Show notes
Season 1: Open Source Security
Episode 2: Do Your Applications Have A Software Bill of Materials?
“Oh, I didn’t realise we were exposed to as I didn’t think that application was using .”
I often heard such comments during the initial stages of our application security uplift. There was a lack of visibility on what open-source components applications relied on. Developers were often surprised, and sometimes in disbelief, as most of these vulnerable software components weren’t listed as application dependencies; they were transitive dependencies.
In this episode we're diving into a crucial topic: "Do You Have a Software Bill of Materials?" Get ready for an enlightening episode as we explore why SBOMs are essential in today's software landscape.
- The Visibility Problem
- The Open-Source Reality
- What is an SBOM?
- The Benefits of SBOMs
- Keeping SBOMs Up-to-Date
- Recent Developments in SBOM Adoption



