---
title: aDolus Blog
description: Firmware and software supply chain security for IT, OT and IoT.
---

[![aDolus Logo](https://adolus.com/images/adolus-white-new60px.webp)](https://adolus.com/) [Blog](https://blog.adolus.com/)

Product

- ##### Fact Platform
- [Overview](https://adolus.com/fact/overview/)
- [Benefits](https://adolus.com/fact/benefits/)
- [Technical Details](https://adolus.com/fact/technical/)

- ##### Fact Features
- [Software Validation & Scoring](https://adolus.com/product/software-validation-scoring/)
- [SBOM Creation](https://adolus.com/product/sbom/)
- [VEX Documents](https://adolus.com/product/vex-documents/)
- [Malware Detection](https://adolus.com/product/malware-detection/)
- [Certificate Validation](https://adolus.com/product/certificate-validation/)
- [Software Supplier Discovery](https://adolus.com/product/software-supplier-discovery/)

Solutions

- ##### By use case
- [Vulnerability Management](https://adolus.com/solutions/vulnerability-management/)
- [Compliance](https://adolus.com/solutions/compliance/)
- [Risk Management](https://adolus.com/solutions/risk-management/)
- [Operational Insights](https://adolus.com/solutions/operational-insights/)

- ##### By job function
- [Product Managers](https://adolus.com/solutions/product-managers/)
- [Security Managers](https://adolus.com/solutions/security-managers/)
- [Engineering Managers](https://adolus.com/solutions/engineering-managers/)
- [Procurement Managers](https://adolus.com/solutions/procurement-managers/)

- ##### By role in the supply chain
- [Vendors & OEMs](https://adolus.com/solutions/vendors-oems/)
- [Asset Owners](https://adolus.com/solutions/asset-owners/)

Resources

- ##### A Deeper Dive
- [Blog](https://blog.adolus.com/)
- [Videos & Podcasts](https://adolus.com/resources/video-podcasts/)
- [Infographics](https://adolus.com/resources/infographics/)
- [FAQ](https://adolus.com/resources/faq/)
- [Document Library](https://adolus.com/resources/document-library/)

- ##### Educational Tools
- [Executive Order 14028 Timeline](https://info.adolus.com/eo14028-timeline)
- [Log4j Resources](https://adolus.com/vulnerabilities/log4j/)

Company

- [About Us](https://adolus.com/company/about/)
- [Our Partners](https://adolus.com/company/partners/)
- [News](https://adolus.com/company/news/)
- [Careers](https://adolus.com/company/careers/)
- [Contact aDolus](https://adolus.com/company/contact/)

[Get a Demo](https://info.adolus.com/schedule-a-fact-demo-3)

[![Harnessing FACT for Swift Cyberthreat Response](https://blog.adolus.com/hubfs/XZ%20Backdoor%20thumbnail-aspect-corrected.png)](https://blog.adolus.com/harnessing-fact-for-swift-threat-response)

 6 min read

[malware](https://blog.adolus.com/tag/malware)

##### [Harnessing FACT for Swift Cyberthreat Response](https://blog.adolus.com/harnessing-fact-for-swift-threat-response)

 By [Marcello Delcaro](https://blog.adolus.com/author/marcello-delcaro) on May 1, 2024

In the cybersecurity world, anticipation and rapid response are crucial in safeguarding against emerging threats. Recent events, such as the discovery of a vulnerability in the XZ Utils...

[Continue Reading](https://blog.adolus.com/harnessing-fact-for-swift-threat-response)

[![Evolving Threats and Regulations in Software Supply Chain Security](https://blog.adolus.com/hubfs/laptop-gavel.png)](https://blog.adolus.com/evolving-threats-and-regulations-in-software-supply-chain-security)

 13 min read

[#supplychainsecurity](https://blog.adolus.com/tag/supplychainsecurity) [Regulatory Requirements](https://blog.adolus.com/tag/regulatory-requirements) [SBOM](https://blog.adolus.com/tag/sbom) [Legislation](https://blog.adolus.com/tag/legislation)

##### [Evolving Threats and Regulations in Software Supply Chain Security](https://blog.adolus.com/evolving-threats-and-regulations-in-software-supply-chain-security)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on February 13, 2024

2023 is in the rearview mirror and 2024 is now well underway. I wanted to post my thoughts on some of the software supply chain trends we saw last year and how they will continue to shape...

[Continue Reading](https://blog.adolus.com/evolving-threats-and-regulations-in-software-supply-chain-security)

[![EU Cyber Resilience Act (CRA) Clears Penultimate Step](https://blog.adolus.com/hubfs/flags%20and%20binary.png)](https://blog.adolus.com/eu-cra-clears-penultimate-step)

 5 min read

[Supply Chain Management](https://blog.adolus.com/tag/supply-chain) [SBOM](https://blog.adolus.com/tag/sbom) [Legislation](https://blog.adolus.com/tag/legislation)

##### [EU Cyber Resilience Act (CRA) Clears Penultimate Step](https://blog.adolus.com/eu-cra-clears-penultimate-step)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on December 8, 2023

On December 3rd, the EU's new Cyber Resilience Act (CRA) got a big step closer to being adopted when the European Parliament and the EU Council reached an agreement on the legislation. It...

[Continue Reading](https://blog.adolus.com/eu-cra-clears-penultimate-step)

[![The Wretched State of OT Firmware Patching](https://blog.adolus.com/hubfs/negelct.png)](https://blog.adolus.com/the-wretched-state-of-ot-firmware-patching)

 4 min read

[Vulnerability Tracking](https://blog.adolus.com/tag/vulnerability-tracking)

##### [The Wretched State of OT Firmware Patching](https://blog.adolus.com/the-wretched-state-of-ot-firmware-patching)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on October 11, 2023

This blog is a follow-up to our first post on the 2023 Microsoft Digital Defense Report where I described our collaboration with Microsoft on identified exploitable OT vulnerabilities.There...

[Continue Reading](https://blog.adolus.com/the-wretched-state-of-ot-firmware-patching)

[![Microsoft Digital Defense Report: Behind the Scenes Creating OT Vulnerabilities](https://blog.adolus.com/hubfs/MDDR2-backstage-pass-featureimage.png)](https://blog.adolus.com/microsoft-digital-defense-report-behind-the-scenes-creating-ot-vulnerabilities)

 3 min read

[Vulnerability Tracking](https://blog.adolus.com/tag/vulnerability-tracking)

##### [Microsoft Digital Defense Report: Behind the Scenes Creating OT Vulnerabilities](https://blog.adolus.com/microsoft-digital-defense-report-behind-the-scenes-creating-ot-vulnerabilities)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on October 5, 2023

Earlier this summer, aDolus collaborated with Microsoft on vulnerability analysis and contributed to their Microsoft Digital Defense Report 2023 (MDDR 2023). This report is a significant...

