GitBOM is now OmniBOR! As the project has evolved, the realization the name needed changing was clear. We landed on OmniBOR and this beautiful logo. Learn more: https://t.co/r0sM6ay1HA #SupplyChainSecurity#SBOM#OpenSource
Great discussion about @OmniBOR by my friend @edwarnicke - hosted by @theCUBE
I love this: “OmniBOR follows the Unix Philosophy of ‘do one thing, and do it well.’ “
It makes a concise and verifiable Artifact Dependency Graph (ADG) for each software artifact. Linking metadata (#SBOM, license, support info, security advisories, etc.) to a specific set of corresponding software artifacts. Providing a precise artifact identifier that can be used in situations where naming schemes may be ambiguous, especially in SBOMs. #CyberSecurity
https://t.co/yDakheIvGV
Thrilled about @OmniBOR and the transformation it brings! Having a comprehensive, content addressable ADG for tracking build materials' provenance is revolutionary. Hats off to @ffkiv for spearheading this endeavor.
we now capture @omnibor hashes in @witness_dev. If you are in Seattle for SecurityCon, I'd love to talk about OmniBor, Witness, and any other supply chain security topics.