Ransomware Group Threatening to Leak Data Stolen From Coca-Cola’s Fairlife
The Anubis ransomware group is threatening to release stolen data from Coca-Cola’s Fairlife subsidiary unless a ransom is paid. The group has a history of double-extortion tactics, including wiping data to force payment, and has been active since December 2024, targeting over 100 organizations.
Coca-Cola’s Fairlife, a dairy subsidiary, experienced significant production disruptions following a ransomware attack. The Anubis ransomware group claimed responsibility for the attack and announced its intention to leak stolen data unless a ransom is paid. The group has been active since December 2024, and its leak website currently lists over 100 targeted organizations.
Anubis employs a double-extortion strategy, simultaneously encrypting files on compromised systems and exfiltrating data to maximize ransom demands. Notably, the group utilizes a ‘wiper mode’ that permanently deletes files, hindering recovery efforts.
Coca-Cola has been given a week to negotiate a ransom payment with the Anubis group, or the stolen data will be publicly released. The incident highlights the growing sophistication and aggressive tactics employed by ransomware groups.