Logo
Search
Login
Sign Up
Logo
Oliver Buchannon
Ryan Bilak

Founder DoGood Founder LaptopReturn.com

Your vendor questionnaire is already obsolete

Jun 17, 2026

•

3 min read

Your vendor questionnaire is already obsolete

Five enterprise IT teams in four industries spent last month shopping for what replaces the annual vendor questionnaire.

Ryan Bilak
Ryan Bilak
Week Ahead: Oracle Zero-Day Hits HR Data

Jun 15, 2026

•

2 min read

Week Ahead: Oracle Zero-Day Hits HR Data

Oracle PeopleSoft zero-day hit 100+ orgs. Your AI estate may be ungoverned. And the CIO mandate just shifted.

Ryan Bilak
Ryan Bilak
Both your AI vendors filed S-1s

Jun 12, 2026

•

3 min read

Both your AI vendors filed S-1s

OpenAI filed June 8. Anthropic June 1. Both in one week, plus a wormable kernel flaw and 52 days to EU enforcement.

Ryan Bilak
Ryan Bilak
AI code ships. Who patches it?

Jun 10, 2026

•

3 min read

AI code ships. Who patches it?

Three security leaders asked the same question this week: who auto-remediates AI-generated vulnerabilities at scale?

Ryan Bilak
Ryan Bilak
Copilot lands on your fleet today

Jun 8, 2026

•

2 min read

Copilot lands on your fleet today

Microsoft's AI app starts auto-installing on managed PCs today. Plus: Cl0p named 30+ ERP victims.

Ryan Bilak
Ryan Bilak
HTTP/2 Bomb. AI found it first.

Jun 5, 2026

•

4 min read

HTTP/2 Bomb. AI found it first.

Codex found a zero-day in your web server stack. IIS, Envoy, and Pingora aren't patched yet. Plus a White House AI EO.

Ryan Bilak
Ryan Bilak
Govern the AI you already turned on

Jun 3, 2026

•

4 min read

Govern the AI you already turned on

Six IT leaders named the coding agents already running inside their walls. None had a way to govern them yet.

Ryan Bilak
Ryan Bilak
Week Ahead: Brussels comes for US cloud

Jun 1, 2026

•

2 min read

Week Ahead: Brussels comes for US cloud

Brussels moves to wall off US cloud, a Palo Alto VPN flaw is under attack, and SaaS suites keep buying AI agents.

Ryan Bilak
Ryan Bilak
Your independent AI vendor isn't.

May 29, 2026

•

4 min read

Your independent AI vendor isn't.

Snowflake bought Natoma. Anthropic bought Fractional. Plus a Charter Salesforce breach and LiteSpeed on KEV.

Ryan Bilak
Ryan Bilak
The AI budget moved to the labor line.

May 27, 2026

•

3 min read

The AI budget moved to the labor line.

Seven IT leaders posted AI buys for AP, QA, and contact-center work. The budget shifted out of IT.

Ryan Bilak
Ryan Bilak
Your governance vendor sells agents.

May 22, 2026

•

4 min read

Your governance vendor sells agents.

Five vendors claim to govern your AI. They all sell you agents. Plus Meta's $125B AI bet, Drupal's no-auth SQLi.

Ryan Bilak
Ryan Bilak
Five industries. Same broken access review.

May 20, 2026

•

3 min read

Five industries. Same broken access review.

The network is asking for one tool to cover cloud, on-prem, multi-ERP, and AI agents. None sells it that way.

Ryan Bilak
Ryan Bilak
Week Ahead: EU bought you 16 months.

May 18, 2026

•

2 min read

Week Ahead: EU bought you 16 months.

EU pushed AI Act deadline to 2027, Anthropic shipped 10 financial agents, SAP has a critical S/4HANA flaw.

Ryan Bilak
Ryan Bilak
Instructure paid. That's the story.

May 15, 2026

•

4 min read

Instructure paid. That's the story.

Two breaches paid quietly, Cisco patches a CVSS 10, and Patch Tuesday surprised everyone.

Ryan Bilak
Ryan Bilak
CIOs negotiate everything. Except Microsoft.

May 13, 2026

•

2 min read

CIOs negotiate everything. Except Microsoft.

Two CIOs named an LSP in five days. Both LSPs were SoftwareOne. Both calls were about Microsoft.

Ryan Bilak
Ryan Bilak
Week Ahead: Skip the endpoint.

May 11, 2026

•

2 min read

Week Ahead: Skip the endpoint.

LiteLLM hits its KEV deadline today, Ivanti EPMM under active attack, and Dirty Frag exploits production Linux.

Ryan Bilak
Ryan Bilak
Federal patch deadline beat the patch

May 8, 2026

•

4 min read

Federal patch deadline beat the patch

CISA's PAN-OS deadline lands May 9. Palo Alto's patch ships May 13. Plus Medtronic's lawsuit problem.

Ryan Bilak
Ryan Bilak
AI agents went from policy to inventory

May 6, 2026

•

3 min read

AI agents went from policy to inventory

Three weeks ago AI talk in the network was policy-led. Today the control vocabulary is winning.

Ryan Bilak
Ryan Bilak
Week Ahead: Patch Tuesday came late.

May 4, 2026

•

2 min read

Week Ahead: Patch Tuesday came late.

Four CVEs hit KEV last week. All four were exploited before disclosure. cPanel had a two-month silent zero-day window.

Ryan Bilak
Ryan Bilak
13 years hidden. 10 hours to exploit.

May 1, 2026

•

3 min read

13 years hidden. 10 hours to exploit.

A 13-year-old Apache ActiveMQ RCE found with AI. A Marimo flaw weaponized within 10 hours. The CVE clock just broke.

Ryan Bilak
Ryan Bilak
Buyers cut. Vendors merge. Same week.

Apr 29, 2026

•

2 min read

Buyers cut. Vendors merge. Same week.

Four network members rationalized four different categories in one week. Then ServiceNow closed Armis.

Ryan Bilak
Ryan Bilak
Week Ahead: SSO is the new perimeter

Apr 27, 2026

•

2 min read

Week Ahead: SSO is the new perimeter

ShinyHunters' ADT deadline hits today. Bitwarden CLI poisoned on npm. SimpleHelp flagged by CISA.

Ryan Bilak
Ryan Bilak
NIST Just Quit Scoring Most CVEs

Apr 24, 2026

•

3 min read

NIST Just Quit Scoring Most CVEs

NIST just stopped enriching most CVEs. KEV is the new priority signal. Plus: two Defender zero-days unpatched.

Ryan Bilak
Ryan Bilak
Observability priorities tripled in 60 days

Apr 22, 2026

•

2 min read

Observability priorities tripled in 60 days

Cloud observability is the #1 new buying category across the network. Q2 rate is 3.7x Q1.

Ryan Bilak
Ryan Bilak
Two Wormable RCEs in 163 Patches

Apr 17, 2026

•

3 min read

Two Wormable RCEs in 163 Patches

Microsoft buried two zero-click RCEs in its second-largest Patch Tuesday ever. Plus: Cisco ISE hits 9.9.

Ryan Bilak
Ryan Bilak
Load more

THE CXO BRIEF

© 2026 The CXO Brief.
beehiivPowered by beehiiv