πNew WriteupβοΈ
βββββββββββββββ
πDate: Tue, 17 Oct 2023 00:18:30 GMT
βββββββββββββββ
βοΈTitle: FAR Cyber compliance proposal: Requirements and Implications
βββββββββββββββ
πLink: https://medium.com/p/70b2e2deb466
βββββββββββββββ
Tags: #compliance #cisa #executive_order #sbom #cybersecurity
βββββββββββββββ
πDate: Tue, 17 Oct 2023 00:18:30 GMT
βββββββββββββββ
βοΈTitle: FAR Cyber compliance proposal: Requirements and Implications
βββββββββββββββ
πLink: https://medium.com/p/70b2e2deb466
βββββββββββββββ
Tags: #compliance #cisa #executive_order #sbom #cybersecurity
Medium
FAR Cyber compliance proposal: Requirements and Implications
Executive Order 14028βββExecutive Order on Improving the Nationβs Cybersecurityβββkicked off a series of actions with the goals of:
β€· Title: CENTRIS: Uncovering Hidden Vulnerabilities in OSS Through Modified Code Reuse Detection
ββββββββββββββββββββββββ
πͺ Author: Roger Neal
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 13 Jan 2025 19:16:08 GMT
ββββββββββββββββββββββββ
β Tags: #application_security #sbom #secure_coding #software_development
ββββββββββββββββββββββββ
πͺ Author: Roger Neal
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 13 Jan 2025 19:16:08 GMT
ββββββββββββββββββββββββ
β Tags: #application_security #sbom #secure_coding #software_development
Medium
CENTRIS: Uncovering Hidden Vulnerabilities in OSS Through Modified Code Reuse Detection
Open-source software (OSS) has transformed software development, providing access to powerful components that save time and resources. Butβ¦
β€· Title: Cybersecurity 101 Part 4: Securing your software.
ββββββββββββββββββββββββ
πͺ Author: Celestine Emmanuel
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 07 Feb 2025 18:27:27 GMT
ββββββββββββββββββββββββ
β Tags: #insurance #fantastic_four #cybersecurity #sbom #mitre_attack
ββββββββββββββββββββββββ
πͺ Author: Celestine Emmanuel
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 07 Feb 2025 18:27:27 GMT
ββββββββββββββββββββββββ
β Tags: #insurance #fantastic_four #cybersecurity #sbom #mitre_attack
Medium
Cybersecurity 101 Part 4: Securing your software.
After securing data in servers, we might focus on application security.
β€· Title: From Shift-Left to Always-On: AI-Driven DevSecOps at Every Git Commit
ββββββββββββββββββββββββ
πͺ Author: Ali AL-halabyah
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 05 Mar 2025 10:18:31 GMT
ββββββββββββββββββββββββ
β Tags: #cybersecurity #zero_trust #sbom_generation #devsecops #sbom
ββββββββββββββββββββββββ
πͺ Author: Ali AL-halabyah
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 05 Mar 2025 10:18:31 GMT
ββββββββββββββββββββββββ
β Tags: #cybersecurity #zero_trust #sbom_generation #devsecops #sbom
Medium
From Shift-Left to Always-On: AI-Driven DevSecOps at Every Git Commit
Introduction
β€· Title: xeol: scanner for end-of-life software in container images, filesystems, and SBOMs
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 02 Jun 2025 00:56:11 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Assessment #container images #filesystems #SBOM
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 02 Jun 2025 00:56:11 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Assessment #container images #filesystems #SBOM
Penetration Testing Tools
xeol: scanner for end-of-life software in container images, filesystems, and SBOMs
xeol is a scanner for end-of-life (EOL) packages in container images, filesystems, and SBOMs
β€· Title: SBOM (Software Bill Off Materials) in Security
ββββββββββββββββββββββββ
πͺ Author: Natarajan C K
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 02 Jun 2025 18:26:05 GMT
ββββββββββββββββββββββββ
β Tags: #browsers #sbom #security #bug_bounty #web_applications
