Cybersecurity

Business and technology leaders reviewing identity governance, access management, and cloud ERP security controls across integrated enterprise applications
The Hidden Governance Challenge Behind Enterprise Cloud Integrations
As organizations expand cloud ERP ecosystems and integrate more applications, identity governance is emerging as a critical operational challenge. Sustainable access management depends less on technology alone and more on clear ownership, governance frameworks, and business accountability.
Enterprise IT monitoring environment with multiple screens displaying system data, representing SAP security patching and authorization risk management.
Oracle Payments Flaw Shows Why Legacy ERP Can’t Patch at Back-Office Speed
A critical Oracle E-Business Suite vulnerability affecting Oracle Payments faced active exploitation attempts, putting renewed attention on how quickly enterprises patch legacy ERP environments tied to finance and payment workflows002E Cybersecurity Dive reported on July 1 that researchers observed exploitation...
When AI Finds Bugs Faster, ERP Patch Governance Has to Catch Up
The White House launched the Gold Eagle initiative, an AI-driven cybersecurity clearinghouse aimed at enhancing coordination among government, private sectors, and open-source partners to expedite the identification and remediation of software vulnerabilities amid increasing pressure from advanced AI systems.
Security Patch Day
July Patch Day Gave an AI Wake-Up Call from Microsoft, ServiceNow, and SAP
July's record-breaking patch cycle from Microsoft, ServiceNow, and SAP highlights a new reality for enterprise security teams. AI is accelerating vulnerability discovery, shrinking remediation windows, and expanding the attack surface across ERP systems, cloud platforms, identity infrastructure, and business-critical workflows.
From SNP Transformation World 2026 – TotalEnergies on Decommissioning Legacy SAP Systems with Aurelien Nourry
TotalEnergies retired 17 legacy SAP systems and halved its data footprint. Aurelien Nourry explains the business case, risk, and AI payoff.
US Air Force
Air Force Looks to Standardize ERP Services on Cloud One OCI
The US Air Force is seeking partners through a request for information to develop and sustain Enterprise Resource Planning Common Services on Oracle Cloud Infrastructure, aiming to enhance shared cloud services and integration for defense ERP environments.
Anthropic Claude ban lift AI access
Anthropic’s Ban Lift and Claude Science Launch Test the New Rules of AI Access
The Trump administration has lifted restrictions on Anthropic's Claude Fable 5 and Mythos 5 models, ending a weekslong export ban tied to cybersecurity concerns—though Mythos 5 remains restricted to approved US organizations. At the same time, Anthropic launched Claude Science, a domain-specific AI research workbench targeting life sciences and pharmaceutical users, signaling a broader shift toward specialized, governed enterprise AI access.
ServiceNow and Accenture
ServiceNow and Accenture Are Going After Cyber Risk’s Legacy Platform Problem
ServiceNow and Accenture have launched a joint AI-powered offering to help enterprises migrate from legacy cybersecurity and risk platforms to integrated managed services on the ServiceNow AI Platform, combining agentic AI with risk management, GRC, third-party risk, and OT security monitoring.
NTT DATA and Pathlock Bring Always-On Cyber Defense to SAP Workflows
NTT DATA Business Solutions and Pathlock have joined forces to deliver always-on SAP cybersecurity — combining a managed SOC with AI-native application controls to protect finance, procurement, and supply chain workflows against unauthorized access, fraud, and misconfiguration at global scale.
IBM Brings OpenAI Cyber Models into Enterprise AppSec Workflows
IBM has launched a new application security service using OpenAI's capabilities to help enterprises quickly identify software vulnerabilities, as part of its broader initiative to integrate frontier AI into cyber defense while ensuring controlled access and governance.
SAP NS2 defense
SAP NS2’s FedRAMP+ IL5 Authorization Opens a New Cloud ERP Path for Defense Programs
The recent FedRAMP+ IL5 authorization by SAP NS2 enables US Department of War organizations to deploy SAP S/4HANA Cloud and SAP BTP in a secure cloud environment, simplifying compliance for defense ERP modernization and addressing the complexities of operating within stringent regulatory frameworks.
Security analyst monitoring code and identity access controls across multiple screens following accelerated AI-driven breach activity
SAP June Patch Day Brings Four Critical Fixes Across NetWeaver, ABAP, Commerce Cloud
SAP's June 2026 Security Patch Day issued four critical fixes for vulnerabilities affecting SAP NetWeaver, ABAP, Java, Commerce Cloud, and Data Hub, prompting priority patch application to safeguard systems, as outlined in 15 new security notes highlighting risks in authentication and memory management.
Cybersecurity
Sage-IDC Research Reveals SMB Cybersecurity Gaps in the AI Era
A Sage-IDC study reveals that while small and medium-sized businesses (SMBs) are significantly increasing their cybersecurity investments, a disconnect exists between spending intentions and actual implementation, exposing many to cyber threats due to a lack of governance and preparedness, particularly in the face of accelerating AI adoption.
SAP Security Has the Board’s Attention—Now What?
