Security News > 2021 > April > Week in review: SAP apps under attack, Zero Trust creator talks, Patch Tuesday forecast

SAP applications are getting compromised by skilled attackersNewly provisioned, unprotected SAP applications in cloud environments are getting discovered and compromised in mere hours, Onapsis researchers have found, and vulnerabilities affecting them are being weaponized in less than 72 hours after SAP releases security patches.
MindAPI makes API security research and testing easierSecurity researcher David Sopas has published a new open-source project: MindAPI, a mind map with resources for making API security research easier.
Zero Trust creator talks about implementation, misconceptions, strategyA little over a decade ago, John Kindervag outlined the Zero Trust security model.
April 2021 Patch Tuesday forecast: Security best practicesMarch kept us all very busy with the ongoing out-of-band Microsoft updates for Exchange Server and the printing BSODs, which plagued us since last Patch Tuesday.
SASE or zero trust? Why security teams should be using bothAs companies continue to navigate increasingly distributed environments, the question of zero trust is coming up more and more - as is the relationship between this framework and secure access service edge.
Many security teams are looking to better understand zero trust security and SASE, including whether or not they are mutually exclusive or compatible.
News URL
http://feedproxy.google.com/~r/HelpNetSecurity/~3/xLMEZXJv4SE/
Related news
- April 2025 Patch Tuesday forecast: More AI security introduced by Microsoft (source)
- Week in review: Probing activity on Palo Alto Networks GlobalProtect portals, Patch Tuesday forecast (source)
- Microsoft April 2025 Patch Tuesday fixes exploited zero-day, 134 flaws (source)
- Patch Tuesday: Microsoft Fixes 134 Vulnerabilities, Including 1 Zero-Day (source)
- April's Patch Tuesday leaves unlucky Windows Hello users unable to login (source)
- Old Fortinet flaws under attack with new method its patch didn't prevent (source)
- SAP fixes critical Netweaver flaw exploited in attacks (source)
- SAP fixes suspected Netweaver zero-day exploited in attacks (source)
- Emergency patch for potential SAP zero-day that could grant full system control (source)
- SonicWall urges admins to patch VPN flaw exploited in attacks (source)