United Natural Foods (UNFI), a major American grocery wholesaler and primary distributor for Amazon’s Whole Foods, has successfully restored its core systems following a significant cyberattack that disrupted operations in early June.
## Recovery and Current Status
The company announced Thursday that it has brought its electronic ordering and invoicing systems back online and contained the security incident. UNFI is now delivering products to retail stores at “more normalized levels” after weeks of operational challenges.
## Financial Impact Expected
In a filing with the Securities and Exchange Commission, UNFI warned that the cyberattack will likely have a material impact on its financial performance for the fourth quarter of fiscal 2025. The company experienced:
– Reduced sales volume during the recovery period
– Increased operational costs while implementing solutions
– Direct expenses for incident investigation and remediation
UNFI expects its cybersecurity insurance coverage to be adequate for the incident, though the full claim and settlement process will extend into fiscal 2026.
## Attack Details and Response
The cyberattack occurred on June 5, forcing UNFI to take systems offline and causing widespread disruptions. Social media reports indicated system outages and employee shift cancellations before the company officially disclosed the incident.
UNFI has engaged external cybersecurity experts to investigate the breach and notified law enforcement authorities. The company has not revealed the attack’s nature or identified any responsible ransomware groups. Importantly, UNFI stated that no personal information or protected health data was compromised, eliminating the need for consumer notifications.
## Company Profile
Based in Rhode Island, UNFI is a grocery industry powerhouse with:
– $31 billion in annual revenue (2024)
– Over 28,000 employees
– More than 11,000 suppliers
– 53 distribution centers
– Service to over 30,000 locations across the U.S. and Canada
## Industry Trend
UNFI joins a growing list of food industry companies targeted by cybercriminals. Recent incidents include Sam’s Club’s ransomware breach linked to the Clop gang, JBS Foods’ $11 million ransom payment in 2021, and attacks on UK retailers by Scattered Spider and DragonForce ransomware groups, who are now targeting U.S. retailers and insurance companies.
The incident highlights the ongoing cybersecurity challenges facing critical supply chain companies in the food distribution sector.