ββββββββββββββββββββββββ
πͺ Author: Natarajan C K
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 02 Jun 2025 18:26:05 GMT
ββββββββββββββββββββββββ
β Tags: #browsers #sbom #security #bug_bounty #web_applications
Medium
SBOM (Software Bill Off Materials) in Security
In the ever-evolving world of cybersecurity, Software Bill of Materials (SBOM) has become a buzzword. But what is it, and why does itβ¦
β€· Title: Introducing Labrador LLM: The First AI Foundation Model Built for Software Supply Chain Security
ββββββββββββββββββββββββ
πͺ Author: Roger Neal
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 03 Jun 2025 19:31:36 GMT
ββββββββββββββββββββββββ
β Tags: #sbom #open_source_compliance #software_supply_chain #generative_ai_solution #application_security
ββββββββββββββββββββββββ
πͺ Author: Roger Neal
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 03 Jun 2025 19:31:36 GMT
ββββββββββββββββββββββββ
β Tags: #sbom #open_source_compliance #software_supply_chain #generative_ai_solution #application_security
Medium
Introducing Labrador LLM: The First AI Foundation Model Built for Software Supply Chain Security
In the dynamic landscape of software development, open-source software has become indispensable-but itβs also introduced profound legal andβ¦
β€· Title: Using SBOMs To Keep a Government Website More Secure
ββββββββββββββββββββββββ
πͺ Author: CivicActions
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 02 Jul 2025 12:26:50 GMT
ββββββββββββββββββββββββ
β Tags: #design_and_tech #devsecops #sbom #digital_service #cybersecurity
ββββββββββββββββββββββββ
πͺ Author: CivicActions
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 02 Jul 2025 12:26:50 GMT
ββββββββββββββββββββββββ
β Tags: #design_and_tech #devsecops #sbom #digital_service #cybersecurity
Medium
Using SBOMs To Keep a Government Website More Secure
By Scott McGee, Senior DevSecOps Engineer
β€· Title: Using SBOMs to detect possible Dependency Confusion
ββββββββββββββββββββββββ
πͺ Author: Dmitry Protsenko
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 22 Aug 2025 02:34:25 GMT
ββββββββββββββββββββββββ
β Tags: #devsecops #sbom #cybersecurity #trivy #supply_chain
ββββββββββββββββββββββββ
πͺ Author: Dmitry Protsenko
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 22 Aug 2025 02:34:25 GMT
ββββββββββββββββββββββββ
β Tags: #devsecops #sbom #cybersecurity #trivy #supply_chain
Medium
Using SBOMs to detect possible Dependency Confusion
Learn how to leverage CycloneDX SBOMs and automated registry checks to detect and prevent dependency confusion attacks by identifyingβ¦
β€· Title: Intelligent SBOM Ingestion and Breaking Change Analysis
ββββββββββββββββββββββββ
πͺ Author: ActiveState
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 22 Aug 2025 17:35:45 GMT
ββββββββββββββββββββββββ
β Tags: #software_supply_chain #devops #application_security #software_development #sbom
ββββββββββββββββββββββββ
πͺ Author: ActiveState
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 22 Aug 2025 17:35:45 GMT
ββββββββββββββββββββββββ
β Tags: #software_supply_chain #devops #application_security #software_development #sbom
Medium
Intelligent SBOM Ingestion and Breaking Change Analysis
Another Slack alert. βCritical vulnerability detected: CVE in package X.β You pull up the advisoryβ¦and unfortunately, itβs legit: publiclyβ¦
β€· Title: Rust Crates Security Analysis: From Solo Dev to Supply Chain Defender
ββββββββββββββββββββββββ
πͺ Author: Mohammad Abir Abbas
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 27 Sep 2025 15:31:45 GMT
ββββββββββββββββββββββββ
β Tags: #software_development #supply_chain #cybersecurity #rust #sbom
ββββββββββββββββββββββββ
πͺ Author: Mohammad Abir Abbas
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 27 Sep 2025 15:31:45 GMT
