CycloneDX SBOM Spec (OWASP) (@cyclonedx_spec) 's Twitter Profile
CycloneDX SBOM Spec (OWASP)

@cyclonedx_spec

OWASP CycloneDX is a modern standard for the software supply chain. Software Bill of Materials (SBOM), SaaSBOM, Cryptography (CBOM), AI/ML-BOM, VDR/VEX...

ID: 876881373755318274

linkhttps://cyclonedx.org/ calendar_today19-06-2017 19:16:25

625 Tweet

937 Takipçi

8 Takip Edilen

Viktor Petersson (@vpetersson) 's Twitter Profile Photo

"It's really about transparency." Episode 22 of Nerding Out with Viktor with Steve Springett is available on YouTube and all major listening platforms 🎧 vpetersson.com/podcast/S01E22… #SBOMs #CycloneDX #podcast

OWASP® Foundation (@owasp) 's Twitter Profile Photo

While the Koala project is part of #CycloneDX, the work with the API will also support #SPDX BOM files from start. Join us Nov. 25 for a virtual seminar where we tell you more about this API and what it means for you. teaintro.eventbrite.com

Tech At Bloomberg (@techatbloomberg) 's Twitter Profile Photo

We're proud to host the 128th Meeting of the Ecma General Assembly at Bloomberg's Global HQ, starting today in NYC! We welcome the attending Ecma members & wish them a productive week discussing the future of Ecma's standards, including #ECMAScript & #CycloneDX! #opensource

We're proud to host the 128th Meeting of the Ecma General Assembly at <a href="/Bloomberg/">Bloomberg</a>'s Global HQ, starting today in NYC! We welcome the attending Ecma members &amp; wish them a productive week discussing the future of Ecma's standards, including #ECMAScript &amp; #CycloneDX!

#opensource
OWASP® Foundation (@owasp) 's Twitter Profile Photo

OWASP Members change the world. Your membership helps shape the organization and drives our projects and community. If you are not a member or are due for renewal within 60 days, please join or renew today and get 10-25% off! owasp.org/membership > Memberships > Apply

OWASP Members change the world. Your membership helps shape the organization and drives our projects and community. If you are not a member or are due for renewal within 60 days, please join or renew today and get 10-25% off!

owasp.org/membership &gt; Memberships &gt; Apply
$ axo | otl (@axodotdev) 's Twitter Profile Photo

📣 dist 0.26.0 is out! - 🦀 built-in Rust cross-compilation - 🛡️ cyclonedx SBOMs, cargo-audit, and omniBOR - 🪪 checksum verification in all installers ...and more! check out the release notes here: github.com/axodotdev/carg…

Izar Tarandach 🎗️ (@izar_t) 's Twitter Profile Photo

Do you, like me, scratch your head and think "SBOMs, what are they good for?" ? If you do, why not join one of the working groups on CycloneDX - now even easier to do by checking out the new site at cyclonedx.org ! 1/2

Izar Tarandach 🎗️ (@izar_t) 's Twitter Profile Photo

We even have a very nice, very small, very interested working group around...Threat Modeling BOM. Come join us. There's plenty of work to be done, and you get to help build some potentially very cool stuff. cyclonedx.org/participate/wo… 2/2

CycloneDX SBOM Spec (OWASP) (@cyclonedx_spec) 's Twitter Profile Photo

Level up your Ruby SBOMs with cdxgen v11.1.0 - now featuring #evinse for enhanced security and insights. Chat with #cdxgenGPT to learn more chatgpt.com/g/g-673bfeb403…

CycloneDX SBOM Spec (OWASP) (@cyclonedx_spec) 's Twitter Profile Photo

"Seat-belt approach" for #SBOMs! 💺 cdxgen >= v11.1.7's new "secure mode" uses Node.js permissions to control resource access. Safely analyze even untrusted code by limiting file access, process execution, & more. This fixes CVE-2024-50611. github.com/CycloneDX/cdxg…

conan.io (@conan_io) 's Twitter Profile Photo

What’s Your C/C++ Code Made Of? The Importance of the Software Bill of Materials Learn about SBOMs for C/C++ projects, and how Conan can generate CycloneDX CycloneDX SBOM Spec (OWASP) SBOMs of your dependencies, store them inside your package metadata and more: blog.conan.io/2025/02/05/Wha…

