Oldelval Cyberattack Hits Argentina’s Top Oil Pipeline
Oldelval (Oleoductos del Valle) said in a CNV material-event filing that it suffered a cyberattack affecting its administrative systems, but that its cybersecurity protocol restored the platforms and oil transport continued without interruption. The firm said the intrusion did not reach crude-moving systems. Oldelval runs 1,700 km of Vaca Muerta pipeline and is expanding Duplicar Norte (US$380m).
How this was made

The 30-second read
Why it matters
The article frames the incident as contained and non-operational, but emphasizes the strategic importance of Oldelval’s pipeline to Vaca Muerta crude movement and export economics.
Market read
A listed-debt issuer’s cyber incident raises near-term risk premium for Vaca Muerta logistics exposure, even without reported physical disruption.
What to watch
For traders, the key variable is not the claim of containment but whether regulators or debt investors later learn the intrusion scope included any operational technology, third-party access, or data exfiltration that could drive follow-on outages.
Background
Oldelval (Oleoductos del Valle) filed a material event with Argentina’s CNV after a cyberattack affected administrative systems tied to its listed debt.
Ticker impact
Oldelval’s cyberattack centers on Argentina’s Vaca Muerta crude pipeline, where state-controlled YPF is the largest shareholder at 37%.
Near-term sentiment likely neutral to mildly negative, depending on whether regulators or forensics suggest deeper operational compromise.
The filing says back-office systems were affected and oil flow continued, which limits immediate physical disruption risk. However, the incident is material-event disclosure and could raise perceived cyber-resilience risk for YPF’s supply chain and lenders if scope expands.
Market effects
Highlights growing ransomware targeting of energy and logistics operators, with back-office breaches potentially escalating into operational crises if segmentation fails.
Argentina’s Vaca Muerta export spine is a national concern because most basin crude routes through Oldelval’s network.
Reinforces the Americas-wide ransomware-as-a-service threat pattern, with cross-operator contagion risk for energy infrastructure operators.
Counterpoint
Because the company states industrial controls were not reached and flow continued, the market may overprice cyber risk relative to actual disruption probability.
Key entities
- companyOldelval
Pipeline operator that disclosed a cyberattack on administrative systems, saying crude transport continued uninterrupted.
- regulatorCNV
Argentina’s National Securities Commission, which receives the material-event filing for listed-debt issuers.
- companyYPF
State-controlled oil company, largest shareholder in Oldelval with 37% ownership, exposed to Vaca Muerta logistics risk.
- threat_actorThe Gentlemen
Ransomware-as-a-service group that claimed responsibility and previously targeted Ecopetrol.




