Onapsis

Onapsis Protecting the business-critical applications that power the global economy

Onapsis protects the business-critical applications that power the global economy including ERP, CRM, PLM, HCM, SCM and BI applications from SAP®, Oracle® and leading SaaS providers. Onapsis proudly serves more than 300 of the world’s leading brands including 20% of the Fortune 100 and partners with leading consulting and audit firms such as Accenture, Deloitte, IBM, PwC and Verizon. The Onapsis R

esearch Labs is responsible for the discovery and mitigation of more than 800 zero-day business-critical application vulnerabilities.

Each month, more than 3,800 SAP security professionals get the top news, insights, and guidance delivered straight from ...
06/15/2026

Each month, more than 3,800 SAP security professionals get the top news, insights, and guidance delivered straight from Onapsis Research Labs. 💡

Their source? The Defenders Monthly Newsletter.

As one of the biggest external contributors to SAP patch days, we break down the best of SAP security news, practical tips, and key takeaways so you don't have to waste time searching or piecing together information from multiple sources.

Want to be the first to know?

Subscribe to the Defenders Monthly Newsletter today and get your first update sent straight to your inbox this Thursday.

➕ Subscribe on LinkedIn ➡️ https://bit.ly/3QEPsGV

Your endpoints are pawns. Your SAP system is the King. If the King falls, the game is over. 👑Too many security strategie...
06/12/2026

Your endpoints are pawns. Your SAP system is the King. If the King falls, the game is over. 👑

Too many security strategies treat mission-critical enterprise applications like basic IT infrastructure. It’s time to shift focus to what matters most.

📅 Stop the blindspots. Book some time with us to see how we secure your enterprise core: https://bit.ly/43xcJk4

How easily can an LLM map, weaponize, and exploit an SAP system? About as easily as you might think.Offensive AI tools a...
06/11/2026

How easily can an LLM map, weaponize, and exploit an SAP system? About as easily as you might think.

Offensive AI tools are shifting the SAP threat landscape into overdrive, drastically reducing the Time-to-Exploit (TTE). In this upcoming live technical session, we’re going under the hood to show how attackers leverage prompt engineering and specialized AI models to bypass generic security controls and target the SAP core.

We'll cover the live threat scenarios and, more importantly, how to equip your security team with the automated visibility and zero-day detection needed to fight back at machine speed.

Hacking & Defending SAP - Live Docuseries: Episode III
🗓️ June 25 | 10 a.m. EDT
🔗 Save your seat: https://bit.ly/43N0U9k

06/10/2026

According to Mandiant, an SAP Zero-Day was the most exploited vulnerability in 2025.

Let that sink in.

SAP applications weren’t even mentioned in prior industry threat reports and now they sit at the top of the list that no one wants to be on.

Hear from Vice President, Mandiant Consulting, Google Cloud Jurgen Kutscher and watch the full fireside chat with Mariano Nunez, CEO & Co-Founder at Onapsis, that dives into emerging topics, including AI, below.

🔗 https://bit.ly/4uqiM4G

Highlights of June SAP Security Notes analysis include:➡️ June Summary – Twenty new and updated SAP security patches rel...
06/09/2026

Highlights of June SAP Security Notes analysis include:

➡️ June Summary – Twenty new and updated SAP security patches released, including six HotNews Notes and three High Priority Notes
➡️ SAML authentication – XML Signature Wrapping vulnerability poses confidentiality, integrity and availability of the application at high risk
➡️ Onapsis Research Labs Contribution – Our team supported SAP in patching six vulnerabilities, including two tagged as HotNews and one tagged as High Priority

Get the full details and analysis from Thomas Fritsch below 🔽
https://bit.ly/4ujUGbT

Do you have a plan in place for staying ahead of SAP threats and vulnerabilities?Our 2026 SAP Security checklist was dev...
06/08/2026

Do you have a plan in place for staying ahead of SAP threats and vulnerabilities?

Our 2026 SAP Security checklist was developed by Onapsis Research Labs to provide security, IT, and SAP transformation leaders with a framework to establish a secure baseline across the entire enterprise architecture.

Looking for guidelines to prioritize the controls, visibility, and protections essential to strengthening SAP resilience? Look no further ⬇️

https://bit.ly/4e586lX

06/05/2026

Why does SAP Endorsed App status matter?

When you choose an SAP-endorsed solution, you are choosing a platform that has been rigorously tested for quality, security, and seamless integration. This is an invite-only process that a select few are invited to participate in.

Onapsis was vetted by SAP for the highest-level of quality.

Words matter and we are proud to officially hold the SAP Endorsed App Premium Certified status. ⭐

Help us give a warm welcome to the newest Onas joining the team! 👋We are absolutely thrilled to have you onboard and can...
06/05/2026

Help us give a warm welcome to the newest Onas joining the team! 👋

We are absolutely thrilled to have you onboard and can't wait to see the incredible impact you'll make here at Onapsis. Drop a comment below to welcome our new teammates! 🚀✨

Verizon's latest DBIR report has the largest number of breaches ever examined in a single report. Of those breaches, exp...
06/04/2026

Verizon's latest DBIR report has the largest number of breaches ever examined in a single report.

Of those breaches, exploitation of vulnerabilities is now the most common way attackers gain access to an organization’s environment. The importance of getting the basics right has never been more vital.

In his latest blog, our Director of Security Research, Paul Laudanski, breaks down how the very applications keeping your company running (like SAP NetWeaver) can be leveraged as a backdoor by threat actors.

It's time to pull SAP NetWeaver out of the functional IT silo and integrate it directly into your security operations center (SOC). Protecting the ERP layer is a mandatory requirement for preserving business continuity.

Read his full analysis for critical insights ⬇️

Address

Boston, MA

Alerts

Be the first to know and let us send you an email when Onapsis posts news and promotions. Your email address will not be used for any other purpose, and you can unsubscribe at any time.

Contact The Business

Send a message to Onapsis:

Share