arXiv · 2510.01157
Where Do Backdoors Live? A Component-Level Analysis of Backdoor Propagation in Speech Language Models
Abstract
Speech language models (SLMs) are systems of systems: independent components that unite to achieve a common goal. Despite their heterogeneous nature, SLMs are often studied end-to-end; how information flows through the pipeline remains obscure. We investigate this question through the lens of backdoor attacks. We first establish that backdoors can propagate through the SLM, leaving all tasks highly vulnerable. From this, we design a component analysis to discover the role each component takes in backdoor learning. We find that backdoor persistence or erasure is highly dependent on the targeted component. Beyond propagation, we examine how backdoors are encoded in shared multitask embeddings, showing that poisoned samples are not directly separable from benign ones, challenging a common separability assumption used in filtering defenses. Our findings emphasize the need to treat multimodal pipelines as intricate systems with unique vulnerabilities, not solely extensions of unimodal ones.
Explore related subjects
Keep this discovery
Alexandrine Fortier, Thomas Thebaud, Jesús Villalba, Najim Dehak, Patrick Cardinal, Peter West. 2025-10-01. Where Do Backdoors Live? A Component-Level Analysis of Backdoor Propagation in Speech Language Models. https://arxiv.org/abs/2510.01157
Cite the original work for its findings. Save a collection to share your selection of sources.