ravirockks, Latest piece of guidance from the NSA and friends on securing the software supply chain has dropped.
This edition is on OSS and SBOMs.
https://www.nsa.gov/Press-Room/Press-Releases-Statements/Press-Release-View/Article/3613105/nsa-and-esf-partners-release-recommended-practices-for-managing-open-source-sof/
Add comment