Global News Digest

arXiv

Safety Mirage: How Spurious Correlations Undermine VLM Safety Fine-Tuning and Can Be Mitigated by Machine Unlearning

Title: The Safety Mirage: How Spurious Correlations Sabotage VLM Safety Fine-Tuning and How Machine Unlearning Can Fix It

Abstract:

Vision-language models (VLMs) have recently achieved significant progress in generative modeling, especially regarding multimodal inputs such as images and text. Nevertheless, their tendency to produce harmful outputs when presented with unsafe prompts has sparked serious safety concerns. Although existing alignment methods largely depend on supervised safety fine-tuning using curated datasets, we uncover a critical flaw termed the "safety mirage." This phenomenon occurs when supervised fine-tuning inadvertently strengthens spurious correlations between superficial textual cues and safety-related responses, rather than cultivating a deep, intrinsic resistance to harm.

Our analysis demonstrates that these spurious correlations render fine-tuned VLMs susceptible to a straightforward one-word substitution attack. By replacing a single word in a text query with an alternative that triggers a spurious correlation, attackers can effectively circumvent safety safeguards. Furthermore, these correlations lead to excessive caution, causing the models to reject harmless queries unnecessarily. To resolve these challenges, we propose machine unlearning (MU) as a robust alternative to supervised safety fine-tuning. MU eliminates biased feature-label mappings and directly excises harmful knowledge from VLMs without compromising their general capabilities. Comprehensive evaluations across various safety benchmarks reveal that MU-based alignment lowers the attack success rate by as much as 60.27% and reduces unnecessary rejections by more than 84.20%.

WARNING: This content includes AI-generated material that may be offensive.


Source: arXiv Generated at: 2026-06-02 00:00:00 UTC

Related Articles

Schroders Renewable Unit Targets AI Assets as Power Demand Soars
Bloomberg

Schroders Renewable Unit Targets AI Assets as Power Demand Soars

Schroders’ renewable unit targets AI infrastructure, pivoting to meet soaring energy demand from artificial intelligence...

State Street's Paglia on SBI Group Partnership, ETFs
Bloomberg

State Street's Paglia on SBI Group Partnership, ETFs

State Street's Paglia discusses the SBI Group partnership and ETFs, but the source text is missing. Please provide the a...

Nvidia Boss Says Workers Should Be Paid ‘as Much as Possible’
Bloomberg

Nvidia Boss Says Workers Should Be Paid ‘as Much as Possible’

Nvidia CEO Jensen Huang advocates for paying workers “as much as possible,” emphasizing maximum compensation. This stanc...

TSE Talking With Regulator For Easing ETF Listing Rules
Bloomberg

TSE Talking With Regulator For Easing ETF Listing Rules

The Tokyo Stock Exchange is discussing with regulators to ease ETF listing rules. This aims to simplify market access an...

S&P DJI CEO on Japan Markets, Mega IPOs
Bloomberg

S&P DJI CEO on Japan Markets, Mega IPOs

S&P DJI CEO discusses Japan's financial markets and major IPOs.