
Several leading companies, including Starbucks, Morrisons, and BIC, are working to restore operations after a ransomware attack on Blue Yonder, a digital supply chain provider, disrupted systems just before Thanksgiving.
Blue Yonder, which supports global supply chains, confirmed the attack last Thursday, affecting customers differently. Starbucks reported disruptions to its scheduling platform but assured staff that payroll and holiday pay remain unaffected. BIC noted minor shipping delays, while Morrisons faced challenges in managing fresh food and produce supply but has activated backup systems to minimise impact.
UK supermarket chain Sainsbury’s has restored services, while other major firms like Wegmans, Tesco, and DHL confirmed they were not impacted. However, Blue Yonder has yet to provide a recovery timeline, and no ransomware group has claimed responsibility for the attack.
Experts warn that the incident underscores the risks of third-party reliance in digital ecosystems. Nabil Hannan, Field CISO at NetSPI, highlighted how interconnected systems amplify vulnerabilities, while Semperis Vice President Dan Lattimer suggested that attackers may exploit holiday pressures to extract ransoms.
Blue Yonder’s response and the broader impact of this attack highlight the growing need for resilience in managing supply chain cybersecurity.
Winstone House, 3rd Floor,
Units 306-309, 2-4 Dollis park,
London, N3 1HF
020 8349 4363
© 2026, Lyonsdown Limited. teiss® is a registered trademark of Lyonsdown Ltd. VAT registration number: 830519543