Cyber Incident Victim: Molson Coors
Date:
Mar 2021
Location:
United States of America
Summary
Molson Coors experienced a significant systems outage caused by a cybersecurity incident, which the company confirmed as a cyber attack. While some media outlets speculated about potential links to a widely reported Microsoft Exchange vulnerability, sources indicated the incident may have involved ransomware, though the exact nature and scope were not officially detailed. The disruption impacted operations, but specific details regarding data compromise or recovery timelines were not publicly disclosed in initial reports.
| CIA Posture | Motives | Tactics, Techniques & Procedures |
|---|---|---|
| Available to members | 1 motive | 1 technique |
| Threat Actors | Type | Location |
|---|---|---|
| 0 actors | Available to members | Available to members |
Description
On March 10, 2021, Molson Coors publicly confirmed it had experienced a systems outage resulting from a cybersecurity incident. The company’s chief communications and corporate affairs officer, Adam Collins, acknowledged the attack in a statement to WTMJ, though he did not disclose the specific date the disruption began. The incident caused operational interruptions across an unspecified range of systems, impacting the brewery’s normal business functions. While the company characterized the event broadly as a "cyber-security incident," it did not initially provide technical details regarding the attack vector, duration of the outage, or immediate containment measures. External observers noted the timing coincided with widespread reporting on vulnerabilities in Microsoft Exchange servers, though Molson Coors did not confirm any connection to that separate issue. The disruption highlighted the company’s reliance on interconnected digital systems for production, distribution, and corporate operations.

Molson Coors mobilized its incident response protocols following the detection of the attack, though the public disclosure did not specify whether external cybersecurity firms or law enforcement were engaged. The company’s statement focused on confirming the incident’s occurrence without detailing remediation steps or timelines for restoring affected systems. Industry analysts, citing anonymous sources referenced by BleepingComputer, speculated the attack involved ransomware due to the systems outage pattern, but Molson Coors neither confirmed nor denied this assessment. The incident’s financial impact, data compromise scope, and operational recovery duration remained undisclosed in initial communications. The outage underscored the broader vulnerabilities faced by manufacturing entities to disruptive cyber events capable of halting production and supply chain activities without warning.