[Continue Reading](https://blog.adolus.com/microsoft-digital-defense-report-behind-the-scenes-creating-ot-vulnerabilities)

[![An Analysis of Generative AI: How to Be Confidently Wrong](https://blog.adolus.com/hubfs/Robot%20Interpretation.png)](https://blog.adolus.com/how-to-be-confidently-wrong)

 7 min read

[Regulatory Requirements](https://blog.adolus.com/tag/regulatory-requirements) [Vulnerability Tracking](https://blog.adolus.com/tag/vulnerability-tracking)

##### [An Analysis of Generative AI: How to Be Confidently Wrong](https://blog.adolus.com/how-to-be-confidently-wrong)

 By [Marcello Delcaro](https://blog.adolus.com/author/marcello-delcaro) on April 11, 2023

The recent release of the National Cybersecurity Strategy document by the White House prompted me to test Microsoft's new Bing chat feature, which is powered by OpenAI's language model,...

[Continue Reading](https://blog.adolus.com/how-to-be-confidently-wrong)

[![S4x23 SBOM Challenge — Part 3: VEX Document Ingestion](https://blog.adolus.com/hubfs/INL%20Presentation.png)](https://blog.adolus.com/s4x23-sbom-challenge-part-3)

 7 min read

[#S4](https://blog.adolus.com/tag/s4) [Vulnerability Tracking](https://blog.adolus.com/tag/vulnerability-tracking) [SBOM](https://blog.adolus.com/tag/sbom) [VEX](https://blog.adolus.com/tag/vex)

##### [S4x23 SBOM Challenge — Part 3: VEX Document Ingestion](https://blog.adolus.com/s4x23-sbom-challenge-part-3)

 By [Derek Kruszewski](https://blog.adolus.com/author/derek-kruszewski) on March 16, 2023

Three weeks ago I reported on the first part of the S4x23 SBOM Challenge run by Idaho National Laboratory (INL), which focused on SBOM Creation. Last week I reported on the second part:...

[Continue Reading](https://blog.adolus.com/s4x23-sbom-challenge-part-3)

[![S4x23 SBOM Challenge — Part 2: SBOM Ingestion](https://blog.adolus.com/hubfs/SBOM%20Pavilion%20Day%202.png)](https://blog.adolus.com/s4x23-sbom-challenge-part-2)

 7 min read

[#S4](https://blog.adolus.com/tag/s4) [Vulnerability Tracking](https://blog.adolus.com/tag/vulnerability-tracking) [SBOM](https://blog.adolus.com/tag/sbom) [VEX](https://blog.adolus.com/tag/vex)

##### [S4x23 SBOM Challenge — Part 2: SBOM Ingestion](https://blog.adolus.com/s4x23-sbom-challenge-part-2)

 By [Derek Kruszewski](https://blog.adolus.com/author/derek-kruszewski) on March 8, 2023

Two weeks ago I reported on the first part of the SBOM Challenge at the S4x23 cybersecurity conference in Miami, Florida. The Day 1 goal was for each team to create an accurate SBOM for...

[Continue Reading](https://blog.adolus.com/s4x23-sbom-challenge-part-2)

[![Three Quick Takeaways from Biden’s National Cybersecurity Strategy](https://blog.adolus.com/hubfs/National%20Cybersecurity%20Strategy%20Carrot%20and%20Stick.png)](https://blog.adolus.com/three-quick-takeaways-from-bidens-national-cybersecurity-strategy)

 2 min read

[#supplychainsecurity](https://blog.adolus.com/tag/supplychainsecurity) [Regulatory Requirements](https://blog.adolus.com/tag/regulatory-requirements) [EO14028](https://blog.adolus.com/tag/eo14028)

##### [Three Quick Takeaways from Biden’s National Cybersecurity Strategy](https://blog.adolus.com/three-quick-takeaways-from-bidens-national-cybersecurity-strategy)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on March 2, 2023

NOTE: We were going to publish our second blog of the S4x23 SBOM Challenge today. However, the new National Cybersecurity Strategy was released this morning, and we thought that...

[Continue Reading](https://blog.adolus.com/three-quick-takeaways-from-bidens-national-cybersecurity-strategy)

[![S4x23 SBOM Challenge — Part 1](https://blog.adolus.com/hubfs/SBOM%20Pavilion.png)](https://blog.adolus.com/s4x23-sbom-challenge-part-1)

 10 min read

[#S4](https://blog.adolus.com/tag/s4) [Vulnerability Tracking](https://blog.adolus.com/tag/vulnerability-tracking) [SBOM](https://blog.adolus.com/tag/sbom) [VEX](https://blog.adolus.com/tag/vex)

##### [S4x23 SBOM Challenge — Part 1](https://blog.adolus.com/s4x23-sbom-challenge-part-1)

 By [Derek Kruszewski](https://blog.adolus.com/author/derek-kruszewski) on February 24, 2023

The aDolus Team has just returned from participating in the SBOM Challenge at the S4x23 cybersecurity conference in Miami, Florida. This blog is the first of a series reporting on what we...

[Continue Reading](https://blog.adolus.com/s4x23-sbom-challenge-part-1)

[![A Flurry of Regulatory Action and the Need for SBOMs](https://blog.adolus.com/hubfs/Regulatory%20Action.png)](https://blog.adolus.com/a-flurry-of-regulatory-action)

 5 min read

[Regulatory Requirements](https://blog.adolus.com/tag/regulatory-requirements) [Supply Chain Management](https://blog.adolus.com/tag/supply-chain) [SBOM](https://blog.adolus.com/tag/sbom) [VEX](https://blog.adolus.com/tag/vex)

##### [A Flurry of Regulatory Action and the Need for SBOMs](https://blog.adolus.com/a-flurry-of-regulatory-action)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on October 12, 2022

Executive Order 14028 on Improving the Nation's Cybersecurity was issued in May of 2021 and provided a roadmap for a series of regulatory initiatives that government agencies (and anyone...

[Continue Reading](https://blog.adolus.com/a-flurry-of-regulatory-action)

[![A Deeper Dive into VEX Documents](https://blog.adolus.com/hubfs/Anatomy%20of%20VEX%20Documents2.png)](https://blog.adolus.com/a-deeper-dive-into-vex-documents)

 5 min read

[#supplychainsecurity](https://blog.adolus.com/tag/supplychainsecurity) [Vulnerability Tracking](https://blog.adolus.com/tag/vulnerability-tracking) [VEX](https://blog.adolus.com/tag/vex)

##### [A Deeper Dive into VEX Documents](https://blog.adolus.com/a-deeper-dive-into-vex-documents)

 By [Derek Kruszewski](https://blog.adolus.com/author/derek-kruszewski) on April 15, 2022

At the end of last summer, I wrote a blog post explaining the merits of Vulnerability Exploitability eXchange (VEX) documents. Almost 8 months later, I stand by the importance of these...

[Continue Reading](https://blog.adolus.com/a-deeper-dive-into-vex-documents)

[![How Russia Might Come After the West](https://blog.adolus.com/hubfs/russian-gas-pump-cyberattack-900x525.png)](https://blog.adolus.com/how-russia-might-come-after-the-west)

 2 min read

[#supplychainsecurity](https://blog.adolus.com/tag/supplychainsecurity) [hacking](https://blog.adolus.com/tag/hacking) [ICS](https://blog.adolus.com/tag/ics) [3rd Party Components](https://blog.adolus.com/tag/3rd-party-components) [industrial control system](https://blog.adolus.com/tag/industrial-control-system)

##### [How Russia Might Come After the West](https://blog.adolus.com/how-russia-might-come-after-the-west)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on February 25, 2022

The DDoS attack surge that began last week against Ukrainian government agencies and banks was a bad sign. I was actually preparing a post and wondering if it was appropriate to call out...

