11.07.2015 Views

SAP: Session (Fixation) Attacks and Protections - Black Hat

SAP: Session (Fixation) Attacks and Protections - Black Hat

SAP: Session (Fixation) Attacks and Protections - Black Hat

SHOW MORE
SHOW LESS
  • No tags were found...

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

<strong>SAP</strong> Disclosure Guidelines (1)• <strong>SAP</strong> disclosure guidelines details:– Published after this specific finding– “Since the integrity <strong>and</strong> security of businessoperations is crucial for businesses in allindustries, <strong>SAP</strong> as a provider of businesssoftware is absolutely committed tomaintaining the highest possible level ofsecurity within its products.”– What is the right balance between full security<strong>and</strong> fast disclosure?Other researchers can find it:!= motivations (see case #1)Copyright © 2011 Taddong S.L. www.taddong.com67

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!