Really excited to share the collaboration between @Docker and @anchore with you at #DockerCon '22. Join @justincormack and I for a great talk, and bring questions!!! #sbom#containers
Register here if you haven't yet: https://t.co/InpB4c4Usx
Next week: Join us and learn how to secure your source #code repositories. Get tips on how to use #SBOMs to find secrets, misconfigurations, vulnerabilities and more in the session. Save your seat: https://t.co/ktcUq12fOd #software
Introducing 'docker sbom' — the CLI command developed alongside @anchore that displays the SBOM of any Docker image. CTO @justincormack explains how this functionality will help improve trust in the software supply chain by providing more visibility: https://t.co/K4WfBuKffD
So happy to share that @anchore is on the @Forbes 2022 List of America’s Best Startup Employers! We made the cut based on our #culture and #employee engagement, among other things. Get the full scoop: https://t.co/gBPs7SVB85
NEWS!!! Today we announced strong results in the software supply chain security market. In 2021 Anchore saw 2.5 times growth in ARR as orgs proactively secure their #softwaresupplychain against exploits. https://t.co/PIp6DNo8Ac
Our second annual survey just dropped! The data includes the impact of #software supply chain #security attacks (like #Log4j) on larger orgs and how they plan to better protect themselves. https://t.co/4HU39W5AR4
The #log4j security vulnerability provides ideal conditions for a computer worm to propagate. This @securityblvd article by @joshbressers explores the dangers of that happening. https://t.co/UJ2QH5Vr2Q #security
In the aftermath of the #Log4Shell vulnerability in #Log4j, @joshbressers discusses how to prepare for new realities of #software supply chain security and SBOM management in this @InfoWorld article. https://t.co/zE688Fc6g2
Trying to find log4j in your Java project? Syft can do this, and it even fits in a tweet!
syft dir:my-java-project | grep log4j
https://t.co/vlRiEM9n5I
We still have plenty of room in this tweet, so also go check out @GrypeProject
Next week is our webinar on how to navigate between #opensource and enterprise for #software container #security. Register now to save your seat. https://t.co/d4XCGP0aUB #Syft#grype
Today we announced that our #opensource tool #Syft can generate SBOMs in the #SPDX format, making it easy to share data across systems and organizations. https://t.co/lyAvzJyIPP #SBOM
Today we announced a $4.6M #SBIR contract for continued work with the @usairforce Platform One, the @DeptofDefense #DevSecOps platform. Details about the #software innovation and #security we'll provide here: https://t.co/J2v0691T9w @AF_SBIR_STTR #USAF
NEW DATA! We just released our report with executive insights for securing the #software supply chain and the impact of software #containers. Get the free report here: https://t.co/KeVEfolFs3 #cybersecurity
BIG NEWS! We expanded our work with @nvidia for container scanning. Now they'll use Anchore Enterprise for automated #security checks before containers are published on the NGC catalog. Learn more here: https://t.co/lKcDOt8QXA #software#AI