[Continue Reading](https://blog.adolus.com/how-russia-might-come-after-the-west)

[![Log4j: Panic or Lesson? | How to Protect Deployed Assets](https://blog.adolus.com/hubfs/Log4j-spilled-coffee-papertowel-1.png)](https://blog.adolus.com/log4j-panic-or-lesson)

 4 min read

[Vulnerability Tracking](https://blog.adolus.com/tag/vulnerability-tracking) [VEX](https://blog.adolus.com/tag/vex) [Log4j](https://blog.adolus.com/tag/log4j) [Log4Shell](https://blog.adolus.com/tag/log4shell)

##### [Log4j: Panic or Lesson? | How to Protect Deployed Assets](https://blog.adolus.com/log4j-panic-or-lesson)

 By [Ron Brash](https://blog.adolus.com/author/ron) on December 21, 2021

Cleaning up the Mess will Take a Methodical Approach Nearly every week the cybersecurity community buzzes around a newly discovered vulnerability or a breach. December’s alert for the ...

[Continue Reading](https://blog.adolus.com/log4j-panic-or-lesson)

[![Sorry Blackberry: You Are Part of the Supply Chain](https://blog.adolus.com/hubfs/Blackberry-SBOM-share-main-image.png)](https://blog.adolus.com/sorry-blackberry-you-are-part-of-the-supply-chain)

 2 min read

[Regulatory Requirements](https://blog.adolus.com/tag/regulatory-requirements) [Vulnerability Tracking](https://blog.adolus.com/tag/vulnerability-tracking) [Supply Chain Management](https://blog.adolus.com/tag/supply-chain) [SBOM](https://blog.adolus.com/tag/sbom) [EO14028](https://blog.adolus.com/tag/eo14028) [VEX](https://blog.adolus.com/tag/vex)

##### [Sorry Blackberry: You Are Part of the Supply Chain](https://blog.adolus.com/sorry-blackberry-you-are-part-of-the-supply-chain)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on November 2, 2021

Today, reporters Betsy Woodruff Swan and Eric Geller at Politico published a story: “BlackBerry resisted announcing major flaw in software powering cars, hospital equipment.” They outline...

[Continue Reading](https://blog.adolus.com/sorry-blackberry-you-are-part-of-the-supply-chain)

[![What is VEX and What Does it Have to Do with SBOMs?](https://blog.adolus.com/hubfs/VEX-SBOM-main-image.png)](https://blog.adolus.com/what-is-vex-and-what-does-it-have-to-do-with-sboms)

 3 min read

[SBOM](https://blog.adolus.com/tag/sbom) [VEX](https://blog.adolus.com/tag/vex)

##### [What is VEX and What Does it Have to Do with SBOMs?](https://blog.adolus.com/what-is-vex-and-what-does-it-have-to-do-with-sboms)

 By [Derek Kruszewski](https://blog.adolus.com/author/derek-kruszewski) on August 12, 2021

Recently, we have been fielding many inquiries here at aDolus regarding “VEX.” If you are not familiar with this mysterious abbreviation, you’ve fortunately landed in the right place....

[Continue Reading](https://blog.adolus.com/what-is-vex-and-what-does-it-have-to-do-with-sboms)

[![NTIA Publishes Minimum Components of an SBOM](https://blog.adolus.com/hubfs/Main-SBOM-image.png)](https://blog.adolus.com/ntia-publishes-minimum-components-of-an-sbom)

 4 min read

[3rd Party Components](https://blog.adolus.com/tag/3rd-party-components) [Supply Chain Management](https://blog.adolus.com/tag/supply-chain) [SBOM](https://blog.adolus.com/tag/sbom)

##### [NTIA Publishes Minimum Components of an SBOM](https://blog.adolus.com/ntia-publishes-minimum-components-of-an-sbom)

 By [Derek Kruszewski](https://blog.adolus.com/author/derek-kruszewski) on July 15, 2021

In today’s blog post I’d like to recognize all the hard work done by NTIA (National Telecommunications and Information Administration) and congratulate them on publishing the minimum...

[Continue Reading](https://blog.adolus.com/ntia-publishes-minimum-components-of-an-sbom)

[![Kaseya Supply Chain Attack on SMBs](https://blog.adolus.com/hubfs/Dominoes2-1.png)](https://blog.adolus.com/kaseya-supply-chain-attack-on-smbs)

 4 min read

[#supplychainsecurity](https://blog.adolus.com/tag/supplychainsecurity)

##### [Kaseya Supply Chain Attack on SMBs](https://blog.adolus.com/kaseya-supply-chain-attack-on-smbs)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on July 6, 2021

Last week I participated in a panel discussion on the Executive Order’s Impact On Embedded Device Security hosted by ISSSource.com. I signed off with a comment about my biggest worry: ...

[Continue Reading](https://blog.adolus.com/kaseya-supply-chain-attack-on-smbs)

[![aDolus Welcomes Mark Weatherford to Board](https://blog.adolus.com/hubfs/Mark-Weatherford-Appointment.png)](https://blog.adolus.com/adolus-welcomes-mark-weatherford-to-board)

 2 min read

##### [aDolus Welcomes Mark Weatherford to Board](https://blog.adolus.com/adolus-welcomes-mark-weatherford-to-board)

 By [Norma Dowler](https://blog.adolus.com/author/norma-dowler) on June 23, 2021

Cybersecurity veteran tapped to accelerate growth of ICS supply chain security leader VICTORIA, BC, CANADA, June 23 -- aDolus Technology Inc., a global authority on software intelligence...

[Continue Reading](https://blog.adolus.com/adolus-welcomes-mark-weatherford-to-board)

[![Rod Campbell Joins aDolus as CEO](https://blog.adolus.com/hubfs/Rod-Campbell-CEO.png)](https://blog.adolus.com/rod-campbell-joins-adolus-as-ceo)

 2 min read

##### [Rod Campbell Joins aDolus as CEO](https://blog.adolus.com/rod-campbell-joins-adolus-as-ceo)

 By [Norma Dowler](https://blog.adolus.com/author/norma-dowler) on June 15, 2021

Seasoned financial and advisory executive to drive growth VICTORIA, BC, CANADA, June 15, 2021 /EINPresswire.com/ -- aDolus Technology Inc., a global authority on software intelligence for...

