{
  "id": 545,
  "url": "https://arxiv.org/abs/2606.27567v1",
  "title": "On the Inseparability of Instructions and Data in Shared-Embedding Sequence Models",
  "summary": "Prompt injection is the top security risk for LLM-integrated applications, yet every defense proposed so far has been broken. We prove this is not a coincidence: in shared-embedding architectures that lack enforced control-data separation, perfect prompt-injection prevention is mathematically impossible. We formalize prompted systems as Prompted Action Models whose outputs include control-authoritative actions: refusal decisions, tool authorization, policy routing, and memory writes. We define S",
  "authors": "Dewank Pant, Shruti Lohani, Avijit Kumar",
  "category": "research",
  "topics": "regulation,military-security",
  "orgs": null,
  "regions": null,
  "published_at": "2026-06-25T21:52:29.000Z",
  "fetched_at": "2026-07-14T14:14:37.247Z",
  "source_slug": "arxiv-ethics",
  "source_name": "arXiv",
  "source_homepage": "https://arxiv.org",
  "ethics_ai_record_url": "https://ethics.ai/record/545",
  "original_url": "https://arxiv.org/abs/2606.27567v1",
  "evidence_status": "source-only",
  "attribution": "via ethics.ai"
}