Foreign Cyber Actors Compromise Gulf of Mexico Oil Tanker, US Coast Guard and FBI Conduct Cybersecurity Boarding
What Happened – In early August, the U.S. Coast Guard confirmed that the commercial tanker VL Prosperity suffered a cyber intrusion that disabled ship‑to‑shore communications for roughly 30 hours and reportedly allowed attackers to manipulate engine speed and fuel‑oil tank controls. A joint USCG‑FBI cyber‑security boarding on August 21 inspected the vessel’s operational and IT systems. No immediate safety, environmental, or service disruptions were reported.
Why It Matters for Trust & Control Assurance
- Demonstrates the need for continuous monitoring of third‑party OT environments and evidence that incident‑response procedures are exercised on‑site.
- Highlights the importance of documented vendor‑risk oversight that maps to a single control objective: Incident Response and Operational Technology Security across multiple frameworks (e.g., NIST CSF 2.0, ISO 27001).
- Aligns with Verisq’s Vendor Risk Management capability, which provides continuous assurance evidence that maritime suppliers meet defined security controls.
Who Is Affected – Oil and gas transport operators, maritime logistics firms, port authorities, and any supply‑chain partners that rely on vessel‑borne IT/OT systems.
Recommended Actions
- Map your vessel or logistics provider’s incident‑response program to the “Incident Response & OT Security” control objective in your audit framework.
- Collect and retain evidence of boardings, system scans, and remediation steps as part of a continuous control‑assurance repository.
- Validate that third‑party contracts include clear cyber‑incident reporting and response clauses.
Source: The Record
Technical Notes
- Attack vector: unknown (no malware or vulnerability disclosed).
- Potential manipulation of engine speed and fuel‑oil tank controls suggests compromise of vessel OT systems.
- No confirmed data exfiltration or ransomware involvement.
Source: Wall Street Journal, Bloomberg, Recorded Future