Connect with us
Tesla hackers find a vulnerability with NFC relay attack Tesla hackers find a vulnerability with NFC relay attack

News

Tesla hackers find a vulnerability with NFC relay attack

Jeremy from Sydney, Australia, CC BY 2.0 , via Wikimedia Commons

Published

on

Tesla hackers have found a vulnerability with an NFC relay hack but there’s a catch. Thieves will have to work in pairs and get close to the NFC chip or smartphone.

According to IOActive, the relay attack needs two attackers. One uses the Proxmark device at the vehicle’s NFC reader. The other uses any NFC-capable device close to a Tesla owner’s NFC card or smartphone. The team is then able to use Bluetooth to communicate between the devices and replicate the key to one of the thieve’s smartphones.

This new demonstration comes a few days after the National Highway Traffic Safety Administration (NHTSA) recently released an update to its 2016 edition of its Cybersecurity Best Practices for the Safety of Modern Vehicles. Dr. Steven Cliff, NHTSA’s Administrator emphasized the need for cybersecurity to be a top priority for every automaker, developer, and operator.

According to the agency, a layered approach to vehicle cybersecurity reduces the probability of a successful attack while mitigating the ramifications of unauthorized vehicle system access. The NHTSA also added that public key cryptography techniques are more secure than symmetric keys valid across multiple vehicles.

Advertisement

In 2018, Tesla began rolling out the PIN to Drive feature and improved cryptography for its key fobs as a response to several Tesla vehicle thefts through relay attacks in Europe.

In 2019, Tesla began releasing over-the-air software updates addressing the findings of Lennert Wouters of Katholieke Universiteit Leuven in Belgium (KU Leuven). Wouters discovered a security flaw that allowed car thieves to clone a key fob in less than two seconds. Tesla’s solution included the PIN to Drive, a software update, and a new fob that made the Tesla Models S and X  almost 90% less likely to get stolen than the average car.

The new demonstration may show a vulnerability if thieves are dedicated enough to work at it, but Tesla is pretty fast at addressing these flaws. However, all car owners, whether they own an EV or not, should always be aware of their surroundings. You can watch IOActive’s demonstration video below.

Advertisement

Note: Johnna is a Tesla shareholder and supports its mission. 

Your feedback is important. If you have any comments, or concerns, or see a typo, you can email me at johnna@teslarati.com. You can also reach me on Twitter at @JohnnaCrider1.

Teslarati is now on TikTok. Follow us for interactive news & more.

Advertisement

Johnna Crider is a Baton Rouge writer covering Tesla, Elon Musk, EVs, and clean energy & supports Tesla's mission. Johnna also interviewed Elon Musk and you can listen here

Advertisement
Comments

Elon Musk

Tesla director pay lawsuit sees lawyer fees slashed by $100 million

The ruling leaves the case’s underlying settlement intact while significantly reducing what the plaintiffs’ attorneys will receive.

Published

on

Credit: Tesla China

The Delaware Supreme Court has cut more than $100 million from a legal fee award tied to a shareholder lawsuit challenging compensation paid to Tesla directors between 2017 and 2020. 

The ruling leaves the case’s underlying settlement intact while significantly reducing what the plaintiffs’ attorneys will receive.

Delaware Supreme Court trims legal fees

As noted in a Bloomberg Law report, the case targeted pay granted to Tesla directors, including CEO Elon Musk, Oracle founder Larry Ellison, Kimbal Musk, and Rupert Murdoch. The Delaware Chancery Court had awarded $176 million to the plaintiffs. Tesla’s board must also return stock options and forego years worth of pay. 

As per Chief Justice Collins J. Seitz Jr. in an opinion for the Delaware Supreme Court’s full five-member panel, however, the decision of the Delaware Chancery Court to award $176 million to a pension fund’s law firm “erred by including in its financial benefit analysis the intrinsic value” of options being returned by Tesla’s board.

Advertisement

The justices then reduced the fee award from $176 million to $70.9 million. “As we measure it, $71 million reflects a reasonable fee for counsel’s efforts and does not result in a windfall,” Chief Justice Seitz wrote.

Other settlement terms still intact

The Supreme Court upheld the settlement itself, which requires Tesla’s board to return stock and options valued at up to $735 million and to forgo three years of additional compensation worth about $184 million. 

Tesla argued during oral arguments that a fee award closer to $70 million would be appropriate. Interestingly enough, back in October, Justice Karen L. Valihura noted that the $176 award was $60 million more than the Delaware judiciary’s budget from the previous year. This was quite interesting as the case was “settled midstream.”

