Transparency Exchange API - Where To Find Product SBOM?
CNCF [Cloud Native Computing Foundation] via YouTube
You’re only 3 weeks away from a new language
AI Engineer - Learn how to integrate AI into software applications
Overview
Google, IBM & Meta Certificates — All 10,000+ Courses at 40% Off
One annual plan covers every course and certificate on Coursera. 40% off for a limited time.
Get Full Access
Explore the OWASP Transparency Exchange API (TEA) in this 23-minute conference talk that addresses the critical challenge of discovering Software Bills of Materials (SBOMs) and other security transparency artifacts across diverse products and platforms. Learn how current security metadata remains fragmented and vendor-specific, often requiring manual email exchanges, and discover how TEA aims to standardize and automate the discovery process for SBOMs, xBOMs, certifications, and transparency artifacts throughout software and hardware supply chains. Examine real-world scenarios from smart light bulbs to SaaS products and connected vehicles, understand the motivation driving this emerging Ecma standard, walk through the current specification details, and preview upcoming developments in transparency artifact accessibility and automation.
Syllabus
Transparency Exchange API: Where To Find Product SBOM? - Pavel Shukhman, Reliza
Taught by
CNCF [Cloud Native Computing Foundation]