Skip Navigation

Sonatype's SBOM generation capabilities outpace the competition

8 minute read time

Better data, a dedicated security team, and the analytical capabilities of BOM Doctor are all part of what makes Sonatype's SBOM capabilities superior.
Read More...

What is hashing? A look at unique identifiers in software

10 minute read time

Get a handle on software security with these odd-looking but very accessible tools to help sort good from bad on the internet.
Read More...

Transitioning your software supply chain management (SSCM) to the cloud

By Omar Torres on February 22, 2023 secure software supply chain

6 minute read time

Transitioning from self-hosted services to managed cloud can be difficult. A look at some of the considerations around SSCM migrations.
Read More...

Is cyber liability insurance a moral hazard in the US?

By Brian Fox on February 22, 2023 secure software supply chain

8 minute read time

Sonatype CTO and co-founder, Brian Fox, shares his thoughts on the developing role of cyber liability insurance in software supply chain management.
Read More...

Are unnecessary vulnerabilities polluting your software supply chain?

7 minute read time

As malicious software supply chain attacks continue to evolve, so do the ways that bad actors exploit vulnerable libraries.
Read More...

The shifting landscape of open source supply chain attacks - Part 3

By Brian Fox on January 26, 2023 thought leaders

12 minute read time

Brian Fox shares insights on who’s responsible for the security of software supply chains, and how orgs can minimize impact on efficiency and speed.
Read More...

The shifting landscape of open source supply chain attacks - Part 2

By Brian Fox on January 25, 2023 thought leaders

11 minute read time

Sonatype's Brian Fox delves into how bad actors and cybercriminals are attacking the software supply chain, and how cyberattacks continue to evolve.
Read More...

The shifting landscape of open source supply chain attacks - Part 1

By Brian Fox on January 24, 2023 thought leaders

8 minute read time

A deep dive into how modern supply chains manage problems, and how companies looking to secure their software supply chains can learn from their mistakes.
Read More...

A guide to deployment models: Self-hosted, cloud, and air-gapped

6 minute read time

Which deployment option is right for your software supply chain? An analysis of the pros and cons of self-hosted, cloud, and air-gapped deployment.
Read More...