News

“SAP S/4HANA allows an attacker with user privileges to exploit a vulnerability in the function module exposed via RFC. This ...
SAP JCo needs to know the meta data of the function module it mimics. This includes e.g. parameters, typing etc. Hence, JCo by default checks the data dictionary (DDIC) of an SAP NetWeaver ABAP.
Critical SAP flaw threatens Pakistan’s sensitive data and digital systems, with hackers exploiting vulnerability.
A critical SAP S/4HANA code injection vulnerability is being leveraged in attacks in the wild to breach exposed servers, ...
A newly disclosed critical vulnerability in SAP's flagship enterprise software, S/4HANA, is being actively exploited by ...
NCERT has warned Pakistani enterprises of a S/4HANA vulnerability that can inject a malicious ABAP code via RFC.
In our recent blog on how to protect your SAP system with the Unified Connectivity Framework (UCON), we talked about minimizing the risk of malicious Remote Function Calls (RFC) into an SAP Production ...