Blog

Welcome to the smarterSec Blog - your go-to source for insights, updates, and best practices in SAP Security, Compliance and GDPR.

Search
Categories
Tags

SAP Patch Day 08/2026: High Volume, High Severity – But (Almost) Nothing New on the Countermeasure Side 

29 SAP Security Notes in a single day – 13 of them rated HotNews or High Priority. That makes August 2026 one of the heaviest patch days of the year. If your first instinct is that everything is on fire at once, it’s worth a closer look. 

Updates on the smarterSec Security Platform from August 2026

In this blog series, we will continuously introduce you to the latest features and updates that make the smarterSec Security Platform even more powerful for protecting your digital assets.

Updates on the smarterSec Security Platform from July 2026

In this blog series, we will continuously introduce you to the latest features and updates that make the smarterSec Security Platform even more powerful for protecting your digital assets.

“RSBDCOS0” – Is the Decommissioning Too Short-Sighted?

With the Security Patch Day in May 2026, SAP has decided to discontinue the “RSBDCOS0” report. Is this decision too shortsighted? What does this report actually do? As an SAP customer, what should I be aware of? We’ll answer these questions in this blog post.

Updates on the smarterSec Security Platform from June 2026

In this blog series, we will continuously introduce you to the latest features and updates that make the smarterSec Security Platform even more powerful for protecting your digital assets.

SAP UCON Scenarios Explained: HTTP Allowlist, WebSocket RFC & Role Building

Learn how to use the SAP UCON scenarios for role building, HTTP Allowlists, and WebSocket RFC security to secure communication in SAP systems.

SAP Security Patchday 05/2026: Say “Farewell” to an Old Friend

May’s SAP Patch Day brings 15 new security notes, including two rated CVSS 9.6 — one SQL injection hitting NetWeaver AS ABAP and S/4HANA, one targeting SAP Commerce Cloud. Also on the agenda: the long-overdue retirement of RSBDCOS0, and a supply chain attack note with the eyebrow-raising score of CVSS 0.0. Here’s what you need to act on — and why.

No More Audit Anxiety: How to Keep SoDs and Authorizations under Control – For Good

SUIM is too limited. SAP GRC is too heavy. The Smarter Access Control Framework closes that gap — flexible SoD and authorization monitoring, seamlessly integrated into your existing SAP security platform.

Updates on the smarterSec Security Platform from May 2026

In this blog series, we will continuously introduce you to the latest features and updates that make the smarterSec Security Platform even more powerful for protecting your digital assets.

SAP Security Patchday 04/2026: Why Names and Scores Can Be Deceiving

The April 2026 SAP Security Patchday shows why CVSS scores alone can be misleading: while a critical CVSS 9.9 vulnerability demands immediate action, even low-rated issues like a CVSS 2.0 ABAP injection can enable serious attacks. With a shift toward vulnerabilities in OData, ICF, and RAP models, understanding the context of your SAP landscape is more important than ever.