ββββββββββββββββββββββββ
β Tags: #software_development #supply_chain #cybersecurity #rust #sbom
Medium
Rust Crates Security Analysis: From Solo Dev to Supply Chain Defender
Rubel was a solo Rust developer, grinding late nights on her passion project. Her code compiled cleanly, tests passedβββyet she couldnβtβ¦
β€· Title: Building CERT-In Compliant SBOMs: A Complete Guide to Software Bill of Materials for Indianβ¦
ββββββββββββββββββββββββ
πͺ Author: sumit singh
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 27 Sep 2025 20:27:10 GMT
ββββββββββββββββββββββββ
β Tags: #devsecops #cybersecurity #sbom
ββββββββββββββββββββββββ
πͺ Author: sumit singh
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 27 Sep 2025 20:27:10 GMT
ββββββββββββββββββββββββ
β Tags: #devsecops #cybersecurity #sbom
Medium
Building CERT-In Compliant SBOMs: A Complete Guide to Software Bill of Materials for Indian Cybersecurity Standards
How to create, sign, and manage Software Bill of Materials (SBOMs) that meet CERT-In Technical Guidelines v2.0 for secure and transparentβ¦
β€· Title: CERT-In SBOM Compliance Made Easy: Introducing the CERT-In SBOM Mapper (Part 2)
ββββββββββββββββββββββββ
πͺ Author: sumit singh
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 05 Oct 2025 17:02:36 GMT
ββββββββββββββββββββββββ
β Tags: #devsecops #cybersecurity #sbom
ββββββββββββββββββββββββ
πͺ Author: sumit singh
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 05 Oct 2025 17:02:36 GMT
ββββββββββββββββββββββββ
β Tags: #devsecops #cybersecurity #sbom
Medium
CERT-In SBOM Compliance Made Easy: Introducing the CERT-In SBOM Mapper (Part 2)
In my previous article, I walked through the challenges of building CERT-In compliant SBOMs and why they matter for Indian cybersecurityβ¦
β€· Title: The End of Insecure Pulls: Docker Open Sources Its Hardened Images Catalog
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 29 Dec 2025 03:16:19 +0000
ββββββββββββββββββββββββ
β Tags: #Technology #AI Infrastructure #Apache 2.0 #Container Security #DevOps #DHI #Docker #Helm #Kubernetes #open source #SBOM #SLSA #Supply Chain
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 29 Dec 2025 03:16:19 +0000
ββββββββββββββββββββββββ
β Tags: #Technology #AI Infrastructure #Apache 2.0 #Container Security #DevOps #DHI #Docker #Helm #Kubernetes #open source #SBOM #SLSA #Supply Chain
Penetration Testing Tools
The End of Insecure Pulls: Docker Open Sources Its Hardened Images Catalog
Docker has announced that its Docker Hardened Images (DHI) are now free and fully open: they can be
β€· Title: SBOMs vs Asset Inventories: Bridging the Visibility Gap in Software Security
ββββββββββββββββββββββββ
πͺ Author: Praveen Malhan
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 14 Jan 2026 00:48:21 GMT
ββββββββββββββββββββββββ
β Tags: #sbom #open_source_security #asset_inventory #supply_chain_security #application_security
ββββββββββββββββββββββββ
πͺ Author: Praveen Malhan
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 14 Jan 2026 00:48:21 GMT
ββββββββββββββββββββββββ
β Tags: #sbom #open_source_security #asset_inventory #supply_chain_security #application_security
Medium
SBOMs vs Asset Inventories: Bridging the Visibility Gap in Software Security
Introduction
β€· Title: Ghosted No More: CISA Unleashes BOD 26-02 and OpenEoX to Kill the βEnd-of-Lifeβ Security Gap
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 16 Feb 2026 16:10:28 +0000
ββββββββββββββββββββββββ
β Tags: #Information Security #BOD 26_02 #CISA #CSAF #cybersecurity compliance #End of Life #EOL security #JSON schema #OpenEoX #perimeter defense #SBOM #Tech News 2026
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 16 Feb 2026 16:10:28 +0000
