Coca-Cola said a ransomware attack at its Fairlife dairy subsidiary temporarily stopped production of Fairlife products at U.S. facilities. In an SEC Form 8-K, the company said attackers gained unauthorized access to some systems, including production-related systems, and that it activated incident response and business continuity measures; Canadian production was not affected, and no ransomware group or data theft has yet been confirmed.
Eduard Kovacs
2026.07.22
97% relevant
This directly updates the same Fairlife incident by identifying Anubis as the claiming extortion group, saying it listed Coca-Cola and Fairlife on its leak site, alleging 1 TB of stolen confidential data and encrypted servers, and setting a one-week ransom deadline.
Lawrence Abrams
2026.07.21
96% relevant
This article updates the same Fairlife ransomware event by adding that the Anubis ransomware gang has claimed responsibility, says it encrypted Nutanix systems, and alleges it stole about 1 TB of corporate data with a leak threat deadline.
2026.07.17
99% relevant
This article reports the same underlying event and adds details that Fairlife detected the intrusion on Thursday, that U.S. production was temporarily halted while Canada was not affected, and that Coca-Cola says product quality and safety were not impacted and the full scope remains unknown.
Ionut Arghire
2026.07.17
99% relevant
This article reports the same event and adds SecurityWeek's coverage of Coca-Cola's SEC filing, including that attackers accessed part of Fairlife's systems including production-related systems, U.S. production was temporarily suspended, Canada operations were not impacted, and product quality and safety were unaffected.
Lawrence Abrams
2026.07.16
100% relevant
This article appears to be the first concrete report of the specific Fairlife ransomware event, anchored by Coca-Cola's public SEC disclosure that U.S. production was suspended.