About US 

SecurityPort is a highly skilled cybersecurity company that provides protection for ERP/SAP systems against both external threats and internal fraud. Our specialty is safeguarding SAP ERP platforms for all sizes of companies. Our team of experts offers state of the art penetration tests, and SAP Security audits, ensuring the highest level of security for our clients. No more, No less.

Methodology

Methodology:
SAP NetWeaverABAP


1) Dispatcher
2) Gateway
3) Message Server HTTP
4) Message Server
5) ICM
6) ITS
7) WebDispatcher
8) SAProuter
9) HostControl
10) IGS

.

Methodology:
Additional modules


Analyzing SAP Portal security (For example):
1) SSO authentication
2) Guest access
3) KM documents
4) XSS, Traversal, XXE, and other vulnerabilities

.

Methodology:
SAP HANA


1) XS Application Services
2) JavaScript server-side àla NodeJS
3) JavaScript client-side (SAP UI5)
4) Database engine
5) Additional services
6) SAP Fiori

Methodology:
Users


1) With access to critical transactions:
-Financial Accounting
-Fixed Assets

2) With critical authorizations:

-For user administration
-For system administration
3) With critical roles:
-For HR
-For CRM
-For JAVA applications
4) With critical profiles
5) Without master data