Back Issues/Search Home → Calendar → Archive → RSS → Subscribe → Current Issue → Popular →

All issues › Volume 342, Issue 5 › IT Vendor News › Red Hat

What Enterprises Need to Know About the Cyber Resilience Act and Software Supply Chain Risk

Red Hat, Friday, October 2nd, 2026

Red Hat explains how the EU Cyber Resilience Act raises the bar for understanding and supporting open source dependencies.

In part two of a series on software supply chain risk, Red Hat examines the EU Cyber Resilience Act (CRA).

The CRA requires manufacturers of products with digital elements to address cybersecurity throughout the product lifecycle, including risk assessments, vulnerability handling and a declared support period, which makes it essential to understand the open source components inside a product.

The post also covers the CRA's new category of open source software stewards and what it means for enterprises.

more →  ·  More from Red Hat →