It's clear that frontier agent swarms are going to be an important cyberweapon for well-resourced groups. Not just governments: organized crime, rebels. It will be feasible to train a deliberately misaligned agent, and to point them at adversaries. We'll have to deal with persistent, ongoing attacks, like we do with DDoS and ransomware attacks today. The limits on this will be intent, hardware cost, and talent.
You need an agent swarm to defend cyber-assets. No way we can respond at human speed.
Another consequence is that every public API with a bug bounty will be pen-tested up til the cost (in expectation) of running the AIs. We already see public AI-discovered vulns being reported to companies.