|
|
|
|
|
by sagebird
3264 days ago
|
|
It doesn't matter how many algorithms or sensors are consulted or combined to form judgment. If an attacker can obtain a self driving vehicle's hardware, and if enough tests can be performed per seconds, the attacker can train images that fool it. Your idea is similar to an appeal to security through obscurity. Might work sometimes, but not generally. (Noise does not help, because you can still discover a gradient to descend by averaging repeated trials.) |
|