---
title: "Teslas Can Be Stolen by Hijacking WiFi at Charging Stations, Researchers Find"
description: "Researchers have found that hackers could easily hijack WiFi networks at Tesla charging stations to steal parked vehicles."
date: "2024-03-11"
modified: "2024-03-11"
authors:
  - name: "Victor Tangermann"
    job_title: "Senior Editor"
    link: "https://futurism.com/authors/victor"
url: "https://futurism.com/the-byte/teslas-stolen-wifi-charging-research"
categories:
  - "Advanced Transport"
  - "Tesla"
tags:
  - "cybersecurity"
  - "tesla"
  - "the digest"
---

# Teslas Can Be Stolen by Hijacking WiFi at Charging Stations, Researchers Find

![Researchers have found that hackers could easily hijack WiFi networks at Tesla charging stations to steal parked vehicles.](<https://futurism.com/wp-content/uploads/2024/03/teslas-stolen-wifi-charging-research.jpg>)
*\<em\>Image: Smith Collection/Gado/Getty Images\</em\>*

## Tesla Theft

Researchers have found that hackers could easily hijack WiFi networks at Tesla charging stations to steal vehicles — a glaring cybersecurity vulnerability that only requires an affordable, off-the-shelf tool.

As Mysk Inc. security researchers Tommy Mysk and Talal Haj Bakry demonstrated in a [recent YouTube video](<https://www.youtube.com/watch?v=7IBg5uNB7is>) — as [first reported spotted by *Gizmodo*](<https://gizmodo.com/want-to-steal-a-tesla-try-using-a-flipper-zero-1851316236>) — hackers only need a simple $169 hacking tool called Flipper Zero, a Raspberry Pi, or a laptop to pull it off.

"This means with a leaked email and password, an owner could lose their Tesla vehicle," Mysk told *Gizmodo*. "Phishing and social engineering attacks are very common today, especially with the rise of AI technologies, and responsible companies must factor in such risks in their threat models."

And it's not just Tesla. Cybersecurity researchers have [long rung alarm bells](<https://www.theguardian.com/uk-news/2024/feb/24/revealed-car-industry-was-warned-keyless-vehicles-vulnerable-to-theft-a-decade-ago>) over the use of keyless entry in the car industry, which leave modern vehicles at risk of being stolen.

https://www.youtube.com/watch?v=7IBg5uNB7is

## Hash Tag Guest

Here's how the ruse works. Using their weapon of choice, hackers create a spoof WiFi network called "Tesla Guest" that masquerades as the real thing.

If a victim were to try to access the network, which the EV maker normally provides free of charge to waiting customers, they could be duped into giving up their login by entering it into a duplicate site.

This stolen login info could then be used to skirt around Tesla's two-factor authentication and log in to the victim's Tesla smartphone app, unlocking the vehicle without ever needing a physical card.

Once logged in, the hackers could even create a new "phone key," allowing them to come back to the vehicle later and drive off with it without raising suspicion.

That's because Tesla doesn't actually notify the user if a new key is created, as Mysk and Bakry point out in their video.

Mysk tested out the vulnerability on his own Tesla and found that he was easily able to create new phone keys without ever having access to the original, physical key card. That's despite Tesla [promising](<https://www.tesla.com/ownersmanual/model3/en_us/GUID-E004FAB7-1C71-448F-9492-CACF301304D2.html>) that wasn't possible in its owner's manual.

Once he told Tesla about his findings, the EV maker underplayed the vulnerability, telling him it was all by design and "intended behavior," an assertion that Mysk called "preposterous" in his interview with *Gizmodo*.

"The design to pair a phone key is clearly made super easy at the expense of security," he said.

Mysk argues it would be easy for the automaker to plug the vulnerability by simply notifying users if a new phone key is created.

But whether the company will heed his word remains to be seen.

**More on Tesla:** *[Tesla's Official Cybertruck Camping Attachment Looks Absolutely Laughable](<https://futurism.com/the-byte/tesla-cybertruck-tent-attachment-sad-wreck>)*

## Author
I've been at Futurism since 2017, where my role has evolved to encompass design, writing, and increasingly editing. I've always been fascinated by space exploration and advanced transportation, which I've leaned into by interviewing luminaries in those fields while closely following the dimensions of policy and regulation that allow next-generation projects to succeed -- or, sometimes, to fail. I'm also keenly interested in the effects of generative AI on society, policies, and democratic institutions, as well as clean energy, physics and biology, and the vagaries of tech leadership. My work for Futurism has been cited by publications including Ars Technica, Gizmodo, PC Magazine, Jalopnik, Fox News, and the New York Post. I spent my childhood living in locations including Manila, the Philippines, and Geneva, Switzerland, attended McGill University, and now live in Toronto, Canada. Before Futurism I worked at AskMen and a small photography studio. In my free time, I'm an avid gardener, foodie, and craft beer lover, as well as a maker of artisanal hot pepper sauces. I have a magnificent dog named Freida.

### Author social links  
[Bluesky](<https://bsky.app/profile/vtanger.bsky.social>)