claim
Private industries are not required to demand Software Bill of Materials (SBOMs), although regulations such as the Digital Operational Resilience Act (DORA) require open source testing, which would benefit from the provision of an open source SBOM.
Authors
Sources
- Cyber Insights 2025: Open Source and Software Supply Chain ... www.securityweek.com via serper