Anubis ransomware gang claims Fairlife attack, threatens data leak
This digest was compiled by AI from multiple sources — links to the originals are below.

The Anubis ransomware gang claimed responsibility for the cyberattack on Coca-Cola's Fairlife dairy subsidiary, threatening to publish stolen data unless a ransom is paid. The gang alleges it stole 1 TB of corporate data and encrypted Fairlife's Nutanix infrastructure. Coca-Cola declined to comment on the claims.
The Attack
On July 16, Coca-Cola disclosed that a ransomware attack had disrupted Fairlife's operations, forcing a production halt at U.S. facilities. The company said attackers gained unauthorized access to production-related systems and that it activated incident response plans. Coca-Cola stated product quality and safety were unaffected and Canadian operations continued normally.
Anubis Claims
On Monday, the Anubis ransomware gang added Fairlife to its dark web leak site, claiming responsibility and alleging theft of 1 TB of corporate data. The gang warned it would publish the data unless Fairlife enters negotiations by the end of the week. Anubis claimed it attacked Fairlife a week before the public disclosure and encrypted the company's Nutanix infrastructure.
Ransomware Operation
Anubis is a ransomware-as-a-service operation that emerged in December 2024, targeting organizations worldwide. The group combines data theft with file encryption and uses stolen information as leverage. Last year, Anubis added a data wiper to its arsenal that destroys files to prevent recovery.
What's Next
Fairlife faces a deadline to negotiate with Anubis by the end of the week or risk data publication. It remains unclear whether the stolen data is genuine or if Coca-Cola will engage with the attackers.
2 sources
Anubis ransomware gang claims Fairlife attack, threatens data leak


