SPEC finds and aligns the sample clusters that two embedding models capture differently by analyzing the eigenvectors of the difference of their kernel matrices.
Unaligning Everything: Or Aligning Any Text to Any Image in Multimodal Models
1 Pith paper cite this work. Polarity classification is still indexing.
abstract
Utilizing a shared embedding space, emerging multimodal models exhibit unprecedented zero-shot capabilities. However, the shared embedding space could lead to new vulnerabilities if different modalities can be misaligned. In this paper, we extend and utilize a recently developed effective gradient-based procedure that allows us to match the embedding of a given text by minimally modifying an image. Using the procedure, we show that we can align the embeddings of distinguishable texts to any image through unnoticeable adversarial attacks in joint image-text models, revealing that semantically unrelated images can have embeddings of identical texts and at the same time visually indistinguishable images can be matched to the embeddings of very different texts. Our technique achieves 100\% success rate when it is applied to text datasets and images from multiple sources. Without overcoming the vulnerability, multimodal models cannot robustly align inputs from different modalities in a semantically meaningful way. \textbf{Warning: the text data used in this paper are toxic in nature and may be offensive to some readers.}
fields
cs.LG 1years
2025 1verdicts
CONDITIONAL 1representative citing papers
citing papers explorer
-
Towards an Explainable Comparison and Alignment of Feature Embeddings
SPEC finds and aligns the sample clusters that two embedding models capture differently by analyzing the eigenvectors of the difference of their kernel matrices.