AIIC AI Intelligence Centre

SOURCE-LINKED INTELLIGENCE

Cross-Session Decomposition Attacks: Scaling Risk and Intent-Aligned Retrieval Defense

arXiv · AI, language, vision and robotics · article · Aug 28, 2026 · UTC

Scaling laws are usually read as a capability story: lower language-modeling loss yields more useful models. We study a safety consequence of this mechanism in \emph{cross-session decomposition attacks}, where benign-looking subqueries are asked across independent interactions and later recomposed toward a forbidden objective. We formalize this setting as \emph{compositional safety risk} and prove a conditional risk-transfer bound: when the reference environment already contains dispersed evidence for a risky reconstruction, the gap between deployed composed risk and reference composed risk is

Read original source ↗ Open in workspace

recordType
paper
region
Global

Evidence & attribution

First collected: 2026-09-21T08:21:55.975Z. This is not the publication date.