Anchore was launched in 2016 to address the software complexity that was growing exponentially as a result of the increasing use of container-based applications. To provide insight into the security status of containers, Anchore focused on generating the most complete picture of the contents in the container. This includes (but is not limited to) generating a high-fidelity software bill of materials (SBOM).
Traditionally, generating SBOMs has been an implicit function of tools known as software composition analysis (SCA). These tools were originally developed in the late 90s/early 00s to focus on software licenses checks in source code. Vulnerability management for source code was bolted on later.
However, the SCA approach from this era no longer works. There is too much software, shipping too rapidly, with too much complexity for them to scan adequately.
Now, software is modified and shipped multiple times a day. Open source software now forms the majority content of any modern application. Attackers are using innovative supply chain attacks such as registry spoofing to obfuscate content. Containers are the default. And, finally, new compliance controls driven by the US government, are putting additional burdens on software transparency.
Today, we are launching our new website to address this new reality with a modern, SBOM-powered SCA product that offers a more effective approach to the challenges of software transparency. This approach has been recognized by major Fortune 500 enterprises and leaders in the public sector across the US, UK, and Australia.
Anchore Enterprise is focused on cloud-native applications. At Anchore we recognize that SBOMs have to be generated and scanned at every step of the process from CI/CD to registry to production. That’s why we put federal compliance at the heart of our policy engine.
This approach enables a variety of solutions. Whether you are trying to modernize your team with DevSecOps practices, address board-level concerns about the software supply chain after Log4j, or sell to the U.S. government in the wake of the Biden Executive Order, we have you covered.
Contact us to today for more info on how Anchore Enterprise can work for you.