Episode

Wordpress RCE, New Windows 0-day and Coca-Cola's Fairline ransomed

Podcast
Cybersecurity Today
Published
Jul 20, 2026
Duration seconds
787
Processing state
not_requested
Canonical source
https://cybersecuritytoday.libsyn.com/wordpress-rce-new-windows-0-day-and-coca-colas-fairline-ransomed
Audio
https://traffic.libsyn.com/secure/cybersecuritytoday/Wordpress_RCE_New_Windows_0-day_and_Coca-Colas_Fairline_ransomed.mp3?dest-id=679928
JSON
/v1/public/podcasts/cybersecurity-today-65508/episodes/wordpress-rce-new-windows-0-day-and-coca-cola-s-fairline-ransomed
Markdown
/podcast/cybersecurity-today-65508/wordpress-rce-new-windows-0-day-and-coca-cola-s-fairline-ransomed.md

Actions

  • POST https://stenobird.com/v1/public/podcasts/cybersecurity-today-65508/episodes/wordpress-rce-new-windows-0-day-and-coca-cola-s-fairline-ransomed/transcription-requests
    Idempotently request low-priority transcript generation for this episode.
  • GET https://stenobird.com/podcast/cybersecurity-today-65508/wordpress-rce-new-windows-0-day-and-coca-cola-s-fairline-ransomed.md
    Read the agent-friendly Markdown representation of this episode resource.

Summary

New Windows zero-day, Coca-Cola's Fairlife hit by ransomware, and a core WordPress RCE David Shipley covers a new Windows zero-day disclosure from "Nightmare Eclipse" called LegacyHive, a local privilege escalation flaw in the Windows User Profile Service that could be weaponized despite a stripped-back public release, as Microsoft investigates and sets a Patch Tuesday record with 570 fixes including two exploited zero-days. Coca-Cola suspended U.S. production at its Fairlife dairy unit after a ransomware attack, with scope still being assessed and the Food and Ag ISAC warning the sector has seen about 205 attacks this year. Abbott faces two separate breach claims: ShinyHunters alleges vishing-led SSO compromise and massive data theft from legacy systems, while Shadowbytes claims access via LabCentral credentials, which Abbott disputes as non-sensitive. The episode also highlights Conti leak revelations about healthcare targeting and details a core WordPress bug chain (WP_2Shell) enabling unauthenticated RCE, now patched in 6.9.5 and 7.0.2. 00:00 Sponsor NordLayer 00:36 Headlines Preview 01:05 Windows Zero Day LegacyHive 03:35 Record Patch Tuesday 04:22 Fairlife Ransomware Shutdown 05:49 Abbott Dual Breach Probes 08:09 Conti Leaks Healthcare Cruelty 09:33 WordPress Core RCE WP 2Shell 11:29 Wrap Up And Listener Notes 12:06 Sponsor Message NordLayer