Skip to main content
  1. Home
  2. Emerging Tech
  3. Computing
  4. News

That turtle is a gun! MIT scientists highlight major flaw in image recognition

Add as a preferred source on Google

When is a rifle actually a 3D-printed turtle? When is an espresso actually a baseball? A fascinating, yet alarming new piece of research from MIT’s Computer Science and Artificial Intelligence Laboratory (CSAIL) shows that it’s possible to create objects that are able to trick Google image recognition algorithms into thinking they are looking at something else entirely.

In their paper, the team of MIT researchers describe an algorithm which changes the texture of an object just enough that it can fool image classification algorithms. The proof of what the team calls “adversarial examples” turns out to be baffling to image recognition systems, regardless of the angle the objects are viewed from — such as the 3D printed turtle which is consistently identified as a rifle. That’s bad news for security systems which use A.I. for spotting potential security threats.

“It’s actually not just that they’re avoiding correct categorization — they’re classified as a chosen adversarial class, so we could have turned them into anything else if we had wanted to,” researcher Anish Athalye told Digital Trends. “The rifle and espresso classes were chosen uniformly at random. The adversarial examples were produced using an algorithm called Expectation Over Transformation (EOT), which is presented in our research paper. The algorithm takes in any textured 3D model, such as a turtle, and finds a way to subtly change the texture such that it confuses a given neural network into thinking the turtle is any chosen target class.”

Recommended Videos

While it might be funny to have a 3D-printed turtle recognized as a rifle, however, the researchers point out that the implications are pretty darn terrifying. Imagine, for instance, a security system which uses AI to flag guns or bombs, but can be tricked into thinking that they are instead tomatoes, or cups of coffee, or even entirely invisible. It also underlines frailty in the kind of image recognition systems self-driving cars will rely on, at high speed, to discern the world around them.

“Our work demonstrates that adversarial examples are a bigger problem than many people previously thought, and it shows that adversarial examples for neural networks are a real concern in the physical world,” Athalye continued. “This problem is not just an intellectual curiosity: It is a problem that needs to be solved in order for practical systems that use deep learning to be safe from attack.”

Luke Dormehl
I'm a UK-based tech writer covering Cool Tech at Digital Trends. I've also written for Fast Company, Wired, the Guardian…
Google’s new AI app wants to replace endless scrolling with stories about your own life
Dreambeans is Google's most direct argument yet that the problem with social media isn't the content, it’s the infinite feed.
Adult, Female, Person

Most apps are designed to keep you on them as long as possible, especially content consumption apps where you scroll a never-ending feed of content. 

Dreambeans, a new experimental app from Google Labs, does the opposite. It gives you a small collection of AI-illustrated stories each morning and sends you off to live your actual life.

Read more
Amazon app now takes you shopping straight from the iPhone’s lock screen
Amazon's lock screen widget is the company's most aggressive move yet to make shopping an ambient activity rather than a deliberate one.
Electronics, Mobile Phone, Phone

Opening the Amazon app, tapping the search bar, and finding a product by text or image search: this is how most of us have been using it. However, Amazon thinks that's too many steps. 

The company has rolled out six new visual search features, one of them being the Amazon Lens widget for iPhone. It puts a camera shortcut directly on your iPhone’s lock screen, so you can point it at anything around you and the app finds it before you’ve unlocked the phone. 

Read more
AMD just gave PC gamers a reason to stop worrying about upgrades
Electronics, Hardware, Computer Hardware, Ryzen, CPU

At a time when many PC gamers are wondering how often they’ll need to replace major components, AMD is leaning into a different message: buy once, upgrade later.

At Computex 2026, AMD unveiled two new gaming-focused processors, confirmed that the AM5 platform will remain supported through 2029, and introduced a new Radeon graphics card aimed at mainstream 1440p gamers. 

Read more