Source Code vs Binary Analysis for SBOMs
Автор: Andrew Hoog
Загружено: 2022-10-05
Просмотров: 1026
Описание:
Technical blog: https://www.andrewhoog.com/post/sourc...
Are you curious how SBOMs (Software Bill of Materials) are generated? Do you know the differences between source code and binary analysis? In this technical tutorial, I go over two different methods for generating a SBOM, talking about the benefits and challenges of each.
00:00 - Intro
00:46 - Different type of SBOM analysis
01:27 - Source Challenge #1: Static is usually dynamic
02:17 - Source Challenge #2: transitive dependencies
03:13 - Source Challenge #3: no source code!
04:46 - Binary Analysis overview
05:08 - Mobile app SBOM opportunity
05:28 - Binary analysis Challenge #1: missing version information
05:54 - Binary analysis Challenge #2: deep dependency trees
06:52 - Final thoughts on binary vs source analysis SBOMs
#sbom #cyclonedx #mobilesecurity
::::::::::::::::::::
Music: Fire - Elektronomia
Video: https://www.youtube.com/watch?v=mX-Sk...
Support by RFM - NCM: • Fire - Elektronomia | Royalty Free Music -...
::::::::::::::::::::
TALK TO OR FOLLOW ME:
LinkedIn: / andrewhoog
Twitter: / ahoog42
Website: https://www.andrewhoog.com
Company Website: https://www.nowsecure.com
Повторяем попытку...
Доступные форматы для скачивания:
Скачать видео
-
Информация по загрузке: