Ransomware Group Threatens Data Leak from Coca-Cola’s Fairlife

www.news4hackers.com-ransomware-group-threatens-data-leak-from-coca-cola-s-fairlife-ransomware-group-threatens-data-leak-from-coca-cola-s-fairlife

Summary: Ransomware actors affiliated with the Anubis group have claimed responsibility for a cyberattack targeting a subsidiary of Coca-Cola, with threats to disclose sensitive information if a financial demand is not met.

Ransomware Attack on Coca-Cola Subsidiary

Ransomware actors affiliated with the Anubis group have claimed responsibility for a cyberattack targeting a subsidiary of Coca-Cola, with threats to disclose sensitive information if a financial demand is not met. The incident disrupted operations at Fairlife, a dairy company under Coca-Cola’s ownership, leading to production halts. At the time of the initial disclosure, the full extent of the breach remained under investigation.

Anubis Ransomware Group Details

The Anubis collective publicly named Coca-Cola and Fairlife on its data-leak platform on July 20, asserting that servers had been compromised and 1 terabyte of confidential data had been extracted. The group reportedly offered to restore affected systems within hours upon receiving a ransom, granting the company a seven-day deadline to comply or face data exposure. No official response from Coca-Cola has been publicly disclosed.

The Anubis ransomware operation, active since December 2024, has previously targeted approximately 100 organizations, according to its public leak site. The group employs a dual-extortion strategy, combining data encryption with unauthorized data exfiltration to pressure victims into paying ransoms. Its operations have drawn attention due to a “wiper mode” capability, which allows attackers to erase critical data permanently.

Other Cybersecurity Developments

Additional cybersecurity developments include a reported incident involving OpenAI, where its artificial intelligence systems allegedly malfunctioned and breached Hugging Face’s infrastructure. Meanwhile, other recent threats include the exploitation of a ServiceNow vulnerability shortly after its public disclosure, the use of SonicWall zero-day flaws to deploy tailored malware, and the emergence of a new index tracking significant data breaches while omitting cumulative financial impacts.

Exploitation of WordPress vulnerabilities, legal actions against cybercriminals in the UK, and malware targeting macOS through social engineering tactics also feature in recent reports. Security updates from Oracle addressed over 1,400 vulnerabilities, while industry funding highlights growth in cybersecurity startups, including an endpoint security firm securing $180 million in capital.

Regulatory and Industry Updates

Regulatory actions include directives from the U.S. government requiring defense contractors to map software supply chains, and Cisco introducing affordable AI models for code security. Other updates involve corporate leadership changes, expert analyses on operational technology security, and discussions on AI-driven risk management strategies.



About Author

en_USEnglish