About the Author
Alex Horan is the Vice President of Product Management for Onapsis, where he focuses on developing solutions for SAP security and ERP vulnerability management. With over 18 years of experience, Alex has a proven track record of helping large companies enhance their security posture. His expertise spans key areas such as vulnerability assessment, penetration testing, and systems auditing, making him a trusted voice on topics like SAP compliance and secure system configuration. He is committed to ensuring that Onapsis’s products provide advanced protection against real-world threats like ransomware and unauthorized access.
View Author Profile
Onapsis Director of Product Management, Alex Horan, had the pleasure of speaking with Security Guy TV host, Chuck Harold, at Black Hat Las Vegas 2019 earlier this month. Alex and Chuck were able to discuss the unique offerings Onapsis can provide your organization, such as continuous monitoring and change assurance. “[People] have a lot to do,” Alex commented, “they have a lot of things running in their environments and understanding them all and knowing exactly what to do for all of them is a hard task.” This is a problem people have “lived with” for so long that they have become immune to it because these systems have been enabled for a long time. People assume they have not had a security issue, which is different from a technical issue, and therefore will never have one. Watch the interview below for the full story!
About the Author
Alex Horan is the Vice President of Product Management for Onapsis, where he focuses on developing solutions for SAP security and ERP vulnerability management. With over 18 years of experience, Alex has a proven track record of helping large companies enhance their security posture. His expertise spans key areas such as vulnerability assessment, penetration testing, and systems auditing, making him a trusted voice on topics like SAP compliance and secure system configuration. He is committed to ensuring that Onapsis’s products provide advanced protection against real-world threats like ransomware and unauthorized access.
View Author Profile
Further Reading
Onapsis Research Labs Threat Advisory: The New SAP Exploitation Toolkit SAPMAP
A new open-source SAP exploitation toolkit features critical pre-authentication PoC exploits. Learn how SAPMAP works and how to secure your enterprise landscape.
SAP Security Notes: September 2026 Patch Day
Critical vulnerabilities in SAP Message Server and SAP Kernel patched in collaboration with the Onapsis Research Labs
Mitigating OVERPASS (CVE-2026-44756): A Critical SAP Kernel Vulnerability
Remediate OVERPASS (CVE-2026-44756), a critical pre-authentication SAP kernel vulnerability reachable over several SAP communication protocols. Read the step-by-step guide.

