I'm being cyberattacked by Tesla, Inc
Article URL: https://dreamstation.systems/personal/tesla.html Comments URL: https://news.ycombinator.com/item?id=49686766 Points: 166 # Comments: 40
A Tesla employee has come forward claiming their server is being targeted by a barrage of cyberattacks originating from three specific IP addresses linked to Amazon Web Services (AWS). The attacks are being generated by a scanning tool used by Assetnote, a legitimate attack surface management service. The source claims that these IPs are mistakenly targeting the employee's server due to an error in Assetnote's asset inventory process.
The source suspects that the scanning tool is targeting the employee's machine because it matches the CNAME of pool-ntp.tesla.com, which resolves to the employee's IP address. Assetnote uses the NTP Pool to perform automated checks for customers' assets. The source reports that the attacks include attempts at path traversal, webshell uploads, probing software internals, SSRF, Log4Shell, and more. The source has reached out to Tesla regarding the issue but has not received a response yet.
Written by urgent.news from Hacker News's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.
Also reported by 1 other outlet
- I'm being cyberattacked by Tesla, Inc dreamstation.systems