Snehal Antani, co-founder and CEO of Horizon3.ai, former CTO of Splunk, and previously a technologist with US Special Operations, on NodeZero — an autonomous pentester that runs continuously in production, chaining exploits from reconnaissance through domain compromise. In August 2025 the company reported NodeZero was the first AI to fully solve the Game of Active Directory benchmark, and in May 2026 it published a paper claiming formal Lean 4 safety proofs that the agent cannot degrade security posture (company-reported, not independently audited). The recurring question: if you build an AI that's genuinely good at attacking, does that help defenders or attackers? The hosts pressed on proliferation (why "defenders run it first" is enough when the same capabilities spread fast), what formal proofs do and don't guarantee, and the offense-defense balance twelve months out.