• Trends
  • Topics
  • Nodes
Search for keywords, #hashtags, $sites, add a dash to exclude, e.g. -$theonion.com

From anchore.com

https://get.anchore.com/rapid-incident-response-with-sboms

1 2

This webinar will demonstrate how SBOMs are a critical piece for rapid incident resolution and significantly reduce the time required to assess risk exposure.

#sbom #infosec #devsecops

on Wed, 8PM

From anchore.com

Introducing Grype Explain

1 1

Today, we’re introducing a new sub-command to help users answer this question: grype explain. Now, when users are surprised to see some CVE they’ve never heard of in their grype output, they can ask grype to explain itself.

#security #vulnerability

on Mar 28

From anchore.com

Contributing to Vulnerability Data: Making Security Better for Everyone

0 1

Software security depends on accurate vulnerability data. While organizations like NIST maintain the National Vulnerability Database (NVD), the sheer volume of vulnerabilities discovered daily means that sometimes data needs improvement. At Anchore, we’re working to enhance this ecosystem...

on Mar 20

From anchore.com

Grype DB Schema Evolution: From v5 to v6 - Smaller, Faster, Better

0 0

Discover how Grype is faster and better at finding vulnerabilities with its updated DB schema and optimized performance.

on Mar 11

From anchore.com

Making Virtual Machine Security Analysis Easier with sbom-vm

0 0

Discover sbom-vm, a new open-source tool that simplifies generating Software Bills of Materials (SBOMs) from virtual machine disk images by working outside the VM to overcome resource constraints and performance limitations.

on Mar 6

From anchore.com

Syft 1.20: Faster Scans, Smarter License Detection, and Enhanced Bitnami Support

0 0

Exciting updates in the Syft release! v1.20.0 drastically cuts DLL scanning times and enhances SBOM accuracy for users.

on Feb 25

From anchore.com

Anchore Community Spotlight: Nicolas Vuilamy from MegaLinter

0 0

Want to learn how a powerful open-source linting tool that supports over 50 programming languages came to be? Join us for an engaging conversation with Nicolas Vuillamy, the creator of MegaLinter, as he shares the journey from its Bash origins to becoming a comprehensive static code analysis...

on Feb 22

From anchore.com

SBOMs 101: A Free, Open Source eBook for the DevSecOps Community

0 0

Download the free SBOM 101 eBook and master software bills of materials. Learn best practices, formats, and real-world examples to boost your software supply chain security knowledge.

on Feb 7

From anchore.com

Software Supply Chain Security in 2025: SBOMs Take Center Stage

0 1

Explore Anchore’s 2025 insights on SBOM adoption, driven by accelerating software supply chain attacks, rising DevSecOps demands, and global regulatory shifts.

on Jan 17

From anchore.com

The Top Ten List: The 2024 Anchore Blog

0 0

Learn about software supply chain security, DevSecOps and compliance as the Top Content team at Anchore counts down the Top 10 blogs of 2024.

on Jan 9

From anchore.com

https://get.anchore.com/deep-dive-with-kate-stewart

0 0

Anchore presents the basics of SBOMs

on Jan 8

From anchore.com

https://get.anchore.com/automate-generate-manage-sboms

0 0

Anchore presents the basics of SBOMs

on Dec 31

From anchore.com

The Evolution of SBOMs in the DevSecOps Lifecycle: From Planning to Production

0 0

Discover how SBOMs evolve throughout the DevSecOps lifecycle. Learn how different SBOM types enhance supply chain security and compliance.

on Nov 27

From anchore.com

Choosing the Right SBOM Generator: A Framework for Success

0 0

Discover how to select the right SBOM generation tool for your organization. Our framework guides you through key criteria to consider.

on Nov 20

From anchore.com

Anchore on AWS Marketplace and joins ISV Accelerate

0 0

Anchore joins AWS ISV Accelerate Program and launches Anchore Enterprise on AWS Marketplace. Simplify procurement and enhance DevSecOps with seamless AWS integration.

on Nov 14

From anchore.com

https://get.anchore.com/stig-101-insights-for-compliance

0 1

In our upcoming live webinar, Aaron Lippold, Chief Architect of MITRE Security Automation Framework (SAF) at MITRE, and Josh Bressers, VP of Security at Anchore, will discuss the rising importance of STIGs. Josh and Aaron will explain how STIGs are used in modern environments, and how you can...

on Nov 11

From anchore.com

Tonight’s Movie: The Terminal (of your laptop)

0 0

Capturing terminal output for demos is a great way to show off command-line tool capabilities. I took a look at three leading tools to achieve terminal recording nirvana.

on Nov 6

From anchore.com

Overwhelmed by STIG compliance? Simplify implementation & maintenance with these actionable tips.

