eess.ASJun 2, 2026

Representation Matters in Randomized Smoothing for Audio Classification

Authors: Jong-Ik ParkShreyas ChaudhariJosé M. F. MouraCarlee Joe-Wong

Organizations: Carnegie Mellon University, Pittsburgh, Pennsylvania, USA.

Abstract

Randomized smoothing (RS) certifies robustness in the vector space where Gaussian noise is added. In audio classification, this space is often not uniquely defined as standard pipelines normalize, range-control, and transform waveforms into log-mel or other spectral features. We show that direct RS is therefore under-specified unless the certified object and preprocessing policy are explicit. On two audio benchmarks, keyword spotting and environmental-sound classification, we study waveform, feature-space, and post-processed smoothing. Our diagnostics show why representation-aware reporting is necessary: at the same smoothing level σ=0.0025σ=0.0025, the two datasets share the same median raw radius .007996.007996, but different waveform energies yield different SNR-equivalent scales (83.9883.98 vs. 90.9790.97 dB); log-mel smoothing gives higher positive-radius certified accuracy on environmental sounds (68.42%68.42\% vs. 65.53%65.53\%), certifying more examples with nonzero radius but over features rather than waveforms; and clipping or peak normalization changes the effective perturbation norm by roughly 230230--351×351\times. We therefore recommend that audio RS studies choose and report the task-specific certified object and perturbation model, including the perturbation location, gain policy, raw radius, and any post-noise geometry changes.

Explore similar work

CardsList
  1. RRISE: Robust Radius Inference via a Surrogate Estimator

    Jun 1, 2026Jong-Ik Park, Shreyas Chaudhari, Carlee Joe-Wong +1SmoothingSurrogate Performance

  2. Laplace-Bridged Randomized Smoothing for Fast Certified Robustness

    Apr 27, 2026Miao Lin, MD Saifur Rahman Mazumder, Feng Yu +2SmoothingNoise-Aware