Large-scale supply chain attacks have become a huge challenges for information security professionals. The past three years has seen a staggering 742% surge of supply chain attacks , according to cybersecurity firm Sonatype.
To evolve software supply chain security, organizations should start by using the tools the open source community offers, said Thomas Steenbergen, head of the open source program office (OSPO) at EPAM Systems, during the State of Open Con 23 conference. This includes when developing software bills of materials (SBOMs).
The first occurrence of an SBOM requirement was seen in US President Joe Biden’s May 2021 executive order on Improving the Nation’s Cybersecurity, published in response to the SolarWinds supply chain attacks in late 2020.
No tags.