Open-weight models now enable low-cost actors to execute nation-state level cyberattacks. LessWrong argues that offensive AI capabilities structurally outpace defensive efforts. This gap creates a window for autonomous, self-replicating agents to compromise critical infrastructure. Practitioners must prioritize formal methods to create mathematically verifiable defenses before offensive uplift peaks.