The lawsuit was brought by a pension fund on behalf of Tesla shareholders and focused exclusively on director pay during the 2017–2020 period. The case is separate from other high-profile compensation disputes involving Elon Musk.

Advertisement

Tesla Litigation by Simon Alvarez

Continue Reading

Elon Musk

SpaceX-xAI merger discussions in advanced stage: report

The update was initially reported by Bloomberg News, which cited people reportedly familiar with the matter.

Published

on

Gage Skidmore, CC BY-SA 4.0 , via Wikimedia Commons

SpaceX is reportedly in advanced discussions to merge with artificial intelligence startup xAI. The talks could reportedly result in an agreement as soon as this week, though discussions remain ongoing.

The update was initially reported by Bloomberg News, which cited people reportedly familiar with the matter.

SpaceX and xAI advanced merger talks

SpaceX and xAI have reportedly informed some investors about plans to potentially combine the two privately held companies, Bloomberg’s sources claimed. Representatives for both companies did not immediately respond to requests for comment.

A merger would unite two of the world’s largest private firms. xAI raised capital at a valuation of about $200 billion in September, while SpaceX was preparing a share sale late last year that valued the rocket company at roughly $800 billion.

Advertisement

If completed, the merger would bring together SpaceX’s launch and satellite infrastructure with xAI’s computing and model development. This could pave the way for Musk’s vision of deploying data centers in orbit to support large-scale AI workloads.

Musk’s broader consolidation efforts

Elon Musk has increasingly linked his companies around autonomy, AI, and space-based infrastructure. SpaceX is seeking regulatory approval to launch up to one million satellites as part of its long-term plans, as per a recent filing. Such a scale could support space-based computing concepts.

SpaceX has also discussed the feasibility of a potential tie-up with electric vehicle maker Tesla, Bloomberg previously reported. SpaceX has reportedly been preparing for a possible initial public offering (IPO) as well, which could value the company at up to $1.5 trillion. No timeline for SpaceX’s reported IPO plans have been announced yet, however.

Continue Reading

News

Tesla already has a complete Robotaxi model, and it doesn’t depend on passenger count

That scenario was discussed during the company’s Q4 and FY 2025 earnings call, when executives explained why the majority of Robotaxi rides will only involve one or two people.

Published

on

Credit: @AdanGuajardo/X

Tesla already has the pieces in place for a full Robotaxi service that works regardless of passenger count, even if the backbone of the program is a small autonomous two-seater. 

That scenario was discussed during the company’s Q4 and FY 2025 earnings call, when executives explained why the majority of Robotaxi rides will only involve one or two people.

Two-seat Cybercabs make perfect sense

During the Q&A portion of the call, Tesla Vice President of Vehicle Engineering Lars Moravy pointed out that more than 90% of vehicle miles traveled today involve two or fewer passengers. This, the executive noted, directly informed the design of the Cybercab. 

“Autonomy and Cybercab are going to change the global market size and mix quite significantly. I think that’s quite obvious. General transportation is going to be better served by autonomy as it will be safer and cheaper. Over 90% of vehicle miles traveled are with two or fewer passengers now. This is why we designed Cybercab that way,” Moravy said. 

Advertisement

Elon Musk expanded on the point, emphasizing that there is no fallback for Tesla’s bet on the Cybercab’s autonomous design. He reiterated that the autonomous two seater’s production is expected to start in April and noted that, over time, Tesla expects to produce far more Cybercabs than all of its other vehicles combined.

“Just to add to what Lars said there. The point that Lars made, which is that 90% of miles driven are with one or two passengers or one or two occupants, essentially, is a very important one… So this is clearly, there’s no fallback mechanism here. It’s like this car either drives itself or it does not drive… We would expect over time to make far more CyberCabs than all of our other vehicles combined. Given that 90% of distance driven or distance being distance traveled exactly, no longer driving, is one or two people,” Musk said. 

Tesla’s robotaxi lineup is already here

The more interesting takeaway from the Q4 and FY 2025 earnings call is the fact that Tesla does not need the Cybercab to serve every possible passenger scenario, simply because the company already has a functional Robotaxi model that scales by vehicle type.

The Cybercab will handle the bulk of the Robotaxi network’s trips, but for groups that need three or four seats, the Model Y fills that role. For higher-end or larger-family use cases, the extended-wheelbase Model Y L could cover five or six occupants, provided that Elon Musk greenlights the vehicle for North America. And for even larger groups or commercial transport, Tesla has already unveiled the Robovan, which could seat over ten people.

Advertisement

Rather than forcing one vehicle to satisfy every use case, Tesla’s approach mirrors how transportation works today. Different vehicles will be used for different needs, while unifying everything under a single autonomous software and fleet platform.

Continue Reading