The AI security arms race is already hereModern frontier models can now analyze codebases, identify logical flaws, and suggest exploit paths at a speed no human researcher can match. AdvertisementAmador estimated in June 2026 that defenders now face a 3-4 year recovery window before they can match the advantage that frontier AI models have given to attackers. When AI models can mass-produce vulnerability reports, including low-quality submissions that still require human review, the economics of bug bounty programs break down. The term “AI model tokens” in this context refers to API usage credits, not cryptocurrency tokens. Each query to a frontier AI model consumes tokens, and complex code analysis burns through them quickly.