date_range": {
        "to": "2026-06-30",
        "from": "2025-01-01"
      },
      "measurement_criterion": "Public incident report (e.g., from Mandiant, CrowdStrike, Microsoft Threat Intel) documents an attack where adversary used multi-step agentic AI to autonomously plan, adapt, and execute the intrusion"
    },
    {
      "kind": "llm_pre_event",
      "label": "Palo Alto Networks declares 2026 'Year of the Defender' with autonomous AI",
      "notes": "HIT — Palo Alto Networks formally framed 2026 as 'Year of the Defender' driven by AI-vs-AI dynamics.",
      "source": "Palo Alto Networks — 2026 Cybersecurity Predictions",
      "status": "hit",
      "weight": 0.4,
      "ordinal": -6,
      "source_id": null,
      "confidence": 0.95,
      "source_url": "https://www.paloaltonetworks.com/cybersecurity-perspectives/2026-cyber-predictions",
      "expected_date": "2025-12-01",
      "observed_date": "2025-11-15",
      "research_origin": "deep_research",
      "expected_date_range": {
        "to": "2025-12-31",
        "from": "2025-11-01"
      },
      "measurement_criterion": "Major security vendor (Palo Alto, CrowdStrike, SentinelOne) publishes 2026 prediction explicitly framing the year as AI-vs-AI dominant in cybersecurity"
    },
    {
      "kind": "llm_post_event",
      "label": "Major ransomware attack attributed to LLM-driven adversary",
      "notes": "Cascade — The attacker side of the AI-vs-AI dynamic.",
      "source": "Trend Micro / Mandiant / FBI IC3 reports",
      "status": "pending",
      "weight": 0.4,
      "ordinal": -5,
      "source_id": null,
      "confidence": 0.6,
      "expected_date": "2026-03-17",
      "research_origin": "training",
      "expected_date_range": {
        "to": "2026-1
... (truncated)