Loading...
跳转到主要内容

像很多网站一样,BSA的网站使用cookies来确保网站的高效运作,为我们的用户提供最佳的体验。 您可以在我们的Cookies声明中了解我们使用Cookies的更多信息,以及如何更改浏览器的Cookies设置。 继续使用本网站但不更改您的Cookies设置,即表示您同意我们使用Cookies。

X

12月 18, 2025 | EUROPEAN UNION | EUROPE, MIDDLE EAST AND AFRICA | GOVERNMENT SUBMISSION

EU: BSA Submission to the ENISA’s Public Consultation on SBOMS (CRA)

In our submission, BSA underscores its support for the development and use of Software Bills of Materials (SBOMs) as an important, though limited, tool for improving the cybersecurity of digital products. We highlight that meaningful security gains from SBOMs depend on continued industry progress and on EU requirements that remain aligned with global best practices and internationally recognized standards. Our submission also urges the European Commission and ENISA to clarify that SBOM obligations under the Cyber Resilience Act (CRA) do not apply to Software as a Service (SaaS) or cloud services, as requiring SBOMs in these contexts would expose previously obscure attack surfaces and increase security risks. Clear scope boundaries and harmonised, risk-appropriate SBOM policies are essential to ensuring SBOMs deliver value to European users and the broader digital ecosystem.

下载 PDF