"They can request SBOMs til they're blue in the face, but there’s no framework in place for enforcement."
- @webjedi in my writeup of #SBOM-a-rama:
https://www.techtarget.com/searchitoperations/news/366542018/CISA-SBOM-standards-efforts-stymied-by-confusion-inertia
#softwaresupplychain #cybersecurity @CISAgov
#CISA #NTIA #NIST #FDA #softwaresupplychainsecurity #supplychainsecurity #softwarebillofmaterials #cloud #cloudsecurity #security #infrastructure #cloudnative #cloudnativesecurity #sbomarama
#SBOM #softwaresupplychain #cybersecurity #cisa #ntia #nist #fda #softwaresupplychainsecurity #supplychainsecurity #softwarebillofmaterials #cloud #cloudsecurity #security #infrastructure #cloudnative #CloudNativeSecurity #sbomarama
Check out my latest article on how (surprisingly) easy it is to scan Windows container images and why I think existing container tools should add support for Windows container images!
https://jamiemagee.co.uk/blog/scanning-windows-container-images-is-surprisingly-easy/
#Containers #WindowsContainers #Windows #Docker #SoftwareBillOfMaterials #SBOM #SoftwareSupplyChain #SupplyChainSecurity
#containers #windowscontainers #windows #docker #softwarebillofmaterials #SBOM #softwaresupplychain #supplychainsecurity
I had fun today hacking around on Windows containers and SBOMs. Time to write it all up in a blog post.
#Windows #Containers #WindowsContainers #Docker #SoftwareBillOfMaterials #SBOM #SoftwareSupplyChain #SupplyChainSecurity
#windows #containers #windowscontainers #docker #softwarebillofmaterials #SBOM #softwaresupplychain #supplychainsecurity
Episode 232: Log4j Won’t Go Away (And What To Do About It.) - In this episode of the podcast (#232), Tomislav Peričin of the firm ReversingLabs ... https://feeds.feedblitz.com/~/675372840/0/thesecurityledger~Episode-Logj-Won%e2%80%99t-Go-Away-And-What-To-Do-About-It/ #sbom(softwarebillofmaterials) #softwarebillofmaterials #softwaresupplychain #apachefoundation #vulnerabilities #reversinglabs #reversinglabs #apachestruts #supplychain #companies #log4shell #spotlight #business #podcast
#podcast #business #spotlight #log4shell #companies #supplychain #apachestruts #reversinglabs #vulnerabilities #apachefoundation #softwaresupplychain #softwarebillofmaterials #SBOM