← All talks

Network Guy's Guide to SAP Security & OS Commands #shorts

BSides Frankfurt0:25497 viewsPublished 2026-03Watch on YouTube ↗
About this talk
As a network specialist, diving into SAP security means navigating ACLs, source/destination/service, and OS command execution without authentication. It's like being asked to run all of IT—impossible without specialized knowledge. #NetworkSecurity #SAP #Cybersecurity #ITPro
Show transcript [en]

Why should you, as a network guy, who has another silo, by the way, um take care of that SAP stuff? That's like if someone asked you to run the whole IT, and you have skills of everything. That's impossible. What is the security mechanism in there? That's an ACL. Source destination service. When you connect to this service, it doesn't have any authentication, and there is a process allowing you to execute OS commands.