I'm being cyberattacked by Tesla, Inc
A Tesla employee has come forward claiming their server is being targeted by a barrage of cyberattacks originating from three specific IP addresses linked to Amazon Web Services (AWS). The attacks are being generated by a scanning tool used by Assetnote, a legitimate attack surface management service. The source claims that these IPs are mistakenly targeting the employee's server due to an error in Assetnote's asset inventory process.
The source suspects that the scanning tool is targeting the employee's machine because it matches the CNAME of pool-ntp.tesla.com, which resolves to the employee's IP address. Assetnote uses the NTP Pool to perform automated checks for customers' assets. The source reports that the attacks include attempts at path traversal, webshell uploads, probing software internals, SSRF, Log4Shell, and more. The source has reached out to Tesla regarding the issue but has not received a response yet.
Written by urgent.news from Hacker News's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.
This story
This is one outlet's version. Read the fullest account.
- I'm being cyberattacked by Tesla, Inc dreamstation.systems