Close×

Most of Lion’s key systems have been restored following a ransomware attack earlier in the month. All its breweries are back up and running, the company said, with brewing, kegging, packaging, and distributing beer underway at its nine major breweries in Australia and New Zealand.

All dairy and juice sites are operational and across many parts of its business customers can place orders and view their invoices online.

The company said it is working on the remaining ordering platforms to get them operational as soon as possible.

It warned there could be further disruptions as systems are restored.

“The timing of this attack – just as the hospitality industry is trying to get back on its feet post-Covid-19 closures – could not have been more challenging for Lion and our industry partners.

“To date, we still do not have evidence of any data being removed. As we indicated last week, it remains a real possibility that data held on our systems may be disclosed in the future. Unfortunately, this is consistent with these types of ransomware attacks,” it said.

The company was hit by the ransomware attack on 8 June, with a second incident 10 days later.

The company’s cyber help line remains open 24 hours, seven days a week, and we encourage any Lion stakeholders that may have questions or concerns about the cyber-attack to use this service.

Australia: 1800 316 512 

New Zealand: 0800 623 367 

International: +61 3 8597 7266 

Food & Drink Business

Noumi has lifted net revenue 8.8 per cent to $648.4 million and adjusted operating EBITDA 7.6 per cent to $61.8 million in FY26, in what is likely its final full year result as a listed company.

Bega Group returned to profit in FY26, reversing the $8.5 million loss in FY25 as two years of manufacturing rationalisation took effect. Revenue rose 6.7 per cent to $3.77 billion and statutory EBITDA lifted 22.2 per cent to $202.3 million.

Two of the most widely deployed supervisory controllers in commercial refrigeration carried vulnerabilities that would let an attacker manipulate cooling equipment while the system continued to report normal temperatures, according to research by industrial cyber security firm, Claroty.