Security1 distinct publisher3 min readUpdated
Bill Swearingen ran roughly 31 million tests to produce printable patterns that make detectors ignore what they cover. His best validated result is 61.7 percent non-detection, in simulation.
The Watch · Security desk

Compiled by The WatchSomething wrong?How this is made
A Kansas City researcher spent the past year printing patterns, watching cameras fail to flag them and repeating the process about 31 million times, and TechCrunch reports he can now generate patterns on demand that stop licence plate readers and surveillance cameras from recognising whatever the pattern covers, person or vehicle [1][2]. For anyone operating a camera estate, the failure mode is the awkward part: the recording stays intact and the analytics layer on top of it simply declines to raise a hit [3].
The project is called noRecognition [4]. Bill Swearingen, co-founder of the SecKC meetup, says he started it out of concern about the number of cameras in his town and the possibility of being tracked at a protest [5][6]. What began as manual experimentation became a reinforcement learning loop: every time a pattern was detected, the system adjusted and tried again, eventually learning to defeat several detection algorithms at once rather than one at a time [7][8]. At 31 million tests over a year, that is an average of roughly 85,000 trials a day, which is the real story here [9]. Detection models are cheap to query and cheap to fail against, so an attacker gets as many attempts as compute allows.
The project's own research dashboard is more restrained than the headline. It states the objective as "one pattern that defeats every detector" and concedes that goal is only partially met [10][11]. The strongest validated result against a detector extracted from a real deployed surveillance camera is 61.7 percent non-detection across held-out test subjects [12]. That leaves 38.3 percent of subjects still detected [13], and the dashboard labels most of its headline figures as digital and simulated, tested against a virtual camera and a printed-ink model rather than a real garment photographed in the field [14].
The physical test came at DEF CON in Las Vegas, where Swearingen, with help from Donut Media, wrapped a 2009 Toyota Yaris in one of his newest patterns and ran it against a Flock camera, the sort widely deployed for automated licence plate reading across the US [15][16]. "We proved it was effective," he said, though the wheels were a challenge, curved surfaces being less cooperative with flat printed patterns than a car door [17][18]. Donut Media said video of the demonstration would be out within a few weeks [19].
Swearingen is not publishing his best patterns, on the grounds that camera makers would find and block them, and is instead crowdfunding printed T-shirts and hoodies with vehicle wraps possibly to follow [20][21]. That commercial posture is worth reading twice, because it means defenders cannot test against the strongest known samples.
Watch for the DEF CON video, which is the first evidence anyone outside the project will get about how a real wrap behaved against a real Flock unit [19]. Watch also for whether the fabric results survive weather and varied camera geometry, which the researcher's own framing concedes is unresolved [22]. Until then, the operational read is unglamorous: a detector output is advisory, not authoritative, and a quiet night on an analytics-driven alerting stack is not the same as an uneventful one.
Follow any of these and your For You feed starts watching them — no settings page required.
Ranked by verification strength, evidence, and original report placement.
Kansas City-based cybersecurity researcher Bill Swearingen spent the past year printing patterns, watching cameras fail to detect them, and repeating, running roughly 31 million tests.
TechCrunch reports that after roughly 31 million tests, Swearingen can generate patterns on demand that block licence plate readers and surveillance cameras from recognising whatever the pattern covers, whether a person or a vehicle.
Swearingen said of the DEF CON test, "We proved it was effective," though the wheels were a challenge.
Curved surfaces such as vehicle wheels do not cooperate with flat printed patterns the way a car door does.
The camera still records everything; what breaks is the detection layer sitting on top of the footage, the software that flags licence plates, tracks faces, or spots activity of interest across thousands of hours of video.
Evidence-backed comparisons of source perspectives and observed adoption signals. Read the methodology
Which Builder, Operator, and Investor concerns the observed source mix emphasized—not a truth score.
Evidence, demonstrated adoption, hype gap, incentives, and confidence are assessed independently, each on its own current evidence. How these are measured.
Self-reported, mostly simulated, single-outlet relay
All figures trace to the project's own dashboard and to TechCrunch reporting relayed by one aggregating outlet. The strongest validated number is a 61.7 percent simulation result against an extracted detector, most headline figures are explicitly labelled digital, the single physical test is a researcher assertion with video unreleased, and the best patterns are withheld so nothing is independently reproducible.
One demo car, no shipping product
Real-world use is essentially nil: one wrapped 2009 Toyota Yaris tested at DEF CON, apparel still at the crowdfunding stage, vehicle wraps only a possibility, and the effective patterns unpublished. The only large installed base in the story belongs to the target systems, not to the countermeasure.
Headline capability outruns measured result
The framing that patterns can be generated on demand to block plate readers and cameras sits well above the project's own record: the universal-pattern objective is admitted to be only partially met, the best validated figure leaves 38.3 percent of held-out subjects still detected in simulation, and the single field test failed on curved surfaces. The gap is moderated by the fact that the reporting and the dashboard both flag these limits and the article itself says practical utility is unresolved.
Researcher monetising while withholding proof
The principal is crowdfunding and selling printed apparel derived from the research while declining to publish the patterns that would let anyone verify or counter it, and the DEF CON demonstration was staged with a media partner that has video to release. That combination gives a clear promotional incentive around unverifiable results, partly offset by the dashboard's candid labelling of simulated figures.
Facts of the story clear, effectiveness unsettled
What was said and shown is consistently documented by the single source, including the caveats, so the narrative facts are reasonably firm. Confidence in the underlying capability is much lower: no independent replication, no released demo video, no field-condition data on fabric, weather, or camera variation, and no vendor response.
security
A man in a Vader helmet turned Flock's San Diego contract into a procurement problem1 distinct publisher
invest
Tiny corp wants Etched's numbers. Jane Street led $700M at $21B without publishing any1 distinct publisher
build
Vivodyne is spending venture money on wet-lab throughput, not bigger models2 distinct publishers
build
Flock cut retention to seven days and published the number that made 30 indefensible1 distinct publisher
Distinct publishers with included, body-backed reporting in this cluster.
1 article · August 18, 2026