Docuseries:
Hacking and Defending SAP Applications

While SAP is the digital core of most Global 2000 organizations, the specific threat vectors targeting these systems are often misunderstood or overlooked by traditional security teams.
We created this first-of-its-kind docuseries to bridge the gap between theoretical risk and practical defense, directly sourced from our experience on the SAP cybersecurity front lines.
Episode 1

ON DEMAND
Hacking & Defending SAP Applications Live: The SAP Zero-Day That Changed Everything
Onapsis Research Labs live demonstration of CVE-2025-31324 attack to underscore the critical need for immediate security implementation.
watch Now
Episode 2

ON DEMAND
Hacking & Defending SAP Applications Live: Clean Core, Dark Shadows
Onapsis Research Labs presents two high-stakes threat scenarios, based on real-world incidents, that every SAP customer must prepare for: accidental and malicious code in BTP and ABAP.
watch Now
Episode 3

June 25th – 10:00 AM EDT
Hacking & Defending SAP Live: How Mythos-like AI Models Can Hack SAP Applications
Onapsis Research Labs presents high-stakes threat scenarios, based on real-world incidents that every SAP customer must prepare for: AI-facilitated attacks.
register Now
It is important to note that all the threat vectors covered in this series have already been patched by SAP. However, despite the availability of these fixes, Onapsis Research Labs (ORL) continues to see organizations struggling to effectively remediate these risks. This series is designed to empower those teams with the how and why of SAP security, ensuring they can move beyond legacy SAP security controls to achieve true cyber resilience.
Threat Research Resources
The Onapsis Threat Research Labs offers a variety of resources, including blogs, threat reports, webinars, and advisories.

