19.06.2015 Views

Attacking the Giants: Exploiting SAP Internals - Cybsec

Attacking the Giants: Exploiting SAP Internals - Cybsec

Attacking the Giants: Exploiting SAP Internals - Cybsec

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

<strong>Attacking</strong> <strong>the</strong> <strong>Giants</strong>: <strong>Exploiting</strong> <strong>SAP</strong> <strong>Internals</strong><br />

Security Review of <strong>the</strong> RFC Interface...<br />

© 2007<br />

Function Analysis: RFC_PING<br />

•An RFC ping<br />

• Connects to <strong>the</strong> target system, analyzing its availability.<br />

• No need for valid logon data.<br />

• Available in External Systems and <strong>SAP</strong> Application Servers.<br />

This function can be used to check for availability of a remote RFC<br />

Server.<br />

21

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!