hw_395030631f8180b4
Russian “ghost-ships” fleet mapping cables, pipelines and wind farms in Danish and North Sea maritime zones.
In April 2023 a broad Nordic media investigation exposed a network of Russian military and civilian vessels operating as so-called “ghost ships” in the Baltic and North Seas, including areas around Denmark. These vessels reportedly sailed with AIS transponders turned off, loitered near offshore energy installations, seabed cable routes and emerging wind-farm clusters, and gathered data potentially useful for future sabotage. Analysts contend the mapping included Danish infrastructure corridors – power cables, data links, pipelines and wind-farm sites – within Denmark’s maritime zone. The presence of these vessels was interpreted as preparatory work for hybrid operations: reconnaissance of critical infrastructure rather than immediate kinetic effect. While no single act of sabotage was publicly attributed directly to Denmark’s waters, the strategic geography and the vessels’ behaviour triggered Denmark’s shift toward undersea infrastructure surveillance. The Danish Defence and intelligence community subsequently raised warnings about maritime reconnaissance targeting dual-use installations. The pattern highlighted how Russia’s hybrid toolkit includes maritime intelligence-gathering prior to sabotage, reinforcing Denmark’s need to monitor “pre-attack” maritime signatures. The revelation also catalysed EU-NATO discussions on regulating civilian vessels engaged in seabed surveillance and forced Denmark to reconsider legal frameworks for “research” ships in its EEZ.
E/M/R/S scores
- EExistence0/4 · Not assessed
- MIntent0/4 · Not assessed
- RRussian actor link0/4 · Not assessed
- SRussian state responsibility0/4 · Not assessed
Facts
No facts
Sources
-
- Role
- discovery_lead
- Date
- 2023-04-18T22:00:00Z
In April 2023 a broad Nordic media investigation exposed a network of Russian military and civilian vessels operating as so-called “ghost ships” in the Baltic and North Seas, including areas around Denmark. These vessels reportedly sailed with AIS transponders turned off, loitered near offshore energy installations, seabed cable routes and emerging wind-farm clusters, and gathered data potentially useful for future sabotage. Analysts contend the mapping included Danish infrastructure corridors – power cables, data links, pipelines and wind-farm sites – within Denmark’s maritime zone. The presence of these vessels was interpreted as preparatory work for hybrid operations: reconnaissance of critical infrastructure rather than immediate kinetic effect. While no single act of sabotage was publicly attributed directly to Denmark’s waters, the strategic geography and the vessels’ behaviour triggered Denmark’s shift toward undersea infrastructure surveillance. The Danish Defence and intelligence community subsequently raised warnings about maritime reconnaissance targeting dual-use installations. The pattern highlighted how Russia’s hybrid toolkit includes maritime intelligence-gathering prior to sabotage, reinforcing Denmark’s need to monitor “pre-attack” maritime signatures. The revelation also catalysed EU-NATO discussions on regulating civilian vessels engaged in seabed surveillance and forced Denmark to reconsider legal frameworks for “research” ships in its EEZ.