SBOMs become a security staple for the software supply chain

  • 📰 TheRegister
  • ⏱ Reading Time:
  • 40 sec. here
  • 2 min. at publisher
  • 📊 Quality Score:
  • News: 19%
  • Publisher: 61%

Technology Technology Headlines News

Technology Technology Latest News,Technology Technology Headlines

SBOMs should be a security staple in the software supply chain

SBOMs are also are a key point in the national cybersecurity plan developed by the Biden Administration andthis week. They not only tell organizations what components make up the software they're bringing in, but also what code is in there.

Its use was so broad that it touched most organizations, many of whom didn't know they were affected. Within weeks of the vulnerability coming to light, there were"Log4j is used in the vast majority of software," ArmorCode's Lambert said, adding that it highlighted the need for SBOMs."When [the flaw in] Log4j was identified, all of us were instantly exposed to the vulnerability. Log4j put everything into sharp focus. The problem has been there for a while.

"Unwinding large applications, from open-source operating systems, to in-house developed applications, to third-party 'shrink-wrapped' stacks is fraught with contextual challenges, inventory methods, and manual verification, all of which are prone to error," Masserini writes.

 

Thank you for your comment. Your comment will be published after being reviewed.
Please try again later.
We have summarized this news so that you can read it quickly. If you are interested in the news, you can read the full text here. Read more:

 /  🏆 67. in TECHNOLOGY

Technology Technology Latest News, Technology Technology Headlines