The Liberian-flagged LNG carrier Vivit Africa LNG, carrying U.S.-origin liquefied natural gas to Italy, diverted from its planned Adriatic terminal call near Rovigo after its crew reported that attackers had temporarily taken control of cargo and safety systems. The reported affected functions included steam-pressure controls, safety valves, cargo-tank pressure and pressure-relief systems, disrupting boil-off-gas management and allegedly creating a risk of tank rupture or explosion. The vessel instead proceeded toward Algeciras, Spain.
Italian Coast Guard authorities characterized the incident more cautiously as a malfunction of cargo-parameter monitoring systems that required intervention by company technicians. Authorities said the cause remains undetermined and issued a navigation warning; Korean Register has opened an investigation. No threat actor, malware, forensic evidence, or indicators of compromise have been publicly identified, leaving the claimed cyberattack and its reported technical impact unverified.

See attribution, scope, and your downstream exposure.
4 events from the most recent confirmed update back to the earliest known activity.
Two alleged cyber incidents involving oil tankers off the U.S. coast were reported, prompting involvement by the U.S. Coast Guard and FBI. U.S. authorities were reportedly monitoring nearly 20 vessels worldwide for potential threats.
Korean Register, the vessel's classification society, began investigating the incident. No threat actor, malware, vulnerability, indicators of compromise, or verified forensic evidence were identified in the reporting.
Italian coast guard authorities characterized the incident as an undetermined malfunction in cargo-parameter monitoring systems requiring company technicians and issued a navigation warning. Vivit Africa LNG abandoned its planned Adriatic LNG terminal call near Rovigo and proceeded toward Algeciras, Spain.
The crew of the Liberian-flagged LNG carrier Vivit Africa LNG alleged that attackers attempted to compromise its control systems before loading and later temporarily controlled steam-pressure systems, safety valves, cargo-tank pressure controls, and pressure-relief valves during its voyage. The claims, including disruption to boil-off-gas management and a risk of tank rupture or explosion, were not independently verified.
See attribution, scope, and whether this vendor sits anywhere in your supply chain.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.