OpenSSF · @openssf
278 followers · 111 posts · Server social.lfx.dev

As the supply chain for software continues to grow in complexity and as attacks on those components grow 📈 will provide the groundwork to manage how those assets get protected at scale says Michael Isbitski of Sysdig in our latest guest blog: openssf.org/blog/2023/07/21/ma

#sboms

Last updated 1 year ago

Snyk · @snyk
64 followers · 15 posts · Server masto.dsoc.io

🚀 Enrich all of your with Parlay, a new tool from Snyk!

Learn how to use Parlay to make policy-based decisions around package license information and so much more.

bit.ly/3ProaDX

#sboms #opensource

Last updated 1 year ago

OpenSSF · @openssf
205 followers · 76 posts · Server social.lfx.dev

Where we are with generating, understanding, managing, & converting and where may the community go in the future? Ivana Atanasova of @VMware takes a look from the SBOM Devroom, hosted at FOSDEM 2023 in Brussels openssf.org/blog/2023/05/24/ex

#sboms

Last updated 1 year ago

OpenSSF · @openssf
154 followers · 38 posts · Server social.lfx.dev

Assessing Product Risk Using SBOMs and OpenSSF Scorecard - guest blog by Daniel Nebenzahl, CTO of Scribe Security on the potential for utilizing with OpenSSF data to evaluate product-level security risks openssf.org/blog/2023/04/14/as

#sboms #scorecard

Last updated 1 year ago

OpenSSF · @openssf
148 followers · 32 posts · Server social.lfx.dev

Software Bill of Materials have been with us for the last 10+ years, so do they matter more today than when we started generating them?

Vincent Danen of Red Hat and Tracy Ragan of DeployHub explore in their recent blog - SBOMs so far, so good, so what?

#sboms

Last updated 1 year ago

OpenSSF · @openssf
57 followers · 13 posts · Server social.lfx.dev

How to make high-quality by John Speed Meyers of Chainguard openssf.org/blog/2023/03/02/ho

#sboms

Last updated 1 year ago

OpenSSF · @openssf
49 followers · 10 posts · Server social.lfx.dev

Are you interested in addressing open source software security risk? Software Bill of Materials ? Diversity, Equity, and Inclusion in OSS security? + more. You are invited to the next virtual OpenSSF Town Hall on March 16th at 10 AM. Everyone is welcome. Register at: zoom.us/webinar/register/30167

#oss #sboms #dei

Last updated 1 year ago

Dan Conn @ OWASP Dublin 15/2 · @danjconn
748 followers · 387 posts · Server defcon.social

A nice little article from Steve Poole
explaining about the importance of for and

foojay.io/today/sboms-first-st

#sboms #opensource #softwaredevelopment

Last updated 1 year ago

Dan Conn @ Open UK 7-8th Feb · @danjconn
742 followers · 377 posts · Server defcon.social

Was interesting to see quite a few different slides quoting statistics from Sonatype State of Software Supply Chain Report at @openuk

Looks like it's made impact on quite a few people, and that's understandable because the research team are amazing.

infosecurity-magazine.com/news

#sboms #supplychain #cybersecurity

Last updated 2 years ago