The 21-day patch clock is gone and nobody sent a memo
The news: CISA added seven exploited flaws on September 2, and five were due September 5. The SonicWall SMA1000 pair among them reaches remote code execution with no credentials.
Why it matters: The 21-day KEV window your policy was built on is gone, revoked with BOD 22-01 in June. Of 140 KEV entries added since April 1, none carries a 21-day date, and three days is the most common. Federal agencies got a directive; everyone else got a quiet edit to a JSON file.
What to do: Patch SMA1000 today, then read what your own policy still promises for KEV.
From the people who send this
CXO Brief is published by DoGood. More than seventy enterprise vendors are currently paying for 30-minute briefings with IT and security leaders on AI governance, third-party risk, identity, observability and infrastructure. You choose which vendors to meet, if any. Every completed briefing pays you $150 to $200, as a premium gift card, cash, or a donation to a charity you pick if your employer restricts gifts. Membership is free and by invitation.
Or reply to this email with the word "briefing" and Ryan will set you up personally.
Your admin keys are in the page source
A refused ransom put about 550GB of Manchester Airports Group data online on September 3. It covers 8.8 million people, and it took no exploit. Admin keys for a customer engagement platform sat in the frontend JavaScript of all three airport sites. One key in one bundle is a mistake; three root domains is a pipeline shipping secrets by default. Grep your own public bundles this morning, starting with the tools marketing owns and IT does not.
Anthropic just removed a reason your lawyers said no
Anthropic dropped its 30-day enterprise retention rule on September 1. Enterprise customers can now keep Claude activity logs in their own S3, Azure or GCS, under their own keys. Monitoring is automated, with no Anthropic human review, and it costs nothing extra. If your legal team blocked a Claude rollout over retention, that objection is now answerable. Reopen the review, and get your rollout date in writing; this ships in phases this fall.
Watch This
Two of the seven flaws CISA listed on September 2 sit in the AI application layer, not the network edge. An authentication bypass in the LiteLLM gateway rated 8.8, and a 10.0 command injection in Kestra. Exploitation follows deployment, and platform teams stood these up, so they are rarely on the list security patches from.
The hard part this week is not patching, it is inventory. If you are working out who owns the AI services in your estate, ask someone in the DoGood network who has already drawn that line.
The CXO Brief is published by DoGood, the network where enterprise IT leaders are paid for 30-minute vendor briefings.
Know a CIO who needs this? Forward it and they can subscribe here.
Run IT or security at a $100M+ company? Claim your invite.