[Continue Reading](https://blog.adolus.com/rod-campbell-joins-adolus-as-ceo)

[![Unpacking EO14028: Improving the Nation's Cybersecurity - Pt. 4](https://blog.adolus.com/hubfs/Timeline-webpage-thumbnail-new.png)](https://blog.adolus.com/unpacking-eo-14028-improving-the-nations-cybersecurity-part-4)

 5 min read

[ICS/IoT Upgrade Management](https://blog.adolus.com/tag/upgrades) [vulnerability disclosure](https://blog.adolus.com/tag/vulnerability-disclosure) [Regulatory Requirements](https://blog.adolus.com/tag/regulatory-requirements) [Vulnerability Tracking](https://blog.adolus.com/tag/vulnerability-tracking) [Supply Chain Management](https://blog.adolus.com/tag/supply-chain) [SBOM](https://blog.adolus.com/tag/sbom) [EO14028](https://blog.adolus.com/tag/eo14028)

##### [Unpacking EO14028: Improving the Nation's Cybersecurity - Pt. 4](https://blog.adolus.com/unpacking-eo-14028-improving-the-nations-cybersecurity-part-4)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on May 26, 2021

Section 3 - Less Fog, More Cloud Section 3: Modernizing Federal Government Cybersecurity of the Executive Order is all about government agencies moving to the cloud and doing it right. If...

[Continue Reading](https://blog.adolus.com/unpacking-eo-14028-improving-the-nations-cybersecurity-part-4)

[![Unpacking EO14028: Improving the Nation's Cybersecurity - Pt. 3](https://blog.adolus.com/hubfs/chains-stock-photo.jpg)](https://blog.adolus.com/unpacking-eo-14028-improving-the-nations-cybersecurity-part-2-0)

 3 min read

[ICS/IoT Upgrade Management](https://blog.adolus.com/tag/upgrades) [vulnerability disclosure](https://blog.adolus.com/tag/vulnerability-disclosure) [Regulatory Requirements](https://blog.adolus.com/tag/regulatory-requirements) [Vulnerability Tracking](https://blog.adolus.com/tag/vulnerability-tracking) [Supply Chain Management](https://blog.adolus.com/tag/supply-chain) [SBOM](https://blog.adolus.com/tag/sbom) [EO14028](https://blog.adolus.com/tag/eo14028)

##### [Unpacking EO14028: Improving the Nation's Cybersecurity - Pt. 3](https://blog.adolus.com/unpacking-eo-14028-improving-the-nations-cybersecurity-part-2-0)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on May 21, 2021

So you don’t sell to the Feds… Today’s blog is going to take a break from analyzing a specific section of the Executive Order on Improving the Nation’s Cybersecurity and focus on who will...

[Continue Reading](https://blog.adolus.com/unpacking-eo-14028-improving-the-nations-cybersecurity-part-2-0)

[![Unpacking EO14028: Improving the Nation's Cybersecurity - Pt. 2](https://blog.adolus.com/hubfs/Timeline-thumbnail2.png)](https://blog.adolus.com/unpacking-eo-14028-improving-the-nations-cybersecurity-part-2)

 3 min read

[ICS/IoT Upgrade Management](https://blog.adolus.com/tag/upgrades) [vulnerability disclosure](https://blog.adolus.com/tag/vulnerability-disclosure) [Regulatory Requirements](https://blog.adolus.com/tag/regulatory-requirements) [Vulnerability Tracking](https://blog.adolus.com/tag/vulnerability-tracking) [Supply Chain Management](https://blog.adolus.com/tag/supply-chain) [SBOM](https://blog.adolus.com/tag/sbom) [EO14028](https://blog.adolus.com/tag/eo14028)

##### [Unpacking EO14028: Improving the Nation's Cybersecurity - Pt. 2](https://blog.adolus.com/unpacking-eo-14028-improving-the-nations-cybersecurity-part-2)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on May 18, 2021

Removing Barriers to Sharing Threat Information On Friday we dissected Section 4: Enhancing Software Supply Chain Security of the new Executive Order on Improving the Nation’s Cybersecurity...

[Continue Reading](https://blog.adolus.com/unpacking-eo-14028-improving-the-nations-cybersecurity-part-2)

[![Unpacking EO14028: Improving the Nation's Cybersecurity - Pt. 1](https://blog.adolus.com/hubfs/Timeline-thumbnail.png)](https://blog.adolus.com/unpacking-eo-14028-improving-the-nations-cybersecurity-part-1)

 4 min read

[ICS/IoT Upgrade Management](https://blog.adolus.com/tag/upgrades) [vulnerability disclosure](https://blog.adolus.com/tag/vulnerability-disclosure) [Regulatory Requirements](https://blog.adolus.com/tag/regulatory-requirements) [Vulnerability Tracking](https://blog.adolus.com/tag/vulnerability-tracking) [Supply Chain Management](https://blog.adolus.com/tag/supply-chain) [SBOM](https://blog.adolus.com/tag/sbom) [EO14028](https://blog.adolus.com/tag/eo14028)

##### [Unpacking EO14028: Improving the Nation's Cybersecurity - Pt. 1](https://blog.adolus.com/unpacking-eo-14028-improving-the-nations-cybersecurity-part-1)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on May 14, 2021

Late Wednesday night President Biden signed the Executive Order on Improving the Nation’s Cybersecurity. Compared to any Executive Order (EO) I’ve seen, this is a massive and complex...

[Continue Reading](https://blog.adolus.com/unpacking-eo-14028-improving-the-nations-cybersecurity-part-1)

[![Verve Industrial and aDolus Partner to Reduce ICS Software Supply Chain Risk](https://blog.adolus.com/hubfs/Verve-aDolus.png)](https://blog.adolus.com/verve-industrial-and-adolus-partner-to-improve-ics-supply-chain-security)

 3 min read

[#supplychainsecurity](https://blog.adolus.com/tag/supplychainsecurity) [Partnership](https://blog.adolus.com/tag/partnership) [Press-release](https://blog.adolus.com/tag/press-release) [SBOM](https://blog.adolus.com/tag/sbom)

##### [Verve Industrial and aDolus Partner to Reduce ICS Software Supply Chain Risk](https://blog.adolus.com/verve-industrial-and-adolus-partner-to-improve-ics-supply-chain-security)

 By [Norma Dowler](https://blog.adolus.com/author/norma-dowler) on February 4, 2021

Verve embeds aDolus’ ability to generate SBOMs and validate components aDolus Technology Inc., a global authority on software intelligence for critical infrastructure, today announced its...

[Continue Reading](https://blog.adolus.com/verve-industrial-and-adolus-partner-to-improve-ics-supply-chain-security)

[![Industrial Defender and aDolus Partner to Improve ICS Supply Chain Security](https://blog.adolus.com/hubfs/IndustrialDefender-aDolus-partnership.png)](https://blog.adolus.com/industrial-defender-and-adolus-partner-to-improve-ics-supply-chain-security)

 2 min read

[#supplychainsecurity](https://blog.adolus.com/tag/supplychainsecurity) [Partnership](https://blog.adolus.com/tag/partnership) [Press-release](https://blog.adolus.com/tag/press-release)

##### [Industrial Defender and aDolus Partner to Improve ICS Supply Chain Security](https://blog.adolus.com/industrial-defender-and-adolus-partner-to-improve-ics-supply-chain-security)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on January 19, 2021

Industrial Defender’s integration with the aDolus FACT™ platform ensures updates are valid, tamper-free, and safe to install aDolus Technology Inc., a global authority on software...

