As organizations migrate from on-premise environments to the cloud, they set themselves up for speed and innovation. At the same time, this transition often creates complex interconnections where on-premise and cloud environments are linked, increasing the attack surface and exposing potential attack paths between them. If not properly secured by customers, threat actors can exploit misconfigurations in services like SAP Cloud Connector, existing BTP Applications, SAP Destinations service, and existing SAP RFC Destinations to move laterally across environments spanning different clouds and on-premise infrastructure. In this episode of Hacking & Defending SAP Applications – Live, we go beyond the theoretical risks to demonstrate how threat actors exploit the subtle security gaps that may be inadvertently created during cloud adoption.
Join us as we analyze the “Cloud vs. On-Prem” transition from an attacker’s perspective, revealing how misconfigurations, insecure integrations, and visibility gaps can turn a strategic modernization effort into a security liability.
Most importantly, we will provide actionable strategies and technical recommendations for SAP and Security leaders to proactively secure their hybrid or full-cloud landscapes, ensure continuous compliance, and maintain a robust security posture throughout the transition and beyond.
What you will learn:
- The Anatomy of the Expanded Surface: Why moving to the cloud changes the threat model for your core SAP applications.
- Attacker Perspective: How threat actors can abuse misconfigurations in services like the SAP Destinations service, SAP Cloud Connector, and RFC Destinations to move laterally between cloud and on-premise environments.
- Actionable Defense: Concrete steps to close visibility gaps and ensure your SAP cloud transition is secure by design and in production




