Coca-Cola has confirmed that a ransomware attack on its Fairlife subsidiary led to a significant data breach. The disclosure follows a cybersecurity incident that halted operations at Fairlife facilities in the U.S. while investigations were conducted.
Details of the Cybersecurity Incident
On July 16, Coca-Cola announced the cyber intrusion, which prompted a temporary suspension of production activities at Fairlife. The Anubis ransomware group later claimed responsibility, displaying Coca-Cola and Fairlife on its leak site by July 20. The group alleged that it had encrypted files and extracted approximately 1 TB of sensitive data.
Following the incident, Coca-Cola has resumed most operations at Fairlife’s four U.S. facilities. However, the company confirmed that some data was compromised, though it did not provide specific details about the nature or extent of the breach.
Impact on Fairlife Products and Financials
Despite the breach, Coca-Cola assured that the availability of Fairlife products in retail outlets was largely unaffected, thanks to existing inventory levels. The company emphasized that the quality and safety of their products remain uncompromised.
In terms of financial impact, Coca-Cola conveyed confidence that the incident would not significantly affect its financial condition or operational results.
Anubis Ransomware Threats and Techniques
As the Anubis ransomware group continues to threaten the release of stolen data, a countdown on its website suggests imminent public exposure unless a ransom is paid. The exact nature of the compromised data remains unclear, though such groups often inflate the significance of the stolen information.
Active since December 2024, Anubis has targeted around 100 organizations, employing a double-extortion technique that combines file encryption with data exfiltration. A notorious feature of Anubis is its ‘wiper mode,’ which can permanently delete files, making recovery impossible.
The ongoing threat of ransomware underscores the critical need for enhanced cybersecurity measures across industries, highlighting the importance of vigilance and preparedness in mitigating potential breaches.
