The Coca-Cola Company has reported a significant ransomware attack impacting its Fairlife Dairy subsidiary, which has disrupted operations and temporarily halted production of Fairlife products nationwide.
In a Form 8-K filing with the U.S. Securities and Exchange Commission (SEC), Coca-Cola confirmed that Fairlife detected unauthorized access to critical systems, including those related to production, due to this ransomware incident.
“Upon discovering the breach, we immediately activated our incident response and business continuity protocols,” Coca-Cola stated in an official release.
The company is actively investigating the incident with the help of cybersecurity professionals and has notified law enforcement agencies.
Importantly, Coca-Cola confirmed that the quality and safety of Fairlife products remain uncompromised, despite the disruptions caused by the ransomware attack.
Currently, production at Fairlife’s U.S. facilities is temporarily paused while recovery efforts and system restorations are underway. Notably, Canadian manufacturing operations remain unaffected.
Coca-Cola is diligently working to restore affected systems and resume normal operations; however, the full ramifications of this cyber incident are still being assessed.
The company has acknowledged that it is too early to determine whether the cyber-attack will materially affect business outcomes.
If you have any information regarding this incident or similar undisclosed attacks, please reach out confidentially via Signal at 646-961-3731 or [email protected].
Fairlife is a renowned brand under Coca-Cola, specializing in ultra-filtered dairy products, protein shakes, and energy drinks available across the United States.
Among its offerings are Ultra Filtered Milk, Core Power Protein Shakes, and various Nutrition Plans.
Currently, Coca-Cola has not revealed whether any sensitive data was compromised during the attack, nor has it confirmed if extortion requests were made or the specific nature of the ransomware involved.
As of now, no ransomware group has claimed responsibility for the attack. Should data be stolen, there is potential for the perpetrators to threaten the company with its release unless a ransom is paid.
When BleepingComputer reached out to Coca-Cola for clarification on any stolen data, extortion requests, or the identity of the ransomware group, a spokesperson indicated that the company has no additional comments beyond its public statement.
Security teams document 54% of successful cyber attacks but warn about only 14%. The remainder moves undetected within the environment.
Picus’ whitepaper illustrates how to test your SIEM and EDR rules in breach and attack simulations to uncover hidden threats.
Source: www.bleepingcomputer.com




