Roei Cohen Dwek
Opinion

Slowing AI isn’t a defense strategy

"Slowing down works only if everyone does it," writes Roie Cohen Duwek, co-founder & CTO at Surf AI. "Any company or country considering restraint has to ask what happens if others continue developing more capable systems. And every other player is making the same calculation."

As AI systems become more capable and autonomous, some of the people closest to the technology are asking whether development is moving too fast. The concerns are legitimate. More capable systems create greater risks of misuse and unexpected behavior, and safety mechanisms need to advance alongside them.
But slowing AI down is not, by itself, a defense strategy.
1 View gallery
Roei Cohen Dwek
Roei Cohen Dwek
Roei Cohen Dwek
(Netanel Tobias)
There is a basic game-theory problem. Slowing down works only if everyone does it. Any company or country considering restraint has to ask what happens if others continue developing more capable systems. And every other player is making the same calculation.
Without a credible way to coordinate and verify restraint globally, we have to assume AI capabilities will continue advancing. That creates an uncomfortable reality: developing increasingly powerful AI carries risks, but so does not developing it while adversaries continue.
For cybersecurity, this matters because AI is changing more than the speed of attacks. It is changing their economics.
Human attackers are constrained by time and expertise. Understanding an environment, finding weaknesses, testing them, and connecting several small vulnerabilities into an attack chain can take hours or days. Many possible attack paths simply aren’t worth that investment.
Autonomous systems change this equation. They can continuously perform reconnaissance, analyze vulnerabilities and permissions, test hypotheses, and look for ways to connect weaknesses. The marginal cost of continuing that exploration can become extremely small.
As a result, attack paths that were previously too difficult or time-consuming to pursue may become viable. Security by obscurity becomes an increasingly weak assumption when machines can relentlessly search for what humans might have overlooked.
This also changes the defensive question. Instead of looking only at how severe an individual vulnerability is, defenders increasingly need to ask: What attack paths can an autonomous attacker actually complete, and where can we break them most effectively?
Sometimes the answer will be patching a vulnerability. But it could also mean revoking a permission, disabling a dormant identity, rotating a credential, restricting access, isolating a system, or applying another compensating control. The objective is not simply to fix every weakness, but to disrupt the attack paths that matter and limit the blast radius when prevention fails.
Humans cannot continuously reason over every identity, permission, vulnerability, system and possible combination across a large enterprise. If attackers can perform that exploration at machine speed, defensive systems increasingly need to as well.
That does not mean removing humans from security decisions. AI can handle the scale, persistence, and complexity that humans cannot realistically manage manually. At the same time, people remain responsible for consequential decisions and establish the boundaries within which autonomous systems can act.
Nor does this mean abandoning AI safety. Guardrails, evaluations, governance and responsible development become more important as AI becomes more powerful.
But they cannot be our only defense. Cybersecurity has always been built around a simple principle - we do not design defenses based on what we hope attackers will do. We design them around what they are capable of doing, and we should approach AI the same way.
The challenge is therefore not to choose between AI progress and AI safety. We need to advance capability, safety, and defense together.
Slowing AI development may reduce some risks. But as long as we cannot assume everyone else will slow down too, we must also prepare for a world in which increasingly capable AI exists.
And if attackers operate at machine speed, defenders will eventually have to do the same.
Roie Cohen Duwek is co-founder & CTO at Surf AI.