[Continue Reading](https://blog.adolus.com/industrial-defender-and-adolus-partner-to-improve-ics-supply-chain-security)

[![Wrapping Up 2020 with Dale Peterson](https://blog.adolus.com/hubfs/Unsolicited-Response-Eric-and-Dale.png)](https://blog.adolus.com/wrapping-up-2020-with-dale-peterson)

 2 min read

[#supplychainsecurity](https://blog.adolus.com/tag/supplychainsecurity) [ICS](https://blog.adolus.com/tag/ics) [Supply Chain Management](https://blog.adolus.com/tag/supply-chain)

##### [Wrapping Up 2020 with Dale Peterson](https://blog.adolus.com/wrapping-up-2020-with-dale-peterson)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on January 7, 2021

Wrapping up my year on December 31, I was delighted to join ICS cybersecurity luminary Dale Peterson for his December: ICS Security Month in Review episode of the Unsolicited Response...

[Continue Reading](https://blog.adolus.com/wrapping-up-2020-with-dale-peterson)

[![Three Things the SolarWinds Supply Chain Attack Can Teach Us](https://blog.adolus.com/hubfs/SolarWinds%20Attack%20Infographic.png)](https://blog.adolus.com/three-things-the-solarwinds-supply-chain-attack-can-teach-us)

 4 min read

[hacking](https://blog.adolus.com/tag/hacking) [ICS](https://blog.adolus.com/tag/ics) [Supply Chain Management](https://blog.adolus.com/tag/supply-chain) [SBOM](https://blog.adolus.com/tag/sbom)

##### [Three Things the SolarWinds Supply Chain Attack Can Teach Us](https://blog.adolus.com/three-things-the-solarwinds-supply-chain-attack-can-teach-us)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on December 18, 2020

Just in case you missed it, a software supply chain attack on the US government and industries is consuming the waking hours of everyone involved in cyber security this week. The attack...

[Continue Reading](https://blog.adolus.com/three-things-the-solarwinds-supply-chain-attack-can-teach-us)

[![aDolus Wins Top Tech Innovation Contest, New Ventures BC 2020](https://blog.adolus.com/hubfs/newventuresbc_social-media-banner-1.png)](https://blog.adolus.com/adolus-wins-top-tech-innovation-contest-new-ventures-bc-2020)

 2 min read

[#nvbc2020](https://blog.adolus.com/tag/nvbc2020)

##### [aDolus Wins Top Tech Innovation Contest, New Ventures BC 2020](https://blog.adolus.com/adolus-wins-top-tech-innovation-contest-new-ventures-bc-2020)

 By [Norma Dowler](https://blog.adolus.com/author/norma-dowler) on December 1, 2020

aDolus Technology Inc. bested 240 of BC’s most innovative tech startups, winning the New Ventures contest in Canada’s #1 startup ecosystem, boasting over 10,000 tech companies. aDolus...

[Continue Reading](https://blog.adolus.com/adolus-wins-top-tech-innovation-contest-new-ventures-bc-2020)

[![ReFirm Labs and aDolus Partner to Improve IoT Supply Chain Security](https://blog.adolus.com/hubfs/Refirm-aDolus.png)](https://blog.adolus.com/refirm-labs-and-adolus-partner-to-improve-security-and-integrity-of-firmware-for-iot-in-critical-industries)

 2 min read

[#supplychainsecurity](https://blog.adolus.com/tag/supplychainsecurity) [Partnership](https://blog.adolus.com/tag/partnership) [Press-release](https://blog.adolus.com/tag/press-release)

##### [ReFirm Labs and aDolus Partner to Improve IoT Supply Chain Security](https://blog.adolus.com/refirm-labs-and-adolus-partner-to-improve-security-and-integrity-of-firmware-for-iot-in-critical-industries)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on September 3, 2020

aDolus Technology Inc., a global authority on software intelligence for critical infrastructure, and ReFirm Labs, a provider of the industry’s first proactive IoT and firmware security...

[Continue Reading](https://blog.adolus.com/refirm-labs-and-adolus-partner-to-improve-security-and-integrity-of-firmware-for-iot-in-critical-industries)

[![aDolus Technology Selected as One of 2020’s Top 10 Startups](https://blog.adolus.com/hubfs/NVBC-Top10-small.png)](https://blog.adolus.com/adolus-technology-selected-as-one-of-2020s-top-10-startups)

 2 min read

##### [aDolus Technology Selected as One of 2020’s Top 10 Startups](https://blog.adolus.com/adolus-technology-selected-as-one-of-2020s-top-10-startups)

 By [Norma Dowler](https://blog.adolus.com/author/norma-dowler) on August 28, 2020

NANAIMO, BC, CANADA, August 27, 2020: aDolus Technology Inc., a global authority on software intelligence for critical infrastructure, has today announced that New Ventures BC has selected...

[Continue Reading](https://blog.adolus.com/adolus-technology-selected-as-one-of-2020s-top-10-startups)

[![Bayshore Networks and aDolus Forge Supply Chain Security Partnership](https://blog.adolus.com/hubfs/Bayshore-aDolus.png)](https://blog.adolus.com/bayshore-networks-and-adolus-announce-supply-chain-security-partnership)

 3 min read

[#supplychainsecurity](https://blog.adolus.com/tag/supplychainsecurity) [Partnership](https://blog.adolus.com/tag/partnership) [Press-release](https://blog.adolus.com/tag/press-release)

##### [Bayshore Networks and aDolus Forge Supply Chain Security Partnership](https://blog.adolus.com/bayshore-networks-and-adolus-announce-supply-chain-security-partnership)

 By [Norma Dowler](https://blog.adolus.com/author/norma-dowler) on July 23, 2020

The aDolus FACT™ platform provides independent software update validation to ensure safe upgrades and a more secure supply chain NANAIMO, BC, CANADA, July 22, 2020 --aDolus Technology Inc.

[Continue Reading](https://blog.adolus.com/bayshore-networks-and-adolus-announce-supply-chain-security-partnership)

[![Don’t Judge an Ebook by Its Cover](https://blog.adolus.com/hubfs/Imported_Blog_Media/Dont-Judge-an-Ebook-1-1024x357.png)](https://blog.adolus.com/2020/05/12/dont-judge-an-ebook-by-its-cover)

 3 min read

[Software Validation](https://blog.adolus.com/tag/sw-validation) [malware](https://blog.adolus.com/tag/malware) [Supply Chain Management](https://blog.adolus.com/tag/supply-chain)

##### [Don’t Judge an Ebook by Its Cover](https://blog.adolus.com/2020/05/12/dont-judge-an-ebook-by-its-cover)

 By [Ron Brash](https://blog.adolus.com/author/ron) on May 12, 2020

Interesting times lead to interesting opportunities. The current pandemic is proving no exception, but, sadly, it’s an opportunity for some attackers who have laid a rather cunning trap. As...

