Voyage Tech Blogs

Voyage Technology has been serving the Beaver Dam area since 1999, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

The Lessons to Learn from Coca-Cola’s Insider Trade Secret Theft

The Lessons to Learn from Coca-Cola’s Insider Trade Secret Theft

In today’s business, your data is your number one asset. For this reason it is important that you take steps to protect it. One case that accentuates this is the case of Xiaorong You, which is currently playing out in a Tennessee court. The accused is charged with stealing trade secrets and committing corporate espionage, as she is accused of allegedly stealing almost $120 million worth of BPA-free technologies from several companies, among them the Eastman Chemical Company and Coca-Cola.

Let’s take a look at how these two companies deployed their threat detection systems and the effect they had on the companies. 

You’s Story

Xiaorong “Shannon” You, a naturalized US citizen and Ph.D. in Polymer Science and Engineering, has worked at several companies since the early ‘90s. From December of 2012 to August of 2017, she worked for Coca-Cola as a principal engineer for global research, moving to the Eastman Chemical Company to work as a packaging application development manager from September of 2017 until June of 2018, when her employment was terminated.

During her tenure at both companies, You was given access to many trade secrets that only a handful of employees were privy to. In the indictment, You is charged with retaining these secrets (despite affirming that she hadn’t in writing) and then handing them over to the People’s Republic of China in an attempt to qualify for its The Thousand Talents program. This program has been used before to introduce advanced technologies to China, with the Department of Justice having prosecuted some cases similar to You’s.

Her modus operandi was that she retained this information by simply uploading data to her personal Google Drive account or captured especially sensitive information on her smartphone. Once she captured this data, You worked with a Chinese national named Xiangchen Liu to form a separate company in China that went ahead to use these trade secrets to begin revenue generation. They allegedly used an Italian BPA-free manufacturer to incorporate the stolen technologies onto their own products.

The theft of this information impacted several companies, including Coca-Cola and The Eastman Chemical Company, AkzoNobel, Dow Chemical, PPG, TSI, Sherwin Williams, and ToyoChem. This led to the charges she currently faces.

How You’s Employers Could Have Stopped Such Activities

There were stark differences between the way that Coca-Cola and The Eastman Chemical Company handled these issues. You left Coca-Cola in August of 2017, but her indictment states that the crimes she’s charged with didn’t happen until 2019. This means that Coca-Cola had no knowledge of the theft until after she had been exposed by her later employer. 

This fact is indicative of two reasonable hypotheses:

  1. Coca-Cola lacked the tools to detect such activities in real-time, making it far more difficult to prevent protected and sensitive data from successfully leaving the corporate environment.
  2. Coca-Cola also lacked the policies that could have prevented non-authorized devices from entering the workspace or otherwise being kept in proximity to sensitive company data or infrastructures. While old-fashioned, the concept of taking photographs of such information is no less effective for its age.

If you compare that to You’s sudden dismissal from the Eastman Chemical Company, you would have to consider that they had the data protection standards implemented to catch would-be thieves pretty rapidly.  If they hadn’t, the $120 million in trade secrets could have been substantially more. 

This just goes to show that any business can have the right idea about security, but not pay close enough attention to the details. Coca-Cola is a massive brand, but it couldn’t stop You from allegedly raking the company over the coals. 

If your business has information that you need to protect, whether it is covered by compliance regulations or not, the IT professionals at Voyage Technology can help you put in a platform that can keep your digital assets, intellectual property, and any other sensitive data secure. Give us a call today at 800.618.9844 for more information.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Wednesday, 06 May 2026

Captcha Image

Sign Up For Our Newsletter!

Mobile? Grab this Article!

