Quantcast
Channel: SCN: Message List - Security
Viewing all articles
Browse latest Browse all 5338

Acces to the Perl scripts used in the 'famous' gateway hack video from Teched 2012

$
0
0

Hi all,

 

Instead of reinventing things all the times, I'm a big fan of reuse and sharing

 

I'm looking to get the Perl scripts used in this famous video by Bjoern Brencher filmed at SAP Teched 2012:

http://events.sap.com/teched/en/session/3399

 

I have a customer whom would very much like to see this demonstrated on their own systems - this way they can draw the attention and funding to do something about it. I can probably hack something together, but would rather spend my time fixing the problems of the RFC gateway (gateway ACL).

 

I tried to download the tool by Onapsis (Bizploit) - here Free SAP Penetration Testing Framework | Free SAP Security Software | Onapsis. But it requires an SAP RFC SDK of version 7.11 or older (at least documentation says so). I can only download SAP RFC SDK version 720 on SAP Service Marketplace and I can't get it to work with Bizploit.

 

So if anyone has the Perl scripts used in the video or anything similar - I would much appreciate it.

 

Just 'hacking' a SAP system from another SAP system, is not quite as spectacular as doing it from a command line tool that in theory could be snug in on a USB-stick.

 

Contact me here or on kly at sapbasis dot dk

 

regards,

Kenneth


Viewing all articles
Browse latest Browse all 5338

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>