DevOps Articles

Curated articles, resources, tips and trends from the DevOps World.

Combining SBOMs With Security Data: Chainguard’s OpenVEX

2 years ago thenewstack.io

Summary: This is a summary of an article originally published by The New Stack. Read the full original article here →

Software Bills of Materials tell you what code is in a program. Chainguard’s OpenVEX will tell you what’s wrong and what’s not quite right, but OK in your code.

You can do this by representing VEX data inside an existing SBOM, or within a dedicated VEX SBOM.

The end result is that OpenVEX has simplified the remediation process for software vulnerability management.

Eventually, the combination of SBOM and VEX will lead to building programs faster and more securely than ever.

Made with pure grit © 2024 Jetpack Labs Inc. All rights reserved. www.jetpacklabs.com