<?xml version="1.0" encoding="utf-8"?>
<oembed>
  <version>1</version>
  <type>rich</type>
  <provider_name>Libsyn</provider_name>
  <provider_url>https://www.libsyn.com</provider_url>
  <height>90</height>
  <width>600</width>
  <title>WordPress Feeding Frenzy, Another Healthcare Supply Chain Breach, Qillin Targets Palo Alto Bug</title>
  <description>WP2Shell WordPress RCE feeding frenzy, AI agent breaches Hugging Face, Killin hits Palo Alto VPN flaw &amp;amp;nbsp; This episode covers five major incidents: a chained WordPress exploit dubbed WP2Shell (CVE-2026-6330 and CVE-2026-6137) enabling anonymous remote code execution on stock installs, now seeing tens of thousands of Internet-wide attempts, backdoor admin accounts, and web shell payloads despite forced auto-updates to 6.9.5 and 7.0.2. &amp;amp;nbsp; Hugging Face’s disclosure that an autonomous AI agent breached its production infrastructure via a malicious dataset, stole limited internal datasets and credentials, and forced responders to work around restrictive model guardrails. &amp;amp;nbsp; Arctic Wolf’s report that the Killin ransomware gang is exploiting Palo Alto PAN-OS GlobalProtect auth bypass CVE-2026-0257 for domain-wide encryption; and healthcare supply-chain fallout including Craneware file exfiltration. &amp;amp;nbsp; EY client tax-data exposure via a third-party platform. &amp;amp;nbsp; 00:00&amp;amp;nbsp;Top Stories Teaser 00:28&amp;amp;nbsp;WP2Shell WordPress Frenzy 02:58&amp;amp;nbsp;AI Agent Hacks Hugging Face 05:16&amp;amp;nbsp;Killin Hits Palo Alto VPNs 07:33&amp;amp;nbsp;Craneware Healthcare Breach 09:15&amp;amp;nbsp;EY Third Party Data Leak 10:47&amp;amp;nbsp;Wrap Up and Sign Off </description>
  <author_name>Cybersecurity Today</author_name>
  <author_url>https://www.technewsday.ca</author_url>
  <html>&lt;iframe title="Libsyn Player" style="border: none" src="//html5-player.libsyn.com/embed/episode/id/42175870/height/90/theme/custom/thumbnail/yes/direction/forward/render-playlist/no/custom-color/88AA3C/" height="90" width="600" scrolling="no"  allowfullscreen webkitallowfullscreen mozallowfullscreen oallowfullscreen msallowfullscreen&gt;&lt;/iframe&gt;</html>
  <thumbnail_url>https://assets.libsyn.com/secure/content/204353685</thumbnail_url>
</oembed>
