Course Outline
- Introduction
- Explaining Application Security and Vulnerabilities
- Secure Programming
- Describing ABAP Best Practices and Handling of SY-SUBRC
- Understanding Injection Vulnerabilities (SQL Injection, Code Injection, Call Injection, Operating System Command Injection, Directory Traversal, web-based threats, Cross-Site Scripting, Cross-Site Request Forgery, inaccurate programming)
- Security Testing Tools
- Describing Security Testing Tools
- Explaining ATC and CVA
- Troubleshooting
- Summary and Conclusion
Requirements
- Proficiency in ABAP programming
- Fundamental knowledge of security concepts
Target Audience
- Developers
- Technology Consultants
This course aims to educate developers on the critical importance of writing secure ABAP code and provide them with the practical skills needed to do so. Participants will explore various types of vulnerabilities and learn how to effectively implement countermeasures to safeguard applications against external threats.
Attendees will acquire comprehensive knowledge of the ABAP Testing Cockpit (ATC) and the SAP NetWeaver Application Service add-on for code vulnerability analysis (CVA), ensuring the security and compliance of custom-developed code.
Testimonials (3)
Experience sharing, it's teacher's know-how and valuable.
Carey Fan - Logitech
Course - C/C++ Secure Coding
the knowledge of the trainer was very high - he knew what he was talking about, and knew the answers to our questions
Adam - Fireup.PRO
Course - Advanced Java Security
The topic is current and I needed to be updated