Get a Pentest and security assessment of your IT network.

News

SAP ASE leaves sensitive credentials in installation logs

SAP users should deploy the patches for Adaptive Server Enterprise (ASE) released last month because the server fails to clear credentials from persistent installation logs. Even though the credentials are encrypted or hashed, attackers can easily decrypt them to gain full access to a sensitive monitoring component. SAP ASE is a complex piece of software with many components, one of which is called Cockpit. The product is used by over 30,000 organizations worldwide, including over 90% of the world’s top 50 banks.”]

Source: https://www.csoonline.com/article/3576294/sap-ase-leaves-sensitive-credentials-in-installation-logs.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Botnet authors use Evernote account as C&C Server

News

Canadian agency breached as hackers exploit CVE-2017-5638 flaw in Apache Struts 2