"A robot may not injure a human being or, through inaction, allow a human being to come to harm."
Figure 1. Physical-world demonstration of our proposed TrojanRobot (vanilla scheme). Based on myCobot 280-Pi manipulator, we showcase the backdoor attacks on VLM-based robotic manipulation.
Figure 2. The working pipelines of our proposed vanilla TrojanRobot attack scheme and prime TrojanRobot schemes.