Anubis ransomware claims Coca-Cola Fairlife attack, threatens data leak

Coca-Cola’s Fairlife Dairy Subsidiary Hit by Anubis Ransomware, Threatened with Data Leak

The Anubis ransomware gang has claimed responsibility for a cyberattack on Coca-Cola’s Fairlife dairy subsidiary, threatening to publish allegedly stolen corporate data unless the company pays a ransom. This brazen move highlights the growing threat of ransomware gangs using data theft as leverage to extort victims.

Fairlife is one of Coca-Cola’s leading dairy brands in the United States, producing ultra-filtered milk products, protein shakes, and nutrition drinks. The company’s operations were severely disrupted by the ransomware attack, with production suspended at its U.S. facilities. However, it appears that Fairlife’s Canadian operations continued uninterrupted.

According to reports, the attackers gained unauthorized access to a portion of Fairlife’s systems, including production-related systems, prompting Coca-Cola to activate its incident response and business continuity plans. The company initially declined to disclose whether data was stolen or whether an extortion demand had been received.

Now, however, the Anubis ransomware gang has come forward, claiming responsibility for the attack and alleging that they stole approximately one terabyte of corporate data during the incident. The gang warned that it would publish the stolen data unless Fairlife enters negotiations by the end of the week. In a statement to BleepingComputer, the gang claimed that they had encrypted Fairlife’s Nutanix infrastructure and that the company has “no chance of recovering without our encryption key.”

The Anubis ransomware gang is known for its ruthless tactics, combining data theft with file encryption to pressure victims into paying a ransom. This approach has proven effective in extorting millions from unsuspecting organizations worldwide. In recent years, the gang has added a new tool to its arsenal – a “data wiper” that destroys victim files to make recovery impossible.

The Anubis gang’s attack on Fairlife dairy is a stark reminder of the growing threat of ransomware and data theft in today’s digital landscape. As more organizations fall prey to these attacks, it’s clear that cybersecurity teams need to stay one step ahead of attackers. This requires robust security measures, including regular penetration testing and breach simulation exercises.

To protect themselves from similar attacks, organizations should prioritize robust security hygiene, including implementing robust access controls, regularly updating software, and conducting thorough risk assessments. Moreover, cybersecurity teams must be vigilant in monitoring their networks for suspicious activity, using a combination of traditional security tools and next-generation solutions to detect even the most sophisticated threats.

Ultimately, the Anubis ransomware gang’s attack on Fairlife dairy serves as a wake-up call for organizations worldwide to take their cybersecurity defenses seriously. By staying proactive and vigilant, organizations can minimize the risk of falling prey to these ruthless attackers.


Source: Bleeping Computer — 2026-07-21