Securing SAP Solutions from Log4Shell: A Critical Guide

Log4Shell (CVE-2021-44228) is one of the most significant security vulnerabilities in decades. This zero-day remote code execution (RCE) flaw in the open-source Java logging utility, Log4j, allows unauthenticated attackers to remotely execute arbitrary code, potentially leading to a complete system compromise. Why is Log4Shell a major risk for SAP? Log4j is a widely used logging […]

Securing SAP Systems from Log4J Exploits: A Critical Guide

The Log4Shell vulnerability (CVE-2021-44228) is one of the most serious security threats in recent decades. This remote code execution (RCE) flaw in the Apache Log4j logging framework allows unauthenticated attackers to remotely execute arbitrary code, potentially leading to the complete compromise of affected SAP applications and systems. What is the Log4J vulnerability? Log4j is an […]

CISA Directive: Remediating Actively Exploited SAP Vulnerabilities

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued Binding Operational Directive 22-01, mandating that government departments and agencies remediate specific vulnerabilities known to be actively exploited. This directive highlights six critical SAP vulnerabilities that pose significant risks to information systems, requiring remediation to ensure landscape security. What is the CISA Known Exploited Vulnerabilities (KEV) […]

Securing the SYSTEM User in SAP HANA: Best Practices

The SYSTEM user is the most powerful database user in SAP HANA, possessing system-wide privileges to create users, modify system configurations, and manage databases. Because it is a well-known account with full administrative authority, it is a primary target for attackers. Securing this user is essential to preventing unauthorized system changes and data breaches. Why […]

Securing Software Supply Chains for SAP Landscapes

Software supply chain attacks are among the most sophisticated cyber threats, targeting information systems by compromising third-party software, builds, or trusted interfaces. By exploiting these dependencies, threat actors can introduce malicious backdoors into otherwise secure environments without detection. Why are software supply chain attacks a major risk for SAP? The catastrophic SolarWinds attack demonstrated how […]

Protecting SAP Systems from Ransomware Attacks

Recent high-profile incidents, such as the Colonial Pipeline attack, have highlighted the devastating impact of ransomware on critical infrastructure. With ransomware attacks increasing by 300% over the past year, organizations face significant operational risks: the average downtime from an attack is 21 days, while full recovery can take up to 287 days. Why host-level security […]

Cybersecurity Extension for SAP Identifies Signatures of Active SAP Cyberattacks

Recent research confirms that attackers are actively targeting and weaponizing vulnerabilities in SAP applications. With some unprotected cloud installations being compromised in under three hours, and patches being weaponized in less than 72 hours, organizations must move beyond basic patching to implement active threat detection. The Reality of Active SAP Exploitation A joint report by […]

Layer Seven Security’s Cybersecurity Extension for SAP® Solutions Achieves SAP® Certification as Integrated with SAP NetWeaver®

Toronto, Canada – March 8, 2021 – Layer Seven Security today announced its Cybersecurity Extension v3.4 for SAP® Solutions has achieved SAP®-certified integration with the SAP NetWeaver® technology platform.  The solution has been proven to integrate with SAP solutions, providing automated vulnerability management, threat detection and incident response for SAP applications and infrastructure. “We are delighted to […]

Compliance Reporting for the SAP Security Baseline

The SAP Security Baseline is a widely used benchmark for securing SAP applications. The benchmark includes SAP recommendations for system hardening, authentication and authorization, logging and auditing, and other areas. The recommendations draw on SAP security notes, guides and whitepapers.  The SAP Security Baseline was updated by SAP earlier this year and provides an up-to-date […]

Securing the SAProuter from Remote Attacks

The surge in remote working has led to an increasing reliance on the SAProuter as a means to facilitate secure remote access to SAP applications. As a reverse proxy between external networks and SAP landscapes, the SAProuter enables organizations to apply more granular policies for filtering and securing connections to SAP systems than network firewalls. […]