AI security needs a shift from models to systems, researchers argue