US Investigates Cyberattacks on Oil and Gas Tankers Amid Rising Maritime Threats
The U.S. is probing potential cyberattacks targeting oil and gas vessels, raising concerns over maritime security as hackers increasingly target ships’ digital systems. On August 21, the U.S. Coast Guard and FBI boarded the VL Prosperity, a foreign-flagged supertanker, after detecting a network compromise. The vessel, managed by South Korea-based HMM Ocean Service, had been idling off the Texas coast since late August.
Iran’s Mehr News Agency reported that the tanker, which loaded Saudi Arabian crude in Egypt in late July, experienced a 30-hour communications blackout following a suspected cyberattack in the Strait of Gibraltar. While the Coast Guard later cleared the VL Prosperity for normal operations, HMM Ocean Service stated it is awaiting a final investigation report from U.S. authorities.
A second, unidentified liquefied natural gas (LNG) carrier was also inspected on August 24 over potential cybersecurity breaches, according to the Wall Street Journal.
These incidents highlight growing vulnerabilities in maritime cybersecurity as ships adopt digitized navigation and operational systems to optimize efficiency. Analysts warn that increased connectivity expands the attack surface, allowing hackers to disrupt navigation, cargo security, or even cause environmental hazards.
In response, the U.S. Maritime Administration issued cybersecurity guidelines in April, while the International Maritime Organization (IMO) released risk-management protocols last year. The Coast Guard confirmed that the VL Prosperity’s crew cooperated fully with investigators, with no reported operational disruptions, crew risks, or environmental damage.
The VL Prosperity, owned by Liberia-based GMF GLV No. 4 SA, had transported nearly 2 million barrels of oil from Egypt before the suspected attack. The investigation remains ongoing as authorities assess the broader threat to global shipping.
HMM America cybersecurity rating report: https://www.rankiteo.com/company/hmm-america
"id": "HMM1789583154",
"linkid": "hmm-america",
"type": "Cyber Attack",
"date": "8/2026",
"severity": "60",
"impact": "2",
"explanation": "Attack limited on finance or reputation"
{'affected_entities': [{'industry': 'Oil and Gas',
'location': 'Texas coast (idling), Strait of Gibraltar '
'(suspected attack location)',
'name': 'VL Prosperity',
'type': 'Supertanker'},
{'industry': 'Oil and Gas',
'name': 'Unidentified LNG carrier',
'type': 'Liquefied Natural Gas (LNG) carrier'},
{'industry': 'Maritime',
'location': 'South Korea',
'name': 'HMM Ocean Service',
'type': 'Vessel management company'},
{'industry': 'Maritime',
'location': 'Liberia',
'name': 'GMF GLV No. 4 SA',
'type': 'Vessel owner'}],
'attack_vector': 'Network compromise',
'date_detected': '2023-08-21',
'description': 'The U.S. is investigating potential cyberattacks targeting '
'oil and gas vessels, including the VL Prosperity supertanker '
'and an unidentified LNG carrier, amid rising maritime '
'cybersecurity threats. The incidents involved network '
'compromises and a communications blackout, highlighting '
'vulnerabilities in digitized maritime systems.',
'impact': {'downtime': '30 hours (communications blackout)',
'operational_impact': 'Temporary idling of vessel, no operational '
'disruptions reported',
'systems_affected': 'Navigation and communication systems'},
'investigation_status': 'Ongoing',
'lessons_learned': 'Growing vulnerabilities in maritime cybersecurity due to '
'increased digitization of navigation and operational '
'systems, expanding the attack surface for potential '
'disruptions.',
'post_incident_analysis': {'root_causes': 'Increased connectivity and '
'digitization of maritime systems '
'expanding the attack surface.'},
'recommendations': 'Enhanced cybersecurity measures for maritime vessels, '
'including network segmentation, adaptive monitoring, and '
'adherence to regulatory guidelines from the U.S. Maritime '
'Administration and IMO.',
'references': [{'source': 'Wall Street Journal'},
{'source': 'Mehr News Agency'}],
'regulatory_compliance': {'regulatory_notifications': 'U.S. Maritime '
'Administration '
'guidelines (April '
'2023), IMO '
'risk-management '
'protocols (2022)'},
'response': {'containment_measures': 'Boarding and inspection of vessels',
'law_enforcement_notified': 'U.S. Coast Guard, FBI',
'recovery_measures': 'Vessel cleared for normal operations'},
'stakeholder_advisories': 'U.S. Coast Guard and FBI investigations; '
'cooperation from vessel crew and management.',
'title': 'Cyberattacks on Oil and Gas Tankers',
'type': 'Cyberattack',
'vulnerability_exploited': 'Digitized navigation and operational systems'}