Cyber Resilience
← All news
Corroborated3

Anubis ransomware claims Coca-Cola Fairlife attack, threatens data leak

Sources (2)
What this means for you — CISO:Treat the Anubis claim as corroborated but not victim-confirmed: check whether Fairlife or Coca-Cola appear in your supplier, customer, or data-sharing relationships and ready partner-incident steps. Rehearse leak-site and double-extortion playbooks, including counsel review before any public response.
What this means for you — Lean IT orgs:You cannot fix a supplier’s breach—ask any vendor you depend on for Fairlife/Coca-Cola products whether shipments or data exchanges are affected and what their backup plan is. Keep your own offline backups and manual workarounds tested so a partner outage does not stop you.
What this means for you — MSP:Scan client estates for Anubis-related IOCs and note which clients rely on Fairlife or Coca-Cola in supply or retail chains. Standardize client advisories that separate a corroborated leak-site claim from victim confirmation, and offer backup/restore checks where dependency risk is real.
What this means for you — Researcher:Track the Anubis leak site for the claimed ~1 TB set, any proof samples, and whether Coca-Cola or regulators later confirm. Compare timing and naming to prior Fairlife/Coca-Cola reporting to map claim credibility and affiliate patterns.