• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia
Tesla

Teen hacker says he’s found way to remotely control 25 Tesla EVs around the world

By
Katrina Nicholas
Katrina Nicholas
,
Jordan Robertson
and
Bloomberg
Bloomberg
Down Arrow Button Icon
January 12, 2022, 3:53 AM ET

A 19-year-old said he’s found flaws in a piece of third-party software that appears to be used by a relatively small number of owners of Tesla Inc. cars that could allow hackers to remotely control some of the vehicles’ functions.

David Colombo, a self-described information technology security specialist, tweeted Tuesday that the flaws gave him the ability to unlock doors and windows, start the cars without keys, and disable their security systems.

Colombo, who is based in Germany, also claimed he can see if a driver is present in the car, turn on the vehicles’ stereo sound systems and flash their headlights.

I think it‘s pretty dangerous, if someone is able to remotely blast music on full volume or open the windows/doors while you are on the highway.

Even flashing the lights non-stop can potentially have some (dangerous) impact on other drivers.

[4/X]

— David Colombo (@david_colombo_) January 11, 2022

In an interview, Colombo provided screenshots and other documentation of his research that identified the maker of the software and gave details of the vulnerabilities. He asked that Bloomberg not publish specifics because the affected organization hasn’t yet published a fix. Colombo said he could access more than 25 Teslas in at least 13 countries, and he took to Twitter when he wasn’t able to contact most of the owners directly.

The problem involves an insecure way the software stores sensitive information that’s needed to link the cars to the program, Colombo said. In the wrong hands, that information could be stolen and repurposed by hackers to send malicious commands to the cars, he said. He showed Bloomberg screenshots of a private conversation over Twitter where one of the affected owners allowed him to remotely honk his car’s horn.

“This shouldn’t happen,” Colombo said. “Especially if we’re putting cars on the internet and trying to make them secure. Everyone needs to work together.”

His Twitter thread drew more than 900 retweets and more than 6,000 likes.

A representative for Tesla in the U.S. and elsewhere didn’t respond to requests for comment.

Yes, I potentially could unlock the doors and start driving the affected Tesla‘s.

No I can not intervene with someone driving (other than starting music at max volume or flashing lights) and I also can not drive these Tesla‘s remotely.

[7/7]

— David Colombo (@david_colombo_) January 11, 2022

A self-described Tesla fan, Colombo said he started coding when he was 10 years old. Frustrated with high school coursework, his father helped him petition German authorities to let him go to school two days per week and spend the rest of his time expanding his cybersecurity skills. He also developed a company called Colombo Technology.

Like many technology companies, U.S.-based Tesla has a “bug bounty” program where cybersecurity researchers can report vulnerabilities in the company’s products and, if validated, receive payment. The company said it shares information and engages with third-party organizations when vulnerabilities affect their products.

Colombo said that he has been in touch with members of Tesla’s security team and the maker of the third-party software. The discovery highlights some of the risks of moving to the so-called Internet of Things, where everything from automobiles to refrigerators are connected online — and thus become potentially vulnerable to hacking threats.

“Just don’t connect critical stuff to the internet,” he said. “It’s very simple. And if you have to then make sure it is set up securely.”

Never miss a story: Follow your favorite topics and authors to get a personalized email with the journalism that matters most to you.

About the Authors
By Katrina Nicholas
See full bioRight Arrow Button Icon
By Jordan Robertson
See full bioRight Arrow Button Icon
By Bloomberg
See full bioRight Arrow Button Icon

Latest in

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025

Most Popular

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • Future 50
  • World’s Most Admired Companies
  • See All Rankings
Sections
  • Finance
  • Leadership
  • Success
  • Tech
  • Asia
  • Europe
  • Environment
  • Fortune Crypto
  • Health
  • Retail
  • Lifestyle
  • Politics
  • Newsletters
  • Magazine
  • Features
  • Commentary
  • Mpw
  • CEO Initiative
  • Conferences
  • Personal Finance
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
About Us
  • About Us
  • Editorial Calendar
  • Press Center
  • Work At Fortune
  • Diversity And Inclusion
  • Terms And Conditions
  • Site Map

Latest in

Mark Zuckerberg stands in a doorway
Real EstateMark Zuckerberg
Mark Zuckerberg gifted noise-canceling headphones to his Palo Alto neighbors because of the nonstop construction around his 11 homes
By Dave SmithDecember 25, 2025
19 minutes ago
SuccessMillionaires
Meet the millionaires living the ‘underconsumption’ life: They drive secondhand cars, batch cook, and never buy new clothes
By Eleanor PringleDecember 25, 2025
23 minutes ago
xmas
Europehistory
Christmas 500 years ago was a drunken 6-week feast that may have been considerably better than the modern holiday, medieval historian says
By Bobbi Sutherland and The ConversationDecember 25, 2025
33 minutes ago
Panos Panay, Senior Vice President, Devices and Services, Amazon
AIBrainstorm AI
Amazon’s Alexa chief predicts an end to doom scrolling: the next generation is ‘going to just think differently’
By Nick LichtenbergDecember 25, 2025
33 minutes ago
Personal FinanceCertificates of Deposit (CDs)
Best CD rates today, Dec. 25, 2025: Earn up to 4.18% APY if you lock in now
By Glen Luke FlanaganDecember 25, 2025
2 hours ago
Personal FinanceSavings accounts
Today’s best high-yield savings account rates on Dec. 25, 2025: Earn up to 5.00% APY
By Glen Luke FlanaganDecember 25, 2025
2 hours ago

Most Popular

placeholder alt text
Retail
Trump just declared Christmas Eve a national holiday. Here’s what’s open and closed
By Dave SmithDecember 24, 2025
1 day ago
placeholder alt text
Personal Finance
Trump turns government into giant debt collector with threat to garnish wages on millions of Americans in default on student loans
By Annie Ma and The Associated PressDecember 24, 2025
1 day ago
placeholder alt text
Economy
Obama's former top economic advisor says he feels 'a tiny bit bad' for Trump because gas prices are low, but consumer confidence is still plummeting 
By Sasha RogelbergDecember 24, 2025
20 hours ago
placeholder alt text
Success
Chinese billionaire who has fathered more than 100 children hopes to have dozens of U.S.-born boys to one day take over his business
By Emma BurleighDecember 25, 2025
2 hours ago
placeholder alt text
Personal Finance
Financial experts warn future winner of the $1.7 billion Powerball: Don't make these common money mistakes
By Ashley LutzDecember 23, 2025
2 days ago
placeholder alt text
Success
Billionaire philanthropy's growing divide: Mark Zuckerberg stops funding immigration reform as MacKenzie Scott doubles down on DEI
By Ashley LutzDecember 22, 2025
3 days ago

© 2025 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.