The Coca-Cola Firm right now revealed {that a} ransomware assault affecting its Fairlife Dairy subsidiary has disrupted operations and quickly halted manufacturing of Fairlife merchandise throughout america.
Coca-Cola mentioned in a Kind 8-Ok submitting with the U.S. Securities and Trade Fee (SEC) that Fairlife detected unauthorized entry to a few of its techniques, together with production-related techniques, in reference to the ransomware assault.
“After discovering the difficulty, we instantly activated our incident response and enterprise continuity protocols,” Coca-Cola mentioned in a submitting.
“We’re persevering with to analyze and assess the affect of the incident with the help of exterior advisors and cybersecurity specialists. We’ve additionally notified legislation enforcement.”
The corporate mentioned the standard and security of its merchandise weren’t affected by the ransomware assault.
Nevertheless, the corporate confirmed that manufacturing at Fairlife’s U.S. services has been quickly halted whereas the corporate responds to the incident and restores affected techniques.
Canadian manufacturing operations usually are not affected at the moment.
Coca-Cola mentioned it’s working to revive affected techniques and resume operations, however the full affect of the incident remains to be beneath investigation.
Subsequently, it has not but been decided whether or not a cyber-attack in all fairness prone to materially affect us.
In case you have details about this incident or different undisclosed assaults, please contact us confidentially by way of Sign at 646-961-3731 or suggestions@bleepingcomputer.com.
Fairlife is certainly one of Coca-Cola’s dairy manufacturers, producing ultra-filtered dairy merchandise, protein shakes, and vitality drinks bought in america.
The corporate’s merchandise embrace Extremely Filtered Milk, Core Energy Protein Shakes, and Vitamin Plans.
Presently, Coca-Cola has not disclosed whether or not any knowledge was stolen through the assault, whether or not the corporate was being blackmailed, or what ransomware exercise was concerned.
Presently, no ransomware gang has claimed accountability for the assault. If knowledge is stolen throughout a breach, the attacker might later try to extort the corporate by threatening to launch the info until a ransom is paid.
When BleepingComputer contacted Coca-Cola to ask if the attackers had stolen knowledge, if the corporate had obtained extortion requests, and who the ransomware group was behind the assault, a spokesperson mentioned the corporate had nothing to share past its public assertion.

Safety groups doc 54% of profitable assaults and subject a warning on solely 14%. The remainder strikes invisibly by way of the setting.
Picus’ whitepaper exhibits how one can take a look at your SIEM and EDR guidelines in breach and assault simulations to make sure threats go undetected.
Get the white paper