0 0

Learn how MITRE SAF helps organizations automate STIG compliance and reduce time to ATO. Enable secure and compliant DoD deployments.

on Oct 29

From anchore.com

Introducing Anchore Data Service and Anchore Enterprise 5.10

0 0

Anchore Enterprise 5.10 introduces Anchore Data Service (ADS) for reliable vulnerability data and expands AnchoreCTL ecosystem support. Secure your software supply chain.

on Oct 22

From anchore.com

https://get.anchore.com/introducing-the-anchore-data-service

0 0

Join Neil Levine, SVP of Product and Alan Pope, Director of Developer Relations on October 16th and see a demo of the latest release features.

on Oct 17

From anchore.com

https://get.anchore.com/solving-real-world-challenges-in-fedramp-compliance

0 0

Join Mike Strohecker, Director of Cloud Operations, Infusion Point and Neil Levine, SVP of Product, Anchore, as they explore practical solutions to common challenges with FedRAMP compliance.

on Oct 9

From anchore.com

Navigating Open Source Compliance in Regulated Industries

0 0

Learn how to leverage open source software in highly regulated industries while meeting strict compliance and cybersecurity standards.

on Oct 9

From anchore.com

US Navy achieves ATO in days with continuous compliance and OSS risk management

0 0

Learn how Black Pearl achieved an ATO in days rather than months and managed OSS vulnerability risk at the same time using Anchore Enterprise.

on Oct 1

From anchore.com

Mark Your Calendars: Anchore's Must-Attend Events and Webinars in October

0 0

Explore all of the software supply chain security events at Anchore in October. For DevSecOps enthusiasts and public sector devotees >

on Sep 27

From anchore.com

We migrated from S3 to R2. Thankfully nobody noticed

0 0

Grype executes millions of runs a day. The Grype DB is large and updated daily. The team seamlessly moved the DB from S3 to R2. This is their story.

on Sep 25

From anchore.com

Is Open Source Software a Risk to Your Software Supply Chain?

0 0

To secure the software supply chain, you need an understanding of common open source software vulnerabilities & tools and best practices to mitigate risks.

on Sep 17

From anchore.com

https://get.anchore.com/how-sboms-protect-google-sw-supply-chain

0 0

How does a software giant like Google catalog thousands of software applications? Brandon Lum, Open Source Security Engineer at Google, and Alan Pope, Director of Developer Relations at Anchore are introducing Syft, an OSS tool that helps generate SBOMs for Google’s highly complex and...

on Sep 17

From anchore.com

Is Open Source Software a Risk to Your Software Supply Chain?

0 0

To secure the software supply chain, you need an understanding of common open source software vulnerabilities & tools and best practices to mitigate risks.

on Sep 10

From anchore.com

DreamFactory Achieves 75% Time Savings with Anchore: A Case Study in Secure API Generation

0 1

Learn how DreamFactory achieved 75% time savings in vulnerability management for air-gapped deployments using Anchore Enterprise.

on Sep 4

From anchore.com

Balancing the Scale: Software Supply Chain Security and APTs

0 0

Explore how Anchore Enterprise enhances software supply chain security against APTs by creating a minefield of security best practices.

on Sep 1

From anchore.com

FedRAMP & FISMA Compliance: Key Differences Explained

0 0

Understand the 3 key differences between FedRAMP vs FISMA. When & to whom each framework applies. Plus, discover helpful tools for each.

on Aug 23

From anchore.com

SSDF Attestation Template: Battle-tested Compliance Guidance

0 0

Simplify SSDF attestation with Anchore Enterprise. Learn how to complete the form, and leverage DevSecOps tooling for software security.

