DFIELDSOLUTIONS

Security

GlossarySBOM

Software bill of materials — the inventory of every component and version inside a piece of software, so 'are we vulnerable to X' is a lookup, not an excavation.

When a critical vulnerability lands in a popular library, the first question is 'do we run it, and where'. Without an SBOM that answer is a panicked grep; with one it is a query. Generated automatically in CI, it turns dependency chaos into a document.

It also answers the commercial version of the question: customers and auditors increasingly ask for the component list before they buy. An SBOM says you know what you ship — the absence of one says the opposite, loudly.

Related terms

The bench this belongs to

Cybersecurity

Purple Team: the same person writes the exploit and closes the hole. Most agencies only harden, which means hardening against a threat nobody tested.

All termsStart a conversationMarkdown version

DField Bt. · Dunakeszi · dezso@dfieldsolutions.com
5.0
“From LinkedIn DM to live site. Two tiny tweaks, then shipped.”Michael J Ringer · Vilya ProtectionFounder · Spain