AI & ML Practical Magic

You can trick a scanner into seeing a totally different car just by clipping a basic, boring accessory to your license plate.

April 6, 2026

Original Paper

Street-Legal Physical-World Adversarial Rim for License Plates

Nikhil Kalidasu, Sahana Ganapathy

arXiv · 2604.02457

The Takeaway

It shows that sophisticated computer vision systems can be defeated by inexpensive physical objects that do not look suspicious to humans. This has immediate implications for privacy and the reliability of automated traffic surveillance.

From the abstract

Automatic license plate reader (ALPR) systems are widely deployed to identify and track vehicles. While prior work has demonstrated vulnerabilities in ALPR systems, far less attention has been paid to their legality and physical-world practicality. We investigate whether low-resourced threat actors can engineer a successful adversarial attack against a modern open-source ALPR system. We introduce the Street-legal Physical Adversarial Rim (SPAR), a physically realizable white-box attack against t