<!-- mobian-agent-page publisher="dailydev" canonical="https://daily.dev/posts/ndss-2025-jbomaudit-assessing-the-landscape-compliance-and-security-implications-of-java-sboms-ycxmctj0s" -->

---
title: NDSS 2025 – JBomAudit: Assessing The Landscape,...
description: JBomAudit is a research tool presented at NDSS 2025 that performs the first systematic study of Software Bill of Materials (SBOMs) in the Java ecosystem....
canonical: https://daily.dev/posts/ndss-2025-jbomaudit-assessing-the-landscape-compliance-and-security-implications-of-java-sboms-ycxmctj0s
twitter:card: summary_large_image
twitter:site: @dailydotdev
og:type: website
og:site_name: daily.dev
og:title: NDSS 2025 – JBomAudit: Assessing The Landscape, Compliance, And Security Implications Of Java SBOMS | daily.dev
og:description: JBomAudit is a research tool presented at NDSS 2025 that performs the first systematic study of Software Bill of Materials (SBOMs) in the Java ecosystem....
og:url: https://daily.dev/posts/ndss-2025-jbomaudit-assessing-the-landscape-compliance-and-security-implications-of-java-sboms-ycxmctj0s
og:image: https://api.daily.dev/og/posts/YcxmctJ0s.png
og:image:alt: NDSS 2025 – JBomAudit: Assessing The Landscape, Compliance, And Security Implications Of Java SBOMS
og:image:width: 1200
og:image:height: 630
og:locale: en
---

> ## Documentation Index
> Fetch the complete documentation index at: https://daily.dev/llms.txt
> Use this file to discover all available pages before exploring further.

# NDSS 2025 – JBomAudit: Assessing The Landscape, Compliance, And Security Implications Of Java SBOMS

**[Security Boulevard](https://daily.dev/sources/securityboulevard)** · 1 min read · 1 upvotes · 0 comments

## Summary

JBomAudit is a research tool presented at NDSS 2025 that performs the first systematic study of Software Bill of Materials (SBOMs) in the Java ecosystem. Analyzing 25,882 SBOMs and associated JAR files, the study found that 7,907 SBOMs failed to disclose direct dependencies, violating NTIA minimum requirements. Of the omitted dependencies, 4.97% were vulnerable, exposing software to potential exploits. The research highlights widespread SBOM noncompliance and its security implications for vulnerability management.

## Full article

daily.dev links to this article rather than hosting it. Read it at the original source: <https://securityboulevard.com/2026/02/ndss-2025-jbomaudit-assessing-the-landscape-compliance-and-security-implications-of-java-sboms/>

## Similar posts on daily.dev

- [SBOM is an investment in the future](https://daily.dev/posts/sbom-is-an-investment-in-the-future-yxeddkkdq) · Security Boulevard · 0 upvotes · 0 comments
- [SBOM’s: The essential foundation of open source security](https://daily.dev/posts/sbom-s-the-essential-foundation-of-open-source-security-yyjbmcyjq) · All Things Open · 1 upvotes · 0 comments
- [Software Bill of Materials \(SBOM\) Explained](https://daily.dev/posts/software-bill-of-materials-sbom-explained-x78srarkm) · Docker · 4 upvotes · 0 comments

---

Tags: [#security](https://daily.dev/tags/security), [#java](https://daily.dev/tags/java), [#compliance](https://daily.dev/tags/compliance), [#supply-chain](https://daily.dev/tags/supply-chain), [#sbom](https://daily.dev/tags/sbom)

[View this post on daily.dev](https://daily.dev/posts/ndss-2025-jbomaudit-assessing-the-landscape-compliance-and-security-implications-of-java-sboms-ycxmctj0s)

```json
{"@context":"https://schema.org","@graph":[{"@type":"Organization","@id":"https://daily.dev/#organization","name":"daily.dev","url":"https://daily.dev","logo":{"@type":"ImageObject","url":"https://daily.dev/apple-touch-icon.png","width":180,"height":180},"sameAs":["https://twitter.com/dailydotdev","https://github.com/dailydotdev","https://www.linkedin.com/company/daily-dev-ltd"]},{"@type":"WebSite","@id":"https://daily.dev/#website","url":"https://daily.dev","name":"daily.dev","publisher":{"@id":"https://daily.dev/#organization"},"potentialAction":{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https://daily.dev/search?q={search_term_string}"},"query-input":"required name=search_term_string"}}]}
{"@context":"https://schema.org","@type":"TechArticle","headline":"NDSS 2025 – JBomAudit: Assessing The Landscape, Compliance, And Security Implications Of Java SBOMS","url":"https://daily.dev/posts/ndss-2025-jbomaudit-assessing-the-landscape-compliance-and-security-implications-of-java-sboms-ycxmctj0s","mainEntityOfPage":{"@type":"WebPage","@id":"https://daily.dev/posts/ndss-2025-jbomaudit-assessing-the-landscape-compliance-and-security-implications-of-java-sboms-ycxmctj0s"},"datePublished":"2026-02-28T16:15:08.804Z","dateModified":"2026-02-28T16:15:33.640Z","description":"JBomAudit is a research tool presented at NDSS 2025 that performs the first systematic study of Software Bill of Materials (SBOMs) in the Java ecosystem....","image":"https://media.daily.dev/image/upload/f_auto,q_auto/v1/posts/8fe9eeb967de205fd6743e2535f16178?_a=AQAEuop","thumbnailUrl":"https://media.daily.dev/image/upload/f_auto,q_auto/v1/posts/8fe9eeb967de205fd6743e2535f16178?_a=AQAEuop","isAccessibleForFree":true,"articleSection":"Security Boulevard","inLanguage":"en","publisher":{"@type":"Organization","name":"daily.dev","url":"https://daily.dev","logo":{"@type":"ImageObject","url":"https://daily.dev/apple-touch-icon.png","width":180,"height":180}},"author":{"@type":"Organization","name":"Security Boulevard","logo":"https://media.daily.dev/image/upload/t_logo,f_auto/v1/logos/3613c832180040de8d85bb29f74395be","url":"https://daily.dev/sources/securityboulevard"},"commentCount":0,"discussionUrl":"https://daily.dev/posts/ndss-2025-jbomaudit-assessing-the-landscape-compliance-and-security-implications-of-java-sboms-ycxmctj0s","interactionStatistic":[{"@type":"InteractionCounter","interactionType":{"@type":"LikeAction"},"userInteractionCount":1},{"@type":"InteractionCounter","interactionType":{"@type":"CommentAction"},"userInteractionCount":0}],"keywords":"security,java,compliance,supply-chain,sbom","timeRequired":"PT1M"}
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://daily.dev"},{"@type":"ListItem","position":2,"name":"Security Boulevard","item":"https://daily.dev/sources/securityboulevard"},{"@type":"ListItem","position":3,"name":"NDSS 2025 – JBomAudit: Assessing The Landscape, Compliance, And Security Implications Of Java SBOMS"}]}
```

