|
Tuesday, 1 August 2023, 21:55 HKT/SGT | |
| | | | Source: Fujitsu Ltd | |
|
|
|
- Efforts will focus on Software Bill of Materials (SBOM) to visualize digital assets and identify potential vulnerabilities in software supply chains
KDDI Corporation, KDDI Research, Inc., Fujitsu Limited, NEC Corporation, Mitsubishi Research Institute, Inc.
|
TOKYO, Aug 1, 2023 - (JCN Newswire) - Japan KDDI Corporation, KDDI Research, Inc., Fujitsu Limited, NEC Corporation, and Mitsubishi Research Institute, Inc. (MRI), have announced that they will embark on a series of trials exploring the introduction of Software Bill of Materials (SBOM)*, a list of programs that comprise software, into the communications field including 5G and LTE network equipment with the aim of strengthening cybersecurity, on August 1, 2023. The five companies plan to establish a framework to manage this project and start a survey to address different technical and operational issues surrounding the use of SBOM. The project follows the decision on May 11, 2023 by Japan's Ministry of Internal Affairs and Communications to commission KDDI to conduct "a survey on the introduction of SBOM in the communications field in FY 2023."
Background
With the increasing sophistication and diversity of functions required in communications systems, the composition of core software in communications systems used by telecommunication operators has changed from a simple combination of a few software components to a complex combination of many software components, including open source software (OSS). OSS can be used by anyone because the source code of the software is publicly available, and its use cases are expanding because of its rich functionality and flexibility.
On the other hand, changes in the software supply chain have led to the introduction of malicious code into software components, including OSS, and cyberattacks targeting vulnerabilities.
Similarly, the risk of being attacked is becoming apparent in communication systems. A database that collects and provides vulnerability information on software components in response to attacks is already in operation, but if the configuration of software components in the communication system is not understood, it is difficult to respond quickly when vulnerabilities are identified. As a result, the importance of SBOM, which provide a list of the various parts that make up software, version information, and dependencies between parts, is rapidly increasing.
Initiatives of the Project
Under this initiative, the companies will use the SBOM to grasp the software supply chain and quickly respond to vulnerabilities. To strengthen cybersecurity in the communications field, the following items will be investigated and discussed.
1. Survey of domestic and overseas trends and study of draft guidelines for the introduction of SBOM in the communications field
- The companies will investigate initiatives and existing guidelines related to SBOM by government agencies and private organizations in Japan and internationally and will consider draft guidelines for utilizing SBOM for communications equipment and software components for such equipment.
2. Creation of SBOM for communication equipment and investigation of problems
- The companies will create SBOM for some of the facilities actually operated by carriers through this project.
3. Evaluation of accuracy of SBOM for communication equipment
- By evaluating the accuracy of the newly created SBOM and organizing items specific to the communications field, the participants aim to solve problems for the introduction of SBOM.
Amid the foreseeable changes in the environment surrounding cybersecurity, the five companies will continue to contribute to strengthening cybersecurity to ensure the stable provision of communications services that support the lives of customers.
* SBOM (Software Bill Of Materials) : Known as a software bill of materials, lists all software components, licenses, and dependencies in a particular product.
About Fujitsu Fujitsu's purpose is to make the world more sustainable by building trust in society through innovation. As the digital transformation partner of choice for customers in over 100 countries, our 124,000 employees work to resolve some of the greatest challenges facing humanity. Our range of services and solutions draw on five key technologies: Computing, Networks, AI, Data & Security, and Converging Technologies, which we bring together to deliver sustainability transformation. Fujitsu Limited (TSE: 6702) reported consolidated revenues of 3.7 trillion yen (US$28 billion) for the fiscal year ended March 31, 2023 and remains the top digital services company in Japan by market share. Find out more: www.fujitsu.com.
Press Contacts: Fujitsu Limited Public and Investor Relations Division Inquiries (https://bit.ly/3rrQ4mB)
Topic: New Security Issue
Source: Fujitsu Ltd
Sectors: Telecoms, 5G, Cloud & Enterprise, CyberSecurity, Wireless, Apps
http://www.acnnewswire.com
From the Asia Corporate News Network
Copyright © 2024 ACN Newswire. All rights reserved. A division of Asia Corporate News Network.
|
|
|
|
|
|
Fujitsu Ltd |
Nov 13, 2024 11:38 HKT/SGT |
SoftBank Corp. and Fujitsu Strengthen Partnership for Realization of AI-RAN Commercialization |
Nov 12, 2024 12:57 HKT/SGT |
JA Mitsui Leasing and Fujitsu collaborate on simulation-driven field trials to optimize commercial EV adoption and drive decarbonization |
Nov 7, 2024 13:51 HKT/SGT |
Home of Fujitsu joint conservation project designated as first Nationally Certified Sustainably Managed Natural Site in Okinawa |
Nov 5, 2024 16:13 HKT/SGT |
Tokyo Stock Exchange and Fujitsu announce renewal of cash equity trading system 'arrowhead4.0' |
Nov 1, 2024 11:24 HKT/SGT |
Fujitsu's groundbreaking computing technology for accelerating scientific computing wins Japan Patent Office Commissioner's Award |
Nov 1, 2024 09:45 HKT/SGT |
Fujitsu and AMD to begin strategic partnership to develop more sustainable computing infrastructure intended to accelerate open-source AI initiatives |
Oct 30, 2024 12:43 HKT/SGT |
Fujitsu and Morinaga Milk Industry jointly develop a simulation system for raw material price fluctuations, speeding up decision-making |
Oct 29, 2024 18:53 HKT/SGT |
Fujitsu and Linius partner to unlock the power of video worldwide |
Oct 25, 2024 20:59 HKT/SGT |
Joint proposal by NTT, KDDI, Fujitsu, NEC, and Rakuten Mobile adopted as Japan's Ministry of Internal Affairs and Communications/NICT's "Innovative ICT Fund Projects for Beyond 5G/6G" for social implementation and overseas expansion oriented strategic program (common infrastructure technology establishment) |
Oct 25, 2024 12:05 HKT/SGT |
Fujitsu and Toyota Systems Corporation achieve 50% reduction in core system update time using generative AI |
More news >> |
|
|
|
|