• SBOM Signing FAQ
  • SecureSBOM vs Sigstore
  • Blog
  • About
  • Contact
SBOM management solutions by ShiftLeftCyber
SBOM Signing FAQ SecureSBOM vs Sigstore Blog About Contact

Posts

The SBOM Storage Tax: Optimization at Scale
The SBOM Storage Tax: Optimization at Scale

Following my last post on the “Storage Tax” of binary blob signing, I received some insightful feedback from the co...

2026/03/02

The SBOM Signature 'Storage Tax': Money Talks 💰📉
The SBOM Signature 'Storage Tax': Money Talks 💰📉

Over the last few weeks, I’ve been deep in the weeds of technical best practices for signing SBOMs. I’ve discussed ...

2026/02/23

🚨 Call for Feedback: A Standardized Approach to SBOM Signing
🚨 Call for Feedback: A Standardized Approach to SBOM Signing

The new benchmark by which all SBOM signing and verification tools will be judged. This Frida...

2026/02/09

Implementing Data-Aware Signing
Implementing Data-Aware Signing

I recently argued that with SBOMs we need to stop signing the “container” (the file) and start signing the “c...

2026/02/02

Stop Signing the Container 📦, Start Signing the Content
Stop Signing the Container 📦, Start Signing the Content

In my current work with the OpenSSF SBOM...

2026/01/19

The Binary Blob Trap in SBOM Signing 🪤
The Binary Blob Trap in SBOM Signing 🪤

Is the industry’s favourite SBOM signing tool actually creating a verific...

2026/01/13

  • 1
  • 2
  • 3
  • ...
  • Next
  • Last
© ShiftLeftCyber 2026 All Rights Reserved.
Home