Coca-Cola says Fairlife production is returning after ransomware attack

The Coca-Cola Company says Fairlife has resumed the majority of production at its four facilities in the United States following a ransomware attack that disrupted its systems and temporarily halted operations.

That is very welcome news for Fairlife customers, myself included.

As I previously reported when the attack was disclosed, an unauthorized third party gained access to part of Fairlife’s systems and took certain data. The dairy company temporarily suspended production while it investigated the intrusion and worked to restore the affected technology.

Coca-Cola now says most production has resumed, although work continues to restore the remaining impacted systems and operations.

The company also says retail availability has been largely unaffected because stores and distributors already had Fairlife inventory on hand. Product quality and safety were not impacted by the ransomware event.

I was genuinely worried when the attack was announced because I drink Fairlife products every day. In fact, I bought a few extra containers just in case the production shutdown eventually caused shortages in my area.

Fairlife products generally have fairly long expiration dates, so stocking up on a few extra containers did not feel unreasonable. Thankfully, Coca-Cola says existing inventory was enough to keep products available at most retailers while production was interrupted.

My main concern was Fairlife chocolate milk, which has become a regular part of my daily routine. It offers plenty of protein, tastes better than many alternatives, and is not something I wanted ransomware criminals to take away from me.

Still, the incident was more serious than a temporary inconvenience for milk drinkers. Coca-Cola has now confirmed that the attackers took certain data, although the company has not publicly explained exactly what information was stolen or who may have been affected.

The company also has not identified the ransomware group responsible for the attack or said whether it paid, or was asked to pay, a ransom.

Based on the information currently available, Coca-Cola says it does not believe the incident had, or is reasonably likely to have, a material effect on its financial condition or operating results.

That assessment may reassure investors, but the attack remains another example of how ransomware can move beyond stolen files and unavailable websites. When production systems are involved, a cyberattack can shut down factories, interfere with deliveries, and potentially leave customers unable to buy products they rely on.

In this case, Fairlife appears to have avoided widespread shortages, and most production is now running again. That is good news, especially for people like me who consume its products daily.

I am glad I probably will not need the small emergency supply of Fairlife I purchased. Even so, I do not regret buying it. When ransomware criminals come between me and my daily chocolate milk, I am going to take the threat seriously.

Support independent tech journalism

NERDS.xyz is independently owned and operated. If you enjoy my coverage of Linux, AI, hardware, cybersecurity, and tech culture, consider supporting the site on Ko-fi.

Support NERDS.xyz
Written by

Brian Fagioli

Technology journalist and founder of NERDS.xyz

Brian Fagioli is a technology journalist and founder of NERDS.xyz. A former BetaNews writer, he has spent over a decade covering Linux, hardware, software, cybersecurity, and AI with a no nonsense approach for real nerds.

Leave a Comment