Crew Claims Hackers Seized LNG Carrier Safety Systems, Forcing Vivit Africa Diversion

🔔 Subscribe to ShipUniverse Weekly →
The crew of the 174,000-cbm Vivit Africa LNG says hackers temporarily interfered with critical cargo and safety controls during a voyage carrying U.S. LNG from Cameron, Louisiana, to Italy, but investigators have not confirmed that a cyberattack occurred. Crew members told Splash that attackers gained temporary control of steam-pressure and safety-valve systems while the ship crossed the Strait of Gibraltar, then compromised tank-pressure controls, pressure-relief valves and the boil-off gas management cycle as the vessel approached the Adriatic. What authorities have independently confirmed is narrower: the ship suffered a malfunction affecting systems used to monitor cargo parameters, company technicians were required, Italy's Chioggia Coast Guard warned surrounding traffic to keep clear, and the vessel abandoned its planned discharge near Rovigo before turning west toward Spain with its LNG cargo still aboard. Korean Register is investigating, while equipment supplier Kongsberg Maritime says it is too early to determine the cause or security implications
Confirmed Failure vs. Crew Cyber Claims
The ship unquestionably suffered a cargo-control problem serious enough to stop its Italian discharge. Whether hackers actually manipulated safety systems remains under investigation.
What Is Known, Claimed and Still Unresolved
The operational disruption is established. The cyber attribution and alleged manipulation of safety-critical LNG systems are not.
| Issue | Status | Evidence Available | Source Position | Operational Consequence | Still Needed |
|---|---|---|---|---|---|
| Cargo-Monitoring Failure | CONFIRMED System Malfunction | The master reported malfunctioning systems used to monitor cargo parameters. | Confirmed through the Italian Coast Guard account. | Company technicians were required and the ship did not complete its planned LNG discharge. | Technical failure logs, system alarms and forensic analysis identifying the initiating cause. |
| Steam Pressure / Safety Valves | CREW CLAIM Temporary Control Alleged | Crew members told Splash that attackers temporarily controlled these functions near Gibraltar. | Not independently verified by class, flag state, equipment supplier or Coast Guard. | If verified, this would elevate the incident from monitoring-system loss to safety-critical OT manipulation. | Controller logs, commands, network telemetry and confirmation that the equipment responded to unauthorized instructions. |
| Tank Pressure / Relief Valves | CREW CLAIM Adriatic Stage | Crew alleges later interference with tank-pressure controls and pressure-relief functions. | Splash explicitly says the allegations have not been independently verified. | LNG cargo containment depends on controlled pressure and boil-off handling, making this allegation materially more serious than a display failure. | Safety-system state histories, alarm records and independent verification of valve actuation. |
| Boil-Off Gas Management | CREW CLAIM Cycle Disruption Alleged | Crew says the normal boil-off gas management cycle was interrupted. | No public independent confirmation reviewed. | Extended loss could interfere with normal cargo-pressure management and machinery operating strategy. | Machinery logs, compressor status, pressure trends and confirmation of available fallback modes. |
| Italy Cargo Delivery | ABORTED Rovigo Call Dropped | Vessel remained offshore without unloading and subsequently headed west. | Supported by Coast Guard accounts and vessel-tracking reports. | The LNG cargo remained aboard and the original delivery schedule was interrupted. | Final discharge destination and commercial handling of the delayed cargo. |
| Attack Attribution | UNKNOWN No Actor Identified | Crew suspects hostile cyber activity, but no public evidence identifies the attacker. | Korean Register investigation is ongoing. Kongsberg says conclusions are premature. | Attribution uncertainty complicates fleet-wide threat assessment and determining whether similar ships face the same exposure. | Digital forensics, attack-path reconstruction and indicators linked to a known threat actor or campaign. |
LNG Cyber / Control-System Escalation Screener
Screen the operational severity of a suspected cyber or control-system incident by selecting which safety and cargo-management functions have actually been affected.
We welcome your feedback, suggestions, corrections, and ideas for enhancements.
Please click here to get in touch