SAP security has gained visibility at the executive level but often fails to drive decisions due to a lack of effective translation of cyber risks into clear business impacts, as highlighted by Asha Vartak, emphasizing that awareness alone is insufficient for action in a landscape increasingly influenced by AI and regulatory pressures.
SAPinsider Las Vegas 2026 at Bellagio hotel highlighting SAP security and zero-day risk discussion
Zero-Day Risk Reshapes SAP Security as Attacks Grow Faster and More Complex
Zero-day vulnerabilities are becoming expected in SAP environments. As attacks grow more frequent and sophisticated, patching alone is no longer sufficient to manage enterprise risk.
Cybersecurity
Bell Cyber and Radware Expand AI-driven, Cloud-Delivered Security Services
Bell Cyber and Radware are launching a unified, AI-driven managed security service to enhance protection against sophisticated cyberattacks for enterprises.
SAP logo displayed at company office, representing enterprise software security and monthly Patch Day updates.
SAP February Patch Day Puts ABAP and Platform Risk in Focus
SAP’s February 2026 Patch Day delivered 26 new notes and one update, with critical exposure centered in ABAP and core platform services. Vendors warn impact depends on how trust and integrations operate inside each landscape.
Microsoft logo displayed on a dark sign mounted on a concrete wall
Microsoft Data Security Index 2026: AI Adoption Is Outpacing Data Security Controls
Microsoft’s 2026 Data Security Index shows generative AI adoption accelerating faster than data security controls, exposing governance and visibility gaps across enterprise environments.
Microsoft Defender for Office 365 log displayed on a phone in front of a keyboard.
Microsoft Warns of Rising PhaaS Attacks in 365 Environments
Microsoft warns of rising internal-looking phishing in Microsoft 365, which exploit misconfigured routing and weak authentication. PhaaS platforms like Tycoon2FA automate these attacks, and hybrid email environments from cloud migrations increase risk, making enterprise inboxes more vulnerable.
Keyboard with a key that shows a Microsoft logo with a lock over it
How Microsoft Security Copilot Helps Lean Teams Scale Incident Response and Compliance
Security teams increasingly face cyber threats beyond their investigative capacities, leading to the adoption of generative AI tools such as Microsoft Security Copilot, which enhances threat investigation, incident response, and policy management.
US Department of Defense webpage open on a smartphone
CMMC 2.0 Enters Enforcement: What Contractors and Vendors Must Know
CMMC 2.0 enforcement has begun, shifting defense contractors from voluntary cybersecurity guidance to mandatory compliance under a phased rollout with defined certification levels and assessments.
How the digital sovereignty agenda in the EU reshapes cybersecurity
The EU's push for digital sovereignty is transforming cybersecurity into a critical, integrated discipline, prompting businesses to adopt stringent regulations, lifecycle-embedded practices, and proactive risk management.
SAP NS2 defense
The New SAP Defense
As organizations transition to SAP S/4HANA and hybrid-cloud architectures, the necessity for a layered Zero Trust security approach, supported by Unified Risk Management and consolidated monitoring solutions, becomes critical to address the expanded attack surface.
Palo Alto, Google Cloud Expand AI Security Alliance as 99% of Organizations Report AI Attacks
Palo Alto Networks and Google Cloud have expanded their partnership with a nearly $10 billion deal to enhance AI and cloud security, integrating Palo Alto’s Prisma AIRS platform with Google Cloud’s infrastructure to provide comprehensive security across hybrid multicloud environments.
SAP security
How SAP Customers Responded to Rising Cybersecurity Threats in 2025
In 2025, SAP customers expressed increasing concern over cyberattacks, particularly regarding data exfiltration and integration risks, while patch management remained a significant challenge, highlighting the necessity for enhanced security strategies and investments in SAP-specific protections.
SAP Sovereign Cloud
Five Risks SAP Leaders Can No Longer Ignore in 2026
As SAP vulnerabilities surge and attackers exploit weaknesses swiftly, organizations must prioritize automated security measures and cloud responsibility models while addressing legacy systems and integrating SAP into broader security operations to mitigate risks and safeguard critical business processes.
ERP Lessons from Black Friday for Manufacturers, Retailers
Black Friday serves as a critical evaluation for ERP systems, revealing their capability for real-time operational control amid spikes in demand, and highlighting the need for strong data governance, operational visibility, and continuous analysis to enhance resilience and readiness for future challenges.
A lock is shown on top of a laptop keyboard | Onapsis
SAP Issues Three Critical Security Fixes in December Patch Day
On December 9, SAP released 14 security notes, including three critical patches for vulnerabilities in SAP Solution Manager, Apache Tomcat in SAP Commerce Cloud, and SAP jConnect, urging customers to prioritize updates based on severity to protect against potential exploits.
The Great Cloud Recalculation Oracle+IBM
IBM in Advanced Talks to Acquire Confluent
IBM is in advanced talks to acquire Confluent for around $11 billion, aiming to enhance its real-time data and AI capabilities, while also gaining a strategic advantage in the data infrastructure market.
System Integration Market Surging as Enterprises Shift Toward Modernization
The global system integration market is projected to reach $600 billion by 2030, with ERP systems playing a key role as companies shift toward digital transformation, IoT adoption, and increased automation in daily processes.