Tesla was the target of "serious" ransomware attack
A Russian national allegedly attempted to bribe a Tesla employee to install malware on the company’s network


Elon Musk has confirmed that Tesla thwarted a "serious" cyber attack at its Gigafactory in Nevada after a Russian national allegedly attempted to bribe an employee to install ransomware on the company’s network.
The US Justice Department released a complaint earlier this week about an attempted malware attack against an unnamed company in Sparks, Nevada. While the complaint didn't name Tesla specifically, Musk confirmed via Twitter that his company was the target, adding that this was a "serious attack".
As per the complaint, the FBI charged a Russian national, 27-year-old Egor Igorevich Kriuchkov, in an alleged conspiracy that involved bribing a Tesla employee “to introduce malicious software into the company’s computer network, extract data from the network, and extort ransom money from the company.”
The unnamed employee met with Kriuchkov, who allegedly offered to pay him $1 million to introduce malware into the company's network. The employee informed Tesla, which then notified the FBI.
The malware was designed to install ransomware, a kind of malware that encrypts a victim’s files in exchange for a ransom. Prosecutors said the ransomware used an increasingly popular new tactic that not only encrypt a victim’s files but also exfiltrates the data to the attacker's servers.
"After the malware was introduced, Kriuchkov and his co-conspirators would extract data from the network and then threaten to make the information public, unless the company paid their ransom demand," the complaint reads.
The FBI launched a sting operation, with the employee wearing a wire and sharing text communications with Kriuchkov as they were negotiating the terms of the malware attack. The continued interaction reportedly helped the FBI to obtain information about previous attacks from this group.
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
Kriuchkov was leaving the US from Los Angeles on 22 August when he was arrested by the FBI.
In recent months, a number of big name companies have fallen victim to ransomware attacks. Canon was hit by a suspected Maze ransomware attack that rendered various services offline and compromised 10TB of data, while Garmin was attacked by WastedLocker, a ransomware strain deployed by EvilCorp.
Carly Page is a freelance technology journalist, editor and copywriter specialising in cyber security, B2B, and consumer technology. She has more than a decade of experience in the industry and has written for a range of publications including Forbes, IT Pro, the Metro, TechRadar, TechCrunch, TES, and WIRED, as well as offering copywriting and consultancy services.
Prior to entering the weird and wonderful world of freelance journalism, Carly served as editor of tech tabloid The INQUIRER from 2012 and 2019. She is also a graduate of the University of Lincoln, where she earned a degree in journalism.
You can check out Carly's ramblings (and her dog) on Twitter, or email her at hello@carlypagewrites.co.uk.
-
How MSPs can learn to stop worrying and love AI
This week’s ChannelCon EMEA 2025 conference provided much-needed context as well as inspiration for the ecosystem…
-
Observability opens up new opportunities for the channel
Industry Insights Channel partners are responding to the growing demand for observability products to help customers keep track of their data and assets across cloud, serverless, and containerized environments
-
The number of ransomware groups rockets as new, smaller players emerge
News The good news is that the number of victims remains steady
-
Teens arrested over nursery chain Kido hack
news The ransom attack caused widespread shock when the hackers published children's personal data
-
NCA confirms arrest after airport cyber disruption
News Disruption is easing across Europe following the ransomware incident
-
Cyber professionals are losing sleep over late night attacks
News Hackers are biding their time and launching attacks when businesses can’t respond
-
Prolific ransomware operator added to Europe’s Most Wanted list as US dangles $10 million reward
News The US Department of Justice is offering a reward of up to $10 million for information leading to the arrest of Volodymyr Viktorovych Tymoshchuk, an alleged ransomware criminal.
-
Jaguar Land Rover “did the right thing” shutting down systems to thwart cyber attack
News The attack on Jaguar Land Rover highlights the growing attractiveness of the automotive sector
-
Ransomware attack on IT supplier disrupts hundreds of Swedish municipalities
News The attack on IT systems supplier Miljödata has impacted public sector services across the country
-
A notorious hacker group is ramping up cloud-based ransomware attacks
News The Storm-0501 threat group is refining its tactics, according to Microsoft, shifting away from traditional endpoint-based attacks and toward cloud-based ransomware.