Trump Administration Rescinds Biden-Era SBOM Guidance
ID: 7438ed49-e5b6-5365-828a-deb439dd7412
STIX ID: report--7438ed49-e5b6-5365-828a-deb439dd7412
Feed Name: Dark Reading
The Office of Management and Budget issued M-26-05 rescinding previous memos that mandated SBOMs and vendor self-attestations (M-22-18 and M-23-16), prompting divided reactions from the security community: critics warn the rollback undermines supply-chain transparency and minimum secure-development practices, while supporters argue it allows agencies to prioritize mission risk and operational impact; the memo leaves agencies free to use NIST SSDF as a reference but raises concerns about inconsistent assurance practices and potential long-term security degradation if a common baseline is not maintained.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
