
SPDX SBOM
@spdx_sbom
Open standard for communicating Software Bill of Material information (SBOMs) | @linuxfoundation open source project | Freely available ISO/IEC 5962:2021
ID: 1646872119744110593
https://spdx.dev/ 14-04-2023 13:45:22
310 Tweet
159 Followers
29 Following







fransbouma.bsky.social MĂĄrten RĂĄnge You can do this automatically now (almost). Need to generate an SBOM (SPDX format for example) and then load that in GUAC. Then you'll have a list of all your transitive deps, vulns in them, and more. Disclaimer: I'm a maintainer. github.com/guacsec/guac


Cisco announces SBOMs for recent @cisco products. Great Jeff Schutt blog highlighting 1) the importance of transparency, 2) acknowledging that #SBOM implementation will be a journey, but that 3) we all have to start now for better #supplychain security blogs.cisco.com/security/demon…



“Behind the scenes with SPDX contributor Maximilian Huber” 🎧 Listen to the full episode with host DJ Schleen and Maximilian Huber: dabom.show/maximilian-hub… 📌 @djschleen Maximilian Huber TNG Technology Consulting GmbH #spdx #daBOM The Linux Foundation #sbom #devops #devsecops


.The Linux Foundation's Kate Stewart introduces SPDX SBOM and the relationship between #SBOMs and SPDX in this #ELISASeminar. hubs.la/Q020HPTc0 @projecelisa #opensource #SBOM #safetycritical SPDX



#SPDX 3.0 now supports #SBOMs for #AI applications - The Linux Foundation's Kate Stewart shares all the details in this TFiR video. hubs.la/Q02wLhcg0 SPDX SPDX SBOM Americans Against Trump #opensource #SBOM