Release 1.35

November 27, 2024

What’s New?

Support to Download SBOM Report

Qualys offers the option to download the Software Bill of Material (SBOM) report. The SBOM report provides details about your software, such as the software components used, their versions, relationships with each other, metadata, and so on. You can use the SBOM report to analyze your software. You can download the SBOM on Qualys Cloud Platform under Container Security > ASSETS > Images > Quick Actions.

The SBOM can be downloaded in the following formats.

  • SPDX - This is the default SBOM report format offered by Qualys. The SPDX SBOM package is primarily a collection of three elements: Documents (metadata about the SBOM), Packages (groups of elements), and Files (single files). It is managed by 'The Linux Foundation'. To know more about SPDX SBOM, refer to  https://spdx.dev/about/overview/ .
  • CycloneDX - The CycloneDX Software Bill of Materials (SBOM) includes metadata and outlines a collection of software elements, organized into components, services, and dependencies. Additionally, the SBOM defines relationships between these elements through a specific architecture. It is managed by OWASP. To know more about CycloneDX, refer to https://cyclonedx.org/ .

 

Enhancement in Reporting 

??WIP??

 

 

 

 

Availability of Container Runtime Sensor (CRS) on Sensor Profile Page

??WIP??

 

 

 

Cloud and Cluster Information in Container Reports

??WIP??

 

Per Image Layer Details

??WIP??

 

Known Issue??

The following issue is the Known issues in this release.

Category Issue
?? ??