Speaking to TechNadu, Juan Perez-Etchegoyen, CTO at Onapsis, says enterprises continue to underestimate both SAP’s attack surface and attacker sophistication. He reflects on recent SAP-related incidents and explains why traditional SAP security controls have struggled to keep pace with modern threats.Â
Perez-Etchegoyen argues that organizations have long treated SAP as business-critical yet security-exceptional, leaving technology-layer vulnerabilities, and runtime visibility gaps exposed.Â
As attackers demonstrate deep knowledge of SAP, Java, and NetWeaver internals, Perez-Etchegoyen says that SAP has become the enterprise’s crown jewel, that threat actors actively target.
Watch the interview to understand what SAP security gets right, where it breaks down, and why it matters now.