CISA Releases Updated Software Bill of Materials Guidelines to Enhance Cybersecurity

The Cybersecurity and Infrastructure Security Agency (CISA), along with U.S. government agencies and international partners, released updated 2026 Minimum Elements for a Software Bill of Materials (SBOM) on July 29, 2026. The revision incorporates feedback from over 90 public comments and applies to all software, including open-source, AI, and SaaS. Key additions include Component Hash Algorithm, Component License, SBOM Tool Name, and SBOM Generation Context. Existing elements were revised for clarity, such as renaming ‘Author of SBOM Data’ to ‘SBOM Author’ and ‘Supplier Name’ to ‘Component Producer’. The updated guidelines aim to improve transparency, strengthen supply chain security, and support risk-informed decision-making. SBOMs provide formal records of software components, aiding organizations in understanding supply chain risks and enhancing cybersecurity posture. For more details, visit CISA.gov.

source

Made by AI. If you spot anything of concern write us at contact@cybach.com. We’ll promptly correct irregularities.


Posted