Section 01
Introduction: Hybrid Random Smoothing Framework—A Breakthrough in Joint Adversarial Robustness Certification for Multimodal Models
This paper proposes the Hybrid Random Smoothing Framework, the first random smoothing technique that can uniformly handle discrete-continuous hybrid inputs. Through Neyman-Pearson joint worst-case analysis, it provides model-agnostic joint adversarial robustness certification for multimodal safety filtering. This framework addresses the problem that traditional single-modal robustness methods cannot handle heterogeneous joint perturbations, unifies the classic methods of Gaussian (continuous) and discrete random smoothing, and provides theoretical guarantees for the safe deployment of multimodal AI systems.