[Continue Reading](https://blog.adolus.com/2020/05/12/dont-judge-an-ebook-by-its-cover)

[![3 Month Reprieve for Utilities on Cybersecurity Supply Chain Standards](https://blog.adolus.com/hubfs/Imported_Blog_Media/NERC-CIPC-Training-Session-1024x451.jpeg)](https://blog.adolus.com/2020/04/21/3-month-reprieve-for-utilities-on-cybersecurity-supply-chain-standards)

 3 min read

[ICS/IoT Upgrade Management](https://blog.adolus.com/tag/upgrades) [Regulatory Requirements](https://blog.adolus.com/tag/regulatory-requirements) [Supply Chain Management](https://blog.adolus.com/tag/supply-chain)

##### [3 Month Reprieve for Utilities on Cybersecurity Supply Chain Standards](https://blog.adolus.com/2020/04/21/3-month-reprieve-for-utilities-on-cybersecurity-supply-chain-standards)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on April 21, 2020

Earlier this month, as the coronavirus accelerated its alarming sprint across North America, NERC requested that FERC defer a number of looming deadlines for Reliability Standards....

[Continue Reading](https://blog.adolus.com/2020/04/21/3-month-reprieve-for-utilities-on-cybersecurity-supply-chain-standards)

[![Windows 10 Certificate Validation Bug Exposes a Fundamental Weakness](https://blog.adolus.com/hubfs/Imported_Blog_Media/windows10-CVE-820x1024-1.png)](https://blog.adolus.com/2020/01/18/windows-10-certificate-validation-bug-exposes-a-fundamental-weakness)

 3 min read

[Code Signing](https://blog.adolus.com/tag/code-signing) [Software Validation](https://blog.adolus.com/tag/sw-validation) [Vulnerability Tracking](https://blog.adolus.com/tag/vulnerability-tracking) [Supply Chain Management](https://blog.adolus.com/tag/supply-chain)

##### [Windows 10 Certificate Validation Bug Exposes a Fundamental Weakness](https://blog.adolus.com/2020/01/18/windows-10-certificate-validation-bug-exposes-a-fundamental-weakness)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on January 17, 2020

The announcement Tuesday from the NSA about the new cryptographic vulnerability in the Microsoft Windows operating system sent ripples of shock through our entire community. In case you...

[Continue Reading](https://blog.adolus.com/2020/01/18/windows-10-certificate-validation-bug-exposes-a-fundamental-weakness)

[![Sniffing Out Fakes: From Saffron in Marrakech to Digital Certificates](https://blog.adolus.com/hubfs/Imported_Blog_Media/Eric-on-Camel-small-1024x769.png)](https://blog.adolus.com/2019/10/08/sniffing-out-fakes-from-saffron-in-marrakech-to-digital-certificates)

 4 min read

[Code Signing](https://blog.adolus.com/tag/code-signing) [Software Validation](https://blog.adolus.com/tag/sw-validation) [malware](https://blog.adolus.com/tag/malware)

##### [Sniffing Out Fakes: From Saffron in Marrakech to Digital Certificates](https://blog.adolus.com/2019/10/08/sniffing-out-fakes-from-saffron-in-marrakech-to-digital-certificates)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on October 8, 2019

Eric Byres in Morocco

[Continue Reading](https://blog.adolus.com/2019/10/08/sniffing-out-fakes-from-saffron-in-marrakech-to-digital-certificates)

[![Podcast: Where Do Your Bits Really Come From?](https://blog.adolus.com/hubfs/Imported_Blog_Media/Dragonfly-Compromise-Stages_cropped-768x454.png)](https://blog.adolus.com/2019/09/26/podcast-where-do-your-bits-really-come-from)

 3 min read

[ICS/IoT Upgrade Management](https://blog.adolus.com/tag/upgrades) [3rd Party Components](https://blog.adolus.com/tag/3rd-party-components) [Supply Chain Management](https://blog.adolus.com/tag/supply-chain)

##### [Podcast: Where Do Your Bits Really Come From?](https://blog.adolus.com/2019/09/26/podcast-where-do-your-bits-really-come-from)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on September 26, 2019

Earlier this year I attended the Public Safety Canada Industrial Control System Security symposium in Charlottetown, PEI (FYI the PSC ICS events are outstanding - worth attending, even if...

[Continue Reading](https://blog.adolus.com/2019/09/26/podcast-where-do-your-bits-really-come-from)

[![Will the DoD’s CMMC Encourage Bad Password Habits?](https://blog.adolus.com/hubfs/Imported_Blog_Media/CMMC-pentagon.jpg)](https://blog.adolus.com/2019/09/19/will-the-dods-cmmc-encourage-bad-password-habits)

 4 min read

[password strength](https://blog.adolus.com/tag/password-strength) [Uncategorized](https://blog.adolus.com/tag/uncategorized) [DoD CMMC](https://blog.adolus.com/tag/dod-cmmc)

##### [Will the DoD’s CMMC Encourage Bad Password Habits?](https://blog.adolus.com/2019/09/19/will-the-dods-cmmc-encourage-bad-password-habits)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on September 19, 2019

Last Wednesday (September 11), the U.S. Department of Defense released a draft of its Cybersecurity Maturity Model Certification (CMMC) for public comment. The idea is for the DoD to...

[Continue Reading](https://blog.adolus.com/2019/09/19/will-the-dods-cmmc-encourage-bad-password-habits)

[![When the Security Researchers Come Knocking, Don’t Shoot the Messenger](https://blog.adolus.com/hubfs/Imported_Blog_Media/Billy-and-Jonathan-CBS-1024x575.png)](https://blog.adolus.com/2018/11/09/when-the-security-researchers-come-knocking-dont-shoot-the-messenger)

 3 min read

[medical](https://blog.adolus.com/tag/medical) [hacking](https://blog.adolus.com/tag/hacking) [malware](https://blog.adolus.com/tag/malware) [vulnerability disclosure](https://blog.adolus.com/tag/vulnerability-disclosure) [Vulnerability Tracking](https://blog.adolus.com/tag/vulnerability-tracking)

##### [When the Security Researchers Come Knocking, Don’t Shoot the Messenger](https://blog.adolus.com/2018/11/09/when-the-security-researchers-come-knocking-dont-shoot-the-messenger)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on November 8, 2018

Our own Jonathan Butts and Billy Rios were interviewed this month on the CBS Morning News about their research showing that medical devices like pacemakers and insulin pumps can be hacked...

[Continue Reading](https://blog.adolus.com/2018/11/09/when-the-security-researchers-come-knocking-dont-shoot-the-messenger)

[![Who Infected Schneider Electrics’ Thumbdrive?](https://blog.adolus.com/hubfs/Imported_Blog_Media/monsterUSB-e1536780548901.png)](https://blog.adolus.com/2018/09/12/who-infected-schneider-electrics-thumbdrive)

 3 min read

[chain of trust](https://blog.adolus.com/tag/chain-of-trust) [ICS](https://blog.adolus.com/tag/ics) [USB](https://blog.adolus.com/tag/usb) [3rd Party Components](https://blog.adolus.com/tag/3rd-party-components) [malware](https://blog.adolus.com/tag/malware) [industrial control system](https://blog.adolus.com/tag/industrial-control-system) [Supply Chain Management](https://blog.adolus.com/tag/supply-chain)

##### [Who Infected Schneider Electrics’ Thumbdrive?](https://blog.adolus.com/2018/09/12/who-infected-schneider-electrics-thumbdrive)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on September 12, 2018

On 24 August 2018 Schneider Electric issued a security notification alerting users that the Communications and Battery Monitoring devices for their Conext Solar Energy Monitoring Systems...

[Continue Reading](https://blog.adolus.com/2018/09/12/who-infected-schneider-electrics-thumbdrive)

[![Building (or Losing) Trust in our Software Supply Chain](https://blog.adolus.com/hubfs/Imported_Blog_Media/Dragonfly-Compromise-Stages_cropped-768x454.png)](https://blog.adolus.com/2018/05/10/building-or-losing-trust-in-our-software-supply-chain)

 3 min read

[Dragonfly](https://blog.adolus.com/tag/dragonfly) [chain of trust](https://blog.adolus.com/tag/chain-of-trust) [ICS](https://blog.adolus.com/tag/ics) [malware](https://blog.adolus.com/tag/malware) [pharmaceutical](https://blog.adolus.com/tag/pharmaceutical) [Havex](https://blog.adolus.com/tag/havex) [industrial control system](https://blog.adolus.com/tag/industrial-control-system) [Trojan](https://blog.adolus.com/tag/trojan) [energy](https://blog.adolus.com/tag/energy) [Supply Chain Management](https://blog.adolus.com/tag/supply-chain)

##### [Building (or Losing) Trust in our Software Supply Chain](https://blog.adolus.com/2018/05/10/building-or-losing-trust-in-our-software-supply-chain)

 By [Eric Byres](https://blog.adolus.com/author/eric-byres) on May 10, 2018

Back in 2014, when I was managing Tofino Security, I became very interested in the Dragonfly attacks against industrial control systems (ICS). I was particularly fascinated with the ways...

[Continue Reading](https://blog.adolus.com/2018/05/10/building-or-losing-trust-in-our-software-supply-chain)

 Loading more posts

 No more posts to load

[1](https://blog.adolus.com/page/1#blog-listing-page)

##### Stay up to date

##### Browse Posts

 Popular

 Recent

 Archive

[![What is VEX and What Does it Have to Do with SBOMs?](https://blog.adolus.com/hubfs/VEX-SBOM-main-image.png)](https://blog.adolus.com/what-is-vex-and-what-does-it-have-to-do-with-sboms)

[What is VEX and What Does it Have to Do with SBOMs?](https://blog.adolus.com/what-is-vex-and-what-does-it-have-to-do-with-sboms)

[![Sniffing Out Fakes: From Saffron in Marrakech to Digital Certificates](https://blog.adolus.com/hubfs/Imported_Blog_Media/Eric-on-Camel-small-1024x769.png)](https://blog.adolus.com/2019/10/08/sniffing-out-fakes-from-saffron-in-marrakech-to-digital-certificates)

[Sniffing Out Fakes: From Saffron in Marrakech to Digital Certificates](https://blog.adolus.com/2019/10/08/sniffing-out-fakes-from-saffron-in-marrakech-to-digital-certificates)

[![A Deeper Dive into VEX Documents](https://blog.adolus.com/hubfs/Anatomy%20of%20VEX%20Documents2.png)](https://blog.adolus.com/a-deeper-dive-into-vex-documents)

[A Deeper Dive into VEX Documents](https://blog.adolus.com/a-deeper-dive-into-vex-documents)

[![Three Things the SolarWinds Supply Chain Attack Can Teach Us](https://blog.adolus.com/hubfs/SolarWinds%20Attack%20Infographic.png)](https://blog.adolus.com/three-things-the-solarwinds-supply-chain-attack-can-teach-us)

[Three Things the SolarWinds Supply Chain Attack Can Teach Us](https://blog.adolus.com/three-things-the-solarwinds-supply-chain-attack-can-teach-us)

[![Rod Campbell Joins aDolus as CEO](https://blog.adolus.com/hubfs/Rod-Campbell-CEO.png)](https://blog.adolus.com/rod-campbell-joins-adolus-as-ceo)

[Rod Campbell Joins aDolus as CEO](https://blog.adolus.com/rod-campbell-joins-adolus-as-ceo)

[![Harnessing FACT for Swift Cyberthreat Response](https://blog.adolus.com/hubfs/XZ%20Backdoor%20thumbnail-aspect-corrected.png)](https://blog.adolus.com/harnessing-fact-for-swift-threat-response)

[Harnessing FACT for Swift Cyberthreat Response](https://blog.adolus.com/harnessing-fact-for-swift-threat-response)

[![Evolving Threats and Regulations in Software Supply Chain Security](https://blog.adolus.com/hubfs/laptop-gavel.png)](https://blog.adolus.com/evolving-threats-and-regulations-in-software-supply-chain-security)

[Evolving Threats and Regulations in Software Supply Chain Security](https://blog.adolus.com/evolving-threats-and-regulations-in-software-supply-chain-security)

[![EU Cyber Resilience Act (CRA) Clears Penultimate Step](https://blog.adolus.com/hubfs/flags%20and%20binary.png)](https://blog.adolus.com/eu-cra-clears-penultimate-step)

[EU Cyber Resilience Act (CRA) Clears Penultimate Step](https://blog.adolus.com/eu-cra-clears-penultimate-step)

[![The Wretched State of OT Firmware Patching](https://blog.adolus.com/hubfs/negelct.png)](https://blog.adolus.com/the-wretched-state-of-ot-firmware-patching)

[The Wretched State of OT Firmware Patching](https://blog.adolus.com/the-wretched-state-of-ot-firmware-patching)

[![Microsoft Digital Defense Report: Behind the Scenes Creating OT Vulnerabilities](https://blog.adolus.com/hubfs/MDDR2-backstage-pass-featureimage.png)](https://blog.adolus.com/microsoft-digital-defense-report-behind-the-scenes-creating-ot-vulnerabilities)

[Microsoft Digital Defense Report: Behind the Scenes Creating OT Vulnerabilities](https://blog.adolus.com/microsoft-digital-defense-report-behind-the-scenes-creating-ot-vulnerabilities)

