← Back to advisories & guidance
July 29, 2026
CISA
Advisory
Co-sealed by: ASD/ACSC, CISA, FBI, NSA, NTIA
Summary
The U.S. Cybersecurity and Infrastructure Security Agency (CISA), in partnership with the co-authoring organizations, updated the Minimum Elements for a Software Bill of Materials (SBOM) to reflect current SBOM needs, while preserving the core principles of the document published in 2021 by the National Telecommunications and Information Administration (NTIA). Increased adoption and implementation from stakeholders across the software ecosystem has uncovered new use cases and applications for SBOM data. SBOM tooling, in response to the increased adoption and implementation of SBOM, has advanced far beyond the capability and functionality of tools available in 2021. These advancements enable organizations requesting SBOMs to demand more information about their software components and supply chain.
News Coverage
No coverage found in monitored research blogs or news feeds.
CVEs Referenced in This Publication
No CVEs are referenced in this publication.
Vendors Named in This Publication
No KEV-catalogued vendors are named in this publication.