{"id":"https://openalex.org/W4416525385","doi":"https://doi.org/10.48550/arxiv.2506.12484","title":"Robust LLM Unlearning with MUDMAN: Meta-Unlearning with Disruption Masking And Normalization","display_name":"Robust LLM Unlearning with MUDMAN: Meta-Unlearning with Disruption Masking And Normalization","publication_year":2025,"publication_date":"2025-06-14","ids":{"openalex":"https://openalex.org/W4416525385","doi":"https://doi.org/10.48550/arxiv.2506.12484"},"language":"en","primary_location":{"id":"pmh:oai:arXiv.org:2506.12484","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2506.12484","pdf_url":"https://arxiv.org/pdf/2506.12484","source":{"id":"https://openalex.org/S4393918464","display_name":"ArXiv.org","issn_l":"2331-8422","issn":["2331-8422"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},"type":"preprint","indexed_in":["arxiv","datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/2506.12484","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5077209749","display_name":"Filip Sondej","orcid":null},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Sondej, Filip","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5052524986","display_name":"Yushi Yang","orcid":"https://orcid.org/0000-0002-6401-8088"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Yang, Yushi","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5117111008","display_name":"Miko\u0142aj Kniejski","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Kniejski, Miko\u0142aj","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5120466206","display_name":"Marcel Windys","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Windys, Marcel","raw_affiliation_strings":[],"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5077209749"],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.843999981880188,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.843999981880188,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12026","display_name":"Explainable Artificial Intelligence (XAI)","score":0.030799999833106995,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10028","display_name":"Topic Modeling","score":0.02449999935925007,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/normalization","display_name":"Normalization (sociology)","score":0.5863999724388123},{"id":"https://openalex.org/keywords/masking","display_name":"Masking (illustration)","score":0.5479000210762024},{"id":"https://openalex.org/keywords/backward-masking","display_name":"Backward masking","score":0.35409998893737793},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.2987000048160553},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.2199999988079071}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.73089998960495},{"id":"https://openalex.org/C136886441","wikidata":"https://www.wikidata.org/wiki/Q926129","display_name":"Normalization (sociology)","level":2,"score":0.5863999724388123},{"id":"https://openalex.org/C2777402240","wikidata":"https://www.wikidata.org/wiki/Q6783436","display_name":"Masking (illustration)","level":2,"score":0.5479000210762024},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5336999893188477},{"id":"https://openalex.org/C2776817677","wikidata":"https://www.wikidata.org/wiki/Q4839818","display_name":"Backward masking","level":3,"score":0.35409998893737793},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.2987000048160553},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.2985999882221222},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.2199999988079071},{"id":"https://openalex.org/C175291020","wikidata":"https://www.wikidata.org/wiki/Q1156822","display_name":"Offset (computer science)","level":2,"score":0.21559999883174896},{"id":"https://openalex.org/C204321447","wikidata":"https://www.wikidata.org/wiki/Q30642","display_name":"Natural language processing","level":1,"score":0.19689999520778656}],"mesh":[],"locations_count":2,"locations":[{"id":"pmh:oai:arXiv.org:2506.12484","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2506.12484","pdf_url":"https://arxiv.org/pdf/2506.12484","source":{"id":"https://openalex.org/S4393918464","display_name":"ArXiv.org","issn_l":"2331-8422","issn":["2331-8422"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},{"id":"doi:10.48550/arxiv.2506.12484","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2506.12484","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:2506.12484","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2506.12484","pdf_url":"https://arxiv.org/pdf/2506.12484","source":{"id":"https://openalex.org/S4393918464","display_name":"ArXiv.org","issn_l":"2331-8422","issn":["2331-8422"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Language":[0],"models":[1],"can":[2,27],"retain":[3],"dangerous":[4,123],"knowledge":[5],"and":[6,16,39,45,72,95,112,114],"skills":[7],"even":[8,23],"after":[9],"extensive":[10],"safety":[11],"fine-tuning,":[12],"posing":[13],"both":[14],"misuse":[15],"misalignment":[17],"risks.":[18],"Recent":[19],"studies":[20],"show":[21],"that":[22],"specialized":[24],"unlearning":[25,43,70,93],"methods":[26,44],"be":[28],"easily":[29],"reversed.":[30],"To":[31],"address":[32],"this,":[33],"we":[34,60,86],"systematically":[35],"evaluate":[36],"many":[37],"existing":[38],"novel":[40],"components":[41],"of":[42,68,100,122],"identify":[46,87],"ones":[47],"crucial":[48],"for":[49,90,137],"irreversible":[50],"unlearning.":[51,139],"We":[52,102],"introduce":[53],"Disruption":[54,110],"Masking,":[55],"a":[56,134],"technique":[57],"in":[58],"which":[59],"only":[61],"allow":[62],"updating":[63],"weights,":[64],"where":[65],"the":[66,69,73,77,88,92,98,120,127],"signs":[67],"gradient":[71,75],"retaining":[74],"are":[76,83],"same.":[78],"This":[79],"ensures":[80],"all":[81],"updates":[82],"non-disruptive.":[84],"Additionally,":[85],"need":[89],"normalizing":[91],"gradients,":[94],"also":[96],"confirm":[97],"usefulness":[99],"meta-learning.":[101],"combine":[103],"these":[104],"insights":[105],"into":[106],"MUDMAN":[107,125],"(Meta-Unlearning":[108],"with":[109],"Masking":[111],"Normalization)":[113],"validate":[115],"its":[116],"effectiveness":[117],"at":[118],"preventing":[119],"recovery":[121],"capabilities.":[124],"outperforms":[126],"prior":[128],"TAR":[129],"method":[130],"by":[131],"40%,":[132],"setting":[133],"new":[135],"state-of-the-art":[136],"robust":[138]},"counts_by_year":[],"updated_date":"2026-03-07T16:01:11.037858","created_date":"2025-10-10T00:00:00"}
