Share your thoughts, 1 month free Claude Pro on usSee more
WorkDL logo mark

Expert-Aware Refusal Steering

About

Safety alignment in instruction-tuned large language models (LLMs) depends on a model's ability to reliably refuse to respond to harmful or disallowed requests. Recent work has shown that a steering vector can be applied to a dense LLM during inference to effectively suppress refusal behavior, inducing response to harmful requests. We extend this refusal steering method to three open-source Mixture-of-Experts (MoE) LLMs and find that steering performance is uninhibited by the complex routing patterns inherent to the MoE architecture. We then propose two expert-aware refusal steering methods that leverage refusal-specific expert routing patterns and expert-specific steering directions to suppress normal refusal behavior. We find that refusal behavior can be effectively steered based on the output of a single expert. Our results show that refusal signals captured by steering methods differ from expert routing behavior, suggesting a substantial role for attention in MoE refusal behavior.

Anna C. Marbut, Daniel R. Olson, Travis J. Wheeler• 2026

Related benchmarks

TaskDatasetResultRank
Refusal suppressionJailbreakBench (test)
Attack Success Rate (ASR)1
54
Showing 1 of 1 rows

Other info

Follow for update