# Wordpress RCE, New Windows 0-day and Coca-Cola's Fairline ransomed Page: https://stenobird.com/podcast/cybersecurity-today-65508/wordpress-rce-new-windows-0-day-and-coca-cola-s-fairline-ransomed Text version: https://stenobird.com/podcast/cybersecurity-today-65508/wordpress-rce-new-windows-0-day-and-coca-cola-s-fairline-ransomed.md Podcast: [Cybersecurity Today](https://stenobird.com/podcast/cybersecurity-today-65508) Published: 2026-07-20T01:00:00+00:00 Episode link: https://cybersecuritytoday.libsyn.com/wordpress-rce-new-windows-0-day-and-coca-colas-fairline-ransomed Audio file: https://traffic.libsyn.com/secure/cybersecuritytoday/Wordpress_RCE_New_Windows_0-day_and_Coca-Colas_Fairline_ransomed.mp3?dest-id=679928 Processing state: not_requested JSON: https://stenobird.com/v1/public/podcasts/cybersecurity-today-65508/episodes/wordpress-rce-new-windows-0-day-and-coca-cola-s-fairline-ransomed Duration seconds: 787 ## Resource New Windows zero-day, Coca-Cola's Fairlife hit by ransomware, and a core WordPress RCE David Shipley covers a new Windows zero-day disclosure from "Nightmare Eclipse" called LegacyHive, a local privilege escalation flaw in the Windows User Profile Service that could be weaponized despite a stripped-back public release, as Microsoft investigates and sets a Patch Tuesday record with 570 fixes including two exploited zero-days. Coca-Cola suspended U.S. production at its Fairlife dairy unit after a ransomware attack, with scope still being assessed and the Food and Ag ISAC warning the sector has seen about 205 attacks this year. Abbott faces two separate breach claims: ShinyHunters alleges vishing-led SSO compromise and massive data theft from legacy systems, while Shadowbytes claims access via LabCentral credentials, which Abbott disputes as non-sensitive. The episode also highlights Conti leak revelations about healthcare targeting and details a core WordPress bug chain (WP_2Shell) enabling unauthenticated RCE, now patched in 6.9.5 and 7.0.2. 00:00 Sponsor NordLayer 00:36 Headlines Preview 01:05 Windows Zero Day LegacyHive 03:35 Record Patch Tuesday 04:22 Fairlife Ransomware Shutdown 05:49 Abbott Dual Breach Probes 08:09 Conti Leaks Healthcare Cruelty 09:33 WordPress Core RCE WP 2Shell 11:29 Wrap Up And Listener Notes 12:06 Sponsor Message NordLayer ## Actions - request_transcript: `POST https://stenobird.com/v1/public/podcasts/cybersecurity-today-65508/episodes/wordpress-rce-new-windows-0-day-and-coca-cola-s-fairline-ransomed/transcription-requests` — Idempotently request low-priority transcript generation for this episode. - read_markdown: `GET https://stenobird.com/podcast/cybersecurity-today-65508/wordpress-rce-new-windows-0-day-and-coca-cola-s-fairline-ransomed.md` — Read the agent-friendly Markdown representation of this episode resource. A page view does not enqueue transcription. Agents should invoke `request_transcript` explicitly when they need this episode processed. ## Transcript Full transcripts are not published on public pages unless there is a clear rights basis.