Viktor Petersson

Viktor Petersson

Serial entrepreneur and cybersecurity innovator, currently focused on shaping the future of software security and compliance. As the founder of sbomify, he simplifies Software Bill of Materials (SBOM) management, helping organizations navigate emerging cybersecurity regulations such as the Cyber Resilience Act (CRA). Viktor co-led the CISA SBOM Working Group on SBOM generation and is an invited expert to ECMA TC54. He shares insights and industry trends through his podcast, Nerding Out With Viktor.

Posts by Viktor Petersson

Major Updates: sbomify v0.21 and Action Module v0.8 & v0.9

Triple release: sbomify v0.21 with vulnerability trends dashboard, plus GitHub Action v0.8 and v0.9 featuring modular generation plugins and 8 …

Announcing sbomify v0.20: Custom Domains & Streamlined Onboarding

sbomify v0.20 release featuring custom domain support for Trust Centers, redesigned onboarding wizard, team invitation improvements, and security …

Announcing GitHub Action 0.7.0 and sbomify 0.19

Major releases: GitHub Action 0.7.0 with ecosyste.ms enrichment and SPDX support, plus sbomify 0.19 with full Django+HTMX migration, custom domains, …

CISA's Minimum Elements now in Draft

Analysis of CISA's 2025 draft SBOM Minimum Elements update, adding required hash, license, and tool provenance fields to succeed the 2021 NTIA …

Big Update to sbomify

sbomify v0.15 introduces document support alongside SBOMs, improved public pages, and product-level SBOM aggregation—evolving into a complete …

Unpacking Raspberry Pi's Built‑In SBOM Magic

How Raspberry Pi's rpi-image-gen tool generates SPDX SBOMs out of the box, achieving a 7.8/10 quality score with sbomqs for embedded image builds.

Chris Swan Joins sbomify Advisory Board

Chris Swan, Engineer at Atsign and former CTO at UBS, joins sbomify's advisory board bringing DevOps, open source, and cybersecurity expertise.

Mastering SBOM Generation with Yocto

Deep dive into Yocto's built-in SPDX 2.2 SBOM generation, analyzing output quality with sbomqs and integrating with sbomify for SBOM lifecycle …

sbomify Goes Open Source: A New Chapter in SBOM Management

sbomify is now open source under Apache 2.0 plus Common Clause. Learn about our hierarchical SBOM approach, CycloneDX support, and Project Koala …

How SBOMs Can Help You Achieve PCI DSS 4.0 Compliance

Discover how Software Bill of Materials (SBOMs) help online gambling and e-commerce businesses achieve PCI DSS 4.0 compliance through better …

sbomify GitHub Action v0.3.0: Now Faster and Compatible with GitLab!

sbomify GitHub Action v0.3.0 release adds GitLab CI/CD support, 50% faster build times, and bug fixes for Docker image SBOM generation.

GitHub Action module with Attestation

New features in sbomify's GitHub Action including Dart lockfile support, Docker image SBOMs, NTIA enrichment, and SLSA build provenance attestation.