"Adversarial perturbations" reliably trick AIs about what kind of road-sign they're seeing

That’s already possible without “AI”.
They are usually called “trains”.

9 Likes