Anchore (@anchore) 's Twitter Profile Photo

🚨 New Webinar 🚨 The need for verifiable trust in #software components is critical. Learn to build on #SBOMs w/ CycloneDX attestation plus how to create cryptographically verifiable evidence of #security practices, #automate manual audit workflows & more. get.anchore.com/cyclonedxandsb…

🚨 New Webinar 🚨 The need for verifiable trust in #software components is critical. Learn to build on #SBOMs w/ CycloneDX attestation plus how to create cryptographically verifiable evidence of #security practices, #automate manual audit workflows &amp; more. get.anchore.com/cyclonedxandsb…
Dependency-Track (@dependencytrack) 's Twitter Profile Photo

Join our community meeting next Wednesday, 2nd April at 4-5PM UTC for a presentation from our friends at #Monzo Bank! Learn how they replaced a proprietary vulnerability scanner with #CycloneDX #SBOMs & DT. Calendar: dub.sh/dtcalendar Zoom: dub.sh/dtzoom

CycloneDX SBOM Spec (OWASP) (@cyclonedx_spec) 's Twitter Profile Photo

Join the DT community meeting next Wednesday, 2nd April at 4-5PM UTC for a presentation from our friends at Monzo 🏦 Bank! Learn how they replaced a proprietary vulnerability scanner with #CycloneDX #SBOMs & DT. Calendar: dub.sh/dtcalendar Zoom: dub.sh/dtzoom

Join the DT community meeting next Wednesday, 2nd April at 4-5PM UTC for a presentation from our friends at  <a href="/monzo/">Monzo 🏦</a> Bank! Learn how they replaced a proprietary vulnerability scanner with #CycloneDX #SBOMs &amp; DT.    
Calendar: dub.sh/dtcalendar 
Zoom: dub.sh/dtzoom
Sam Stepanyan (@securestep9) 's Twitter Profile Photo

The next #OWASP Dependency Track Community Meeting (virtual) on April 2nd is going to be interesting: Learn how leading UK neobank Monzo replaced a proprietary vulnerability scanner with open-source OWASP #CycloneDX and Dependency Track:

SafeDep (@safedepio) 's Twitter Profile Photo

🚀vet v1.10 is here...with CycloneDX SBOM support! Generate detailed SBOMs with: 📦 Package metadata (PURLs, licenses) 🛡️ Vulnerabilities & malware info Run: vet scan --report-cdx sbomfile.cdx.json Try vet: github.com/safedep/vet #CycloneDX #SBOM #SupplyChainSecurity

🚀vet v1.10 is here...with CycloneDX SBOM support!

Generate detailed SBOMs with:
📦 Package metadata (PURLs, licenses)
🛡️ Vulnerabilities &amp; malware info

Run:
 vet scan --report-cdx sbomfile.cdx.json
Try vet: github.com/safedep/vet

#CycloneDX #SBOM #SupplyChainSecurity
Anchore (@anchore) 's Twitter Profile Photo

📊 "Content is king" - Steve Springett on #SBOMlearningWeek Day 4. Learn how CycloneDX is enabling machine-readable attestations and five dimensions for evaluating SBOM completeness. anchore.com/blog/sbom-insi… (Miss day #3? It's here anchore.com/blog/devops-sc…) #DevSecOps

📊 "Content is king" - Steve Springett on #SBOMlearningWeek Day 4. Learn how CycloneDX is enabling machine-readable attestations and five dimensions for evaluating SBOM completeness. anchore.com/blog/sbom-insi… (Miss day #3? It's here anchore.com/blog/devops-sc…) #DevSecOps