Jean-Baptiste Maillet

26 Followers
49 Following
300 Posts
Hardcore embedded C/C++ caveman.
Supply chain cybersecurity, SBOM , vulnerability management.
#embedded #linux #oss #psirt
he/him
embedded
linux
oss
psirt
...but this collides with the EUVD FAQ itself, which refer to the EUVD as related to the NIS2 directive, not the CRA.
Any EU regulation scholar around here?
 
@adulau
...as well as the EUVD.
@adulau
Did you know?
CIRCL's vulnerability-lookup is mentioned in the LF/OpenSSF CRA training. (screencap, top left)
https://vulnerability.circl.lu/
https://training.linuxfoundation.org/express-learning/understanding-the-eu-cyber-resilience-act-cra-lfel1001/
@adulau
#circl #vulnerability-lookup #cra
Vulnerability-Lookup

Vulnerability-Lookup - Fast vulnerability lookup correlation from different sources.

Breaking news - I double checked this is not April 1st - what can I say? 😯

"Earing the cries of the free world, Europe open at last its vulnerability database!" 🎺 🌍 (or more probably just open it to the public eye?) (at last)
https://euvd.enisa.europa.eu/

EDIT: read the FAQ, it's interesting
https://euvd.enisa.europa.eu/faq

#vulnerability #europe #enisa

EUVD

European Vulnerability Database

Meanwhile in another galaxy, no news from
SBOM for C code, size of the problem = 6.5 billion LOC, not including C++.
Chris Swan presenting here.
#fosdem #sbom #cprogramming
FOSDEM: you are here map.
"Legislative overlay: anticipating and navigating regulatory vectors" talk.
We're good at that in Europe. 😅

I will attend the FOSDEM fringe workshop on FOSS license and security compliance tools, in Brussels Fri, Jan. 31st, 2025. Hope to meet you there.

https://workshop.aboutcode.org/

Jean-Baptiste Maillet