COCA-COLA SUSPENDS FAIRLIFE DAIRY OPERATIONS AFTER RANSOMWARE ATTACK
Coca-Cola discovered on 16 July 2026 that an unauthorised third party gained access to systems at fairlife, its dairy subsidiary, in connection with a ransomware attack. The company suspended fairlife's operations in the United States following the breach. Coca-Cola engaged external cybersecurity experts to address the incident and notified relevant authorities. Production at fairlife's Canadian facilities continues to operate normally.
The attack targeted systems related to production at fairlife, though the company stated that product quality and safety remain unaffected by the breach. According to available data, fairlife generated $4 billion in sales during 2024. The full scope and nature of the incident remain under investigation, and Coca-Cola has not yet determined whether the breach is reasonably likely to have a material effect on the company's operations or financial position.
The suspension of fairlife's United States production may result in reduced availability of dairy products from the subsidiary in retail stores whilst systems are restored. Coca-Cola has not disclosed details of any ransom demand or provided a timeline for resuming operations. The investigation is ongoing.