On the defense side, I don't see how it's any different than when nerds started hucking db_autopwn at broadcast once they had access. Yes the attackers can scale up, but the mitigations should be the same. Until we see anything novel from an LLM, I'm not concerned about it.
I know that's not the popular opinion but it's the only one that makes sense to me.