ββββββββββββββββββββββββ
β Tags: #Information Security #BOD 26_02 #CISA #CSAF #cybersecurity compliance #End of Life #EOL security #JSON schema #OpenEoX #perimeter defense #SBOM #Tech News 2026
Penetration Testing Tools
Ghosted No More: CISA Unleashes BOD 26-02 and OpenEoX to Kill the "End-of-Life" Security Gap
The proliferation of βabandonedβ technologies at the periphery of corporate networks has increasingly evolved into an auspicious point
β€· Title: Understanding Modern Cybersecurity Practices for Scalable SaaS Protection
ββββββββββββββββββββββββ
πͺ Author: Black Lock
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 25 Feb 2026 11:25:59 GMT
ββββββββββββββββββββββββ
β Tags: #sbom_scanner #penetration_testing #vulnerability_scanning #static_code_scanning
ββββββββββββββββββββββββ
πͺ Author: Black Lock
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 25 Feb 2026 11:25:59 GMT
ββββββββββββββββββββββββ
β Tags: #sbom_scanner #penetration_testing #vulnerability_scanning #static_code_scanning
Medium
Understanding Modern Cybersecurity Practices for Scalable SaaS Protection
In the digital-first era, cybersecurity has become a foundational requirement for businesses operating in cloud and SaaS environments. Asβ¦
β€· Title: Supply Chain Shield: How DepConfuse Proactively Stops Dependency Confusion Attacks
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 16 Mar 2026 09:24:16 +0000
ββββββββββββββββββββββββ
β Tags: #Open Source Tool #cybersecurity tools #CycloneDX #DepConfuse #Dependency Confusion #DevSecOps #open source security #PURL #SBOM #Software Composition Analysis #Supply Chain Security
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 16 Mar 2026 09:24:16 +0000
ββββββββββββββββββββββββ
β Tags: #Open Source Tool #cybersecurity tools #CycloneDX #DepConfuse #Dependency Confusion #DevSecOps #open source security #PURL #SBOM #Software Composition Analysis #Supply Chain Security
Penetration Testing Tools
Supply Chain Shield: How DepConfuse Proactively Stops Dependency Confusion Attacks
Stop dependency confusion before it starts. DepConfuse is an SBOM-first tool that scans 20+ registries to secure your software supply chain from package takeover.
β€· Title: Beyond the Dashboard: Apertis 2026 Debuts as the GPLv3-Free Powerhouse for Industrial IoT
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 02 Apr 2026 07:50:35 +0000
ββββββββββββββββββββββββ
β Tags: #Linux #Apertis 2026 #Automotive Linux #Collabora #Debian 13 #embedded systems #GPLv3_free #Industrial Linux #IoT Security #OSTree #Rust uutils #SBOM #Wayland
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 02 Apr 2026 07:50:35 +0000
ββββββββββββββββββββββββ
β Tags: #Linux #Apertis 2026 #Automotive Linux #Collabora #Debian 13 #embedded systems #GPLv3_free #Industrial Linux #IoT Security #OSTree #Rust uutils #SBOM #Wayland
Penetration Testing Tools
Beyond the Dashboard: Apertis 2026 Debuts as the GPLv3-Free Powerhouse for Industrial IoT
Collabora has unveiled the Apertis 2026 Linux distribution, a platform originally forged for automotive ecosystems that has since
β€· Title: TryHackMe AI Security Path β Checkpoint Walkthrough
ββββββββββββββββββββββββ
πͺ Author: Jose A Ruiz Marquez
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 30 May 2026 16:41:08 GMT
ββββββββββββββββββββββββ
β Tags: #ai #supply_chain #supply_chain_attack #tryhackme #sbom_security
ββββββββββββββββββββββββ
πͺ Author: Jose A Ruiz Marquez
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 30 May 2026 16:41:08 GMT
ββββββββββββββββββββββββ
β Tags: #ai #supply_chain #supply_chain_attack #tryhackme #sbom_security
Medium
TryHackMe AI Security Path β Checkpoint Walkthrough
AI Supply Chain Security, Governance Drift, and the Failure of Trust Boundaries