Model Immunization from a Condition Number Perspective
Zheng, Amber Yijia, Bai, Cedar Site, Bullins, Brian, Yeh, Raymond A.
–arXiv.org Artificial Intelligence
Model immunization aims to pre-train models that are difficult to fine-tune on harmful tasks while retaining their utility on other non-harmful tasks. Though prior work has shown empirical evidence for immunizing text-to-image models, the key understanding of when immunization is possible and a precise definition of an immunized model remain unclear. In this work, we propose a framework, based on the condition number of a Hessian matrix, to analyze model immunization for linear models. Building on this framework, we design an algorithm with regularization terms to control the resulting condition numbers after pre-training. Empirical results on linear models and non-linear deep-nets demonstrate the effectiveness of the proposed algorithm on model immunization. The code is available at https://github.com/amberyzheng/model-immunization-cond-num.
arXiv.org Artificial Intelligence
May-30-2025
- Country:
- Europe
- Denmark (0.04)
- Poland (0.04)
- United Kingdom > England
- Cambridgeshire > Cambridge (0.04)
- North America
- Canada (0.04)
- United States
- District of Columbia > Washington (0.04)
- Massachusetts > Middlesex County
- Cambridge (0.04)
- Europe
- Genre:
- Research Report (0.63)
- Technology: