PDA

View Full Version : [HIB]Mariano Nunez Di Croce: SAP Prone to Back Door Exploits



newsbot
30-07-2010, 10:11 AM
For many enterprises, SAP's (NYSE: SAP) software is mission-critical. But according to Mariano Nunez Di Croce, a security researcher from Argentinean research vendor Onapsis, SAP software is at risk even when users properly follow all of the company's security guidelines. In a talk here at the Black Hat security conference, Di Croce argued that SAP deployments could be at risk from back doors, a technique used by hackers to secure future access to a system while remaining undetected. Di Croce is no stranger to hacking enterprise software — his firm also has an open source tool called Bizsploit that is used for penetration testing of ERP software platforms. Overall, Di Croce argued that SAP vulnerabilities are on the rise. According to his data, 2010 has already seen more than 250 security SAP security notes, up from fewer than 50 in 2007. He added that when SAP issues a security note, there is already a fix for the issue.

**Hidden Content: Check the thread to see hidden data.**