Cybersecurity Dive August 22, 2025
The document is primarily meant for federal agencies, but CISA hopes businesses will also use it to push vendors for software bills of materials.
The Cybersecurity and Infrastructure Security Agency (CISA) has updated its recommendations for the minimum features of a software bill of materials (SBOM), the latest step in the agency’s campaign to encourage transparency in the software market.
“The updates and additions included in this document will better position Federal Government agencies and other SBOM consumers to address a range of use cases, understand the generation process, and improve data quality,” CISA said in the new publication, which it released on Thursday.
Many organizations are vulnerable to cyberattacks because they use software with flaws that they aren’t aware...







