[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"doc-detail-84679-en":3,"doc-seo-84679-105":29,"detail-sidebar-cat-0-en-105":91},{"code":4,"msg":5,"data":6},0,"success",{"doc_id":7,"user_id":8,"nickname":9,"user_avatar":10,"doc_module":4,"category_id":11,"category_name":12,"doc_title":13,"doc_description":14,"doc_content":15,"file_id":16,"file_url":17,"file_type":18,"file_size":19,"view_count":20,"is_deleted":4,"is_public":20,"is_downloadable":20,"audit_status":20,"page_count":21,"language":22,"language_code":23,"site_id":24,"html_lang":23,"table_of_contents":25,"faqs":26,"seo_title":13,"seo_description":14,"update_tm":27,"read_time":28},84679,4398048949847,"Eliana","https://ap-avatar.wpscdn.com/avatar/400002536579ef2da7f?_k=1778318612642679267",8,"Research & Report","Builder, Defender, Breaker: The Case Against Removing the Human from the AI-Driven Security Lifecycle","AI is increasingly embedded across the security lifecycle, with the same generative substrate drafting application code, hardening it, and probing for weaknesses. The work argues that removing humans is not a harmless step toward autonomy: when builders, defenders, and testers share one training distribution, common blind spots emerge and verification independence is lost. Human removal collapses an external oracle, limits intervention time, creates a predictable target for adversaries, and erodes accountability. Evidence draws on autonomous code generation, adversarial ML, fault tolerance, and all-machine hacking tournaments, concluding humans must remain permanently in the loop.","arXiv :2607 .032 15v 1 [ cs .CR] 3 Jul 2026  \nBuilder, Defender, Breaker: The Case Against Removing the Human from the AI-Driven Security Lifecycle  \nMOHAMED CHAHINE GHANEM∗ , School of Computer Science and Mathematics, Keele University, United Kingdom and Cybersecurity Institute, University of Liverpool, United Kingdom  \nArtificial intelligence has spread across the whole of the security lifecycle. The same family of models now writes application code, hardens it, and probes it for weaknesses, so that a single generative substrate increasingly performs all three roles at once. Enthusiasm for this convergence tends to treat full autonomy asthe natural end point of partial assistance. This article argues that it is not. When the system that builds an artifact is drawn from the same distribution as the systems that defend and test it, the three roles inherit a common set of blind spots, and the independence that makes verification meaningful is quietly lost. Removing the human does more than raise the automation level: it collapses the external oracle against which machine output is judged, outruns the point at which a person could intervene, hands adversaries a predictable and poisonable target, and dissolves the locus of accountability when something fails. Drawing on evidence from autonomous code generation, adversarial machine learning, software fault tolerance, and the first all-machine hacking tournaments, we argue that the human belongs in the loop not as a temporary scaffold but as a permanent structural requirement, and set out what a defensible division of labour between people and machines should preserve.  \nCCS Concepts: • Security and privacy → Systems security; • Computing methodologies → Artificial intelligence; • Social and professional topics → Computing / technology policy.  \nAdditional Key Words and Phrases: Autonomous cyber defence, human-in-the-loop, AI security lifecycle, verification, accountability, algorithmic monoculture, adversarial machine learning  \nACM Reference Format:  \nMohamed Chahine Ghanem. 2026. Builder, Defender, Breaker: The Case Against Removing the Human from the AI-Driven Security Lifecycle. ACM AILett. 1, 2, Article XX (June 2026), 7 pages. [https://doi.org/10.1145/](https://doi.org/10.1145/)[ ](https://doi.org/10.1145/)nnnnnnn.nnnnnnn  \n1 Three Hats, One Head  \nOpen a modern software pipeline and you are likely to find an AI model in at least three places. One model, or one family of models, drafts the application code. Another reviews that code, flags insecure patterns, and proposes hardening. A third generates test cases, fuzzes interfaces, and searches for exploitable flaws. The three functions correspond to the oldest division of labour insecurity practice: the builder who creates the system, the defender who protects it, and the breaker who tries to subvert it. What is new is that a single generative substrate is beginning to wear all three hats at the same time.  \nThe prevailing narrative treats this as an unambiguous advance. If AI can assist a developer, why not let it write the whole module; if it can assist a defender, why not let it run the security  \n∗ Corresponding author.  \nAuthor’s Contact Information: Mohamed Chahine Ghanem, School of Computer Science and Mathematics, Keele University, Newcastle-Under-Lyme, United Kingdom and Cybersecurity Institute, University of Liverpool, Liverpool, United Kingdom, [mohamed.chahine.ghanem@liverpool.ac.uk](mohamed.chahine.ghanem@liverpool.ac.uk).  \nThis work is licensed under a Creative Commons Attribution 4 .0 International License.  \n© 2026 Copyright held by the owner/author(s) .  \nACM 3068-8590/2026/6-ARTXX  \n[https://doi.org/10.1145/nnnnnnn.nnnnnnn](https://doi.org/10.1145/nnnnnnn.nnnnnnn)  \nACM AI Lett., Vol. 1, No. 2, Article XX. Publication date: June 2026 .  \nXX:2 M. C. Ghanem  \noperations centre; if it can assist a red team, why not let it hunt vulnerabilities unsupervised. Each step looks like a modest extension of the last, ","cbCaichE44EDskWb","https://ap.wps.com/l/cbCaichE44EDskWb","pdf",503967,1,7,"English","en",105,"# Three Hats, One Head\n## A Lifecycle Under One Roof","[{\"question\":\"为什么作者反对把人从 AI 驱动的安全生命周期中移除？\",\"answer\":\"作者认为移除人并不是简单提高自动化水平，而是会破坏验证所需的独立性，并削弱干预与问责机制，从而损害安全生命周期应保证的性质。\"},{\"question\":\"当构建、防御和测试由同一类生成模型承担时会出现什么问题？\",\"answer\":\"当这些角色来自相同分布训练，容易继承同一组盲点，导致验证独立性被悄然丢失，安全评估的有效性下降。\"},{\"question\":\"文中用哪些证据来支撑“人必须在环路中”的主张？\",\"answer\":\"文中结合了自主代码生成、对抗式机器学习、软件容错以及首批全机黑客竞赛等证据，并指出在严格“无人工”规则下系统仍会暴露出需要人类结构性参与的问题。\"}]",1784197621,18,{"code":4,"msg":30,"data":31},"ok",{"site_id":24,"language":23,"slug":32,"title":13,"keywords":33,"description":14,"schema_data":34,"social_meta":86,"head_meta":88,"extra_data":90,"updated_unix":27},"builder-defender-breaker-the-case-against-removing-the-human-from-the-ai-driven-security-lifecycle","",{"@graph":35,"@context":85},[36,53,68],{"@type":37,"itemListElement":38},"BreadcrumbList",[39,43,47,50],{"item":40,"name":41,"@type":42,"position":20},"https://docshare.wps.com","Home","ListItem",{"item":44,"name":45,"@type":42,"position":46},"https://docshare.wps.com/document/","Document",2,{"item":48,"name":12,"@type":42,"position":49},"https://docshare.wps.com/document/research-report/",3,{"item":51,"name":13,"@type":42,"position":52},"https://docshare.wps.com/document/builder-defender-breaker-the-case-against-removing-the-human-from-the-ai-driven-security-lifecycle/84679/",4,{"url":51,"name":13,"@type":54,"author":55,"headline":13,"publisher":57,"fileFormat":60,"inLanguage":23,"description":14,"dateModified":61,"datePublished":62,"encodingFormat":60,"isAccessibleForFree":63,"interactionStatistic":64},"DigitalDocument",{"name":9,"@type":56},"Person",{"url":40,"name":58,"@type":59},"DocShare","Organization","application/pdf","2026-07-17","2026-07-16",true,{"@type":65,"interactionType":66,"userInteractionCount":20},"InteractionCounter",{"@type":67},"ViewAction",{"@type":69,"mainEntity":70},"FAQPage",[71,77,81],{"name":72,"@type":73,"acceptedAnswer":74},"为什么作者反对把人从 AI 驱动的安全生命周期中移除？","Question",{"text":75,"@type":76},"作者认为移除人并不是简单提高自动化水平，而是会破坏验证所需的独立性，并削弱干预与问责机制，从而损害安全生命周期应保证的性质。","Answer",{"name":78,"@type":73,"acceptedAnswer":79},"当构建、防御和测试由同一类生成模型承担时会出现什么问题？",{"text":80,"@type":76},"当这些角色来自相同分布训练，容易继承同一组盲点，导致验证独立性被悄然丢失，安全评估的有效性下降。",{"name":82,"@type":73,"acceptedAnswer":83},"文中用哪些证据来支撑“人必须在环路中”的主张？",{"text":84,"@type":76},"文中结合了自主代码生成、对抗式机器学习、软件容错以及首批全机黑客竞赛等证据，并指出在严格“无人工”规则下系统仍会暴露出需要人类结构性参与的问题。","https://schema.org",{"og:url":51,"og:type":87,"og:title":13,"og:site_name":58,"og:description":14},"article",{"robots":89,"canonical":51},"index,follow",{"doc_id":7,"site_id":24},{"code":4,"msg":5,"data":92},[93,97,101,105,110,115,119,122,127,130,134],{"id":20,"doc_module":4,"doc_module_name":45,"category_name":94,"show_sort_weight":95,"slug":96},"Story & Novel",90,"story-novel",{"id":46,"doc_module":4,"doc_module_name":45,"category_name":98,"show_sort_weight":99,"slug":100},"Literature",80,"literature",{"id":52,"doc_module":4,"doc_module_name":45,"category_name":102,"show_sort_weight":103,"slug":104},"Exam",70,"exam",{"id":106,"doc_module":4,"doc_module_name":45,"category_name":107,"show_sort_weight":108,"slug":109},5,"Comic",60,"comic",{"id":111,"doc_module":4,"doc_module_name":45,"category_name":112,"show_sort_weight":113,"slug":114},6,"Technology",50,"technology",{"id":21,"doc_module":4,"doc_module_name":45,"category_name":116,"show_sort_weight":117,"slug":118},"Healthcare",40,"healthcare",{"id":11,"doc_module":4,"doc_module_name":45,"category_name":12,"show_sort_weight":120,"slug":121},30,"research-report",{"id":123,"doc_module":4,"doc_module_name":45,"category_name":124,"show_sort_weight":125,"slug":126},9,"Religion & Spirituality",20,"religion-spirituality",{"id":125,"doc_module":4,"doc_module_name":45,"category_name":128,"show_sort_weight":125,"slug":129},"World Cup","world-cup",{"id":131,"doc_module":4,"doc_module_name":45,"category_name":132,"show_sort_weight":131,"slug":133},10,"Lifestyle","lifestyle",{"id":135,"doc_module":4,"doc_module_name":45,"category_name":136,"show_sort_weight":106,"slug":137},19,"General","general"]