Security News > 2024 > May > New Attack Against Self-Driving Car AI
The shade of red on a stop sign could look different on each line depending on the time between the diode flash and the line capture.
The result is the camera capturing an image full of lines that don't quite match each other.
Because it's full of lines that don't match, the classifier doesn't recognize the image as a traffic sign.
This meant an unrecognizable image wasn't just a single anomaly among many accurate images, but rather a constant unrecognizable image the classifier couldn't assess, and a serious security concern.
The researchers developed two versions of a stable attack.
GhostStripe2 is targeted and does require access to the vehicle, which could perhaps be covertly done by a hacker while the vehicle is undergoing maintenance.
News URL
https://www.schneier.com/blog/archives/2024/05/new-attack-against-self-driving-car-ai.html