Welcome to Ask A Pentester, where you can get your security questions answered by members of the IT Security community!

Spread the word!

SAP security research, first steps?

0 votes
Hi everyone,

I would like to start learning and experimenting with SAP security because... well, because one can do a lot of money in the field, I've heard ;)

Unfortunately I find it quite difficult to get either SAP software or documentation.

Could anyone please give me some advice?

 

I would appreciate it very much!

Rey Misterio
asked 1 year ago in Web Hacking by TheMaskedNerdo amateur (340 points)

3 Answers

+1 vote

I wrote up a short post on useful links to get an SAP test lab running. In-case you had issues getting a trial version up and running!

http://blog.c22.cc/2011/01/14/setting-up-your-own-sap-netweaver-test-lab/

answered 1 year ago by ChrisJohnRiley curious (150 points)
thx for your work ... I have included this link in my SAP link section ...
0 votes

You might want to download a trial here.

Setting up shouldn't be too hard and you should be able to play around with the saptyo tool.

But customizing can be quite hard. There are so many options and possibilities. Also ABAP codings might be a security risk but they are custom tailored for a company.

If you have any more questions about SAP let me know, been working as a SAP BC consultant for 2 years.

answered 1 year ago by KMDave pro pentester (860 points)
0 votes
a while back I have started with collecting SAP related pentesting infos ...

you can find them in my bookmarking collection on

http://www.s3cur1ty.de

http://bookmarks.s3cur1ty.de/shared.php?expand=56,65&folderid=105&user=m1k3#95
answered 1 year ago by m-1-k-3 contributor (530 points)
edited 1 year ago by m-1-k-3

Please log in or register to answer this question.