Qr Code

Tag Cloud

Security Technology Tip of the Week Best Practices Data Business Computing Business Productivity Software Innovation Hackers Cloud Efficiency Hardware Network Security User Tips Internet IT Services Malware Phishing IT Support Workplace Tips Privacy Google Email Computer Workplace Strategy Hosted Solutions Backup Collaboration Small Business Users Ransomware Managed Service AI Mobile Device Productivity Microsoft Quick Tips Passwords Saving Money Communication Cybersecurity Data Backup Smartphone Disaster Recovery Data Recovery Android VoIP Upgrade Smartphones Business Management Mobile Devices communications Windows Social Media Browser Microsoft Office Managed IT Services Current Events Network Tech Term Remote Internet of Things Miscellaneous Information Holiday Automation Artificial Intelligence Facebook Gadgets Cloud Computing Training Covid-19 Compliance Server Managed Service Provider IT Support Remote Work Outsourced IT Encryption Spam Employee/Employer Relationship Office Windows 10 Government Data Management Business Continuity Blockchain Vendor Wi-Fi Business Technology Windows 10 Bandwidth Virtualization Data Security Apps Managed Services Two-factor Authentication Mobile Office App Employer-Employee Relationship Voice over Internet Protocol BYOD Mobile Device Management Tip of the week Chrome Gmail Budget WiFi Apple Networking How To BDR HIPAA Computing Hacker Physical Security Applications Information Technology Avoiding Downtime Marketing Access Control Office 365 Conferencing Password Managed IT Services Healthcare Operating System Computers Router Virtual Private Network Risk Management Website Health Help Desk Office Tips Analytics Augmented Reality Retail Storage Bring Your Own Device 2FA Big Data Social Cooperation Excel Going Green Patch Management Remote Workers Save Money Remote Monitoring Vulnerability End of Support Customer Service Vendor Management Cybercrime Free Resource Display Project Management Windows 7 Printer Paperless Office Microsoft 365 Infrastructure Monitoring Solutions Firewall Document Management Managed IT Service Telephone Windows 11 The Internet of Things Scam Data loss Video Conferencing Managed Services Provider Professional Services Virtual Machines Telephone System Robot Customer Relationship Management Cost Management Settings Printing Wireless iPhone Content Filtering Hacking IT Management Presentation VPN YouTube Meetings Vulnerabilities Cryptocurrency Data Privacy Wireless Technology User Tip Modem Computer Repair Mobile Security Processor Images 101 Mobility Virtual Desktop Multi-Factor Authentication Data storage LiFi Word Smart Technology Outlook Machine Learning Money Saving Time Employees Integration Humor Safety Maintenance Antivirus Sports Downloads Mouse Holidays Licensing Data Storage Supply Chain Entertainment Administration Alert Employer/Employee Relationships Outsourcing Application Best Practice Trends Managed IT Customer Resource management Buisness File Sharing Regulations PCI DSS Dark Data Google Calendar Navigation Workplace IBM Legal Data Analysis IT solutions Star Wars Gig Economy How To Microsoft Excel Notifications Staff Internet Service Provider Teamwork Hiring/Firing Business Growth Gamification Travel Social Networking Regulations Compliance Legislation Evernote Paperless Co-managed IT Techology Fileless Malware Google Maps Cortana Memes Wearable Technology Net Neutrality SQL Server Technology Care Alt Codes Content Competition Health IT Downtime Unified Threat Management Motherboard Financial Data Comparison History Business Communications Scams Unified Threat Management Directions Hosted Solution Assessment Smartwatch Permissions IT Procurement Azure Hybrid Work Typing Telework Network Congestion Specifications Cyber security Tech Human Resources Communitications Cables Google Drive User Error Microchip User Internet Exlporer CES Knowledge Fraud Username Supply Chain Management Term Google Apps Point of Sale FinTech 5G Black Friday Experience IT Assessment IT Maintenance IP Address Google Docs Unified Communications Database Bitcoin Network Management Running Cable Tech Support IT Technicians Flexibility Value Business Intelligence Shortcuts Google Wallet Proxy Server Cookies Organization Monitors Cyber Monday Hotspot Smart Devices Ransmoware Recovery Tactics Digital Security Cameras Hard Drives Windows 8 Laptop Websites Mirgation Remote Working Memory Vendors Google Play Be Proactive Domains Drones Nanotechnology Data Breach Electronic Medical Records Language Electronic Health Records Workforce SharePoint Addiction Videos Refrigeration Management Halloween Chatbots Wasting Time Threats Security Cameras Workplace Strategies Public Speaking Lenovo Screen Reader Writing Distributed Denial of Service Trend Micro Virtual Reality Computing Infrastructure Software as a Service Meta Lithium-ion battery Service Level Agreement Hacks Server Management Entrepreneur Scary Stories Private Cloud Identity Managing Costs Amazon SSID Superfish Bookmark Identity Theft Smart Tech Fun eCommerce Twitter Alerts Surveillance Virtual Assistant Outsource IT Deep Learning Download Undo Error Virtual Machine Environment Media Medical IT Browsers Education Connectivity Reviews Social Engineering Break Fix Remote Computing Development Transportation Small Businesses Upload Mobile Computing Social Network Multi-Factor Security Hypervisor Displays PowerPoint Tablet IoT Shopping Search Dark Web Optimization

Blog Archive