How do you currently secure your business-critical applications like SAP and Oracle EBS? Having a tool that knows how to assess and protect all the different customizations of your SAP and Oracle systems is not just important to protecting your crown jewels, but necessary. Securing Oracle and SAP systems has a blind spot in the overall IT strategy of many organizations, leaving them at risk for cyberattacks and hacks. Onapsis protects business-critical applications for the largest organizations in the world.
Listen to Onapsis CEO, Mariano Nunez, discuss how Onapsis helps organizations using SAP and Oracle EBS protect their systems from external attacks or internal misuse and abuse in the video below.
About the Author
As CEO and Co-Founder of Onapsis, Mariano drives the strategic direction of the company. Under his leadership, Onapsis has become one of the fastest-growing technology and cybersecurity companies in the world. With 20+ years of experience in the cybersecurity industry, both as an executive and as a cyber security expert, Mariano was the first to publicly present on cybersecurity risks affecting ERP platforms and how to mitigate them at major conferences such as RSA, Black Hat and SANS. Mariano’s contributions to the cybersecurity community include developing the first open-source SAP and ERP Penetration Testing frameworks, and uncovering critical zero-day vulnerabilities in SAP, Oracle, IBM, and Microsoft applications. Mariano’s insights are regularly featured in major media outlets such as CNN, Reuters, Wall Street Journal, Nasdaq, Fortune and The New York Times.
More about this author
Further Reading
The Utilities Guide to SAP RISE: Navigating Shared Responsibility and Security
Electric utilities operate in a highly regulated physical domain. As organizations like Oklahoma Gas and Electric (OG&E) modernize their enterprise resource planning environments, executing a secure RISE with SAP business transformation requires a fundamental shift in defensive strategy. Defending the enterprise core requires security leaders to understand that migrating to a hyperscaler does not eliminate…
The 2026 SAP Security Assessment Checklist
Conducting a comprehensive SAP security assessment is a mandatory operational requirement for modern enterprises. As organizations deepen their reliance on SAP and navigate increasingly complex RISE, S/4HANA, and BTP landscapes, the threat environment heading into 2026 is more active and more unforgiving than ever. Executing a structured SAP risk assessment provides the exact visibility required…
Kerberos & RC4 – What It Means for SAP Customers and How Onapsis Helps
Microsoft is changing how Windows Kerberos handles RC4, an old, insecure encryption algorithm that has historically been the default service ticket encryption for user-account SPNs (the category most SAP service accounts fall into) whose msDS-SupportedEncryptionTypes attribute is unset. The final enforcement phase begins July 2026. SAP environments with service accounts in this state, and keytabs…