on Aug 23

From anchore.com

Anchore at Billington CyberSecurity Summit: Automating Defense in the AI Era

0 0

Discover how Anchore is automating vulnerability scanning, SBOMs and compliance (cATO, RAISE 2.0 and more) at the Billington Cybersecurity Summit.

on Aug 23

From anchore.com

David and Goliath: the Intersection of APTs and Software Supply Chain Security

0 1

Discover how to protect against Advanced Persistent Threats (APTs) and enhance software supply chain security in the second of this series.

on Aug 11

From anchore.com

Anchore Awarded DoD ESI DevSecOps Phase II Agreement

0 1

Discover how Anchore and the Department of Defense have deepened their DevSecOps relationship with the inclusion in the DoD's ESI catalog.

on Aug 9

From anchore.com

Anchore Enterprise 5.8 Adds KEV Enrichment Feed

0 0

Discover how Anchore Enterprise 5.8 enables your organization to prioritize vulnerabilities by enriching SBOMs with CISA KEV data.

on Jul 31

From anchore.com

FedRAMP Overview

0 0

Everything you need to know about FedRAMP; how to get certified, an overview of impact levels, and tips and tools to make the process easier.

on Jul 31

From anchore.com

DevSecOps Evolution: How DoD Software Factories Are Reshaping Federal Compliance

0 1

Discover how DoD software factories are revolutionizing DevSecOps with automated compliance. Learn key insights from Anchore, VP of Security.

on Jul 24

From anchore.com

High volume image scanning and vulnerability management at the Iron Bank (Platform One)

0 0

Learn how Iron Bank leveraged Anchore Enterprise to create a secure and compliant software development model that is applied across the DoD.

on Jul 23

From anchore.com

With Great Power Comes Great Responsibility: APTs & Software Supply Chain Security

0 1

Discover how to protect against Advanced Persistent Threats (APTs) and enhance software supply chain security in the first of this series.

on Jul 21

From anchore.com

How Infoblox Scaled Product Security and Compliance with Anchore Enterprise

0 0

Discover how Infoblox scaled product security and compliance using Anchore Enterprise; reducing vulnerability detection time by 75%.

on Jul 12

From anchore.com

AnchoreCTL Setup and Top Tips

0 1

AnchoreCTL enables you to efficiently manage and inspect all aspects of your Anchore Enterprise deployments. Get started in minutes with this beginner blog.

on Jul 3

From anchore.com

Modernizing FedRAMP: GSA's Roadmap to Streamline Authorization

0 0

Discover how the 2024 FedRAMP modernization initiative aims to streamline compliance, reduce costs and friction for agencies, CSPs and 3PAOs

on Jun 28

From anchore.com

Add SBOM Generation to Your GitHub Project with Syft

0 0

In this step-by-step tutorial, you will learn how to generate SBOMs and add them to your Github project using Syft and Github Actions.

on Jun 26

From anchore.com

Four Years of Syft Development in 4 Minutes at 4K

0 0

Our open-source SBOM and vulnerability scanning tools Syft and Grype, recently turned four years old. So I did what any nerd would do: render an animated visualization of the development using the now-venerable Gource.

on Jun 26

From anchore.com

Improving Syft’s Binary Detection

0 0

Learn how to improve open source SBOM tool Syft by creating custom scans that will uncover binaries in your software supply chain >

on Jun 25

From anchore.com

NIST & SSDF Compliance

0 1

Explore how Anchore Federal automates security and compliance checks to meet NIST standards and SSDF attestation.

on Jun 25

From anchore.com

https://get.anchore.com/sbom-cybersecurity-whitepaper

0 0

What are SBOMs? What role do they play in cybersecurity? Learn how your organization can leverage SBOMs to secure your development cycle with this guide.

on Jun 25

From anchore.com

https://get.anchore.com/adapting-to-new-normal-at-nvd-anchore-vulnerability-feed

0 0

Anchore alerted the security community to the drastic slowdown in the CVE updates coming from the National Vulnerability Database (NVD). Despite explanatory comments from NIST, the organization that runs NVD, there is still ongoing concern about the long-term future. Neil Levine, VP of Product...

on May 6

From anchore.com

Careers

0 0

Join a supportive, inclusive, and committed team of compassionate, and innovative professionals securing the future with software.

on Apr 25