English

Where Do Backdoors Live? A Component-Level Analysis of Backdoor Propagation in Speech Language Models

Computation and Language 2026-04-08 v3 Cryptography and Security Sound

Abstract

Speech language models (SLMs) are systems of systems: independent components that unite to achieve a common goal. Despite their heterogeneous nature, SLMs are often studied end-to-end; how information flows through the pipeline remains obscure. We investigate this question through the lens of backdoor attacks. We first establish that backdoors can propagate through the SLM, leaving all tasks highly vulnerable. From this, we design a component analysis to reveal the role each component takes in backdoor learning. We find that backdoor persistence or erasure is highly dependent on the targeted component. Beyond propagation, we examine how backdoors are encoded in shared multitask embeddings, showing that poisoned samples are not directly separable from benign ones, challenging a common separability assumption used in filtering defenses. Our findings emphasize the need to treat multimodal pipelines as intricate systems with unique vulnerabilities, not solely extensions of unimodal ones.

Keywords

Cite

@article{arxiv.2510.01157,
  title  = {Where Do Backdoors Live? A Component-Level Analysis of Backdoor Propagation in Speech Language Models},
  author = {Alexandrine Fortier and Thomas Thebaud and Jesús Villalba and Najim Dehak and Patrick Cardinal and Peter West},
  journal= {arXiv preprint arXiv:2510.01157},
  year   = {2026}
}