Log4J Attacks Confirm Need for DevSecOps, Automation, SBOM
Federal agencies have until Dec. 23 to comply with an emergency directive that mandates mitigations. But patching 3rd-party open-source code is tough.
Michael Lieberman Pete Allor Chris Wysopal Red Hat Software Bill Of Materials Commerce Department National Telecommunications
Source: informationweek.com