@Satofan44. However, this is presently proving that it is becoming much easier to discover bugs in opensource software by hackers and cyber criminals which creates an argument that because of these increasing discoveries, there will be increasing attacks also.
You didn't fully understand my point, when tools are widely available like this they do not increase anything at all. There is an incentive to use it for defense purposes, and as soon as it is done then the increased number of discoveries for attackers is cancelled with the increased number of discoveries by those who are doing the defense. There is only a temporary imbalance because defenders do not have an incentive as strong as the attackers from the very beginning, but that tends to erode away very quickly. It would only be a real concern if someone discovered a secret "super tool" that nobody else can access and then is utilizing that tool against everyone, by which such an entity maintains its advantage. There is no such tool, relax.
Another argument might be that opensource will become something that proves that the developers of the project is not bad, however, opensource will not be a protection from discovery of bugs to attack because they are being found faster than the community of developers can fix.
False, fixing most of these security bugs is trivial. Only those that require big overhauls are difficult, but usually they relate to issues that are also hard to exploit.
The people that will spend thousands of dollars in AI compute to find these bugs to attack will be the criminals, I reckon.
What about it? Most criminals are not able to weaponize most exploits. Just because someone discovers something, that does not necessarily mean that they can use it or that it can be used at all.