offensive-security
27 entries
- pysap: protocols, tools and offensive capabilities for SAP security - YOLO edition
- Protecting Credentials in SAP HANA: The Client Secure User Store
- SAP HANA SAML Improper Validation Vulnerabilities
- Exploring the SAP HANA SQL Command Network Protocol – Federated Authentication
- Exploring the SAP HANA SQL Command Network Protocol – Password-based Authentication and TLS
- Exploring the SAP HANA SQL Command Network Protocol – Protocol Basics and Authentication
- Revisiting the Old and Looking at New Potential SAP Vulnerabilities
- BIZEC Discussion Panel: Past, Present and Future of SAP Security
- Hunting crypto secrets in SAP systems
- SAP Note Assistant Insecure handling of SAP Notes signature vulnerability
- SAP SAPCAR Heap Based Buffer Overflow Vulnerability
- Intercepting SAP SNC-protected traffic
- SAP CAR Multiple Vulnerabilities
- Deep-dive into SAP archive file formats
- SAP Download Manager Password Weak Encryption
- Sendio ESP Information Disclosure Vulnerability
- SAP LZC/LZH Compression Multiple Vulnerabilities
- SAP Netweaver Enqueue Server Trace Pattern Denial of Service
- SAP Router Password Timing Attack
- SAP’s Network Protocols Revisited
- SAP Netweaver Message Server Multiple Vulnerabilities
- Uncovering SAP vulnerabilities - Reversing and breaking the Diag protocol
- Uncovering SAP vulnerabilities - Reversing and breaking the Diag protocol
- SAP Netweaver Dispatcher Multiple Vulnerabilities
- SAP Dissection plug-in for Wireshark
- pysap
- Impacket