"Tesla Theft: Unleashing MiTM Phishing with Flipper Zero"

TL;DR Summary
Researchers demonstrated a Man-in-the-Middle (MiTM) phishing attack using a Flipper Zero to compromise Tesla accounts, allowing attackers to unlock and start cars. The attack exploits a security gap in the Tesla app and software, enabling the addition of a new 'Phone Key' without proper authentication. This could be performed using various devices, posing a significant security risk. Despite the researchers' report, Tesla deemed the behavior as intended and did not acknowledge the need for additional security measures.
Reading Insights
Total Reads
0
Unique Readers
0
Time Saved
3 min
vs 4 min read
Condensed
90%
736 → 77 words
Want the full story? Read the original article
Read on BleepingComputer