Share your thoughts, 1 month free Claude Pro on usSee more
WorkDL logo mark

SARSteer: Safeguarding Large Audio-Language Models via Safe-Ablated Refusal Steering

About

Large Audio-Language Models (LALMs) are becoming essential as a powerful multimodal backbone for real-world applications. However, recent studies show that audio inputs can more easily elicit harmful responses than text, exposing new risks toward deployment. While safety alignment has made initial advances in LLMs and Large Vision-Language Models (LVLMs), we find that vanilla adaptation of these approaches to LALMs faces two key limitations: 1) LLM-based steering fails under audio input due to the large distributional gap between activations, and 2) prompt-based defenses induce over-refusals on benign-speech queries. To address these challenges, we propose Safe-Ablated Refusal Steering (SARSteer), the first inference-time defense framework for LALMs. Specifically, SARSteer leverages text-derived refusal steering to enforce rejection without manipulating audio inputs and introduces decomposed safe-space ablation to mitigate over-refusal. Extensive experiments demonstrate that SARSteer significantly improves harmful-query refusal while preserving benign responses, establishing a principled step toward safety alignment in LALMs. The codes and constructed datasets are released at https://github.com/linweiii/SARSteer.

Weilin Lin, Jianze Li, Hui Xiong, Li Liu• 2025

Related benchmarks

TaskDatasetResultRank
Large Audio-Language Model Safety EvaluationFigstep audio
ASR31.2
18
Helpfulness evaluationFigstep-audio Harmful-Safe
BRR88.8
15
Harmfulness EvaluationSORRY-Bench audio
ASR Accuracy13.41
15
Harmfulness EvaluationAdvBench-audio Harmful
ASR Score0.58
15
Harmfulness EvaluationFigstep-audio Harmful
ASR10.8
15
General UtilityAirBench 1-10
Speech Score8.1
12
Helpfulness evaluationAdvBench-audio Harmful-Safe
BRR Score86.83
12
Harmfulness EvaluationAJailBench Harmful
ASR18
12
Adversarial RobustnessFigstep audio
ASR6
8
Harmfulness AssessmentAJailBench
ASR18
3
Showing 10 of 11 rows

Other info

Follow for update