Fairlife ransomware attack recovery
Analysis based on 6 articles · First reported Jul 27, 2026 · Last updated Jul 29, 2026
The attack caused a temporary production halt at The Coca-Cola Company — Fairlife, but The Coca-Cola Company's swift recovery and inventory buffers minimized supply disruption. The company's statement of no material financial impact and upcoming earnings report helped contain negative sentiment.
The Coca-Cola Company's dairy subsidiary The Coca-Cola Company — Fairlife was hit by a ransomware attack in July 2026, attributed to the Anubis ransomware group. The attack forced a temporary suspension of production at The Coca-Cola Company — Fairlife's four U.S. facilities. Anubis claimed to have encrypted servers and stolen up to 1TB of data, threatening to leak it if demands were not met. The Coca-Cola Company worked with external cybersecurity experts and restored most production by July 28. The company stated that retail availability was largely unaffected due to existing inventory and that the incident would not have a material financial impact. The Coca-Cola Company — Fairlife's Canadian operations were not impacted. Anubis is a ransomware-as-a-service group that emerged in late 2024, using affiliates to gain access via stolen credentials or vulnerabilities like CitrixBleed2.
Set up alerts, explore entity relationships, search across thousands of events, and build custom intelligence feeds.
Open Dashboard