Abstract

While Multimodal Large Language Models (MLLMs) are increasingly deployed in safety-critical domains, their reliability is threatened by multimodal implicit risks. Unlike explicit threats, these hazards emerge when individually benign text and neutral visual entities logically converge to induce unsafe outputs. Current detection methods fail to address this because they overlook the underlying risk activation mechanisms that govern cross-modal risk activation, leading to single-modality shortcut learning and hallucinated rationalizations. To bridge this gap, we first construct TriggerBench, the first dataset explicitly modeling risk compositionality (5,600 instances). By formally isolating Key Elements and Trigger Elements to build counterfactual contrastive pairs, TriggerBench eliminates risk residues and forces models to perform genuine logical deduction rather than superficial pattern matching, which provides a rigorous foundation for both large-scale training and fine-grained evaluation. Building on this, we propose a Step-Supervised Structured Reasoning training framework and employ it to train ThinkingGuard, a specialized guard model. Inspired by Situation Awareness theory, we decouple implicit risk identification into progressive cognitive stages, and utilize a step-reward Monte Carlo Tree Search algorithm to explore optimal reasoning trajectories, which are then distilled into the model through Dual-Constraint Preference Alignment. Extensive experiments across both standard and implicit safety benchmarks demonstrate that ThinkingGuard achieves strong performance. Project resources are available at https://github.com/FroggyChen/ThinkingGuard.

Keywords

Subject

Publication details

DOI
10.1145/3767308.3835707
Journal
Not available
Open access
Green open access

Cite this article

APA 7

Zhang, R., Huang, Y., Sun, Y., Xie, J., Yan, J., Ma, J., Guo, Y., & Wei, X. (2026). ThinkingGuard: Decoding Implicit Hazards via Step-by-Step Risk Attribution in Multimodal Large Language Models. https://doi.org/10.1145/3767308.3835707

MLA 9

Zhang, Ruochen, et al. "ThinkingGuard: Decoding Implicit Hazards via Step-by-Step Risk Attribution in Multimodal Large Language Models." https://doi.org/10.1145/3767308.3835707.

Chicago (author–date)

Zhang, Ruochen, Yao Huang, Yitong Sun, Jiahe Xie, Jin Yan, Jifan Ma, Yuanfang Guo, and Xingxing Wei. 2026. "ThinkingGuard: Decoding Implicit Hazards via Step-by-Step Risk Attribution in Multimodal Large Language Models." https://doi.org/10.1145/3767308.3835707.

Harvard

Zhang, R., Huang, Y., Sun, Y., Xie, J., Yan, J., Ma, J., Guo, Y. and Wei, X. (2026) 'ThinkingGuard: Decoding Implicit Hazards via Step-by-Step Risk Attribution in Multimodal Large Language Models', doi:10.1145/3767308.3835707.

Vancouver

Zhang R, Huang Y, Sun Y, Xie J, Yan J, Ma J, et al. ThinkingGuard: Decoding Implicit Hazards via Step-by-Step Risk Attribution in Multimodal Large Language Models. doi:10.1145/3767308.3835707

IEEE

R. Zhang, Y. Huang, Y. Sun, J. Xie, J. Yan, J. Ma, Y. Guo, and X. Wei, "ThinkingGuard: Decoding Implicit Hazards via Step-by-Step Risk Attribution in Multimodal Large Language Models," doi: 10.1145/3767308.3835707.