At Berkeley's Agentic AI Summit, Andrew Ng said open-weight models look safer to him than closed ones after he used Moonshot's Kimi K3 and Zhipu's GLM-5.2 to security-review the OpenWorker agent when OpenAI and Anthropic systems refused the task, SCMP reported. The paper also noted Hugging Face recently leaned on GLM-5.2 while defending against attacks involving OpenAI models. The argument flips the usual US claim that open Chinese weights are the risk. It matters because refusals meant for cyber misuse can also block defensive security work. Caveat: the piece rests on conference remarks, not a controlled safety benchmark.