The Coca-Cola Company disclosed a cyberattack on its subsidiary Fairlife in an SEC Form 8-K filing on July 16, 2026. This incident involved unauthorized access to Fairlife’s production-related systems via a ransomware event, leading to a temporary suspension of U.S. manufacturing operations. Coca-Cola has notified law enforcement and activated incident response protocols.
At this time, specific data types exposed, the number of individuals affected, and the states impacted have not been publicly confirmed. Coca-Cola stated that the full scope, nature, and impact of the incident are still under investigation. There has been no confirmed database exfiltration of personal consumer data, such as SSNs or financial records. Product quality and safety were not affected.
Details regarding affected individuals and specific data types may emerge as the investigation progresses. Official breach notification letters to consumers or state Attorney General filings related to data exposure have not yet been published.