Coca-Cola Confirms Data Breach After Fairlife Ransomware Attack

Coca-Cola Confirms Data Breach After Fairlife Ransomware Attack

A devastating cyberattack has left one of the world’s largest beverage companies reeling. Coca-Cola has confirmed that its dairy products subsidiary, Fairlife, was hit by a ransomware attack from the Anubis group. The cybercriminals claim to have stolen over 1 terabyte (TB) of confidential data, including files and sensitive information.

The attack occurred in mid-July, when production at four Fairlife facilities in the US was suspended while Coca-Cola investigated the incident. Although a majority of production has since resumed, the exact nature of the stolen data remains unclear. In a statement, Coca-Cola acknowledged that some data had been taken but assured customers that product quality and safety have not been compromised.

The Anubis ransomware group is known for its aggressive tactics, which include encrypting files on compromised systems and exfiltrating valuable data to increase pressure on victims to pay the ransom. This particular cybercrime gang has been active since December 2024 and has listed over 100 targeted organizations on its website. What sets Anubis apart is its “wiper mode” feature, which enables it to permanently delete victims’ files and prevent recovery.

In this case, the attackers have given Coca-Cola a two-hour window to pay the ransom before releasing the stolen data publicly. However, experts warn that extortion gangs often exaggerate the importance of the files they’ve stolen to intimidate their victims into paying. The Anubis group’s tactics are designed to maximize pressure on companies like Coca-Cola, which may be reluctant to disclose the full extent of the breach.

The impact of this incident extends beyond Fairlife and Coca-Cola alone. With a global network of suppliers and partners, the ripple effects of this data breach could reach far and wide. It also highlights the growing threat posed by ransomware attacks, which have become increasingly sophisticated in recent years. As companies grapple with the consequences of this attack, it’s essential to remember that prevention is key.

In the wake of this incident, businesses can take a crucial step towards mitigating similar threats: regular security audits and vulnerability assessments. By identifying potential weaknesses before an attacker exploits them, organizations can minimize the risk of a catastrophic data breach. Additionally, investing in robust backup systems and employee education on cybersecurity best practices can help prevent such incidents from occurring in the first place.

Ultimately, this incident serves as a stark reminder that no company is immune to cyber threats. As we navigate an increasingly interconnected world, companies like Coca-Cola must prioritize cybersecurity above all else – not just for their own sake but also for the trust and loyalty of their customers.


Source: SecurityWeek — 2026-07-27