Hackernews posts about SBOMs
- SBOM Adoption on PyPI Is at 1.58%. We Can Do Better (sbomify.com)
- Show HN: Riventa.Dev – AI-native DevOps that acts, not just alerts (www.riventa.dev)
- Yocto, RockPi and SBOMs: Building modern embedded Linux images (vpetersson.com)
- Could lockfiles just be SBOMs? (nesbitt.io)
- Determinate Secure Packages: Nixpkgs with SBOMs, FIPS, and SLA'd CVE Patching (determinate.systems)
- SBOMs for Medical Devices (2023) (danacrane.medium.com)
- C SBOMs, and how pkgconf can solve this problem (ariadne.space)
- The Supply Chain in Your AI Agent: Why SBOMs for MCP Servers Matter Now (www.incredibuild.com)
- Why Most SBOMs Fail and What to Do About It (ovalenzuela.com)
- Firmware SBoMs for open source projects (blogs.gnome.org)
- Show HN: Hatch v1.16.0 – workspaces, dependency groups and SBOMs (hatch.pypa.io)
- Show HN: Manage SBOMs like source code (github.com)
- Show HN: Firmware GRC tool that generates OSCAL and SBOMs for 122 controls (www.usenabla.com)
- Using SBOMs to detect possible Dependency Confusion (protsenko.dev)
- Bringing Together SBOMs and Advisories (github.com)
- Rust Will Explode, SBOMs Will Be Duds: Open-Source Predictions (thenewstack.io)
- Show HN: SecureBuild – Zero-CVE Images That Pay OSS Projects (securebuild.com)
- Show HN: SBoM dashboard that pulls from GitHub release assets (sbom.kftray.app)