The beverage giant halted operations at its Fairlife dairy following a ransomware breach that disrupted production systems across the U.S. plant.

Coca‑Cola has temporarily shut down production at its Fairlife dairy facility after a ransomware attack crippled the plant’s computer systems.

Ransomware breach halts operations

The attack targeted the dairy’s manufacturing execution system, preventing operators from accessing production schedules, inventory data, and equipment controls. As a precaution, Coca‑Cola suspended all processing lines while IT teams work to contain the breach.

The incident was first reported by the company’s corporate security team, which confirmed that no customer data had been compromised, but the disruption affected the plant’s ability to produce and ship Fairlife milk and protein products.

Impact on supply chain

The shutdown is expected to create short‑term shortages of Fairlife’s high‑protein milk in U.S. grocery stores. Retailers have been advised to adjust orders and seek alternative suppliers until the plant resumes normal operations.

  • Reduced inventory of Fairlife milk in supermarkets
  • Potential delays for contract manufacturers relying on Fairlife ingredients
  • Increased demand for competing high‑protein dairy brands

Company response and next steps

Coca‑Cola’s spokesperson said the company is working with cybersecurity experts and law‑enforcement agencies to investigate the breach. The firm plans to conduct a full forensic review and implement additional network segmentation to prevent future attacks.

The company also emphasized that it will keep the public informed about the plant’s status and any expected timeline for resuming production.

"We are taking this incident very seriously and are committed to restoring operations as quickly and safely as possible," the spokesperson said.

For more details, see the TechCrunch coverage of Coca‑Cola’s Fairlife dairy ransomware incident.

TechCrunch article on Coca‑Cola Fairlife ransomware attack