We are excited to open source our SBOM Quality Score tool used internally to provide feedback to SBOM builders & consumers. Get insights into the quality of your SBOM data and improve supply chain transparency. #SupplyChain#SBOM#opensource https://t.co/oSOPnMU7JR
🚀 𝑵𝒆𝒘 𝒊𝒏 𝒔𝒃𝒐𝒎𝒂𝒔𝒎: 𝑭𝒊𝒆𝒍𝒅 & 𝑪𝒐𝒎𝒑𝒐𝒏𝒆𝒏𝒕 𝑹𝒆𝒎𝒐𝒗𝒂𝒍!
Sometime SBOMs aren’t just about adding more and more data — sometimes the smartest move is deleting the right stuff
Read to know more:
Lean, Clean, and Compliance-Ready: sbomasm’s New Removal Capabilities https://t.co/fzMq9LvEYP via @LinkedIn
#sbom #cleanup #fields #sbomasm
My First In-Person Talk Speaking 🎤 Experience at Rootconf 2025 on software supply chain security track, especially on SBOMs...
@hasgeek@rootconf
https://t.co/3zj8crMMdF
Manually tracking SBOMs for open-source projects is painful—especially when GitHub doesn’t support webhooks for repos you don’t own. In our latest blog, we go one step further with sbommv by introducing GitHub Daemon Mode
⭐ Check out this blog → https://t.co/kr5LMcabfK
🚨 SBOM automation just got smarter.
In our previous post, we showed how #sbommv#automates#SBOMa transfers from GitHub and local folders into platforms like #owasp#dependencytrack . But that still required manual triggers.
❎ Not anymore.
We're excited to introduce real-time Folder Monitoring in hashtag
#sbommv. Just drop SBOMs into a folder—CI job, nightly build, dev team handoff—and they’re automatically detected, validated, and uploaded to platforms like Dependency-Track or Interlynk.
❎ No scripts.
❎ No re-runs.
❎ No missed uploads.
This feature was inspired by a real-world user case:
“We install SBOMs onsite in air-gapped environments. Can they be auto-synced with a local DTrack install as soon as they appear?”
☑️ Yes. Now they can.
🧠 Supports recursive monitoring
✅ Detects file-level changes
🚫 Skips invalid SBOMs
🔁 Optional overwrite logic
🧪 Includes dry-run mode
This is one more step toward end-to-end SBOM automation—no human in the loop.
👉 Read the full blog + hands-on demo:
#sbommv #SBOM #monitoring #folder #SoftwareSecurity #SupplyChainSecurity #DependencyTrack #Automation #OpenSource #DevSecOps #owasp
https://t.co/g9hsf4RQj5
@InterlynkIo
With just one command, you can use the sbommv project to download the SBOM of your GitHub repository to your local workspace, utilizing its dependency graph API. Here's how:
sbommv github repo: https://t.co/lssc4urdHk
sbommv v0.0.2 is out! 🎉 Added Folder system support—now with input & output adapters. Fetch and write SBOMs locally with ease. Try it:
https://t.co/FNsJupaoRu
9/9) 🔗 𝘀𝗯𝗼𝗺𝗺𝘃 𝗶𝘀 𝗝𝘂𝘀𝘁 𝗚𝗲𝘁𝘁𝗶𝗻𝗴 𝗦𝘁𝗮𝗿𝘁𝗲𝗱 – 𝗝𝗼𝗶𝗻 𝘁𝗵𝗲 𝗝𝗼𝘂𝗿𝗻𝗲𝘆!
If you’re passionate about SBOM automation, security, and compliance, help us shape sbommv’s future by contributing ideas, integrations, and feedback.
https://t.co/lssc4urLwS
🚨 Big news!
Interlynk is thrilled to announce that BIOTRONIK, a market leader in medical equipment manufacturing, dedicated in developing trusted cardiovascular, endovascular and neuromodulation products and solutions, has chosen us to support their third-party software monitoring requirements and ensure compliance with FDA cybersecurity standards for all their devices.
🔊“BIOTRONIK’s commitment to excellence and high-quality standards is unwavering. Our choice to partner with Interlynk is a testament to this commitment. Interlynk’s robust tools enable us to manage SBOMs effectively and expedite the discovery and management of potential cybersecurity vulnerabilities. This strategic partnership strengthens our ability to safeguard our products and, most importantly, our patients.”
- Director of Global Product Cybersecurity, Alan Fryer
🌐 Discover how Interlynk’s SBOM Automation Platform can simplify and automate FDA compliance by booking a demo at https://t.co/7f8ZdOUViR
We are thrilled to announce the release of #SPDX 3.0 export with Interlynk 🚀
Using SPDX3 on Interlynk, you can now:
✅ Further simplify #SBOM management
✅ Enhance security and compliance
✅ Streamline software audits
✅ Improve collaboration across teams
Great job team!🙌
AI Customer Support needs Humans
From a friend who was recently on a health insurance company website (and who, ironically, is a fairly active AI investor):
"You know what? F*** AI, including for customer support.. I'm ready to burn down every AI server out there 🤬😡
The %INSURANCE-COMPANY% app and website are broken for ordering a specialty prescription, when you contact support they send you either to a technical support line which is useless or to a health alert line, which is answered clearly by an AI voice because it does not listen to what you want to say but pretends that it is listening. Meanwhile, the customer support agent on chat claims to be a human being but clearly is not because it is regurgitating the same wrong answer over and over again."
CEOs: Please think of adding an escape hatch for customers to speak with a person, when AI is clearly not doing the job. This escape hatch could appear based on factors such as time on site, customer value, transaction type, etc. Not having this option risks alienating your best customers. Even one such experience is unacceptable.
Get set for the Quantum Leap with #CycloneDX 1.6!
The April release is gearing up for #PostQuantumCryptography with the Cryptographic Bill of Materials (#CBOM) and "Compliance as Code" with the CycloneDX Attestation (#CDXA).
Check our summary: https://t.co/sPyJXhTyQr #SBOM
We are thrilled to announce the release of SPDX 3.0, introducing a comprehensive set of updates, encompassing the model, specification, and license list, with the new addition of SPDX profiles to handle modern system use cases.
Read the announcement:
https://t.co/ZD7I5MLkky
📣 SOSS Community Day NA is happening NOW at Seattle Convention Center, Summit building. Welcoming & Opening Remarks by @omkhar_openssf.
#SOSSCommunity
Love seeing how @AndresFreundTec, with his curiosity and craftsmanship, was able to help us all. Security is a team sport, and this is the culture we need everywhere. https://t.co/M4OX2np8SE