- [May 2024](https://blog.adolus.com/archive/2024/05)
- [February 2024](https://blog.adolus.com/archive/2024/02)
- [December 2023](https://blog.adolus.com/archive/2023/12)
- [October 2023](https://blog.adolus.com/archive/2023/10)
- [April 2023](https://blog.adolus.com/archive/2023/04)
- [March 2023](https://blog.adolus.com/archive/2023/03)
- [February 2023](https://blog.adolus.com/archive/2023/02)
- [October 2022](https://blog.adolus.com/archive/2022/10)
- [April 2022](https://blog.adolus.com/archive/2022/04)
- [February 2022](https://blog.adolus.com/archive/2022/02)
- [December 2021](https://blog.adolus.com/archive/2021/12)
- [November 2021](https://blog.adolus.com/archive/2021/11)
- [August 2021](https://blog.adolus.com/archive/2021/08)
- [July 2021](https://blog.adolus.com/archive/2021/07)
- [June 2021](https://blog.adolus.com/archive/2021/06)
- [May 2021](https://blog.adolus.com/archive/2021/05)
- [February 2021](https://blog.adolus.com/archive/2021/02)
- [January 2021](https://blog.adolus.com/archive/2021/01)
- [December 2020](https://blog.adolus.com/archive/2020/12)
- [September 2020](https://blog.adolus.com/archive/2020/09)
- [August 2020](https://blog.adolus.com/archive/2020/08)
- [July 2020](https://blog.adolus.com/archive/2020/07)
- [May 2020](https://blog.adolus.com/archive/2020/05)
- [April 2020](https://blog.adolus.com/archive/2020/04)
- [January 2020](https://blog.adolus.com/archive/2020/01)
- [October 2019](https://blog.adolus.com/archive/2019/10)
- [September 2019](https://blog.adolus.com/archive/2019/09)
- [November 2018](https://blog.adolus.com/archive/2018/11)
- [September 2018](https://blog.adolus.com/archive/2018/09)
- [May 2018](https://blog.adolus.com/archive/2018/05)

##### Browse by topics

- [Supply Chain Management (16)](https://blog.adolus.com/tag/supply-chain)
- [SBOM (15)](https://blog.adolus.com/tag/sbom)
- [Vulnerability Tracking (15)](https://blog.adolus.com/tag/vulnerability-tracking)
- [#supplychainsecurity (10)](https://blog.adolus.com/tag/supplychainsecurity)
- [Regulatory Requirements (10)](https://blog.adolus.com/tag/regulatory-requirements)
- [VEX (8)](https://blog.adolus.com/tag/vex)
- [EO14028 (6)](https://blog.adolus.com/tag/eo14028)
- [ICS/IoT Upgrade Management (6)](https://blog.adolus.com/tag/upgrades)
- [malware (6)](https://blog.adolus.com/tag/malware)
- [ICS (5)](https://blog.adolus.com/tag/ics)
- [vulnerability disclosure (5)](https://blog.adolus.com/tag/vulnerability-disclosure)
- [3rd Party Components (4)](https://blog.adolus.com/tag/3rd-party-components)
- [Partnership (4)](https://blog.adolus.com/tag/partnership)
- [Press-release (4)](https://blog.adolus.com/tag/press-release)
- [#S4 (3)](https://blog.adolus.com/tag/s4)
- [Software Validation (3)](https://blog.adolus.com/tag/sw-validation)
- [hacking (3)](https://blog.adolus.com/tag/hacking)
- [industrial control system (3)](https://blog.adolus.com/tag/industrial-control-system)
- [Code Signing (2)](https://blog.adolus.com/tag/code-signing)
- [Legislation (2)](https://blog.adolus.com/tag/legislation)
- [chain of trust (2)](https://blog.adolus.com/tag/chain-of-trust)
- [#nvbc2020 (1)](https://blog.adolus.com/tag/nvbc2020)
- [DoD CMMC (1)](https://blog.adolus.com/tag/dod-cmmc)
- [Dragonfly (1)](https://blog.adolus.com/tag/dragonfly)
- [Havex (1)](https://blog.adolus.com/tag/havex)
- [Log4Shell (1)](https://blog.adolus.com/tag/log4shell)
- [Log4j (1)](https://blog.adolus.com/tag/log4j)
- [Trojan (1)](https://blog.adolus.com/tag/trojan)
- [USB (1)](https://blog.adolus.com/tag/usb)
- [Uncategorized (1)](https://blog.adolus.com/tag/uncategorized)
- [energy (1)](https://blog.adolus.com/tag/energy)
- [medical (1)](https://blog.adolus.com/tag/medical)
- [password strength (1)](https://blog.adolus.com/tag/password-strength)
- [pharmaceutical (1)](https://blog.adolus.com/tag/pharmaceutical)

Sidebar

### Stay up to date

 Subscribe to our blog

### Stay up to date

![aDolus Logo in blue](https://adolus.com/_next/image/?url=%2Fimages%2Fadolus-blue-60px.png&w=128&q=100)

 200 - 535 Yates Street  
 Victoria, BC  
 Canada  
 V8W 2Z6

[+1-866-423-6587](tel:18664236587) [info@adolus.com](mailto:info@adolus.com)

<https://www.linkedin.com/company/adolus/> <https://twitter.com/adolus_inc> <https://facebook.com/aDolus.Inc> <https://infosec.exchange/@aDolus>

#### Product

- FACT Platform
- [Overview](https://adolus.com/fact/overview/)
- [Benefits](https://adolus.com/fact/benefits/)
- [Technical Details](https://adolus.com/fact/technical/)
- FACT Features
- [Software Validation & Scoring](https://adolus.com/product/software-validation-scoring/)
- [SBOM Creation](https://adolus.com/product/sbom/)
- [VEX Documents](https://adolus.com/product/vex-documents/)
- [Malware Detection](https://adolus.com/product/malware-detection/)
- [Certificate Validation](https://adolus.com/product/certificate-validation/)
- [Software Supplier Discovery](https://adolus.com/product/software-supplier-discovery/)

#### Solutions

- By use case
- [Vulnerability Management](https://adolus.com/solutions/vulnerability-management/)
- [Compliance](https://adolus.com/solutions/compliance/)
- [Risk Management](https://adolus.com/solutions/risk-management/)
- [Operational Insights](https://adolus.com/solutions/operational-insights/)
- By job function
- [Product Managers](https://adolus.com/solutions/product-managers/)
- [Security Managers](https://adolus.com/solutions/security-managers/)
- [Engineering Managers](https://adolus.com/solutions/engineering-managers/)
- [Procurement Managers](https://adolus.com/solutions/procurement-managers/)
- By role in the supply chain
- [Vendors & OEMs](https://adolus.com/solutions/vendors-oems/)
- [Asset Owners](https://adolus.com/solutions/asset-owners/)
- [Integrators & Consultants](https://adolus.com/solutions/integrators-consultants/)
- [Security Providers & Partners](https://adolus.com/solutions/security-providers-partners/)

#### Resources

- [Blog](https://blog.adolus.com/)
- [Videos & Podcasts](https://adolus.com/resources/video-podcasts/)
- [Infographics](https://adolus.com/resources/infographics/)
- [FAQ](https://adolus.com/resources/faq/)
- [Document Library](https://adolus.com/resources/document-library/)
- Educational Tools
- [Executive Order #14028 Timeline](https://info.adolus.com/eo14028-timeline)
- [Log4j Resources](https://adolus.com/vulnerabilities/log4j/)

#### Company

- [About Us](https://adolus.com/company/about/)
- [Our Partners](https://adolus.com/company/partners/)
- [News](https://adolus.com/company/news/)
- [Careers](https://adolus.com/company/careers/)
- [Contact](https://adolus.com/company/contact/)

Copyright © 2024 aDolus Technology Inc

[Privacy Policy](https://adolus.com/legal/privacy-policy/) [Terms of Service](https://adolus.com/legal/terms-of-service/)