5 min read
News Brief Researchers presenting at ICML 2026 have demonstrated that LLMs identify text roles by writing style rather than structure, making it impossible to fully prevent attackers from injecting spoofed reasoning into model chains — affecting GPT-5, Claude, and every other major frontier model.