Hacker News
I'm being cyberattacked by Tesla, Inc
Persistent scanning traffic from three AWS IPs (54.165.75.96, 35.168.63.24, 52.44.200.251) targeted the author’s server using Assetnote user agents and Host/Referer headers pointing to pool-ntp.tesla.com. The scans injected Log4Shell, Text4Shell, SSRF, and other exploit payloads, treating the NTP-Pool member 67.215.249.229 as a Tesla asset. The author notified Tesla, noting that the scans were unintentionally hitting a stranger’s IP.