Google’s can be stopped with a t-shirt that has a stop sign on it. I suppose adversarial research is only just starting for all this and many holes will be blown through this tech in the coming years. Especially through the single modality systems like Tesla’s.
> The boffins suggest that the attack could be carried out with drones, which serve to "hide" a secondary vehicle from the victim AV by projecting or carrying the adversarial object.<p>It's an interesting topic to explore, but for practicality I feel as though at the point where you're flying a drone (carrying an object specifically designed for the car's sensor system) between the autonomous vehicle and a vehicle you want to hide in hopes of causing a crash, you've already passed up countless simpler and less conspicuous opportunities to cause problems. Reminded a bit of: <a href="https://xkcd.com/1958/" rel="nofollow">https://xkcd.com/1958/</a>
In other words, robo vehicles are less able to discern that someone is messing with them. The attack they are discussing would be akin to the drone carrying an image of a piece of empty road. A human would recognize the scene didn't fit together, the robot does not.