Lifecycle survey reframes LLM security around the full application stack, not the weights
arXiv·medium signal
This survey argues LLM risk no longer arises from model weights alone but from the entire lifecycle and application stack — retrieval pipelines, enterprise assistants, coding environments, tool calls, file writes, and cross-boundary autonomous agents. It catalogs attacks, risks, defenses, and open problems across that stack. A useful map for practitioners threat-modeling agents that read private data and execute code across organizational boundaries.